Feb 9 09:48:37.947559 kernel: Booting Linux on physical CPU 0x0000000000 [0x410fd083] Feb 9 09:48:37.947596 kernel: Linux version 5.15.148-flatcar (build@pony-truck.infra.kinvolk.io) (aarch64-cros-linux-gnu-gcc (Gentoo Hardened 11.3.1_p20221209 p3) 11.3.1 20221209, GNU ld (Gentoo 2.39 p5) 2.39.0) #1 SMP PREEMPT Fri Feb 9 08:56:26 -00 2024 Feb 9 09:48:37.947619 kernel: efi: EFI v2.70 by EDK II Feb 9 09:48:37.947634 kernel: efi: SMBIOS=0x7bed0000 SMBIOS 3.0=0x7beb0000 ACPI=0x786e0000 ACPI 2.0=0x786e0014 MEMATTR=0x7ac1aa98 MEMRESERVE=0x71a8cf98 Feb 9 09:48:37.947648 kernel: ACPI: Early table checksum verification disabled Feb 9 09:48:37.947662 kernel: ACPI: RSDP 0x00000000786E0014 000024 (v02 AMAZON) Feb 9 09:48:37.947677 kernel: ACPI: XSDT 0x00000000786D00E8 000064 (v01 AMAZON AMZNFACP 00000001 01000013) Feb 9 09:48:37.947692 kernel: ACPI: FACP 0x00000000786B0000 000114 (v06 AMAZON AMZNFACP 00000001 AMZN 00000001) Feb 9 09:48:37.947705 kernel: ACPI: DSDT 0x0000000078640000 00154F (v02 AMAZON AMZNDSDT 00000001 INTL 20160527) Feb 9 09:48:37.947719 kernel: ACPI: APIC 0x00000000786C0000 000108 (v04 AMAZON AMZNAPIC 00000001 AMZN 00000001) Feb 9 09:48:37.947737 kernel: ACPI: SPCR 0x00000000786A0000 000050 (v02 AMAZON AMZNSPCR 00000001 AMZN 00000001) Feb 9 09:48:37.947751 kernel: ACPI: GTDT 0x0000000078690000 000060 (v02 AMAZON AMZNGTDT 00000001 AMZN 00000001) Feb 9 09:48:37.947764 kernel: ACPI: MCFG 0x0000000078680000 00003C (v02 AMAZON AMZNMCFG 00000001 AMZN 00000001) Feb 9 09:48:37.947778 kernel: ACPI: SLIT 0x0000000078670000 00002D (v01 AMAZON AMZNSLIT 00000001 AMZN 00000001) Feb 9 09:48:37.947795 kernel: ACPI: IORT 0x0000000078660000 000078 (v01 AMAZON AMZNIORT 00000001 AMZN 00000001) Feb 9 09:48:37.947814 kernel: ACPI: PPTT 0x0000000078650000 0000EC (v01 AMAZON AMZNPPTT 00000001 AMZN 00000001) Feb 9 09:48:37.947828 kernel: ACPI: SPCR: console: uart,mmio,0x90a0000,115200 Feb 9 09:48:37.947842 kernel: earlycon: uart0 at MMIO 0x00000000090a0000 (options '115200') Feb 9 09:48:37.947857 kernel: printk: bootconsole [uart0] enabled Feb 9 09:48:37.947871 kernel: NUMA: Failed to initialise from firmware Feb 9 09:48:37.947886 kernel: NUMA: Faking a node at [mem 0x0000000040000000-0x00000004b5ffffff] Feb 9 09:48:37.947901 kernel: NUMA: NODE_DATA [mem 0x4b5841900-0x4b5846fff] Feb 9 09:48:37.947937 kernel: Zone ranges: Feb 9 09:48:37.947953 kernel: DMA [mem 0x0000000040000000-0x00000000ffffffff] Feb 9 09:48:37.947986 kernel: DMA32 empty Feb 9 09:48:37.948007 kernel: Normal [mem 0x0000000100000000-0x00000004b5ffffff] Feb 9 09:48:37.948027 kernel: Movable zone start for each node Feb 9 09:48:37.948042 kernel: Early memory node ranges Feb 9 09:48:37.948057 kernel: node 0: [mem 0x0000000040000000-0x00000000786effff] Feb 9 09:48:37.948071 kernel: node 0: [mem 0x00000000786f0000-0x000000007872ffff] Feb 9 09:48:37.948086 kernel: node 0: [mem 0x0000000078730000-0x000000007bbfffff] Feb 9 09:48:37.948100 kernel: node 0: [mem 0x000000007bc00000-0x000000007bfdffff] Feb 9 09:48:37.948114 kernel: node 0: [mem 0x000000007bfe0000-0x000000007fffffff] Feb 9 09:48:37.948129 kernel: node 0: [mem 0x0000000400000000-0x00000004b5ffffff] Feb 9 09:48:37.948144 kernel: Initmem setup node 0 [mem 0x0000000040000000-0x00000004b5ffffff] Feb 9 09:48:37.948158 kernel: On node 0, zone Normal: 8192 pages in unavailable ranges Feb 9 09:48:37.948172 kernel: psci: probing for conduit method from ACPI. Feb 9 09:48:37.948187 kernel: psci: PSCIv1.0 detected in firmware. Feb 9 09:48:37.948206 kernel: psci: Using standard PSCI v0.2 function IDs Feb 9 09:48:37.948220 kernel: psci: Trusted OS migration not required Feb 9 09:48:37.948241 kernel: psci: SMC Calling Convention v1.1 Feb 9 09:48:37.948257 kernel: ACPI: SRAT not present Feb 9 09:48:37.948273 kernel: percpu: Embedded 29 pages/cpu s79960 r8192 d30632 u118784 Feb 9 09:48:37.948292 kernel: pcpu-alloc: s79960 r8192 d30632 u118784 alloc=29*4096 Feb 9 09:48:37.948307 kernel: pcpu-alloc: [0] 0 [0] 1 Feb 9 09:48:37.948322 kernel: Detected PIPT I-cache on CPU0 Feb 9 09:48:37.948338 kernel: CPU features: detected: GIC system register CPU interface Feb 9 09:48:37.948353 kernel: CPU features: detected: Spectre-v2 Feb 9 09:48:37.948368 kernel: CPU features: detected: Spectre-v3a Feb 9 09:48:37.948383 kernel: CPU features: detected: Spectre-BHB Feb 9 09:48:37.948398 kernel: CPU features: kernel page table isolation forced ON by KASLR Feb 9 09:48:37.948413 kernel: CPU features: detected: Kernel page table isolation (KPTI) Feb 9 09:48:37.948428 kernel: CPU features: detected: ARM erratum 1742098 Feb 9 09:48:37.948444 kernel: CPU features: detected: ARM errata 1165522, 1319367, or 1530923 Feb 9 09:48:37.948462 kernel: Built 1 zonelists, mobility grouping on. Total pages: 991872 Feb 9 09:48:37.948478 kernel: Policy zone: Normal Feb 9 09:48:37.948496 kernel: Kernel command line: BOOT_IMAGE=/flatcar/vmlinuz-a mount.usr=/dev/mapper/usr verity.usr=PARTUUID=7130c94a-213a-4e5a-8e26-6cce9662f132 rootflags=rw mount.usrflags=ro consoleblank=0 root=LABEL=ROOT console=tty1 console=ttyS0,115200n8 earlycon flatcar.first_boot=detected acpi=force flatcar.oem.id=ec2 modprobe.blacklist=xen_fbfront net.ifnames=0 nvme_core.io_timeout=4294967295 verity.usrhash=14ffd9340f674a8d04c9d43eed85484d8b2b7e2bcd8b36a975c9ac66063d537d Feb 9 09:48:37.948512 kernel: Unknown kernel command line parameters "BOOT_IMAGE=/flatcar/vmlinuz-a", will be passed to user space. Feb 9 09:48:37.948528 kernel: Dentry cache hash table entries: 524288 (order: 10, 4194304 bytes, linear) Feb 9 09:48:37.948543 kernel: Inode-cache hash table entries: 262144 (order: 9, 2097152 bytes, linear) Feb 9 09:48:37.948559 kernel: mem auto-init: stack:off, heap alloc:off, heap free:off Feb 9 09:48:37.948574 kernel: software IO TLB: mapped [mem 0x000000007c000000-0x0000000080000000] (64MB) Feb 9 09:48:37.948591 kernel: Memory: 3826316K/4030464K available (9792K kernel code, 2092K rwdata, 7556K rodata, 34688K init, 778K bss, 204148K reserved, 0K cma-reserved) Feb 9 09:48:37.948606 kernel: SLUB: HWalign=64, Order=0-3, MinObjects=0, CPUs=2, Nodes=1 Feb 9 09:48:37.948625 kernel: trace event string verifier disabled Feb 9 09:48:37.948640 kernel: rcu: Preemptible hierarchical RCU implementation. Feb 9 09:48:37.948656 kernel: rcu: RCU event tracing is enabled. Feb 9 09:48:37.948672 kernel: rcu: RCU restricting CPUs from NR_CPUS=512 to nr_cpu_ids=2. Feb 9 09:48:37.948688 kernel: Trampoline variant of Tasks RCU enabled. Feb 9 09:48:37.948703 kernel: Tracing variant of Tasks RCU enabled. Feb 9 09:48:37.948719 kernel: rcu: RCU calculated value of scheduler-enlistment delay is 100 jiffies. Feb 9 09:48:37.948734 kernel: rcu: Adjusting geometry for rcu_fanout_leaf=16, nr_cpu_ids=2 Feb 9 09:48:37.948750 kernel: NR_IRQS: 64, nr_irqs: 64, preallocated irqs: 0 Feb 9 09:48:37.948765 kernel: GICv3: 96 SPIs implemented Feb 9 09:48:37.948780 kernel: GICv3: 0 Extended SPIs implemented Feb 9 09:48:37.948795 kernel: GICv3: Distributor has no Range Selector support Feb 9 09:48:37.948814 kernel: Root IRQ handler: gic_handle_irq Feb 9 09:48:37.948845 kernel: GICv3: 16 PPIs implemented Feb 9 09:48:37.948861 kernel: GICv3: CPU0: found redistributor 0 region 0:0x0000000010200000 Feb 9 09:48:37.948876 kernel: ACPI: SRAT not present Feb 9 09:48:37.948890 kernel: ITS [mem 0x10080000-0x1009ffff] Feb 9 09:48:37.948906 kernel: ITS@0x0000000010080000: allocated 8192 Devices @4000a0000 (indirect, esz 8, psz 64K, shr 1) Feb 9 09:48:37.948921 kernel: ITS@0x0000000010080000: allocated 8192 Interrupt Collections @4000b0000 (flat, esz 8, psz 64K, shr 1) Feb 9 09:48:37.948936 kernel: GICv3: using LPI property table @0x00000004000c0000 Feb 9 09:48:37.948951 kernel: ITS: Using hypervisor restricted LPI range [128] Feb 9 09:48:37.948967 kernel: GICv3: CPU0: using allocated LPI pending table @0x00000004000d0000 Feb 9 09:48:37.949003 kernel: arch_timer: cp15 timer(s) running at 83.33MHz (virt). Feb 9 09:48:37.949024 kernel: clocksource: arch_sys_counter: mask: 0xffffffffffffff max_cycles: 0x13381ebeec, max_idle_ns: 440795203145 ns Feb 9 09:48:37.949040 kernel: sched_clock: 56 bits at 83MHz, resolution 12ns, wraps every 4398046511100ns Feb 9 09:48:37.949055 kernel: Console: colour dummy device 80x25 Feb 9 09:48:37.949071 kernel: printk: console [tty1] enabled Feb 9 09:48:37.949087 kernel: ACPI: Core revision 20210730 Feb 9 09:48:37.949103 kernel: Calibrating delay loop (skipped), value calculated using timer frequency.. 166.66 BogoMIPS (lpj=83333) Feb 9 09:48:37.949119 kernel: pid_max: default: 32768 minimum: 301 Feb 9 09:48:37.949135 kernel: LSM: Security Framework initializing Feb 9 09:48:37.949150 kernel: SELinux: Initializing. Feb 9 09:48:37.949166 kernel: Mount-cache hash table entries: 8192 (order: 4, 65536 bytes, linear) Feb 9 09:48:37.949186 kernel: Mountpoint-cache hash table entries: 8192 (order: 4, 65536 bytes, linear) Feb 9 09:48:37.949201 kernel: rcu: Hierarchical SRCU implementation. Feb 9 09:48:37.949217 kernel: Platform MSI: ITS@0x10080000 domain created Feb 9 09:48:37.949233 kernel: PCI/MSI: ITS@0x10080000 domain created Feb 9 09:48:37.949248 kernel: Remapping and enabling EFI services. Feb 9 09:48:37.949264 kernel: smp: Bringing up secondary CPUs ... Feb 9 09:48:37.949279 kernel: Detected PIPT I-cache on CPU1 Feb 9 09:48:37.949295 kernel: GICv3: CPU1: found redistributor 1 region 0:0x0000000010220000 Feb 9 09:48:37.949311 kernel: GICv3: CPU1: using allocated LPI pending table @0x00000004000e0000 Feb 9 09:48:37.949331 kernel: CPU1: Booted secondary processor 0x0000000001 [0x410fd083] Feb 9 09:48:37.949346 kernel: smp: Brought up 1 node, 2 CPUs Feb 9 09:48:37.949362 kernel: SMP: Total of 2 processors activated. Feb 9 09:48:37.949377 kernel: CPU features: detected: 32-bit EL0 Support Feb 9 09:48:37.949393 kernel: CPU features: detected: 32-bit EL1 Support Feb 9 09:48:37.949408 kernel: CPU features: detected: CRC32 instructions Feb 9 09:48:37.949424 kernel: CPU: All CPU(s) started at EL1 Feb 9 09:48:37.949439 kernel: alternatives: patching kernel code Feb 9 09:48:37.949454 kernel: devtmpfs: initialized Feb 9 09:48:37.949473 kernel: KASLR disabled due to lack of seed Feb 9 09:48:37.949490 kernel: clocksource: jiffies: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 1911260446275000 ns Feb 9 09:48:37.949506 kernel: futex hash table entries: 512 (order: 3, 32768 bytes, linear) Feb 9 09:48:37.949532 kernel: pinctrl core: initialized pinctrl subsystem Feb 9 09:48:37.949552 kernel: SMBIOS 3.0.0 present. Feb 9 09:48:37.949568 kernel: DMI: Amazon EC2 a1.large/, BIOS 1.0 11/1/2018 Feb 9 09:48:37.949584 kernel: NET: Registered PF_NETLINK/PF_ROUTE protocol family Feb 9 09:48:37.949601 kernel: DMA: preallocated 512 KiB GFP_KERNEL pool for atomic allocations Feb 9 09:48:37.949617 kernel: DMA: preallocated 512 KiB GFP_KERNEL|GFP_DMA pool for atomic allocations Feb 9 09:48:37.949634 kernel: DMA: preallocated 512 KiB GFP_KERNEL|GFP_DMA32 pool for atomic allocations Feb 9 09:48:37.949650 kernel: audit: initializing netlink subsys (disabled) Feb 9 09:48:37.949667 kernel: audit: type=2000 audit(0.248:1): state=initialized audit_enabled=0 res=1 Feb 9 09:48:37.949702 kernel: thermal_sys: Registered thermal governor 'step_wise' Feb 9 09:48:37.949719 kernel: cpuidle: using governor menu Feb 9 09:48:37.949736 kernel: hw-breakpoint: found 6 breakpoint and 4 watchpoint registers. Feb 9 09:48:37.949752 kernel: ASID allocator initialised with 32768 entries Feb 9 09:48:37.949769 kernel: ACPI: bus type PCI registered Feb 9 09:48:37.949789 kernel: acpiphp: ACPI Hot Plug PCI Controller Driver version: 0.5 Feb 9 09:48:37.949805 kernel: Serial: AMBA PL011 UART driver Feb 9 09:48:37.949821 kernel: HugeTLB registered 1.00 GiB page size, pre-allocated 0 pages Feb 9 09:48:37.949837 kernel: HugeTLB registered 32.0 MiB page size, pre-allocated 0 pages Feb 9 09:48:37.949854 kernel: HugeTLB registered 2.00 MiB page size, pre-allocated 0 pages Feb 9 09:48:37.949870 kernel: HugeTLB registered 64.0 KiB page size, pre-allocated 0 pages Feb 9 09:48:37.949886 kernel: cryptd: max_cpu_qlen set to 1000 Feb 9 09:48:37.949903 kernel: alg: No test for fips(ansi_cprng) (fips_ansi_cprng) Feb 9 09:48:37.949931 kernel: ACPI: Added _OSI(Module Device) Feb 9 09:48:37.949954 kernel: ACPI: Added _OSI(Processor Device) Feb 9 09:48:37.949986 kernel: ACPI: Added _OSI(3.0 _SCP Extensions) Feb 9 09:48:37.950007 kernel: ACPI: Added _OSI(Processor Aggregator Device) Feb 9 09:48:37.950024 kernel: ACPI: Added _OSI(Linux-Dell-Video) Feb 9 09:48:37.950040 kernel: ACPI: Added _OSI(Linux-Lenovo-NV-HDMI-Audio) Feb 9 09:48:37.950056 kernel: ACPI: Added _OSI(Linux-HPI-Hybrid-Graphics) Feb 9 09:48:37.950072 kernel: ACPI: 1 ACPI AML tables successfully acquired and loaded Feb 9 09:48:37.950089 kernel: ACPI: Interpreter enabled Feb 9 09:48:37.950105 kernel: ACPI: Using GIC for interrupt routing Feb 9 09:48:37.950126 kernel: ACPI: MCFG table detected, 1 entries Feb 9 09:48:37.950142 kernel: ACPI: PCI Root Bridge [PCI0] (domain 0000 [bus 00-0f]) Feb 9 09:48:37.950423 kernel: acpi PNP0A08:00: _OSC: OS supports [ExtendedConfig ASPM ClockPM Segments MSI HPX-Type3] Feb 9 09:48:37.950625 kernel: acpi PNP0A08:00: _OSC: platform does not support [LTR] Feb 9 09:48:37.950821 kernel: acpi PNP0A08:00: _OSC: OS now controls [PCIeHotplug PME AER PCIeCapability] Feb 9 09:48:37.951044 kernel: acpi PNP0A08:00: ECAM area [mem 0x20000000-0x20ffffff] reserved by PNP0C02:00 Feb 9 09:48:37.951243 kernel: acpi PNP0A08:00: ECAM at [mem 0x20000000-0x20ffffff] for [bus 00-0f] Feb 9 09:48:37.951270 kernel: ACPI: Remapped I/O 0x000000001fff0000 to [io 0x0000-0xffff window] Feb 9 09:48:37.951287 kernel: acpiphp: Slot [1] registered Feb 9 09:48:37.951304 kernel: acpiphp: Slot [2] registered Feb 9 09:48:37.951320 kernel: acpiphp: Slot [3] registered Feb 9 09:48:37.951336 kernel: acpiphp: Slot [4] registered Feb 9 09:48:37.951352 kernel: acpiphp: Slot [5] registered Feb 9 09:48:37.951369 kernel: acpiphp: Slot [6] registered Feb 9 09:48:37.951385 kernel: acpiphp: Slot [7] registered Feb 9 09:48:37.951401 kernel: acpiphp: Slot [8] registered Feb 9 09:48:37.951421 kernel: acpiphp: Slot [9] registered Feb 9 09:48:37.951438 kernel: acpiphp: Slot [10] registered Feb 9 09:48:37.951454 kernel: acpiphp: Slot [11] registered Feb 9 09:48:37.951470 kernel: acpiphp: Slot [12] registered Feb 9 09:48:37.951486 kernel: acpiphp: Slot [13] registered Feb 9 09:48:37.951502 kernel: acpiphp: Slot [14] registered Feb 9 09:48:37.951518 kernel: acpiphp: Slot [15] registered Feb 9 09:48:37.951534 kernel: acpiphp: Slot [16] registered Feb 9 09:48:37.951550 kernel: acpiphp: Slot [17] registered Feb 9 09:48:37.951566 kernel: acpiphp: Slot [18] registered Feb 9 09:48:37.951587 kernel: acpiphp: Slot [19] registered Feb 9 09:48:37.951603 kernel: acpiphp: Slot [20] registered Feb 9 09:48:37.951619 kernel: acpiphp: Slot [21] registered Feb 9 09:48:37.951635 kernel: acpiphp: Slot [22] registered Feb 9 09:48:37.951651 kernel: acpiphp: Slot [23] registered Feb 9 09:48:37.951667 kernel: acpiphp: Slot [24] registered Feb 9 09:48:37.951683 kernel: acpiphp: Slot [25] registered Feb 9 09:48:37.951699 kernel: acpiphp: Slot [26] registered Feb 9 09:48:37.951715 kernel: acpiphp: Slot [27] registered Feb 9 09:48:37.951735 kernel: acpiphp: Slot [28] registered Feb 9 09:48:37.951751 kernel: acpiphp: Slot [29] registered Feb 9 09:48:37.951767 kernel: acpiphp: Slot [30] registered Feb 9 09:48:37.951783 kernel: acpiphp: Slot [31] registered Feb 9 09:48:37.951799 kernel: PCI host bridge to bus 0000:00 Feb 9 09:48:37.966609 kernel: pci_bus 0000:00: root bus resource [mem 0x80000000-0xffffffff window] Feb 9 09:48:37.966829 kernel: pci_bus 0000:00: root bus resource [io 0x0000-0xffff window] Feb 9 09:48:37.970260 kernel: pci_bus 0000:00: root bus resource [mem 0x400000000000-0x407fffffffff window] Feb 9 09:48:37.970473 kernel: pci_bus 0000:00: root bus resource [bus 00-0f] Feb 9 09:48:37.970702 kernel: pci 0000:00:00.0: [1d0f:0200] type 00 class 0x060000 Feb 9 09:48:37.970923 kernel: pci 0000:00:01.0: [1d0f:8250] type 00 class 0x070003 Feb 9 09:48:37.971160 kernel: pci 0000:00:01.0: reg 0x10: [mem 0x80118000-0x80118fff] Feb 9 09:48:37.971381 kernel: pci 0000:00:04.0: [1d0f:8061] type 00 class 0x010802 Feb 9 09:48:37.971588 kernel: pci 0000:00:04.0: reg 0x10: [mem 0x80114000-0x80117fff] Feb 9 09:48:37.971798 kernel: pci 0000:00:04.0: PME# supported from D0 D1 D2 D3hot D3cold Feb 9 09:48:37.972070 kernel: pci 0000:00:05.0: [1d0f:ec20] type 00 class 0x020000 Feb 9 09:48:37.972280 kernel: pci 0000:00:05.0: reg 0x10: [mem 0x80110000-0x80113fff] Feb 9 09:48:37.972485 kernel: pci 0000:00:05.0: reg 0x18: [mem 0x80000000-0x800fffff pref] Feb 9 09:48:37.972682 kernel: pci 0000:00:05.0: reg 0x20: [mem 0x80100000-0x8010ffff] Feb 9 09:48:37.972884 kernel: pci 0000:00:05.0: PME# supported from D0 D1 D2 D3hot D3cold Feb 9 09:48:37.973115 kernel: pci 0000:00:05.0: BAR 2: assigned [mem 0x80000000-0x800fffff pref] Feb 9 09:48:37.973328 kernel: pci 0000:00:05.0: BAR 4: assigned [mem 0x80100000-0x8010ffff] Feb 9 09:48:37.973532 kernel: pci 0000:00:04.0: BAR 0: assigned [mem 0x80110000-0x80113fff] Feb 9 09:48:37.973735 kernel: pci 0000:00:05.0: BAR 0: assigned [mem 0x80114000-0x80117fff] Feb 9 09:48:37.973943 kernel: pci 0000:00:01.0: BAR 0: assigned [mem 0x80118000-0x80118fff] Feb 9 09:48:37.974150 kernel: pci_bus 0000:00: resource 4 [mem 0x80000000-0xffffffff window] Feb 9 09:48:37.974347 kernel: pci_bus 0000:00: resource 5 [io 0x0000-0xffff window] Feb 9 09:48:37.974534 kernel: pci_bus 0000:00: resource 6 [mem 0x400000000000-0x407fffffffff window] Feb 9 09:48:37.974562 kernel: ACPI: PCI: Interrupt link GSI0 configured for IRQ 35 Feb 9 09:48:37.974580 kernel: ACPI: PCI: Interrupt link GSI1 configured for IRQ 36 Feb 9 09:48:37.974597 kernel: ACPI: PCI: Interrupt link GSI2 configured for IRQ 37 Feb 9 09:48:37.974613 kernel: ACPI: PCI: Interrupt link GSI3 configured for IRQ 38 Feb 9 09:48:37.974630 kernel: iommu: Default domain type: Translated Feb 9 09:48:37.974646 kernel: iommu: DMA domain TLB invalidation policy: strict mode Feb 9 09:48:37.974663 kernel: vgaarb: loaded Feb 9 09:48:37.974693 kernel: pps_core: LinuxPPS API ver. 1 registered Feb 9 09:48:37.974711 kernel: pps_core: Software ver. 5.3.6 - Copyright 2005-2007 Rodolfo Giometti Feb 9 09:48:37.974732 kernel: PTP clock support registered Feb 9 09:48:37.974748 kernel: Registered efivars operations Feb 9 09:48:37.974765 kernel: clocksource: Switched to clocksource arch_sys_counter Feb 9 09:48:37.974781 kernel: VFS: Disk quotas dquot_6.6.0 Feb 9 09:48:37.974797 kernel: VFS: Dquot-cache hash table entries: 512 (order 0, 4096 bytes) Feb 9 09:48:37.974814 kernel: pnp: PnP ACPI init Feb 9 09:48:37.989136 kernel: system 00:00: [mem 0x20000000-0x2fffffff] could not be reserved Feb 9 09:48:37.989180 kernel: pnp: PnP ACPI: found 1 devices Feb 9 09:48:37.989198 kernel: NET: Registered PF_INET protocol family Feb 9 09:48:37.989224 kernel: IP idents hash table entries: 65536 (order: 7, 524288 bytes, linear) Feb 9 09:48:37.989242 kernel: tcp_listen_portaddr_hash hash table entries: 2048 (order: 3, 32768 bytes, linear) Feb 9 09:48:37.989259 kernel: Table-perturb hash table entries: 65536 (order: 6, 262144 bytes, linear) Feb 9 09:48:37.989275 kernel: TCP established hash table entries: 32768 (order: 6, 262144 bytes, linear) Feb 9 09:48:37.989292 kernel: TCP bind hash table entries: 32768 (order: 7, 524288 bytes, linear) Feb 9 09:48:37.989308 kernel: TCP: Hash tables configured (established 32768 bind 32768) Feb 9 09:48:37.989325 kernel: UDP hash table entries: 2048 (order: 4, 65536 bytes, linear) Feb 9 09:48:37.989341 kernel: UDP-Lite hash table entries: 2048 (order: 4, 65536 bytes, linear) Feb 9 09:48:37.989358 kernel: NET: Registered PF_UNIX/PF_LOCAL protocol family Feb 9 09:48:37.989379 kernel: PCI: CLS 0 bytes, default 64 Feb 9 09:48:37.989395 kernel: hw perfevents: enabled with armv8_pmuv3_0 PMU driver, 3 counters available Feb 9 09:48:37.989411 kernel: kvm [1]: HYP mode not available Feb 9 09:48:37.989427 kernel: Initialise system trusted keyrings Feb 9 09:48:37.989444 kernel: workingset: timestamp_bits=39 max_order=20 bucket_order=0 Feb 9 09:48:37.989461 kernel: Key type asymmetric registered Feb 9 09:48:37.989477 kernel: Asymmetric key parser 'x509' registered Feb 9 09:48:37.989493 kernel: Block layer SCSI generic (bsg) driver version 0.4 loaded (major 249) Feb 9 09:48:37.989510 kernel: io scheduler mq-deadline registered Feb 9 09:48:37.989532 kernel: io scheduler kyber registered Feb 9 09:48:37.989549 kernel: io scheduler bfq registered Feb 9 09:48:37.989804 kernel: pl061_gpio ARMH0061:00: PL061 GPIO chip registered Feb 9 09:48:37.989835 kernel: input: Power Button as /devices/LNXSYSTM:00/LNXSYBUS:00/PNP0C0C:00/input/input0 Feb 9 09:48:37.989852 kernel: ACPI: button: Power Button [PWRB] Feb 9 09:48:37.989869 kernel: Serial: 8250/16550 driver, 4 ports, IRQ sharing enabled Feb 9 09:48:37.989886 kernel: ACPI: \_SB_.PCI0.GSI2: Enabled at IRQ 37 Feb 9 09:48:37.990120 kernel: serial 0000:00:01.0: enabling device (0010 -> 0012) Feb 9 09:48:37.990154 kernel: printk: console [ttyS0] disabled Feb 9 09:48:37.990171 kernel: 0000:00:01.0: ttyS0 at MMIO 0x80118000 (irq = 14, base_baud = 115200) is a 16550A Feb 9 09:48:37.990188 kernel: printk: console [ttyS0] enabled Feb 9 09:48:37.990204 kernel: printk: bootconsole [uart0] disabled Feb 9 09:48:37.990220 kernel: thunder_xcv, ver 1.0 Feb 9 09:48:37.990236 kernel: thunder_bgx, ver 1.0 Feb 9 09:48:37.990252 kernel: nicpf, ver 1.0 Feb 9 09:48:37.990268 kernel: nicvf, ver 1.0 Feb 9 09:48:37.990475 kernel: rtc-efi rtc-efi.0: registered as rtc0 Feb 9 09:48:37.990667 kernel: rtc-efi rtc-efi.0: setting system clock to 2024-02-09T09:48:37 UTC (1707472117) Feb 9 09:48:37.990691 kernel: hid: raw HID events driver (C) Jiri Kosina Feb 9 09:48:37.990707 kernel: NET: Registered PF_INET6 protocol family Feb 9 09:48:37.990724 kernel: Segment Routing with IPv6 Feb 9 09:48:37.990740 kernel: In-situ OAM (IOAM) with IPv6 Feb 9 09:48:37.990756 kernel: NET: Registered PF_PACKET protocol family Feb 9 09:48:37.990773 kernel: Key type dns_resolver registered Feb 9 09:48:37.990789 kernel: registered taskstats version 1 Feb 9 09:48:37.990810 kernel: Loading compiled-in X.509 certificates Feb 9 09:48:37.990827 kernel: Loaded X.509 cert 'Kinvolk GmbH: Module signing key for 5.15.148-flatcar: ca91574208414224935c9cea513398977daf917d' Feb 9 09:48:37.990843 kernel: Key type .fscrypt registered Feb 9 09:48:37.990859 kernel: Key type fscrypt-provisioning registered Feb 9 09:48:37.990876 kernel: ima: No TPM chip found, activating TPM-bypass! Feb 9 09:48:37.990892 kernel: ima: Allocated hash algorithm: sha1 Feb 9 09:48:37.990908 kernel: ima: No architecture policies found Feb 9 09:48:37.990925 kernel: Freeing unused kernel memory: 34688K Feb 9 09:48:37.990941 kernel: Run /init as init process Feb 9 09:48:37.990962 kernel: with arguments: Feb 9 09:48:37.991007 kernel: /init Feb 9 09:48:37.991024 kernel: with environment: Feb 9 09:48:37.991040 kernel: HOME=/ Feb 9 09:48:37.991056 kernel: TERM=linux Feb 9 09:48:37.991072 kernel: BOOT_IMAGE=/flatcar/vmlinuz-a Feb 9 09:48:37.991094 systemd[1]: systemd 252 running in system mode (+PAM +AUDIT +SELINUX -APPARMOR +IMA +SMACK +SECCOMP +GCRYPT -GNUTLS +OPENSSL -ACL +BLKID +CURL -ELFUTILS -FIDO2 +IDN2 -IDN +IPTC +KMOD +LIBCRYPTSETUP +LIBFDISK +PCRE2 -PWQUALITY -P11KIT -QRENCODE -TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD -BPF_FRAMEWORK -XKBCOMMON +UTMP +SYSVINIT default-hierarchy=unified) Feb 9 09:48:37.991115 systemd[1]: Detected virtualization amazon. Feb 9 09:48:37.991138 systemd[1]: Detected architecture arm64. Feb 9 09:48:37.991156 systemd[1]: Running in initrd. Feb 9 09:48:37.991174 systemd[1]: No hostname configured, using default hostname. Feb 9 09:48:37.991191 systemd[1]: Hostname set to . Feb 9 09:48:37.991210 systemd[1]: Initializing machine ID from VM UUID. Feb 9 09:48:37.991227 systemd[1]: Queued start job for default target initrd.target. Feb 9 09:48:37.991245 systemd[1]: Started systemd-ask-password-console.path. Feb 9 09:48:37.991262 systemd[1]: Reached target cryptsetup.target. Feb 9 09:48:37.991284 systemd[1]: Reached target paths.target. Feb 9 09:48:37.991302 systemd[1]: Reached target slices.target. Feb 9 09:48:37.991319 systemd[1]: Reached target swap.target. Feb 9 09:48:37.991336 systemd[1]: Reached target timers.target. Feb 9 09:48:37.991354 systemd[1]: Listening on iscsid.socket. Feb 9 09:48:37.991372 systemd[1]: Listening on iscsiuio.socket. Feb 9 09:48:37.991390 systemd[1]: Listening on systemd-journald-audit.socket. Feb 9 09:48:37.991407 systemd[1]: Listening on systemd-journald-dev-log.socket. Feb 9 09:48:37.991429 systemd[1]: Listening on systemd-journald.socket. Feb 9 09:48:37.991447 systemd[1]: Listening on systemd-networkd.socket. Feb 9 09:48:37.991464 systemd[1]: Listening on systemd-udevd-control.socket. Feb 9 09:48:37.991482 systemd[1]: Listening on systemd-udevd-kernel.socket. Feb 9 09:48:37.991499 systemd[1]: Reached target sockets.target. Feb 9 09:48:37.991516 systemd[1]: Starting kmod-static-nodes.service... Feb 9 09:48:37.991534 systemd[1]: Finished network-cleanup.service. Feb 9 09:48:37.991551 systemd[1]: Starting systemd-fsck-usr.service... Feb 9 09:48:37.991569 systemd[1]: Starting systemd-journald.service... Feb 9 09:48:37.991590 systemd[1]: Starting systemd-modules-load.service... Feb 9 09:48:37.991608 systemd[1]: Starting systemd-resolved.service... Feb 9 09:48:37.991625 systemd[1]: Starting systemd-vconsole-setup.service... Feb 9 09:48:37.991643 systemd[1]: Finished kmod-static-nodes.service. Feb 9 09:48:37.991661 kernel: audit: type=1130 audit(1707472117.978:2): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:37.991678 systemd[1]: Finished systemd-fsck-usr.service. Feb 9 09:48:37.991699 systemd-journald[308]: Journal started Feb 9 09:48:37.991788 systemd-journald[308]: Runtime Journal (/run/log/journal/ec2a2cff82c2d41e2fe2f8a6018681f1) is 8.0M, max 75.4M, 67.4M free. Feb 9 09:48:37.978000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:37.941876 systemd-modules-load[309]: Inserted module 'overlay' Feb 9 09:48:37.999000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-usr comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:38.018329 kernel: audit: type=1130 audit(1707472117.999:3): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-usr comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:38.018393 systemd[1]: Started systemd-journald.service. Feb 9 09:48:38.018420 kernel: bridge: filtering via arp/ip/ip6tables is no longer available by default. Update your scripts to load br_netfilter if you need this. Feb 9 09:48:38.017000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:38.019879 systemd[1]: Finished systemd-vconsole-setup.service. Feb 9 09:48:38.035445 kernel: audit: type=1130 audit(1707472118.017:4): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:38.035495 kernel: Bridge firewalling registered Feb 9 09:48:38.034000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:38.037621 systemd-modules-load[309]: Inserted module 'br_netfilter' Feb 9 09:48:38.047586 kernel: audit: type=1130 audit(1707472118.034:5): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:38.047925 systemd[1]: Starting dracut-cmdline-ask.service... Feb 9 09:48:38.056789 systemd[1]: Starting systemd-tmpfiles-setup-dev.service... Feb 9 09:48:38.082126 systemd-resolved[310]: Positive Trust Anchors: Feb 9 09:48:38.093463 kernel: SCSI subsystem initialized Feb 9 09:48:38.087568 systemd[1]: Finished systemd-tmpfiles-setup-dev.service. Feb 9 09:48:38.092000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:38.093043 systemd-resolved[310]: . IN DS 20326 8 2 e06d44b80b8f1d39a95c0b0d7c65d08458e880409bbc683457104237c7f8ec8d Feb 9 09:48:38.093109 systemd-resolved[310]: Negative trust anchors: home.arpa 10.in-addr.arpa 16.172.in-addr.arpa 17.172.in-addr.arpa 18.172.in-addr.arpa 19.172.in-addr.arpa 20.172.in-addr.arpa 21.172.in-addr.arpa 22.172.in-addr.arpa 23.172.in-addr.arpa 24.172.in-addr.arpa 25.172.in-addr.arpa 26.172.in-addr.arpa 27.172.in-addr.arpa 28.172.in-addr.arpa 29.172.in-addr.arpa 30.172.in-addr.arpa 31.172.in-addr.arpa 168.192.in-addr.arpa d.f.ip6.arpa corp home internal intranet lan local private test Feb 9 09:48:38.152723 kernel: audit: type=1130 audit(1707472118.092:6): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:38.152784 kernel: device-mapper: core: CONFIG_IMA_DISABLE_HTABLE is disabled. Duplicate IMA measurements will not be recorded in the IMA log. Feb 9 09:48:38.152810 kernel: device-mapper: uevent: version 1.0.3 Feb 9 09:48:38.152833 kernel: device-mapper: ioctl: 4.45.0-ioctl (2021-03-22) initialised: dm-devel@redhat.com Feb 9 09:48:38.151520 systemd-modules-load[309]: Inserted module 'dm_multipath' Feb 9 09:48:38.152701 systemd[1]: Finished systemd-modules-load.service. Feb 9 09:48:38.158000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:38.161092 systemd[1]: Starting systemd-sysctl.service... Feb 9 09:48:38.172481 kernel: audit: type=1130 audit(1707472118.158:7): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:38.174468 systemd[1]: Finished dracut-cmdline-ask.service. Feb 9 09:48:38.178114 systemd[1]: Starting dracut-cmdline.service... Feb 9 09:48:38.175000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:38.202022 kernel: audit: type=1130 audit(1707472118.175:8): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:38.202541 systemd[1]: Finished systemd-sysctl.service. Feb 9 09:48:38.203000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:38.218018 kernel: audit: type=1130 audit(1707472118.203:9): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:38.221428 dracut-cmdline[330]: dracut-dracut-053 Feb 9 09:48:38.227400 dracut-cmdline[330]: Using kernel command line parameters: rd.driver.pre=btrfs BOOT_IMAGE=/flatcar/vmlinuz-a mount.usr=/dev/mapper/usr verity.usr=PARTUUID=7130c94a-213a-4e5a-8e26-6cce9662f132 rootflags=rw mount.usrflags=ro consoleblank=0 root=LABEL=ROOT console=tty1 console=ttyS0,115200n8 earlycon flatcar.first_boot=detected acpi=force flatcar.oem.id=ec2 modprobe.blacklist=xen_fbfront net.ifnames=0 nvme_core.io_timeout=4294967295 verity.usrhash=14ffd9340f674a8d04c9d43eed85484d8b2b7e2bcd8b36a975c9ac66063d537d Feb 9 09:48:38.357000 kernel: Loading iSCSI transport class v2.0-870. Feb 9 09:48:38.368005 kernel: iscsi: registered transport (tcp) Feb 9 09:48:38.392240 kernel: iscsi: registered transport (qla4xxx) Feb 9 09:48:38.392309 kernel: QLogic iSCSI HBA Driver Feb 9 09:48:38.573623 systemd-resolved[310]: Defaulting to hostname 'linux'. Feb 9 09:48:38.576706 kernel: random: crng init done Feb 9 09:48:38.576914 systemd[1]: Started systemd-resolved.service. Feb 9 09:48:38.592235 systemd[1]: Reached target nss-lookup.target. Feb 9 09:48:38.590000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:38.602912 systemd[1]: Finished dracut-cmdline.service. Feb 9 09:48:38.606239 kernel: audit: type=1130 audit(1707472118.590:10): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:38.603000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:38.606681 systemd[1]: Starting dracut-pre-udev.service... Feb 9 09:48:38.672024 kernel: raid6: neonx8 gen() 6437 MB/s Feb 9 09:48:38.690001 kernel: raid6: neonx8 xor() 4629 MB/s Feb 9 09:48:38.708000 kernel: raid6: neonx4 gen() 6578 MB/s Feb 9 09:48:38.726001 kernel: raid6: neonx4 xor() 4836 MB/s Feb 9 09:48:38.744000 kernel: raid6: neonx2 gen() 5789 MB/s Feb 9 09:48:38.761999 kernel: raid6: neonx2 xor() 4460 MB/s Feb 9 09:48:38.779999 kernel: raid6: neonx1 gen() 4507 MB/s Feb 9 09:48:38.798001 kernel: raid6: neonx1 xor() 3624 MB/s Feb 9 09:48:38.816000 kernel: raid6: int64x8 gen() 3436 MB/s Feb 9 09:48:38.834000 kernel: raid6: int64x8 xor() 2073 MB/s Feb 9 09:48:38.851999 kernel: raid6: int64x4 gen() 3848 MB/s Feb 9 09:48:38.870002 kernel: raid6: int64x4 xor() 2177 MB/s Feb 9 09:48:38.887999 kernel: raid6: int64x2 gen() 3625 MB/s Feb 9 09:48:38.906000 kernel: raid6: int64x2 xor() 1943 MB/s Feb 9 09:48:38.924000 kernel: raid6: int64x1 gen() 2777 MB/s Feb 9 09:48:38.943439 kernel: raid6: int64x1 xor() 1445 MB/s Feb 9 09:48:38.943469 kernel: raid6: using algorithm neonx4 gen() 6578 MB/s Feb 9 09:48:38.943493 kernel: raid6: .... xor() 4836 MB/s, rmw enabled Feb 9 09:48:38.945220 kernel: raid6: using neon recovery algorithm Feb 9 09:48:38.964006 kernel: xor: measuring software checksum speed Feb 9 09:48:38.966000 kernel: 8regs : 9333 MB/sec Feb 9 09:48:38.969001 kernel: 32regs : 11107 MB/sec Feb 9 09:48:38.972752 kernel: arm64_neon : 9621 MB/sec Feb 9 09:48:38.972784 kernel: xor: using function: 32regs (11107 MB/sec) Feb 9 09:48:39.063023 kernel: Btrfs loaded, crc32c=crc32c-generic, zoned=no, fsverity=no Feb 9 09:48:39.080454 systemd[1]: Finished dracut-pre-udev.service. Feb 9 09:48:39.081000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-udev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:39.082000 audit: BPF prog-id=7 op=LOAD Feb 9 09:48:39.082000 audit: BPF prog-id=8 op=LOAD Feb 9 09:48:39.084584 systemd[1]: Starting systemd-udevd.service... Feb 9 09:48:39.113576 systemd-udevd[508]: Using default interface naming scheme 'v252'. Feb 9 09:48:39.123718 systemd[1]: Started systemd-udevd.service. Feb 9 09:48:39.125000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:39.128719 systemd[1]: Starting dracut-pre-trigger.service... Feb 9 09:48:39.159241 dracut-pre-trigger[511]: rd.md=0: removing MD RAID activation Feb 9 09:48:39.217211 systemd[1]: Finished dracut-pre-trigger.service. Feb 9 09:48:39.219000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:39.221747 systemd[1]: Starting systemd-udev-trigger.service... Feb 9 09:48:39.326819 systemd[1]: Finished systemd-udev-trigger.service. Feb 9 09:48:39.327000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:39.452252 kernel: ACPI: \_SB_.PCI0.GSI1: Enabled at IRQ 36 Feb 9 09:48:39.452331 kernel: ena 0000:00:05.0: enabling device (0010 -> 0012) Feb 9 09:48:39.463431 kernel: ena 0000:00:05.0: ENA device version: 0.10 Feb 9 09:48:39.463781 kernel: ena 0000:00:05.0: ENA controller version: 0.0.1 implementation version 1 Feb 9 09:48:39.472998 kernel: ena 0000:00:05.0: Elastic Network Adapter (ENA) found at mem 80114000, mac addr 06:7b:e6:b9:6c:41 Feb 9 09:48:39.475041 (udev-worker)[565]: Network interface NamePolicy= disabled on kernel command line. Feb 9 09:48:39.477839 kernel: ACPI: \_SB_.PCI0.GSI0: Enabled at IRQ 35 Feb 9 09:48:39.477872 kernel: nvme nvme0: pci function 0000:00:04.0 Feb 9 09:48:39.489088 kernel: nvme nvme0: 2/0/0 default/read/poll queues Feb 9 09:48:39.494916 kernel: GPT:Primary header thinks Alt. header is not at the end of the disk. Feb 9 09:48:39.494994 kernel: GPT:9289727 != 16777215 Feb 9 09:48:39.495021 kernel: GPT:Alternate GPT header not at the end of the disk. Feb 9 09:48:39.499020 kernel: GPT:9289727 != 16777215 Feb 9 09:48:39.499071 kernel: GPT: Use GNU Parted to correct GPT errors. Feb 9 09:48:39.502420 kernel: nvme0n1: p1 p2 p3 p4 p6 p7 p9 Feb 9 09:48:39.573003 kernel: BTRFS: device label OEM devid 1 transid 12 /dev/nvme0n1p6 scanned by (udev-worker) (569) Feb 9 09:48:39.592787 systemd[1]: Found device dev-disk-by\x2dlabel-EFI\x2dSYSTEM.device. Feb 9 09:48:39.660995 systemd[1]: Found device dev-disk-by\x2dlabel-OEM.device. Feb 9 09:48:39.675885 systemd[1]: Found device dev-disk-by\x2dpartlabel-USR\x2dA.device. Feb 9 09:48:39.679894 systemd[1]: Found device dev-disk-by\x2dpartuuid-7130c94a\x2d213a\x2d4e5a\x2d8e26\x2d6cce9662f132.device. Feb 9 09:48:39.702675 systemd[1]: Starting disk-uuid.service... Feb 9 09:48:39.716283 disk-uuid[667]: Primary Header is updated. Feb 9 09:48:39.716283 disk-uuid[667]: Secondary Entries is updated. Feb 9 09:48:39.716283 disk-uuid[667]: Secondary Header is updated. Feb 9 09:48:39.726521 systemd[1]: Found device dev-disk-by\x2dlabel-ROOT.device. Feb 9 09:48:39.734005 kernel: nvme0n1: p1 p2 p3 p4 p6 p7 p9 Feb 9 09:48:39.744012 kernel: nvme0n1: p1 p2 p3 p4 p6 p7 p9 Feb 9 09:48:40.750008 kernel: nvme0n1: p1 p2 p3 p4 p6 p7 p9 Feb 9 09:48:40.750640 disk-uuid[668]: The operation has completed successfully. Feb 9 09:48:40.925037 systemd[1]: disk-uuid.service: Deactivated successfully. Feb 9 09:48:40.927218 systemd[1]: Finished disk-uuid.service. Feb 9 09:48:40.928000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=disk-uuid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:40.928000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=disk-uuid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:40.931531 systemd[1]: Starting verity-setup.service... Feb 9 09:48:40.963011 kernel: device-mapper: verity: sha256 using implementation "sha256-ce" Feb 9 09:48:41.043603 systemd[1]: Found device dev-mapper-usr.device. Feb 9 09:48:41.047511 systemd[1]: Finished verity-setup.service. Feb 9 09:48:41.049000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=verity-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:41.052233 systemd[1]: Mounting sysusr-usr.mount... Feb 9 09:48:41.136023 kernel: EXT4-fs (dm-0): mounted filesystem without journal. Opts: norecovery. Quota mode: none. Feb 9 09:48:41.136364 systemd[1]: Mounted sysusr-usr.mount. Feb 9 09:48:41.139474 systemd[1]: afterburn-network-kargs.service was skipped because no trigger condition checks were met. Feb 9 09:48:41.143466 systemd[1]: Starting ignition-setup.service... Feb 9 09:48:41.161527 systemd[1]: Starting parse-ip-for-networkd.service... Feb 9 09:48:41.174131 kernel: BTRFS info (device nvme0n1p6): using crc32c (crc32c-generic) checksum algorithm Feb 9 09:48:41.174180 kernel: BTRFS info (device nvme0n1p6): using free space tree Feb 9 09:48:41.174216 kernel: BTRFS info (device nvme0n1p6): has skinny extents Feb 9 09:48:41.181217 kernel: BTRFS info (device nvme0n1p6): enabling ssd optimizations Feb 9 09:48:41.198714 systemd[1]: mnt-oem.mount: Deactivated successfully. Feb 9 09:48:41.226780 systemd[1]: Finished ignition-setup.service. Feb 9 09:48:41.227000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:41.230027 systemd[1]: Starting ignition-fetch-offline.service... Feb 9 09:48:41.306431 systemd[1]: Finished parse-ip-for-networkd.service. Feb 9 09:48:41.307000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=parse-ip-for-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:41.308000 audit: BPF prog-id=9 op=LOAD Feb 9 09:48:41.311662 systemd[1]: Starting systemd-networkd.service... Feb 9 09:48:41.359028 systemd-networkd[1107]: lo: Link UP Feb 9 09:48:41.359451 systemd-networkd[1107]: lo: Gained carrier Feb 9 09:48:41.360474 systemd-networkd[1107]: Enumeration completed Feb 9 09:48:41.360946 systemd-networkd[1107]: eth0: Configuring with /usr/lib/systemd/network/zz-default.network. Feb 9 09:48:41.362331 systemd[1]: Started systemd-networkd.service. Feb 9 09:48:41.371000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:41.373842 systemd[1]: Reached target network.target. Feb 9 09:48:41.378270 systemd-networkd[1107]: eth0: Link UP Feb 9 09:48:41.378285 systemd-networkd[1107]: eth0: Gained carrier Feb 9 09:48:41.378331 systemd[1]: Starting iscsiuio.service... Feb 9 09:48:41.390149 systemd-networkd[1107]: eth0: DHCPv4 address 172.31.26.157/20, gateway 172.31.16.1 acquired from 172.31.16.1 Feb 9 09:48:41.395946 systemd[1]: Started iscsiuio.service. Feb 9 09:48:41.396000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsiuio comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:41.399350 systemd[1]: Starting iscsid.service... Feb 9 09:48:41.408162 iscsid[1112]: iscsid: can't open InitiatorName configuration file /etc/iscsi/initiatorname.iscsi Feb 9 09:48:41.408162 iscsid[1112]: iscsid: Warning: InitiatorName file /etc/iscsi/initiatorname.iscsi does not exist or does not contain a properly formatted InitiatorName. If using software iscsi (iscsi_tcp or ib_iser) or partial offload (bnx2i or cxgbi iscsi), you may not be able to log into or discover targets. Please create a file /etc/iscsi/initiatorname.iscsi that contains a sting with the format: InitiatorName=iqn.yyyy-mm.[:identifier]. Feb 9 09:48:41.408162 iscsid[1112]: Example: InitiatorName=iqn.2001-04.com.redhat:fc6. Feb 9 09:48:41.408162 iscsid[1112]: If using hardware iscsi like qla4xxx this message can be ignored. Feb 9 09:48:41.422000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:41.421137 systemd[1]: Started iscsid.service. Feb 9 09:48:41.440102 iscsid[1112]: iscsid: can't open InitiatorAlias configuration file /etc/iscsi/initiatorname.iscsi Feb 9 09:48:41.440102 iscsid[1112]: iscsid: can't open iscsid.safe_logout configuration file /etc/iscsi/iscsid.conf Feb 9 09:48:41.425618 systemd[1]: Starting dracut-initqueue.service... Feb 9 09:48:41.455395 systemd[1]: Finished dracut-initqueue.service. Feb 9 09:48:41.456000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:41.458690 systemd[1]: Reached target remote-fs-pre.target. Feb 9 09:48:41.459121 systemd[1]: Reached target remote-cryptsetup.target. Feb 9 09:48:41.459180 systemd[1]: Reached target remote-fs.target. Feb 9 09:48:41.461811 systemd[1]: Starting dracut-pre-mount.service... Feb 9 09:48:41.484761 systemd[1]: Finished dracut-pre-mount.service. Feb 9 09:48:41.484000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:41.800413 ignition[1039]: Ignition 2.14.0 Feb 9 09:48:41.802141 ignition[1039]: Stage: fetch-offline Feb 9 09:48:41.803778 ignition[1039]: reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 9 09:48:41.803856 ignition[1039]: parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 9 09:48:41.823204 ignition[1039]: no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 9 09:48:41.825829 ignition[1039]: Ignition finished successfully Feb 9 09:48:41.828772 systemd[1]: Finished ignition-fetch-offline.service. Feb 9 09:48:41.833450 systemd[1]: Starting ignition-fetch.service... Feb 9 09:48:41.855419 kernel: kauditd_printk_skb: 18 callbacks suppressed Feb 9 09:48:41.855468 kernel: audit: type=1130 audit(1707472121.826:29): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:41.826000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:41.846708 ignition[1131]: Ignition 2.14.0 Feb 9 09:48:41.846723 ignition[1131]: Stage: fetch Feb 9 09:48:41.847014 ignition[1131]: reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 9 09:48:41.847068 ignition[1131]: parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 9 09:48:41.867369 ignition[1131]: no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 9 09:48:41.869863 ignition[1131]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 9 09:48:41.876836 ignition[1131]: INFO : PUT result: OK Feb 9 09:48:41.880330 ignition[1131]: DEBUG : parsed url from cmdline: "" Feb 9 09:48:41.880330 ignition[1131]: INFO : no config URL provided Feb 9 09:48:41.880330 ignition[1131]: INFO : reading system config file "/usr/lib/ignition/user.ign" Feb 9 09:48:41.886295 ignition[1131]: INFO : no config at "/usr/lib/ignition/user.ign" Feb 9 09:48:41.886295 ignition[1131]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 9 09:48:41.886295 ignition[1131]: INFO : PUT result: OK Feb 9 09:48:41.886295 ignition[1131]: INFO : GET http://169.254.169.254/2019-10-01/user-data: attempt #1 Feb 9 09:48:41.894737 ignition[1131]: INFO : GET result: OK Feb 9 09:48:41.897310 ignition[1131]: DEBUG : parsing config with SHA512: dadb5d90bec4905b23de7622f23466ae346214fc649f390d9433811a53655d20ec9ba96ba01befea36c8b8807ddea0c78b33e845809178c006564a6d3ea78215 Feb 9 09:48:41.930149 unknown[1131]: fetched base config from "system" Feb 9 09:48:41.930177 unknown[1131]: fetched base config from "system" Feb 9 09:48:41.930193 unknown[1131]: fetched user config from "aws" Feb 9 09:48:41.935700 ignition[1131]: fetch: fetch complete Feb 9 09:48:41.935728 ignition[1131]: fetch: fetch passed Feb 9 09:48:41.935819 ignition[1131]: Ignition finished successfully Feb 9 09:48:41.940519 systemd[1]: Finished ignition-fetch.service. Feb 9 09:48:41.952122 kernel: audit: type=1130 audit(1707472121.941:30): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:41.941000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:41.944518 systemd[1]: Starting ignition-kargs.service... Feb 9 09:48:41.965674 ignition[1137]: Ignition 2.14.0 Feb 9 09:48:41.965705 ignition[1137]: Stage: kargs Feb 9 09:48:41.966013 ignition[1137]: reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 9 09:48:41.966068 ignition[1137]: parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 9 09:48:41.979155 ignition[1137]: no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 9 09:48:41.981458 ignition[1137]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 9 09:48:41.984468 ignition[1137]: INFO : PUT result: OK Feb 9 09:48:41.989887 ignition[1137]: kargs: kargs passed Feb 9 09:48:41.990024 ignition[1137]: Ignition finished successfully Feb 9 09:48:41.994469 systemd[1]: Finished ignition-kargs.service. Feb 9 09:48:42.005816 kernel: audit: type=1130 audit(1707472121.995:31): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:41.995000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:41.997661 systemd[1]: Starting ignition-disks.service... Feb 9 09:48:42.014386 ignition[1143]: Ignition 2.14.0 Feb 9 09:48:42.014412 ignition[1143]: Stage: disks Feb 9 09:48:42.014743 ignition[1143]: reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 9 09:48:42.014801 ignition[1143]: parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 9 09:48:42.030498 ignition[1143]: no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 9 09:48:42.033111 ignition[1143]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 9 09:48:42.035844 ignition[1143]: INFO : PUT result: OK Feb 9 09:48:42.041101 ignition[1143]: disks: disks passed Feb 9 09:48:42.041210 ignition[1143]: Ignition finished successfully Feb 9 09:48:42.045327 systemd[1]: Finished ignition-disks.service. Feb 9 09:48:42.057075 kernel: audit: type=1130 audit(1707472122.047:32): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:42.047000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:42.048383 systemd[1]: Reached target initrd-root-device.target. Feb 9 09:48:42.057086 systemd[1]: Reached target local-fs-pre.target. Feb 9 09:48:42.058787 systemd[1]: Reached target local-fs.target. Feb 9 09:48:42.061845 systemd[1]: Reached target sysinit.target. Feb 9 09:48:42.064805 systemd[1]: Reached target basic.target. Feb 9 09:48:42.068942 systemd[1]: Starting systemd-fsck-root.service... Feb 9 09:48:42.103514 systemd-fsck[1151]: ROOT: clean, 602/553520 files, 56013/553472 blocks Feb 9 09:48:42.111437 systemd[1]: Finished systemd-fsck-root.service. Feb 9 09:48:42.123296 kernel: audit: type=1130 audit(1707472122.112:33): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:42.112000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:42.114653 systemd[1]: Mounting sysroot.mount... Feb 9 09:48:42.140999 kernel: EXT4-fs (nvme0n1p9): mounted filesystem with ordered data mode. Opts: (null). Quota mode: none. Feb 9 09:48:42.142503 systemd[1]: Mounted sysroot.mount. Feb 9 09:48:42.144201 systemd[1]: Reached target initrd-root-fs.target. Feb 9 09:48:42.160752 systemd[1]: Mounting sysroot-usr.mount... Feb 9 09:48:42.162927 systemd[1]: flatcar-metadata-hostname.service was skipped because no trigger condition checks were met. Feb 9 09:48:42.163034 systemd[1]: ignition-remount-sysroot.service was skipped because of an unmet condition check (ConditionPathIsReadWrite=!/sysroot). Feb 9 09:48:42.163088 systemd[1]: Reached target ignition-diskful.target. Feb 9 09:48:42.178476 systemd[1]: Mounted sysroot-usr.mount. Feb 9 09:48:42.196019 systemd[1]: Mounting sysroot-usr-share-oem.mount... Feb 9 09:48:42.203272 systemd[1]: Starting initrd-setup-root.service... Feb 9 09:48:42.222029 kernel: BTRFS: device label OEM devid 1 transid 14 /dev/nvme0n1p6 scanned by mount (1168) Feb 9 09:48:42.226002 initrd-setup-root[1173]: cut: /sysroot/etc/passwd: No such file or directory Feb 9 09:48:42.230644 kernel: BTRFS info (device nvme0n1p6): using crc32c (crc32c-generic) checksum algorithm Feb 9 09:48:42.230682 kernel: BTRFS info (device nvme0n1p6): using free space tree Feb 9 09:48:42.233066 kernel: BTRFS info (device nvme0n1p6): has skinny extents Feb 9 09:48:42.242009 kernel: BTRFS info (device nvme0n1p6): enabling ssd optimizations Feb 9 09:48:42.246269 systemd[1]: Mounted sysroot-usr-share-oem.mount. Feb 9 09:48:42.254118 initrd-setup-root[1199]: cut: /sysroot/etc/group: No such file or directory Feb 9 09:48:42.262795 initrd-setup-root[1207]: cut: /sysroot/etc/shadow: No such file or directory Feb 9 09:48:42.271641 initrd-setup-root[1215]: cut: /sysroot/etc/gshadow: No such file or directory Feb 9 09:48:42.448913 systemd[1]: Finished initrd-setup-root.service. Feb 9 09:48:42.449000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:42.460008 kernel: audit: type=1130 audit(1707472122.449:34): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:42.460562 systemd[1]: Starting ignition-mount.service... Feb 9 09:48:42.466928 systemd[1]: Starting sysroot-boot.service... Feb 9 09:48:42.477117 systemd[1]: sysusr-usr-share-oem.mount: Deactivated successfully. Feb 9 09:48:42.477284 systemd[1]: sysroot-usr-share-oem.mount: Deactivated successfully. Feb 9 09:48:42.510740 ignition[1234]: INFO : Ignition 2.14.0 Feb 9 09:48:42.515510 systemd[1]: Finished sysroot-boot.service. Feb 9 09:48:42.518610 ignition[1234]: INFO : Stage: mount Feb 9 09:48:42.517000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:42.527053 kernel: audit: type=1130 audit(1707472122.517:35): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:42.527485 ignition[1234]: INFO : reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 9 09:48:42.529933 ignition[1234]: DEBUG : parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 9 09:48:42.549440 ignition[1234]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 9 09:48:42.551981 ignition[1234]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 9 09:48:42.554997 ignition[1234]: INFO : PUT result: OK Feb 9 09:48:42.560822 ignition[1234]: INFO : mount: mount passed Feb 9 09:48:42.562395 ignition[1234]: INFO : Ignition finished successfully Feb 9 09:48:42.565329 systemd[1]: Finished ignition-mount.service. Feb 9 09:48:42.578010 kernel: audit: type=1130 audit(1707472122.566:36): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:42.566000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:42.568455 systemd[1]: Starting ignition-files.service... Feb 9 09:48:42.585168 systemd[1]: Mounting sysroot-usr-share-oem.mount... Feb 9 09:48:42.602020 kernel: BTRFS: device label OEM devid 1 transid 15 /dev/nvme0n1p6 scanned by mount (1243) Feb 9 09:48:42.608152 kernel: BTRFS info (device nvme0n1p6): using crc32c (crc32c-generic) checksum algorithm Feb 9 09:48:42.608196 kernel: BTRFS info (device nvme0n1p6): using free space tree Feb 9 09:48:42.608221 kernel: BTRFS info (device nvme0n1p6): has skinny extents Feb 9 09:48:42.617003 kernel: BTRFS info (device nvme0n1p6): enabling ssd optimizations Feb 9 09:48:42.621646 systemd[1]: Mounted sysroot-usr-share-oem.mount. Feb 9 09:48:42.641120 ignition[1262]: INFO : Ignition 2.14.0 Feb 9 09:48:42.641120 ignition[1262]: INFO : Stage: files Feb 9 09:48:42.645151 ignition[1262]: INFO : reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 9 09:48:42.645151 ignition[1262]: DEBUG : parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 9 09:48:42.659312 ignition[1262]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 9 09:48:42.662032 ignition[1262]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 9 09:48:42.665264 ignition[1262]: INFO : PUT result: OK Feb 9 09:48:42.670579 ignition[1262]: DEBUG : files: compiled without relabeling support, skipping Feb 9 09:48:42.674097 ignition[1262]: INFO : files: ensureUsers: op(1): [started] creating or modifying user "core" Feb 9 09:48:42.676877 ignition[1262]: DEBUG : files: ensureUsers: op(1): executing: "usermod" "--root" "/sysroot" "core" Feb 9 09:48:42.706412 ignition[1262]: INFO : files: ensureUsers: op(1): [finished] creating or modifying user "core" Feb 9 09:48:42.709273 ignition[1262]: INFO : files: ensureUsers: op(2): [started] adding ssh keys to user "core" Feb 9 09:48:42.712634 unknown[1262]: wrote ssh authorized keys file for user: core Feb 9 09:48:42.714895 ignition[1262]: INFO : files: ensureUsers: op(2): [finished] adding ssh keys to user "core" Feb 9 09:48:42.718593 ignition[1262]: INFO : files: createFilesystemsFiles: createFiles: op(3): [started] writing file "/sysroot/opt/cni-plugins-linux-arm64-v1.3.0.tgz" Feb 9 09:48:42.722382 ignition[1262]: INFO : GET https://github.com/containernetworking/plugins/releases/download/v1.3.0/cni-plugins-linux-arm64-v1.3.0.tgz: attempt #1 Feb 9 09:48:42.892142 systemd-networkd[1107]: eth0: Gained IPv6LL Feb 9 09:48:43.212174 ignition[1262]: INFO : GET result: OK Feb 9 09:48:43.723608 ignition[1262]: DEBUG : file matches expected sum of: b2b7fb74f1b3cb8928f49e5bf9d4bc686e057e837fac3caf1b366d54757921dba80d70cc010399b274d136e8dee9a25b1ad87cdfdc4ffcf42cf88f3e8f99587a Feb 9 09:48:43.728845 ignition[1262]: INFO : files: createFilesystemsFiles: createFiles: op(3): [finished] writing file "/sysroot/opt/cni-plugins-linux-arm64-v1.3.0.tgz" Feb 9 09:48:43.728845 ignition[1262]: INFO : files: createFilesystemsFiles: createFiles: op(4): [started] writing file "/sysroot/opt/crictl-v1.27.0-linux-arm64.tar.gz" Feb 9 09:48:43.728845 ignition[1262]: INFO : GET https://github.com/kubernetes-sigs/cri-tools/releases/download/v1.27.0/crictl-v1.27.0-linux-arm64.tar.gz: attempt #1 Feb 9 09:48:44.108785 ignition[1262]: INFO : GET result: OK Feb 9 09:48:44.355183 ignition[1262]: DEBUG : file matches expected sum of: db062e43351a63347871e7094115be2ae3853afcd346d47f7b51141da8c3202c2df58d2e17359322f632abcb37474fd7fdb3b7aadbc5cfd5cf6d3bad040b6251 Feb 9 09:48:44.361133 ignition[1262]: INFO : files: createFilesystemsFiles: createFiles: op(4): [finished] writing file "/sysroot/opt/crictl-v1.27.0-linux-arm64.tar.gz" Feb 9 09:48:44.361133 ignition[1262]: INFO : files: createFilesystemsFiles: createFiles: op(5): [started] writing file "/sysroot/etc/eks/bootstrap.sh" Feb 9 09:48:44.361133 ignition[1262]: INFO : oem config not found in "/usr/share/oem", looking on oem partition Feb 9 09:48:44.377657 ignition[1262]: INFO : op(1): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3211332420" Feb 9 09:48:44.386545 kernel: BTRFS info: devid 1 device path /dev/nvme0n1p6 changed to /dev/disk/by-label/OEM scanned by ignition (1267) Feb 9 09:48:44.386580 ignition[1262]: CRITICAL : op(1): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3211332420": device or resource busy Feb 9 09:48:44.386580 ignition[1262]: ERROR : failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem3211332420", trying btrfs: device or resource busy Feb 9 09:48:44.386580 ignition[1262]: INFO : op(2): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3211332420" Feb 9 09:48:44.396287 ignition[1262]: INFO : op(2): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3211332420" Feb 9 09:48:44.399002 ignition[1262]: INFO : op(3): [started] unmounting "/mnt/oem3211332420" Feb 9 09:48:44.401567 ignition[1262]: INFO : op(3): [finished] unmounting "/mnt/oem3211332420" Feb 9 09:48:44.401567 ignition[1262]: INFO : files: createFilesystemsFiles: createFiles: op(5): [finished] writing file "/sysroot/etc/eks/bootstrap.sh" Feb 9 09:48:44.407578 ignition[1262]: INFO : files: createFilesystemsFiles: createFiles: op(6): [started] writing file "/sysroot/opt/bin/kubeadm" Feb 9 09:48:44.407578 ignition[1262]: INFO : GET https://dl.k8s.io/release/v1.27.2/bin/linux/arm64/kubeadm: attempt #1 Feb 9 09:48:44.420400 systemd[1]: mnt-oem3211332420.mount: Deactivated successfully. Feb 9 09:48:44.588135 ignition[1262]: INFO : GET result: OK Feb 9 09:48:45.164461 ignition[1262]: DEBUG : file matches expected sum of: 45b3100984c979ba0f1c0df8f4211474c2d75ebe916e677dff5fc8e3b3697cf7a953da94e356f39684cc860dff6878b772b7514c55651c2f866d9efeef23f970 Feb 9 09:48:45.169576 ignition[1262]: INFO : files: createFilesystemsFiles: createFiles: op(6): [finished] writing file "/sysroot/opt/bin/kubeadm" Feb 9 09:48:45.169576 ignition[1262]: INFO : files: createFilesystemsFiles: createFiles: op(7): [started] writing file "/sysroot/opt/bin/kubelet" Feb 9 09:48:45.169576 ignition[1262]: INFO : GET https://dl.k8s.io/release/v1.27.2/bin/linux/arm64/kubelet: attempt #1 Feb 9 09:48:45.229330 ignition[1262]: INFO : GET result: OK Feb 9 09:48:46.527996 ignition[1262]: DEBUG : file matches expected sum of: 71857ff499ae135fa478e1827a0ed8865e578a8d2b1e25876e914fd0beba03733801c0654bcd4c0567bafeb16887dafb2dbbe8d1116e6ea28dcd8366c142d348 Feb 9 09:48:46.532827 ignition[1262]: INFO : files: createFilesystemsFiles: createFiles: op(7): [finished] writing file "/sysroot/opt/bin/kubelet" Feb 9 09:48:46.536139 ignition[1262]: INFO : files: createFilesystemsFiles: createFiles: op(8): [started] writing file "/sysroot/home/core/install.sh" Feb 9 09:48:46.539797 ignition[1262]: INFO : files: createFilesystemsFiles: createFiles: op(8): [finished] writing file "/sysroot/home/core/install.sh" Feb 9 09:48:46.543265 ignition[1262]: INFO : files: createFilesystemsFiles: createFiles: op(9): [started] writing file "/sysroot/etc/docker/daemon.json" Feb 9 09:48:46.546946 ignition[1262]: INFO : files: createFilesystemsFiles: createFiles: op(9): [finished] writing file "/sysroot/etc/docker/daemon.json" Feb 9 09:48:46.556043 ignition[1262]: INFO : files: createFilesystemsFiles: createFiles: op(a): [started] writing file "/sysroot/etc/flatcar/update.conf" Feb 9 09:48:46.559618 ignition[1262]: INFO : files: createFilesystemsFiles: createFiles: op(a): [finished] writing file "/sysroot/etc/flatcar/update.conf" Feb 9 09:48:46.563063 ignition[1262]: INFO : files: createFilesystemsFiles: createFiles: op(b): [started] writing file "/sysroot/etc/amazon/ssm/amazon-ssm-agent.json" Feb 9 09:48:46.566869 ignition[1262]: INFO : oem config not found in "/usr/share/oem", looking on oem partition Feb 9 09:48:46.581585 ignition[1262]: INFO : op(4): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem99563450" Feb 9 09:48:46.584342 ignition[1262]: CRITICAL : op(4): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem99563450": device or resource busy Feb 9 09:48:46.584342 ignition[1262]: ERROR : failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem99563450", trying btrfs: device or resource busy Feb 9 09:48:46.584342 ignition[1262]: INFO : op(5): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem99563450" Feb 9 09:48:46.594097 ignition[1262]: INFO : op(5): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem99563450" Feb 9 09:48:46.594097 ignition[1262]: INFO : op(6): [started] unmounting "/mnt/oem99563450" Feb 9 09:48:46.594097 ignition[1262]: INFO : op(6): [finished] unmounting "/mnt/oem99563450" Feb 9 09:48:46.594097 ignition[1262]: INFO : files: createFilesystemsFiles: createFiles: op(b): [finished] writing file "/sysroot/etc/amazon/ssm/amazon-ssm-agent.json" Feb 9 09:48:46.594097 ignition[1262]: INFO : files: createFilesystemsFiles: createFiles: op(c): [started] writing file "/sysroot/etc/amazon/ssm/seelog.xml" Feb 9 09:48:46.594097 ignition[1262]: INFO : oem config not found in "/usr/share/oem", looking on oem partition Feb 9 09:48:46.626518 systemd[1]: mnt-oem99563450.mount: Deactivated successfully. Feb 9 09:48:46.645966 ignition[1262]: INFO : op(7): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1001034550" Feb 9 09:48:46.649128 ignition[1262]: CRITICAL : op(7): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1001034550": device or resource busy Feb 9 09:48:46.649128 ignition[1262]: ERROR : failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem1001034550", trying btrfs: device or resource busy Feb 9 09:48:46.649128 ignition[1262]: INFO : op(8): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1001034550" Feb 9 09:48:46.670117 ignition[1262]: INFO : op(8): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1001034550" Feb 9 09:48:46.670117 ignition[1262]: INFO : op(9): [started] unmounting "/mnt/oem1001034550" Feb 9 09:48:46.670117 ignition[1262]: INFO : op(9): [finished] unmounting "/mnt/oem1001034550" Feb 9 09:48:46.670117 ignition[1262]: INFO : files: createFilesystemsFiles: createFiles: op(c): [finished] writing file "/sysroot/etc/amazon/ssm/seelog.xml" Feb 9 09:48:46.670117 ignition[1262]: INFO : files: createFilesystemsFiles: createFiles: op(d): [started] writing file "/sysroot/etc/systemd/system/nvidia.service" Feb 9 09:48:46.670117 ignition[1262]: INFO : oem config not found in "/usr/share/oem", looking on oem partition Feb 9 09:48:46.699429 ignition[1262]: INFO : op(a): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1623695430" Feb 9 09:48:46.702201 ignition[1262]: CRITICAL : op(a): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1623695430": device or resource busy Feb 9 09:48:46.702201 ignition[1262]: ERROR : failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem1623695430", trying btrfs: device or resource busy Feb 9 09:48:46.702201 ignition[1262]: INFO : op(b): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1623695430" Feb 9 09:48:46.711543 ignition[1262]: INFO : op(b): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1623695430" Feb 9 09:48:46.714326 ignition[1262]: INFO : op(c): [started] unmounting "/mnt/oem1623695430" Feb 9 09:48:46.718014 ignition[1262]: INFO : op(c): [finished] unmounting "/mnt/oem1623695430" Feb 9 09:48:46.718014 ignition[1262]: INFO : files: createFilesystemsFiles: createFiles: op(d): [finished] writing file "/sysroot/etc/systemd/system/nvidia.service" Feb 9 09:48:46.718014 ignition[1262]: INFO : files: op(e): [started] processing unit "coreos-metadata-sshkeys@.service" Feb 9 09:48:46.718014 ignition[1262]: INFO : files: op(e): [finished] processing unit "coreos-metadata-sshkeys@.service" Feb 9 09:48:46.718014 ignition[1262]: INFO : files: op(f): [started] processing unit "amazon-ssm-agent.service" Feb 9 09:48:46.718014 ignition[1262]: INFO : files: op(f): op(10): [started] writing unit "amazon-ssm-agent.service" at "/sysroot/etc/systemd/system/amazon-ssm-agent.service" Feb 9 09:48:46.718014 ignition[1262]: INFO : files: op(f): op(10): [finished] writing unit "amazon-ssm-agent.service" at "/sysroot/etc/systemd/system/amazon-ssm-agent.service" Feb 9 09:48:46.718014 ignition[1262]: INFO : files: op(f): [finished] processing unit "amazon-ssm-agent.service" Feb 9 09:48:46.718014 ignition[1262]: INFO : files: op(11): [started] processing unit "nvidia.service" Feb 9 09:48:46.718014 ignition[1262]: INFO : files: op(11): [finished] processing unit "nvidia.service" Feb 9 09:48:46.718014 ignition[1262]: INFO : files: op(12): [started] processing unit "prepare-cni-plugins.service" Feb 9 09:48:46.718014 ignition[1262]: INFO : files: op(12): op(13): [started] writing unit "prepare-cni-plugins.service" at "/sysroot/etc/systemd/system/prepare-cni-plugins.service" Feb 9 09:48:46.752690 ignition[1262]: INFO : files: op(12): op(13): [finished] writing unit "prepare-cni-plugins.service" at "/sysroot/etc/systemd/system/prepare-cni-plugins.service" Feb 9 09:48:46.752690 ignition[1262]: INFO : files: op(12): [finished] processing unit "prepare-cni-plugins.service" Feb 9 09:48:46.752690 ignition[1262]: INFO : files: op(14): [started] processing unit "prepare-critools.service" Feb 9 09:48:46.752690 ignition[1262]: INFO : files: op(14): op(15): [started] writing unit "prepare-critools.service" at "/sysroot/etc/systemd/system/prepare-critools.service" Feb 9 09:48:46.752690 ignition[1262]: INFO : files: op(14): op(15): [finished] writing unit "prepare-critools.service" at "/sysroot/etc/systemd/system/prepare-critools.service" Feb 9 09:48:46.752690 ignition[1262]: INFO : files: op(14): [finished] processing unit "prepare-critools.service" Feb 9 09:48:46.752690 ignition[1262]: INFO : files: op(16): [started] setting preset to enabled for "nvidia.service" Feb 9 09:48:46.752690 ignition[1262]: INFO : files: op(16): [finished] setting preset to enabled for "nvidia.service" Feb 9 09:48:46.752690 ignition[1262]: INFO : files: op(17): [started] setting preset to enabled for "prepare-cni-plugins.service" Feb 9 09:48:46.752690 ignition[1262]: INFO : files: op(17): [finished] setting preset to enabled for "prepare-cni-plugins.service" Feb 9 09:48:46.752690 ignition[1262]: INFO : files: op(18): [started] setting preset to enabled for "prepare-critools.service" Feb 9 09:48:46.752690 ignition[1262]: INFO : files: op(18): [finished] setting preset to enabled for "prepare-critools.service" Feb 9 09:48:46.752690 ignition[1262]: INFO : files: op(19): [started] setting preset to enabled for "coreos-metadata-sshkeys@.service " Feb 9 09:48:46.752690 ignition[1262]: INFO : files: op(19): [finished] setting preset to enabled for "coreos-metadata-sshkeys@.service " Feb 9 09:48:46.752690 ignition[1262]: INFO : files: op(1a): [started] setting preset to enabled for "amazon-ssm-agent.service" Feb 9 09:48:46.752690 ignition[1262]: INFO : files: op(1a): [finished] setting preset to enabled for "amazon-ssm-agent.service" Feb 9 09:48:46.807044 ignition[1262]: INFO : files: createResultFile: createFiles: op(1b): [started] writing file "/sysroot/etc/.ignition-result.json" Feb 9 09:48:46.807044 ignition[1262]: INFO : files: createResultFile: createFiles: op(1b): [finished] writing file "/sysroot/etc/.ignition-result.json" Feb 9 09:48:46.807044 ignition[1262]: INFO : files: files passed Feb 9 09:48:46.807044 ignition[1262]: INFO : Ignition finished successfully Feb 9 09:48:46.817692 systemd[1]: Finished ignition-files.service. Feb 9 09:48:46.820000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:46.830051 kernel: audit: type=1130 audit(1707472126.820:37): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:46.833558 systemd[1]: Starting initrd-setup-root-after-ignition.service... Feb 9 09:48:46.837854 systemd[1]: torcx-profile-populate.service was skipped because of an unmet condition check (ConditionPathExists=/sysroot/etc/torcx/next-profile). Feb 9 09:48:46.840096 systemd[1]: Starting ignition-quench.service... Feb 9 09:48:46.849445 systemd[1]: ignition-quench.service: Deactivated successfully. Feb 9 09:48:46.851610 systemd[1]: Finished ignition-quench.service. Feb 9 09:48:46.854000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:46.854000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:46.864953 initrd-setup-root-after-ignition[1287]: grep: /sysroot/etc/flatcar/enabled-sysext.conf: No such file or directory Feb 9 09:48:46.872733 kernel: audit: type=1130 audit(1707472126.854:38): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:46.872769 kernel: audit: type=1131 audit(1707472126.854:39): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:46.872926 systemd[1]: Finished initrd-setup-root-after-ignition.service. Feb 9 09:48:46.875000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:46.876877 systemd[1]: Reached target ignition-complete.target. Feb 9 09:48:46.885579 kernel: audit: type=1130 audit(1707472126.875:40): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:46.889093 systemd[1]: Starting initrd-parse-etc.service... Feb 9 09:48:46.917419 systemd[1]: initrd-parse-etc.service: Deactivated successfully. Feb 9 09:48:46.919425 systemd[1]: Finished initrd-parse-etc.service. Feb 9 09:48:46.921000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:46.922898 systemd[1]: Reached target initrd-fs.target. Feb 9 09:48:46.938352 kernel: audit: type=1130 audit(1707472126.921:41): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:46.938387 kernel: audit: type=1131 audit(1707472126.921:42): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:46.921000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:46.940087 systemd[1]: Reached target initrd.target. Feb 9 09:48:46.943116 systemd[1]: dracut-mount.service was skipped because no trigger condition checks were met. Feb 9 09:48:46.947024 systemd[1]: Starting dracut-pre-pivot.service... Feb 9 09:48:46.969429 systemd[1]: Finished dracut-pre-pivot.service. Feb 9 09:48:46.971000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:46.979787 systemd[1]: Starting initrd-cleanup.service... Feb 9 09:48:46.984023 kernel: audit: type=1130 audit(1707472126.971:43): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:46.999645 systemd[1]: Stopped target nss-lookup.target. Feb 9 09:48:47.003125 systemd[1]: Stopped target remote-cryptsetup.target. Feb 9 09:48:47.006781 systemd[1]: Stopped target timers.target. Feb 9 09:48:47.009879 systemd[1]: dracut-pre-pivot.service: Deactivated successfully. Feb 9 09:48:47.012053 systemd[1]: Stopped dracut-pre-pivot.service. Feb 9 09:48:47.014000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.018311 systemd[1]: Stopped target initrd.target. Feb 9 09:48:47.025545 kernel: audit: type=1131 audit(1707472127.014:44): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.024114 systemd[1]: Stopped target basic.target. Feb 9 09:48:47.027207 systemd[1]: Stopped target ignition-complete.target. Feb 9 09:48:47.030474 systemd[1]: Stopped target ignition-diskful.target. Feb 9 09:48:47.032333 systemd[1]: Stopped target initrd-root-device.target. Feb 9 09:48:47.037382 systemd[1]: Stopped target remote-fs.target. Feb 9 09:48:47.039153 systemd[1]: Stopped target remote-fs-pre.target. Feb 9 09:48:47.052000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.074561 kernel: audit: type=1131 audit(1707472127.052:45): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.074605 kernel: audit: type=1131 audit(1707472127.060:46): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.060000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.041004 systemd[1]: Stopped target sysinit.target. Feb 9 09:48:47.073000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.085445 kernel: audit: type=1131 audit(1707472127.073:47): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.042739 systemd[1]: Stopped target local-fs.target. Feb 9 09:48:47.046141 systemd[1]: Stopped target local-fs-pre.target. Feb 9 09:48:47.084000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.047964 systemd[1]: Stopped target swap.target. Feb 9 09:48:47.049541 systemd[1]: dracut-pre-mount.service: Deactivated successfully. Feb 9 09:48:47.049755 systemd[1]: Stopped dracut-pre-mount.service. Feb 9 09:48:47.053175 systemd[1]: Stopped target cryptsetup.target. Feb 9 09:48:47.063285 systemd[1]: dracut-initqueue.service: Deactivated successfully. Feb 9 09:48:47.063487 systemd[1]: Stopped dracut-initqueue.service. Feb 9 09:48:47.065386 systemd[1]: initrd-setup-root-after-ignition.service: Deactivated successfully. Feb 9 09:48:47.065587 systemd[1]: Stopped initrd-setup-root-after-ignition.service. Feb 9 09:48:47.074833 systemd[1]: ignition-files.service: Deactivated successfully. Feb 9 09:48:47.075202 systemd[1]: Stopped ignition-files.service. Feb 9 09:48:47.087684 systemd[1]: Stopping ignition-mount.service... Feb 9 09:48:47.106660 systemd[1]: Stopping iscsiuio.service... Feb 9 09:48:47.112497 systemd[1]: Stopping sysroot-boot.service... Feb 9 09:48:47.127508 systemd[1]: systemd-udev-trigger.service: Deactivated successfully. Feb 9 09:48:47.123000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.127822 systemd[1]: Stopped systemd-udev-trigger.service. Feb 9 09:48:47.131025 systemd[1]: dracut-pre-trigger.service: Deactivated successfully. Feb 9 09:48:47.131246 systemd[1]: Stopped dracut-pre-trigger.service. Feb 9 09:48:47.136000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.141769 systemd[1]: iscsiuio.service: Deactivated successfully. Feb 9 09:48:47.141961 systemd[1]: Stopped iscsiuio.service. Feb 9 09:48:47.146000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsiuio comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.153933 systemd[1]: initrd-cleanup.service: Deactivated successfully. Feb 9 09:48:47.154964 systemd[1]: Finished initrd-cleanup.service. Feb 9 09:48:47.157521 ignition[1300]: INFO : Ignition 2.14.0 Feb 9 09:48:47.157521 ignition[1300]: INFO : Stage: umount Feb 9 09:48:47.162498 ignition[1300]: INFO : reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 9 09:48:47.162498 ignition[1300]: DEBUG : parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 9 09:48:47.183000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.183000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.186787 systemd[1]: sysroot-boot.mount: Deactivated successfully. Feb 9 09:48:47.194302 systemd[1]: sysroot-boot.service: Deactivated successfully. Feb 9 09:48:47.195000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.194490 systemd[1]: Stopped sysroot-boot.service. Feb 9 09:48:47.204893 ignition[1300]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 9 09:48:47.207418 ignition[1300]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 9 09:48:47.210488 ignition[1300]: INFO : PUT result: OK Feb 9 09:48:47.215793 ignition[1300]: INFO : umount: umount passed Feb 9 09:48:47.218136 ignition[1300]: INFO : Ignition finished successfully Feb 9 09:48:47.220547 systemd[1]: ignition-mount.service: Deactivated successfully. Feb 9 09:48:47.221000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.223000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.225000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.220727 systemd[1]: Stopped ignition-mount.service. Feb 9 09:48:47.222727 systemd[1]: ignition-disks.service: Deactivated successfully. Feb 9 09:48:47.222809 systemd[1]: Stopped ignition-disks.service. Feb 9 09:48:47.224622 systemd[1]: ignition-kargs.service: Deactivated successfully. Feb 9 09:48:47.237000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.224696 systemd[1]: Stopped ignition-kargs.service. Feb 9 09:48:47.226756 systemd[1]: ignition-fetch.service: Deactivated successfully. Feb 9 09:48:47.226830 systemd[1]: Stopped ignition-fetch.service. Feb 9 09:48:47.238945 systemd[1]: Stopped target network.target. Feb 9 09:48:47.251112 systemd[1]: ignition-fetch-offline.service: Deactivated successfully. Feb 9 09:48:47.252000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.251205 systemd[1]: Stopped ignition-fetch-offline.service. Feb 9 09:48:47.253554 systemd[1]: Stopped target paths.target. Feb 9 09:48:47.259494 systemd[1]: systemd-ask-password-console.path: Deactivated successfully. Feb 9 09:48:47.263025 systemd[1]: Stopped systemd-ask-password-console.path. Feb 9 09:48:47.271000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.275000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.264720 systemd[1]: Stopped target slices.target. Feb 9 09:48:47.266124 systemd[1]: Stopped target sockets.target. Feb 9 09:48:47.267633 systemd[1]: iscsid.socket: Deactivated successfully. Feb 9 09:48:47.267687 systemd[1]: Closed iscsid.socket. Feb 9 09:48:47.269042 systemd[1]: iscsiuio.socket: Deactivated successfully. Feb 9 09:48:47.269113 systemd[1]: Closed iscsiuio.socket. Feb 9 09:48:47.270460 systemd[1]: ignition-setup.service: Deactivated successfully. Feb 9 09:48:47.270541 systemd[1]: Stopped ignition-setup.service. Feb 9 09:48:47.272242 systemd[1]: initrd-setup-root.service: Deactivated successfully. Feb 9 09:48:47.272319 systemd[1]: Stopped initrd-setup-root.service. Feb 9 09:48:47.277541 systemd[1]: Stopping systemd-networkd.service... Feb 9 09:48:47.294000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.282366 systemd[1]: Stopping systemd-resolved.service... Feb 9 09:48:47.284050 systemd-networkd[1107]: eth0: DHCPv6 lease lost Feb 9 09:48:47.302000 audit: BPF prog-id=9 op=UNLOAD Feb 9 09:48:47.286818 systemd[1]: systemd-networkd.service: Deactivated successfully. Feb 9 09:48:47.287032 systemd[1]: Stopped systemd-networkd.service. Feb 9 09:48:47.303354 systemd[1]: systemd-resolved.service: Deactivated successfully. Feb 9 09:48:47.309000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.306794 systemd[1]: Stopped systemd-resolved.service. Feb 9 09:48:47.313849 systemd[1]: systemd-networkd.socket: Deactivated successfully. Feb 9 09:48:47.313936 systemd[1]: Closed systemd-networkd.socket. Feb 9 09:48:47.313000 audit: BPF prog-id=6 op=UNLOAD Feb 9 09:48:47.323400 systemd[1]: Stopping network-cleanup.service... Feb 9 09:48:47.328000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=parse-ip-for-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.331000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.324918 systemd[1]: parse-ip-for-networkd.service: Deactivated successfully. Feb 9 09:48:47.334000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.325077 systemd[1]: Stopped parse-ip-for-networkd.service. Feb 9 09:48:47.329381 systemd[1]: systemd-sysctl.service: Deactivated successfully. Feb 9 09:48:47.329487 systemd[1]: Stopped systemd-sysctl.service. Feb 9 09:48:47.332394 systemd[1]: systemd-modules-load.service: Deactivated successfully. Feb 9 09:48:47.332481 systemd[1]: Stopped systemd-modules-load.service. Feb 9 09:48:47.350000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.336261 systemd[1]: Stopping systemd-udevd.service... Feb 9 09:48:47.347797 systemd[1]: systemd-udevd.service: Deactivated successfully. Feb 9 09:48:47.355000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=network-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.361000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-udev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.348395 systemd[1]: Stopped systemd-udevd.service. Feb 9 09:48:47.363000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.366000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.353067 systemd[1]: network-cleanup.service: Deactivated successfully. Feb 9 09:48:47.379000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.353260 systemd[1]: Stopped network-cleanup.service. Feb 9 09:48:47.384000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.356588 systemd[1]: systemd-udevd-control.socket: Deactivated successfully. Feb 9 09:48:47.356667 systemd[1]: Closed systemd-udevd-control.socket. Feb 9 09:48:47.388000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.359607 systemd[1]: systemd-udevd-kernel.socket: Deactivated successfully. Feb 9 09:48:47.359675 systemd[1]: Closed systemd-udevd-kernel.socket. Feb 9 09:48:47.361338 systemd[1]: dracut-pre-udev.service: Deactivated successfully. Feb 9 09:48:47.361417 systemd[1]: Stopped dracut-pre-udev.service. Feb 9 09:48:47.398000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-udevadm-cleanup-db comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.398000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-udevadm-cleanup-db comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:47.363066 systemd[1]: dracut-cmdline.service: Deactivated successfully. Feb 9 09:48:47.363143 systemd[1]: Stopped dracut-cmdline.service. Feb 9 09:48:47.364848 systemd[1]: dracut-cmdline-ask.service: Deactivated successfully. Feb 9 09:48:47.365397 systemd[1]: Stopped dracut-cmdline-ask.service. Feb 9 09:48:47.369152 systemd[1]: Starting initrd-udevadm-cleanup-db.service... Feb 9 09:48:47.376144 systemd[1]: systemd-tmpfiles-setup-dev.service: Deactivated successfully. Feb 9 09:48:47.376278 systemd[1]: Stopped systemd-tmpfiles-setup-dev.service. Feb 9 09:48:47.382150 systemd[1]: kmod-static-nodes.service: Deactivated successfully. Feb 9 09:48:47.382248 systemd[1]: Stopped kmod-static-nodes.service. Feb 9 09:48:47.385784 systemd[1]: systemd-vconsole-setup.service: Deactivated successfully. Feb 9 09:48:47.385873 systemd[1]: Stopped systemd-vconsole-setup.service. Feb 9 09:48:47.394560 systemd[1]: initrd-udevadm-cleanup-db.service: Deactivated successfully. Feb 9 09:48:47.394755 systemd[1]: Finished initrd-udevadm-cleanup-db.service. Feb 9 09:48:47.406132 systemd[1]: Reached target initrd-switch-root.target. Feb 9 09:48:47.428301 systemd[1]: Starting initrd-switch-root.service... Feb 9 09:48:47.444987 systemd[1]: Switching root. Feb 9 09:48:47.473158 iscsid[1112]: iscsid shutting down. Feb 9 09:48:47.474778 systemd-journald[308]: Received SIGTERM from PID 1 (systemd). Feb 9 09:48:47.474850 systemd-journald[308]: Journal stopped Feb 9 09:48:52.540631 kernel: SELinux: Class mctp_socket not defined in policy. Feb 9 09:48:52.540741 kernel: SELinux: Class anon_inode not defined in policy. Feb 9 09:48:52.540783 kernel: SELinux: the above unknown classes and permissions will be allowed Feb 9 09:48:52.540816 kernel: SELinux: policy capability network_peer_controls=1 Feb 9 09:48:52.540860 kernel: SELinux: policy capability open_perms=1 Feb 9 09:48:52.540891 kernel: SELinux: policy capability extended_socket_class=1 Feb 9 09:48:52.540925 kernel: SELinux: policy capability always_check_network=0 Feb 9 09:48:52.540956 kernel: SELinux: policy capability cgroup_seclabel=1 Feb 9 09:48:52.541004 kernel: SELinux: policy capability nnp_nosuid_transition=1 Feb 9 09:48:52.541039 kernel: SELinux: policy capability genfs_seclabel_symlinks=0 Feb 9 09:48:52.541073 kernel: SELinux: policy capability ioctl_skip_cloexec=0 Feb 9 09:48:52.541106 systemd[1]: Successfully loaded SELinux policy in 98.891ms. Feb 9 09:48:52.541162 systemd[1]: Relabelled /dev, /dev/shm, /run, /sys/fs/cgroup in 19.910ms. Feb 9 09:48:52.541197 systemd[1]: systemd 252 running in system mode (+PAM +AUDIT +SELINUX -APPARMOR +IMA +SMACK +SECCOMP +GCRYPT -GNUTLS +OPENSSL -ACL +BLKID +CURL -ELFUTILS -FIDO2 +IDN2 -IDN +IPTC +KMOD +LIBCRYPTSETUP +LIBFDISK +PCRE2 -PWQUALITY -P11KIT -QRENCODE -TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD -BPF_FRAMEWORK -XKBCOMMON +UTMP +SYSVINIT default-hierarchy=unified) Feb 9 09:48:52.541229 systemd[1]: Detected virtualization amazon. Feb 9 09:48:52.541260 systemd[1]: Detected architecture arm64. Feb 9 09:48:52.547957 systemd[1]: Detected first boot. Feb 9 09:48:52.548041 systemd[1]: Initializing machine ID from VM UUID. Feb 9 09:48:52.548083 kernel: SELinux: Context system_u:object_r:container_file_t:s0:c1022,c1023 is not valid (left unmapped). Feb 9 09:48:52.548118 systemd[1]: Populated /etc with preset unit settings. Feb 9 09:48:52.548152 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Feb 9 09:48:52.548187 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Feb 9 09:48:52.548219 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Feb 9 09:48:52.548252 kernel: kauditd_printk_skb: 47 callbacks suppressed Feb 9 09:48:52.548281 kernel: audit: type=1334 audit(1707472132.154:88): prog-id=12 op=LOAD Feb 9 09:48:52.548314 kernel: audit: type=1334 audit(1707472132.154:89): prog-id=3 op=UNLOAD Feb 9 09:48:52.548345 kernel: audit: type=1334 audit(1707472132.156:90): prog-id=13 op=LOAD Feb 9 09:48:52.548373 kernel: audit: type=1334 audit(1707472132.158:91): prog-id=14 op=LOAD Feb 9 09:48:52.548402 kernel: audit: type=1334 audit(1707472132.158:92): prog-id=4 op=UNLOAD Feb 9 09:48:52.548433 kernel: audit: type=1334 audit(1707472132.158:93): prog-id=5 op=UNLOAD Feb 9 09:48:52.548463 kernel: audit: type=1334 audit(1707472132.163:94): prog-id=15 op=LOAD Feb 9 09:48:52.548503 systemd[1]: iscsid.service: Deactivated successfully. Feb 9 09:48:52.548534 kernel: audit: type=1334 audit(1707472132.163:95): prog-id=12 op=UNLOAD Feb 9 09:48:52.548562 systemd[1]: Stopped iscsid.service. Feb 9 09:48:52.548597 kernel: audit: type=1334 audit(1707472132.166:96): prog-id=16 op=LOAD Feb 9 09:48:52.548626 kernel: audit: type=1334 audit(1707472132.168:97): prog-id=17 op=LOAD Feb 9 09:48:52.548654 systemd[1]: initrd-switch-root.service: Deactivated successfully. Feb 9 09:48:52.548687 systemd[1]: Stopped initrd-switch-root.service. Feb 9 09:48:52.548719 systemd[1]: systemd-journald.service: Scheduled restart job, restart counter is at 1. Feb 9 09:48:52.548749 systemd[1]: Created slice system-addon\x2dconfig.slice. Feb 9 09:48:52.548779 systemd[1]: Created slice system-addon\x2drun.slice. Feb 9 09:48:52.548811 systemd[1]: Created slice system-coreos\x2dmetadata\x2dsshkeys.slice. Feb 9 09:48:52.548847 systemd[1]: Created slice system-getty.slice. Feb 9 09:48:52.548878 systemd[1]: Created slice system-modprobe.slice. Feb 9 09:48:52.548911 systemd[1]: Created slice system-serial\x2dgetty.slice. Feb 9 09:48:52.548940 systemd[1]: Created slice system-system\x2dcloudinit.slice. Feb 9 09:48:52.548986 systemd[1]: Created slice system-systemd\x2dfsck.slice. Feb 9 09:48:52.549022 systemd[1]: Created slice user.slice. Feb 9 09:48:52.549052 systemd[1]: Started systemd-ask-password-console.path. Feb 9 09:48:52.549081 systemd[1]: Started systemd-ask-password-wall.path. Feb 9 09:48:52.549113 systemd[1]: Set up automount boot.automount. Feb 9 09:48:52.549148 systemd[1]: Set up automount proc-sys-fs-binfmt_misc.automount. Feb 9 09:48:52.549177 systemd[1]: Stopped target initrd-switch-root.target. Feb 9 09:48:52.549206 systemd[1]: Stopped target initrd-fs.target. Feb 9 09:48:52.549235 systemd[1]: Stopped target initrd-root-fs.target. Feb 9 09:48:52.549264 systemd[1]: Reached target integritysetup.target. Feb 9 09:48:52.549293 systemd[1]: Reached target remote-cryptsetup.target. Feb 9 09:48:52.549324 systemd[1]: Reached target remote-fs.target. Feb 9 09:48:52.549354 systemd[1]: Reached target slices.target. Feb 9 09:48:52.549384 systemd[1]: Reached target swap.target. Feb 9 09:48:52.549417 systemd[1]: Reached target torcx.target. Feb 9 09:48:52.549447 systemd[1]: Reached target veritysetup.target. Feb 9 09:48:52.549477 systemd[1]: Listening on systemd-coredump.socket. Feb 9 09:48:52.549506 systemd[1]: Listening on systemd-initctl.socket. Feb 9 09:48:52.549542 systemd[1]: Listening on systemd-networkd.socket. Feb 9 09:48:52.549573 systemd[1]: Listening on systemd-udevd-control.socket. Feb 9 09:48:52.549603 systemd[1]: Listening on systemd-udevd-kernel.socket. Feb 9 09:48:52.549632 systemd[1]: Listening on systemd-userdbd.socket. Feb 9 09:48:52.549663 systemd[1]: Mounting dev-hugepages.mount... Feb 9 09:48:52.549694 systemd[1]: Mounting dev-mqueue.mount... Feb 9 09:48:52.549728 systemd[1]: Mounting media.mount... Feb 9 09:48:52.549760 systemd[1]: Mounting sys-kernel-debug.mount... Feb 9 09:48:52.549789 systemd[1]: Mounting sys-kernel-tracing.mount... Feb 9 09:48:52.549821 systemd[1]: Mounting tmp.mount... Feb 9 09:48:52.549851 systemd[1]: Starting flatcar-tmpfiles.service... Feb 9 09:48:52.549880 systemd[1]: ignition-delete-config.service was skipped because no trigger condition checks were met. Feb 9 09:48:52.549909 systemd[1]: Starting kmod-static-nodes.service... Feb 9 09:48:52.549938 systemd[1]: Starting modprobe@configfs.service... Feb 9 09:48:52.549966 systemd[1]: Starting modprobe@dm_mod.service... Feb 9 09:48:52.550020 systemd[1]: Starting modprobe@drm.service... Feb 9 09:48:52.550052 systemd[1]: Starting modprobe@efi_pstore.service... Feb 9 09:48:52.550083 systemd[1]: Starting modprobe@fuse.service... Feb 9 09:48:52.550113 systemd[1]: Starting modprobe@loop.service... Feb 9 09:48:52.550145 systemd[1]: setup-nsswitch.service was skipped because of an unmet condition check (ConditionPathExists=!/etc/nsswitch.conf). Feb 9 09:48:52.550175 systemd[1]: systemd-fsck-root.service: Deactivated successfully. Feb 9 09:48:52.550210 systemd[1]: Stopped systemd-fsck-root.service. Feb 9 09:48:52.550239 systemd[1]: systemd-fsck-usr.service: Deactivated successfully. Feb 9 09:48:52.550272 systemd[1]: Stopped systemd-fsck-usr.service. Feb 9 09:48:52.550303 systemd[1]: Stopped systemd-journald.service. Feb 9 09:48:52.550334 systemd[1]: Starting systemd-journald.service... Feb 9 09:48:52.550362 kernel: loop: module loaded Feb 9 09:48:52.550390 kernel: fuse: init (API version 7.34) Feb 9 09:48:52.550419 systemd[1]: Starting systemd-modules-load.service... Feb 9 09:48:52.550452 systemd[1]: Starting systemd-network-generator.service... Feb 9 09:48:52.550483 systemd[1]: Starting systemd-remount-fs.service... Feb 9 09:48:52.550514 systemd[1]: Starting systemd-udev-trigger.service... Feb 9 09:48:52.550544 systemd[1]: verity-setup.service: Deactivated successfully. Feb 9 09:48:52.550578 systemd[1]: Stopped verity-setup.service. Feb 9 09:48:52.550606 systemd[1]: Mounted dev-hugepages.mount. Feb 9 09:48:52.550635 systemd[1]: Mounted dev-mqueue.mount. Feb 9 09:48:52.550664 systemd[1]: Mounted media.mount. Feb 9 09:48:52.550693 systemd[1]: Mounted sys-kernel-debug.mount. Feb 9 09:48:52.550724 systemd[1]: Mounted sys-kernel-tracing.mount. Feb 9 09:48:52.550754 systemd[1]: Mounted tmp.mount. Feb 9 09:48:52.550783 systemd[1]: Finished kmod-static-nodes.service. Feb 9 09:48:52.550814 systemd[1]: modprobe@configfs.service: Deactivated successfully. Feb 9 09:48:52.550850 systemd[1]: Finished modprobe@configfs.service. Feb 9 09:48:52.550883 systemd[1]: modprobe@dm_mod.service: Deactivated successfully. Feb 9 09:48:52.550914 systemd[1]: Finished modprobe@dm_mod.service. Feb 9 09:48:52.550943 systemd[1]: modprobe@drm.service: Deactivated successfully. Feb 9 09:48:52.556680 systemd[1]: Finished modprobe@drm.service. Feb 9 09:48:52.556747 systemd[1]: modprobe@efi_pstore.service: Deactivated successfully. Feb 9 09:48:52.556780 systemd-journald[1415]: Journal started Feb 9 09:48:52.556878 systemd-journald[1415]: Runtime Journal (/run/log/journal/ec2a2cff82c2d41e2fe2f8a6018681f1) is 8.0M, max 75.4M, 67.4M free. Feb 9 09:48:48.171000 audit: MAC_POLICY_LOAD auid=4294967295 ses=4294967295 lsm=selinux res=1 Feb 9 09:48:48.322000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=1 Feb 9 09:48:48.322000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=1 Feb 9 09:48:48.322000 audit: BPF prog-id=10 op=LOAD Feb 9 09:48:48.322000 audit: BPF prog-id=10 op=UNLOAD Feb 9 09:48:48.322000 audit: BPF prog-id=11 op=LOAD Feb 9 09:48:48.322000 audit: BPF prog-id=11 op=UNLOAD Feb 9 09:48:48.463000 audit[1333]: AVC avc: denied { associate } for pid=1333 comm="torcx-generator" name="docker" dev="tmpfs" ino=2 scontext=system_u:object_r:unlabeled_t:s0 tcontext=system_u:object_r:tmpfs_t:s0 tclass=filesystem permissive=1 srawcon="system_u:object_r:container_file_t:s0:c1022,c1023" Feb 9 09:48:48.463000 audit[1333]: SYSCALL arch=c00000b7 syscall=5 success=yes exit=0 a0=40001458b2 a1=40000c6de0 a2=40000cd0c0 a3=32 items=0 ppid=1316 pid=1333 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="torcx-generator" exe="/usr/lib/systemd/system-generators/torcx-generator" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:48:48.463000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D2D67656E657261746F72732F746F7263782D67656E657261746F72002F72756E2F73797374656D642F67656E657261746F72002F72756E2F73797374656D642F67656E657261746F722E6561726C79002F72756E2F73797374656D642F67656E657261746F722E6C61 Feb 9 09:48:48.467000 audit[1333]: AVC avc: denied { associate } for pid=1333 comm="torcx-generator" name="usr" scontext=system_u:object_r:unlabeled_t:s0 tcontext=system_u:object_r:tmpfs_t:s0 tclass=filesystem permissive=1 Feb 9 09:48:48.467000 audit[1333]: SYSCALL arch=c00000b7 syscall=34 success=yes exit=0 a0=ffffffffffffff9c a1=4000145989 a2=1ed a3=0 items=2 ppid=1316 pid=1333 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="torcx-generator" exe="/usr/lib/systemd/system-generators/torcx-generator" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:48:48.467000 audit: CWD cwd="/" Feb 9 09:48:48.467000 audit: PATH item=0 name=(null) inode=2 dev=00:1c mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:unlabeled_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 09:48:48.467000 audit: PATH item=1 name=(null) inode=3 dev=00:1c mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:unlabeled_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 09:48:48.467000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D2D67656E657261746F72732F746F7263782D67656E657261746F72002F72756E2F73797374656D642F67656E657261746F72002F72756E2F73797374656D642F67656E657261746F722E6561726C79002F72756E2F73797374656D642F67656E657261746F722E6C61 Feb 9 09:48:52.154000 audit: BPF prog-id=12 op=LOAD Feb 9 09:48:52.154000 audit: BPF prog-id=3 op=UNLOAD Feb 9 09:48:52.156000 audit: BPF prog-id=13 op=LOAD Feb 9 09:48:52.158000 audit: BPF prog-id=14 op=LOAD Feb 9 09:48:52.158000 audit: BPF prog-id=4 op=UNLOAD Feb 9 09:48:52.158000 audit: BPF prog-id=5 op=UNLOAD Feb 9 09:48:52.163000 audit: BPF prog-id=15 op=LOAD Feb 9 09:48:52.163000 audit: BPF prog-id=12 op=UNLOAD Feb 9 09:48:52.166000 audit: BPF prog-id=16 op=LOAD Feb 9 09:48:52.168000 audit: BPF prog-id=17 op=LOAD Feb 9 09:48:52.168000 audit: BPF prog-id=13 op=UNLOAD Feb 9 09:48:52.168000 audit: BPF prog-id=14 op=UNLOAD Feb 9 09:48:52.171000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:52.180000 audit: BPF prog-id=15 op=UNLOAD Feb 9 09:48:52.186000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=iscsid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:52.193000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=initrd-switch-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:52.193000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=initrd-switch-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:52.425000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:52.432000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck-usr comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:52.438000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:52.438000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:52.439000 audit: BPF prog-id=18 op=LOAD Feb 9 09:48:52.440000 audit: BPF prog-id=19 op=LOAD Feb 9 09:48:52.440000 audit: BPF prog-id=20 op=LOAD Feb 9 09:48:52.440000 audit: BPF prog-id=16 op=UNLOAD Feb 9 09:48:52.440000 audit: BPF prog-id=17 op=UNLOAD Feb 9 09:48:52.489000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=verity-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:52.529000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:52.537000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@configfs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:52.537000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@configfs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:52.537000 audit: CONFIG_CHANGE op=set audit_enabled=1 old=1 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 res=1 Feb 9 09:48:52.537000 audit[1415]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=60 a0=4 a1=fffffb9d8660 a2=4000 a3=1 items=0 ppid=1 pid=1415 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="systemd-journal" exe="/usr/lib/systemd/systemd-journald" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:48:52.537000 audit: PROCTITLE proctitle="/usr/lib/systemd/systemd-journald" Feb 9 09:48:52.546000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:52.546000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:52.554000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@drm comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:52.554000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@drm comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:52.152810 systemd[1]: Queued start job for default target multi-user.target. Feb 9 09:48:48.451783 /usr/lib/systemd/system-generators/torcx-generator[1333]: time="2024-02-09T09:48:48Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.2 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.2 /var/lib/torcx/store]" Feb 9 09:48:52.171569 systemd[1]: systemd-journald.service: Deactivated successfully. Feb 9 09:48:48.461311 /usr/lib/systemd/system-generators/torcx-generator[1333]: time="2024-02-09T09:48:48Z" level=debug msg="profile found" name=docker-1.12-no path=/usr/share/torcx/profiles/docker-1.12-no.json Feb 9 09:48:48.461364 /usr/lib/systemd/system-generators/torcx-generator[1333]: time="2024-02-09T09:48:48Z" level=debug msg="profile found" name=vendor path=/usr/share/torcx/profiles/vendor.json Feb 9 09:48:48.461433 /usr/lib/systemd/system-generators/torcx-generator[1333]: time="2024-02-09T09:48:48Z" level=info msg="no vendor profile selected by /etc/flatcar/docker-1.12" Feb 9 09:48:52.569412 systemd[1]: Finished modprobe@efi_pstore.service. Feb 9 09:48:52.569647 systemd[1]: Started systemd-journald.service. Feb 9 09:48:52.565000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:52.565000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:48.461459 /usr/lib/systemd/system-generators/torcx-generator[1333]: time="2024-02-09T09:48:48Z" level=debug msg="skipped missing lower profile" missing profile=oem Feb 9 09:48:52.569000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:48.461526 /usr/lib/systemd/system-generators/torcx-generator[1333]: time="2024-02-09T09:48:48Z" level=warning msg="no next profile: unable to read profile file: open /etc/torcx/next-profile: no such file or directory" Feb 9 09:48:52.571079 systemd[1]: modprobe@fuse.service: Deactivated successfully. Feb 9 09:48:48.461557 /usr/lib/systemd/system-generators/torcx-generator[1333]: time="2024-02-09T09:48:48Z" level=debug msg="apply configuration parsed" lower profiles (vendor/oem)="[vendor]" upper profile (user)= Feb 9 09:48:48.461965 /usr/lib/systemd/system-generators/torcx-generator[1333]: time="2024-02-09T09:48:48Z" level=debug msg="mounted tmpfs" target=/run/torcx/unpack Feb 9 09:48:48.462089 /usr/lib/systemd/system-generators/torcx-generator[1333]: time="2024-02-09T09:48:48Z" level=debug msg="profile found" name=docker-1.12-no path=/usr/share/torcx/profiles/docker-1.12-no.json Feb 9 09:48:48.462125 /usr/lib/systemd/system-generators/torcx-generator[1333]: time="2024-02-09T09:48:48Z" level=debug msg="profile found" name=vendor path=/usr/share/torcx/profiles/vendor.json Feb 9 09:48:48.463023 /usr/lib/systemd/system-generators/torcx-generator[1333]: time="2024-02-09T09:48:48Z" level=debug msg="new archive/reference added to cache" format=tgz name=docker path="/usr/share/torcx/store/docker:20.10.torcx.tgz" reference=20.10 Feb 9 09:48:48.463107 /usr/lib/systemd/system-generators/torcx-generator[1333]: time="2024-02-09T09:48:48Z" level=debug msg="new archive/reference added to cache" format=tgz name=docker path="/usr/share/torcx/store/docker:com.coreos.cl.torcx.tgz" reference=com.coreos.cl Feb 9 09:48:48.463154 /usr/lib/systemd/system-generators/torcx-generator[1333]: time="2024-02-09T09:48:48Z" level=info msg="store skipped" err="open /usr/share/oem/torcx/store/3510.3.2: no such file or directory" path=/usr/share/oem/torcx/store/3510.3.2 Feb 9 09:48:48.463193 /usr/lib/systemd/system-generators/torcx-generator[1333]: time="2024-02-09T09:48:48Z" level=info msg="store skipped" err="open /usr/share/oem/torcx/store: no such file or directory" path=/usr/share/oem/torcx/store Feb 9 09:48:48.463240 /usr/lib/systemd/system-generators/torcx-generator[1333]: time="2024-02-09T09:48:48Z" level=info msg="store skipped" err="open /var/lib/torcx/store/3510.3.2: no such file or directory" path=/var/lib/torcx/store/3510.3.2 Feb 9 09:48:48.463278 /usr/lib/systemd/system-generators/torcx-generator[1333]: time="2024-02-09T09:48:48Z" level=info msg="store skipped" err="open /var/lib/torcx/store: no such file or directory" path=/var/lib/torcx/store Feb 9 09:48:51.342303 /usr/lib/systemd/system-generators/torcx-generator[1333]: time="2024-02-09T09:48:51Z" level=debug msg="image unpacked" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Feb 9 09:48:52.575000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@fuse comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:52.575000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@fuse comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:52.575188 systemd[1]: Finished modprobe@fuse.service. Feb 9 09:48:51.342835 /usr/lib/systemd/system-generators/torcx-generator[1333]: time="2024-02-09T09:48:51Z" level=debug msg="binaries propagated" assets="[/bin/containerd /bin/containerd-shim /bin/ctr /bin/docker /bin/docker-containerd /bin/docker-containerd-shim /bin/docker-init /bin/docker-proxy /bin/docker-runc /bin/dockerd /bin/runc /bin/tini]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Feb 9 09:48:52.578288 systemd[1]: modprobe@loop.service: Deactivated successfully. Feb 9 09:48:51.343106 /usr/lib/systemd/system-generators/torcx-generator[1333]: time="2024-02-09T09:48:51Z" level=debug msg="networkd units propagated" assets="[/lib/systemd/network/50-docker.network /lib/systemd/network/90-docker-veth.network]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Feb 9 09:48:51.343547 /usr/lib/systemd/system-generators/torcx-generator[1333]: time="2024-02-09T09:48:51Z" level=debug msg="systemd units propagated" assets="[/lib/systemd/system/containerd.service /lib/systemd/system/docker.service /lib/systemd/system/docker.socket /lib/systemd/system/sockets.target.wants /lib/systemd/system/multi-user.target.wants]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Feb 9 09:48:51.343656 /usr/lib/systemd/system-generators/torcx-generator[1333]: time="2024-02-09T09:48:51Z" level=debug msg="profile applied" sealed profile=/run/torcx/profile.json upper profile= Feb 9 09:48:51.343791 /usr/lib/systemd/system-generators/torcx-generator[1333]: time="2024-02-09T09:48:51Z" level=debug msg="system state sealed" content="[TORCX_LOWER_PROFILES=\"vendor\" TORCX_UPPER_PROFILE=\"\" TORCX_PROFILE_PATH=\"/run/torcx/profile.json\" TORCX_BINDIR=\"/run/torcx/bin\" TORCX_UNPACKDIR=\"/run/torcx/unpack\"]" path=/run/metadata/torcx Feb 9 09:48:52.582000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:52.582000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:52.582188 systemd[1]: Finished modprobe@loop.service. Feb 9 09:48:52.584619 systemd[1]: Finished systemd-modules-load.service. Feb 9 09:48:52.585000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:52.587011 systemd[1]: Finished systemd-network-generator.service. Feb 9 09:48:52.588000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-network-generator comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:52.590250 systemd[1]: Finished systemd-remount-fs.service. Feb 9 09:48:52.591000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-remount-fs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:52.593085 systemd[1]: Reached target network-pre.target. Feb 9 09:48:52.597330 systemd[1]: Mounting sys-fs-fuse-connections.mount... Feb 9 09:48:52.601495 systemd[1]: Mounting sys-kernel-config.mount... Feb 9 09:48:52.608191 systemd[1]: remount-root.service was skipped because of an unmet condition check (ConditionPathIsReadWrite=!/). Feb 9 09:48:52.611294 systemd[1]: Starting systemd-hwdb-update.service... Feb 9 09:48:52.615246 systemd[1]: Starting systemd-journal-flush.service... Feb 9 09:48:52.617244 systemd[1]: systemd-pstore.service was skipped because of an unmet condition check (ConditionDirectoryNotEmpty=/sys/fs/pstore). Feb 9 09:48:52.619554 systemd[1]: Starting systemd-random-seed.service... Feb 9 09:48:52.621274 systemd[1]: systemd-repart.service was skipped because no trigger condition checks were met. Feb 9 09:48:52.623612 systemd[1]: Starting systemd-sysctl.service... Feb 9 09:48:52.628287 systemd[1]: Mounted sys-fs-fuse-connections.mount. Feb 9 09:48:52.631476 systemd[1]: Mounted sys-kernel-config.mount. Feb 9 09:48:52.657305 systemd-journald[1415]: Time spent on flushing to /var/log/journal/ec2a2cff82c2d41e2fe2f8a6018681f1 is 61.363ms for 1151 entries. Feb 9 09:48:52.657305 systemd-journald[1415]: System Journal (/var/log/journal/ec2a2cff82c2d41e2fe2f8a6018681f1) is 8.0M, max 195.6M, 187.6M free. Feb 9 09:48:52.739308 systemd-journald[1415]: Received client request to flush runtime journal. Feb 9 09:48:52.672000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=flatcar-tmpfiles comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:52.686000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-random-seed comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:52.688000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:52.671720 systemd[1]: Finished flatcar-tmpfiles.service. Feb 9 09:48:52.675990 systemd[1]: Starting systemd-sysusers.service... Feb 9 09:48:52.683902 systemd[1]: Finished systemd-random-seed.service. Feb 9 09:48:52.688019 systemd[1]: Finished systemd-sysctl.service. Feb 9 09:48:52.690134 systemd[1]: Reached target first-boot-complete.target. Feb 9 09:48:52.743000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journal-flush comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:52.742328 systemd[1]: Finished systemd-journal-flush.service. Feb 9 09:48:52.782496 systemd[1]: Finished systemd-sysusers.service. Feb 9 09:48:52.783000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysusers comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:52.786544 systemd[1]: Starting systemd-tmpfiles-setup-dev.service... Feb 9 09:48:52.796200 systemd[1]: Finished systemd-udev-trigger.service. Feb 9 09:48:52.797000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:52.800443 systemd[1]: Starting systemd-udev-settle.service... Feb 9 09:48:52.822916 udevadm[1454]: systemd-udev-settle.service is deprecated. Please fix lvm2-activation-early.service, lvm2-activation.service not to pull it in. Feb 9 09:48:52.883750 systemd[1]: Finished systemd-tmpfiles-setup-dev.service. Feb 9 09:48:52.884000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:53.514000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-hwdb-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:53.515000 audit: BPF prog-id=21 op=LOAD Feb 9 09:48:53.515000 audit: BPF prog-id=22 op=LOAD Feb 9 09:48:53.515000 audit: BPF prog-id=7 op=UNLOAD Feb 9 09:48:53.515000 audit: BPF prog-id=8 op=UNLOAD Feb 9 09:48:53.513567 systemd[1]: Finished systemd-hwdb-update.service. Feb 9 09:48:53.517642 systemd[1]: Starting systemd-udevd.service... Feb 9 09:48:53.556486 systemd-udevd[1455]: Using default interface naming scheme 'v252'. Feb 9 09:48:53.597854 systemd[1]: Started systemd-udevd.service. Feb 9 09:48:53.598000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:53.600000 audit: BPF prog-id=23 op=LOAD Feb 9 09:48:53.602647 systemd[1]: Starting systemd-networkd.service... Feb 9 09:48:53.609000 audit: BPF prog-id=24 op=LOAD Feb 9 09:48:53.609000 audit: BPF prog-id=25 op=LOAD Feb 9 09:48:53.609000 audit: BPF prog-id=26 op=LOAD Feb 9 09:48:53.611753 systemd[1]: Starting systemd-userdbd.service... Feb 9 09:48:53.688791 systemd[1]: Started systemd-userdbd.service. Feb 9 09:48:53.689000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-userdbd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:53.698857 (udev-worker)[1470]: Network interface NamePolicy= disabled on kernel command line. Feb 9 09:48:53.737158 systemd[1]: Condition check resulted in dev-ttyS0.device being skipped. Feb 9 09:48:53.851139 systemd-networkd[1460]: lo: Link UP Feb 9 09:48:53.851161 systemd-networkd[1460]: lo: Gained carrier Feb 9 09:48:53.853606 systemd-networkd[1460]: Enumeration completed Feb 9 09:48:53.853781 systemd[1]: Started systemd-networkd.service. Feb 9 09:48:53.854000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:53.857787 systemd[1]: Starting systemd-networkd-wait-online.service... Feb 9 09:48:53.860522 systemd-networkd[1460]: eth0: Configuring with /usr/lib/systemd/network/zz-default.network. Feb 9 09:48:53.866023 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 9 09:48:53.866200 systemd-networkd[1460]: eth0: Link UP Feb 9 09:48:53.866493 systemd-networkd[1460]: eth0: Gained carrier Feb 9 09:48:53.891325 systemd-networkd[1460]: eth0: DHCPv4 address 172.31.26.157/20, gateway 172.31.16.1 acquired from 172.31.16.1 Feb 9 09:48:53.928025 kernel: BTRFS info: devid 1 device path /dev/disk/by-label/OEM changed to /dev/nvme0n1p6 scanned by (udev-worker) (1457) Feb 9 09:48:54.067287 systemd[1]: Found device dev-disk-by\x2dlabel-OEM.device. Feb 9 09:48:54.069945 systemd[1]: Finished systemd-udev-settle.service. Feb 9 09:48:54.070000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udev-settle comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:54.073959 systemd[1]: Starting lvm2-activation-early.service... Feb 9 09:48:54.116742 lvm[1574]: WARNING: Failed to connect to lvmetad. Falling back to device scanning. Feb 9 09:48:54.154612 systemd[1]: Finished lvm2-activation-early.service. Feb 9 09:48:54.155000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=lvm2-activation-early comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:54.156714 systemd[1]: Reached target cryptsetup.target. Feb 9 09:48:54.160706 systemd[1]: Starting lvm2-activation.service... Feb 9 09:48:54.169316 lvm[1575]: WARNING: Failed to connect to lvmetad. Falling back to device scanning. Feb 9 09:48:54.203644 systemd[1]: Finished lvm2-activation.service. Feb 9 09:48:54.205636 systemd[1]: Reached target local-fs-pre.target. Feb 9 09:48:54.204000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=lvm2-activation comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:54.207400 systemd[1]: var-lib-machines.mount was skipped because of an unmet condition check (ConditionPathExists=/var/lib/machines.raw). Feb 9 09:48:54.207447 systemd[1]: Reached target local-fs.target. Feb 9 09:48:54.209215 systemd[1]: Reached target machines.target. Feb 9 09:48:54.224261 systemd[1]: Starting ldconfig.service... Feb 9 09:48:54.227114 systemd[1]: systemd-binfmt.service was skipped because no trigger condition checks were met. Feb 9 09:48:54.227414 systemd[1]: systemd-boot-system-token.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/LoaderFeatures-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Feb 9 09:48:54.230367 systemd[1]: Starting systemd-boot-update.service... Feb 9 09:48:54.234164 systemd[1]: Starting systemd-fsck@dev-disk-by\x2dlabel-OEM.service... Feb 9 09:48:54.238641 systemd[1]: Starting systemd-machine-id-commit.service... Feb 9 09:48:54.240640 systemd[1]: systemd-sysext.service was skipped because no trigger condition checks were met. Feb 9 09:48:54.240768 systemd[1]: ensure-sysext.service was skipped because no trigger condition checks were met. Feb 9 09:48:54.245929 systemd[1]: Starting systemd-tmpfiles-setup.service... Feb 9 09:48:54.257565 systemd[1]: boot.automount: Got automount request for /boot, triggered by 1577 (bootctl) Feb 9 09:48:54.259922 systemd[1]: Starting systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM.service... Feb 9 09:48:54.286156 systemd-tmpfiles[1580]: /usr/lib/tmpfiles.d/legacy.conf:13: Duplicate line for path "/run/lock", ignoring. Feb 9 09:48:54.288395 systemd-tmpfiles[1580]: /usr/lib/tmpfiles.d/provision.conf:20: Duplicate line for path "/root", ignoring. Feb 9 09:48:54.291372 systemd-tmpfiles[1580]: /usr/lib/tmpfiles.d/systemd.conf:29: Duplicate line for path "/var/lib/systemd", ignoring. Feb 9 09:48:54.303389 systemd[1]: Finished systemd-fsck@dev-disk-by\x2dlabel-OEM.service. Feb 9 09:48:54.302000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck@dev-disk-by\x2dlabel-OEM comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:54.379169 systemd-fsck[1586]: fsck.fat 4.2 (2021-01-31) Feb 9 09:48:54.379169 systemd-fsck[1586]: /dev/nvme0n1p1: 236 files, 113719/258078 clusters Feb 9 09:48:54.383064 systemd[1]: Finished systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM.service. Feb 9 09:48:54.384000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:54.387662 systemd[1]: Mounting boot.mount... Feb 9 09:48:54.415135 systemd[1]: Mounted boot.mount. Feb 9 09:48:54.446204 systemd[1]: Finished systemd-boot-update.service. Feb 9 09:48:54.447000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-boot-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:54.627092 systemd[1]: Finished systemd-tmpfiles-setup.service. Feb 9 09:48:54.628000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-tmpfiles-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:54.631820 systemd[1]: Starting audit-rules.service... Feb 9 09:48:54.635721 systemd[1]: Starting clean-ca-certificates.service... Feb 9 09:48:54.644083 systemd[1]: Starting systemd-journal-catalog-update.service... Feb 9 09:48:54.649000 audit: BPF prog-id=27 op=LOAD Feb 9 09:48:54.653683 systemd[1]: Starting systemd-resolved.service... Feb 9 09:48:54.655000 audit: BPF prog-id=28 op=LOAD Feb 9 09:48:54.658660 systemd[1]: Starting systemd-timesyncd.service... Feb 9 09:48:54.662655 systemd[1]: Starting systemd-update-utmp.service... Feb 9 09:48:54.695798 systemd[1]: Finished clean-ca-certificates.service. Feb 9 09:48:54.696000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=clean-ca-certificates comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:54.697931 systemd[1]: update-ca-certificates.service was skipped because of an unmet condition check (ConditionPathIsSymbolicLink=!/etc/ssl/certs/ca-certificates.crt). Feb 9 09:48:54.702000 audit[1607]: SYSTEM_BOOT pid=1607 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg=' comm="systemd-update-utmp" exe="/usr/lib/systemd/systemd-update-utmp" hostname=? addr=? terminal=? res=success' Feb 9 09:48:54.710000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-update-utmp comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:54.709250 systemd[1]: Finished systemd-update-utmp.service. Feb 9 09:48:54.750332 systemd[1]: Finished systemd-journal-catalog-update.service. Feb 9 09:48:54.751000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journal-catalog-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:48:54.787000 audit: CONFIG_CHANGE auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=add_rule key=(null) list=5 res=1 Feb 9 09:48:54.787000 audit[1622]: SYSCALL arch=c00000b7 syscall=206 success=yes exit=1056 a0=3 a1=ffffdfe933b0 a2=420 a3=0 items=0 ppid=1601 pid=1622 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:48:54.787000 audit: PROCTITLE proctitle=2F7362696E2F617564697463746C002D52002F6574632F61756469742F61756469742E72756C6573 Feb 9 09:48:54.788855 augenrules[1622]: No rules Feb 9 09:48:54.793405 systemd[1]: Finished audit-rules.service. Feb 9 09:48:54.820161 systemd-resolved[1605]: Positive Trust Anchors: Feb 9 09:48:54.820187 systemd-resolved[1605]: . IN DS 20326 8 2 e06d44b80b8f1d39a95c0b0d7c65d08458e880409bbc683457104237c7f8ec8d Feb 9 09:48:54.820239 systemd-resolved[1605]: Negative trust anchors: home.arpa 10.in-addr.arpa 16.172.in-addr.arpa 17.172.in-addr.arpa 18.172.in-addr.arpa 19.172.in-addr.arpa 20.172.in-addr.arpa 21.172.in-addr.arpa 22.172.in-addr.arpa 23.172.in-addr.arpa 24.172.in-addr.arpa 25.172.in-addr.arpa 26.172.in-addr.arpa 27.172.in-addr.arpa 28.172.in-addr.arpa 29.172.in-addr.arpa 30.172.in-addr.arpa 31.172.in-addr.arpa 168.192.in-addr.arpa d.f.ip6.arpa corp home internal intranet lan local private test Feb 9 09:48:54.849913 systemd-resolved[1605]: Defaulting to hostname 'linux'. Feb 9 09:48:54.852915 systemd[1]: Started systemd-resolved.service. Feb 9 09:48:54.854844 systemd[1]: Reached target network.target. Feb 9 09:48:54.856540 systemd[1]: Reached target nss-lookup.target. Feb 9 09:48:54.885776 systemd[1]: Started systemd-timesyncd.service. Feb 9 09:48:54.887827 systemd[1]: Reached target time-set.target. Feb 9 09:48:54.600585 systemd-resolved[1605]: Clock change detected. Flushing caches. Feb 9 09:48:54.966700 systemd-journald[1415]: Time jumped backwards, rotating. Feb 9 09:48:54.601181 systemd-timesyncd[1606]: Contacted time server 142.202.190.19:123 (0.flatcar.pool.ntp.org). Feb 9 09:48:54.601391 systemd-timesyncd[1606]: Initial clock synchronization to Fri 2024-02-09 09:48:54.600403 UTC. Feb 9 09:48:54.631300 systemd-networkd[1460]: eth0: Gained IPv6LL Feb 9 09:48:54.634520 systemd[1]: Finished systemd-networkd-wait-online.service. Feb 9 09:48:54.638948 systemd[1]: Reached target network-online.target. Feb 9 09:48:55.032877 systemd[1]: etc-machine\x2did.mount: Deactivated successfully. Feb 9 09:48:55.033937 systemd[1]: Finished systemd-machine-id-commit.service. Feb 9 09:48:55.046884 ldconfig[1576]: /sbin/ldconfig: /lib/ld.so.conf is not an ELF file - it has the wrong magic bytes at the start. Feb 9 09:48:55.052386 systemd[1]: Finished ldconfig.service. Feb 9 09:48:55.056365 systemd[1]: Starting systemd-update-done.service... Feb 9 09:48:55.069921 systemd[1]: Finished systemd-update-done.service. Feb 9 09:48:55.071964 systemd[1]: Reached target sysinit.target. Feb 9 09:48:55.073751 systemd[1]: Started motdgen.path. Feb 9 09:48:55.075328 systemd[1]: Started user-cloudinit@var-lib-flatcar\x2dinstall-user_data.path. Feb 9 09:48:55.077769 systemd[1]: Started logrotate.timer. Feb 9 09:48:55.079365 systemd[1]: Started mdadm.timer. Feb 9 09:48:55.080738 systemd[1]: Started systemd-tmpfiles-clean.timer. Feb 9 09:48:55.082428 systemd[1]: update-engine-stub.timer was skipped because of an unmet condition check (ConditionPathExists=/usr/.noupdate). Feb 9 09:48:55.082473 systemd[1]: Reached target paths.target. Feb 9 09:48:55.083971 systemd[1]: Reached target timers.target. Feb 9 09:48:55.086633 systemd[1]: Listening on dbus.socket. Feb 9 09:48:55.090288 systemd[1]: Starting docker.socket... Feb 9 09:48:55.096518 systemd[1]: Listening on sshd.socket. Feb 9 09:48:55.098481 systemd[1]: systemd-pcrphase-sysinit.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/StubPcrKernelImage-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Feb 9 09:48:55.099558 systemd[1]: Listening on docker.socket. Feb 9 09:48:55.101492 systemd[1]: Reached target sockets.target. Feb 9 09:48:55.103368 systemd[1]: Reached target basic.target. Feb 9 09:48:55.105288 systemd[1]: addon-config@usr-share-oem.service was skipped because no trigger condition checks were met. Feb 9 09:48:55.105450 systemd[1]: addon-run@usr-share-oem.service was skipped because no trigger condition checks were met. Feb 9 09:48:55.107766 systemd[1]: Started amazon-ssm-agent.service. Feb 9 09:48:55.112320 systemd[1]: Starting containerd.service... Feb 9 09:48:55.116832 systemd[1]: Starting coreos-metadata-sshkeys@core.service... Feb 9 09:48:55.121819 systemd[1]: Starting dbus.service... Feb 9 09:48:55.127003 systemd[1]: Starting enable-oem-cloudinit.service... Feb 9 09:48:55.150215 systemd[1]: Starting extend-filesystems.service... Feb 9 09:48:55.151856 systemd[1]: flatcar-setup-environment.service was skipped because of an unmet condition check (ConditionPathExists=/usr/share/oem/bin/flatcar-setup-environment). Feb 9 09:48:55.155363 systemd[1]: Starting motdgen.service... Feb 9 09:48:55.161643 jq[1643]: false Feb 9 09:48:55.161846 systemd[1]: Started nvidia.service. Feb 9 09:48:55.166030 systemd[1]: Starting prepare-cni-plugins.service... Feb 9 09:48:55.171518 systemd[1]: Starting prepare-critools.service... Feb 9 09:48:55.175420 systemd[1]: Starting ssh-key-proc-cmdline.service... Feb 9 09:48:55.180573 systemd[1]: Starting sshd-keygen.service... Feb 9 09:48:55.191471 systemd[1]: Starting systemd-logind.service... Feb 9 09:48:55.193310 systemd[1]: systemd-pcrphase.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/StubPcrKernelImage-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Feb 9 09:48:55.193439 systemd[1]: tcsd.service was skipped because of an unmet condition check (ConditionPathExists=/dev/tpm0). Feb 9 09:48:55.202473 systemd[1]: cgroup compatibility translation between legacy and unified hierarchy settings activated. See cgroup-compat debug messages for details. Feb 9 09:48:55.204990 systemd[1]: Starting update-engine.service... Feb 9 09:48:55.221573 systemd[1]: Starting update-ssh-keys-after-ignition.service... Feb 9 09:48:55.233229 systemd[1]: enable-oem-cloudinit.service: Skipped due to 'exec-condition'. Feb 9 09:48:55.233586 systemd[1]: Condition check resulted in enable-oem-cloudinit.service being skipped. Feb 9 09:48:55.282750 jq[1657]: true Feb 9 09:48:55.314403 systemd[1]: ssh-key-proc-cmdline.service: Deactivated successfully. Feb 9 09:48:55.314799 systemd[1]: Finished ssh-key-proc-cmdline.service. Feb 9 09:48:55.353588 tar[1660]: ./ Feb 9 09:48:55.353588 tar[1660]: ./loopback Feb 9 09:48:55.355743 tar[1662]: crictl Feb 9 09:48:55.370032 jq[1668]: true Feb 9 09:48:55.405084 dbus-daemon[1642]: [system] SELinux support is enabled Feb 9 09:48:55.411196 extend-filesystems[1644]: Found nvme0n1 Feb 9 09:48:55.413488 extend-filesystems[1644]: Found nvme0n1p1 Feb 9 09:48:55.415323 extend-filesystems[1644]: Found nvme0n1p2 Feb 9 09:48:55.417001 extend-filesystems[1644]: Found nvme0n1p3 Feb 9 09:48:55.418647 extend-filesystems[1644]: Found usr Feb 9 09:48:55.420444 extend-filesystems[1644]: Found nvme0n1p4 Feb 9 09:48:55.441270 extend-filesystems[1644]: Found nvme0n1p6 Feb 9 09:48:55.443443 extend-filesystems[1644]: Found nvme0n1p7 Feb 9 09:48:55.445399 extend-filesystems[1644]: Found nvme0n1p9 Feb 9 09:48:55.448241 systemd[1]: Started dbus.service. Feb 9 09:48:55.455609 systemd[1]: system-cloudinit@usr-share-oem-cloud\x2dconfig.yml.service was skipped because of an unmet condition check (ConditionFileNotEmpty=/usr/share/oem/cloud-config.yml). Feb 9 09:48:55.455660 systemd[1]: Reached target system-config.target. Feb 9 09:48:55.458664 extend-filesystems[1644]: Checking size of /dev/nvme0n1p9 Feb 9 09:48:55.460388 systemd[1]: user-cloudinit-proc-cmdline.service was skipped because of an unmet condition check (ConditionKernelCommandLine=cloud-config-url). Feb 9 09:48:55.460425 systemd[1]: Reached target user-config.target. Feb 9 09:48:55.490797 systemd[1]: motdgen.service: Deactivated successfully. Feb 9 09:48:55.491192 systemd[1]: Finished motdgen.service. Feb 9 09:48:55.507549 dbus-daemon[1642]: [system] Activating via systemd: service name='org.freedesktop.hostname1' unit='dbus-org.freedesktop.hostname1.service' requested by ':1.1' (uid=244 pid=1460 comm="/usr/lib/systemd/systemd-networkd" label="system_u:system_r:kernel_t:s0") Feb 9 09:48:55.513815 systemd[1]: Starting systemd-hostnamed.service... Feb 9 09:48:55.551939 amazon-ssm-agent[1639]: 2024/02/09 09:48:55 Failed to load instance info from vault. RegistrationKey does not exist. Feb 9 09:48:55.564221 update_engine[1655]: I0209 09:48:55.562359 1655 main.cc:92] Flatcar Update Engine starting Feb 9 09:48:55.567503 bash[1707]: Updated "/home/core/.ssh/authorized_keys" Feb 9 09:48:55.568326 extend-filesystems[1644]: Resized partition /dev/nvme0n1p9 Feb 9 09:48:55.570151 systemd[1]: Finished update-ssh-keys-after-ignition.service. Feb 9 09:48:55.575032 systemd[1]: Started update-engine.service. Feb 9 09:48:55.576871 update_engine[1655]: I0209 09:48:55.576834 1655 update_check_scheduler.cc:74] Next update check in 10m0s Feb 9 09:48:55.579667 systemd[1]: Started locksmithd.service. Feb 9 09:48:55.589194 extend-filesystems[1708]: resize2fs 1.46.5 (30-Dec-2021) Feb 9 09:48:55.614096 amazon-ssm-agent[1639]: Initializing new seelog logger Feb 9 09:48:55.628452 amazon-ssm-agent[1639]: New Seelog Logger Creation Complete Feb 9 09:48:55.631166 kernel: EXT4-fs (nvme0n1p9): resizing filesystem from 553472 to 1489915 blocks Feb 9 09:48:55.632810 amazon-ssm-agent[1639]: 2024/02/09 09:48:55 Found config file at /etc/amazon/ssm/amazon-ssm-agent.json. Feb 9 09:48:55.632973 amazon-ssm-agent[1639]: Applying config override from /etc/amazon/ssm/amazon-ssm-agent.json. Feb 9 09:48:55.634534 amazon-ssm-agent[1639]: 2024/02/09 09:48:55 processing appconfig overrides Feb 9 09:48:55.647240 env[1673]: time="2024-02-09T09:48:55.647085601Z" level=info msg="starting containerd" revision=92b3a9d6f1b3bcc6dc74875cfdea653fe39f09c2 version=1.6.16 Feb 9 09:48:55.683182 kernel: EXT4-fs (nvme0n1p9): resized filesystem to 1489915 Feb 9 09:48:55.714471 extend-filesystems[1708]: Filesystem at /dev/nvme0n1p9 is mounted on /; on-line resizing required Feb 9 09:48:55.714471 extend-filesystems[1708]: old_desc_blocks = 1, new_desc_blocks = 1 Feb 9 09:48:55.714471 extend-filesystems[1708]: The filesystem on /dev/nvme0n1p9 is now 1489915 (4k) blocks long. Feb 9 09:48:55.722481 extend-filesystems[1644]: Resized filesystem in /dev/nvme0n1p9 Feb 9 09:48:55.723771 systemd[1]: extend-filesystems.service: Deactivated successfully. Feb 9 09:48:55.724111 systemd[1]: Finished extend-filesystems.service. Feb 9 09:48:55.791166 tar[1660]: ./bandwidth Feb 9 09:48:55.849376 systemd[1]: nvidia.service: Deactivated successfully. Feb 9 09:48:55.853481 systemd-logind[1652]: Watching system buttons on /dev/input/event0 (Power Button) Feb 9 09:48:55.864210 systemd-logind[1652]: New seat seat0. Feb 9 09:48:55.871737 systemd[1]: Started systemd-logind.service. Feb 9 09:48:55.877346 env[1673]: time="2024-02-09T09:48:55.877270490Z" level=info msg="loading plugin \"io.containerd.content.v1.content\"..." type=io.containerd.content.v1 Feb 9 09:48:55.877581 env[1673]: time="2024-02-09T09:48:55.877534694Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.aufs\"..." type=io.containerd.snapshotter.v1 Feb 9 09:48:55.892587 env[1673]: time="2024-02-09T09:48:55.892452446Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.aufs\"..." error="aufs is not supported (modprobe aufs failed: exit status 1 \"modprobe: FATAL: Module aufs not found in directory /lib/modules/5.15.148-flatcar\\n\"): skip plugin" type=io.containerd.snapshotter.v1 Feb 9 09:48:55.892587 env[1673]: time="2024-02-09T09:48:55.892578458Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.btrfs\"..." type=io.containerd.snapshotter.v1 Feb 9 09:48:55.893032 env[1673]: time="2024-02-09T09:48:55.892981886Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.btrfs\"..." error="path /var/lib/containerd/io.containerd.snapshotter.v1.btrfs (ext4) must be a btrfs filesystem to be used with the btrfs snapshotter: skip plugin" type=io.containerd.snapshotter.v1 Feb 9 09:48:55.893104 env[1673]: time="2024-02-09T09:48:55.893030558Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.devmapper\"..." type=io.containerd.snapshotter.v1 Feb 9 09:48:55.893104 env[1673]: time="2024-02-09T09:48:55.893065238Z" level=warning msg="failed to load plugin io.containerd.snapshotter.v1.devmapper" error="devmapper not configured" Feb 9 09:48:55.893104 env[1673]: time="2024-02-09T09:48:55.893092022Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.native\"..." type=io.containerd.snapshotter.v1 Feb 9 09:48:55.893322 env[1673]: time="2024-02-09T09:48:55.893280410Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.overlayfs\"..." type=io.containerd.snapshotter.v1 Feb 9 09:48:55.893787 env[1673]: time="2024-02-09T09:48:55.893743958Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.zfs\"..." type=io.containerd.snapshotter.v1 Feb 9 09:48:55.898713 env[1673]: time="2024-02-09T09:48:55.898633274Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.zfs\"..." error="path /var/lib/containerd/io.containerd.snapshotter.v1.zfs must be a zfs filesystem to be used with the zfs snapshotter: skip plugin" type=io.containerd.snapshotter.v1 Feb 9 09:48:55.898713 env[1673]: time="2024-02-09T09:48:55.898701158Z" level=info msg="loading plugin \"io.containerd.metadata.v1.bolt\"..." type=io.containerd.metadata.v1 Feb 9 09:48:55.898911 env[1673]: time="2024-02-09T09:48:55.898874234Z" level=warning msg="could not use snapshotter devmapper in metadata plugin" error="devmapper not configured" Feb 9 09:48:55.898977 env[1673]: time="2024-02-09T09:48:55.898905566Z" level=info msg="metadata content store policy set" policy=shared Feb 9 09:48:55.908218 env[1673]: time="2024-02-09T09:48:55.908149730Z" level=info msg="loading plugin \"io.containerd.differ.v1.walking\"..." type=io.containerd.differ.v1 Feb 9 09:48:55.908374 env[1673]: time="2024-02-09T09:48:55.908225426Z" level=info msg="loading plugin \"io.containerd.event.v1.exchange\"..." type=io.containerd.event.v1 Feb 9 09:48:55.908374 env[1673]: time="2024-02-09T09:48:55.908259434Z" level=info msg="loading plugin \"io.containerd.gc.v1.scheduler\"..." type=io.containerd.gc.v1 Feb 9 09:48:55.908374 env[1673]: time="2024-02-09T09:48:55.908344130Z" level=info msg="loading plugin \"io.containerd.service.v1.introspection-service\"..." type=io.containerd.service.v1 Feb 9 09:48:55.908526 env[1673]: time="2024-02-09T09:48:55.908473190Z" level=info msg="loading plugin \"io.containerd.service.v1.containers-service\"..." type=io.containerd.service.v1 Feb 9 09:48:55.908526 env[1673]: time="2024-02-09T09:48:55.908514938Z" level=info msg="loading plugin \"io.containerd.service.v1.content-service\"..." type=io.containerd.service.v1 Feb 9 09:48:55.908637 env[1673]: time="2024-02-09T09:48:55.908561522Z" level=info msg="loading plugin \"io.containerd.service.v1.diff-service\"..." type=io.containerd.service.v1 Feb 9 09:48:55.909189 env[1673]: time="2024-02-09T09:48:55.909115622Z" level=info msg="loading plugin \"io.containerd.service.v1.images-service\"..." type=io.containerd.service.v1 Feb 9 09:48:55.909313 env[1673]: time="2024-02-09T09:48:55.909195146Z" level=info msg="loading plugin \"io.containerd.service.v1.leases-service\"..." type=io.containerd.service.v1 Feb 9 09:48:55.909313 env[1673]: time="2024-02-09T09:48:55.909230450Z" level=info msg="loading plugin \"io.containerd.service.v1.namespaces-service\"..." type=io.containerd.service.v1 Feb 9 09:48:55.909313 env[1673]: time="2024-02-09T09:48:55.909261110Z" level=info msg="loading plugin \"io.containerd.service.v1.snapshots-service\"..." type=io.containerd.service.v1 Feb 9 09:48:55.909313 env[1673]: time="2024-02-09T09:48:55.909291794Z" level=info msg="loading plugin \"io.containerd.runtime.v1.linux\"..." type=io.containerd.runtime.v1 Feb 9 09:48:55.909555 env[1673]: time="2024-02-09T09:48:55.909512426Z" level=info msg="loading plugin \"io.containerd.runtime.v2.task\"..." type=io.containerd.runtime.v2 Feb 9 09:48:55.909730 env[1673]: time="2024-02-09T09:48:55.909691262Z" level=info msg="loading plugin \"io.containerd.monitor.v1.cgroups\"..." type=io.containerd.monitor.v1 Feb 9 09:48:55.910504 env[1673]: time="2024-02-09T09:48:55.910376858Z" level=info msg="loading plugin \"io.containerd.service.v1.tasks-service\"..." type=io.containerd.service.v1 Feb 9 09:48:55.910504 env[1673]: time="2024-02-09T09:48:55.910447142Z" level=info msg="loading plugin \"io.containerd.grpc.v1.introspection\"..." type=io.containerd.grpc.v1 Feb 9 09:48:55.910504 env[1673]: time="2024-02-09T09:48:55.910481438Z" level=info msg="loading plugin \"io.containerd.internal.v1.restart\"..." type=io.containerd.internal.v1 Feb 9 09:48:55.910728 env[1673]: time="2024-02-09T09:48:55.910601426Z" level=info msg="loading plugin \"io.containerd.grpc.v1.containers\"..." type=io.containerd.grpc.v1 Feb 9 09:48:55.910783 env[1673]: time="2024-02-09T09:48:55.910738406Z" level=info msg="loading plugin \"io.containerd.grpc.v1.content\"..." type=io.containerd.grpc.v1 Feb 9 09:48:55.910837 env[1673]: time="2024-02-09T09:48:55.910776866Z" level=info msg="loading plugin \"io.containerd.grpc.v1.diff\"..." type=io.containerd.grpc.v1 Feb 9 09:48:55.910837 env[1673]: time="2024-02-09T09:48:55.910806614Z" level=info msg="loading plugin \"io.containerd.grpc.v1.events\"..." type=io.containerd.grpc.v1 Feb 9 09:48:55.911012 env[1673]: time="2024-02-09T09:48:55.910836446Z" level=info msg="loading plugin \"io.containerd.grpc.v1.healthcheck\"..." type=io.containerd.grpc.v1 Feb 9 09:48:55.911012 env[1673]: time="2024-02-09T09:48:55.910866482Z" level=info msg="loading plugin \"io.containerd.grpc.v1.images\"..." type=io.containerd.grpc.v1 Feb 9 09:48:55.911012 env[1673]: time="2024-02-09T09:48:55.910895306Z" level=info msg="loading plugin \"io.containerd.grpc.v1.leases\"..." type=io.containerd.grpc.v1 Feb 9 09:48:55.911012 env[1673]: time="2024-02-09T09:48:55.910925402Z" level=info msg="loading plugin \"io.containerd.grpc.v1.namespaces\"..." type=io.containerd.grpc.v1 Feb 9 09:48:55.911012 env[1673]: time="2024-02-09T09:48:55.910959494Z" level=info msg="loading plugin \"io.containerd.internal.v1.opt\"..." type=io.containerd.internal.v1 Feb 9 09:48:55.911342 env[1673]: time="2024-02-09T09:48:55.911306954Z" level=info msg="loading plugin \"io.containerd.grpc.v1.snapshots\"..." type=io.containerd.grpc.v1 Feb 9 09:48:55.911400 env[1673]: time="2024-02-09T09:48:55.911345318Z" level=info msg="loading plugin \"io.containerd.grpc.v1.tasks\"..." type=io.containerd.grpc.v1 Feb 9 09:48:55.911400 env[1673]: time="2024-02-09T09:48:55.911376338Z" level=info msg="loading plugin \"io.containerd.grpc.v1.version\"..." type=io.containerd.grpc.v1 Feb 9 09:48:55.911527 env[1673]: time="2024-02-09T09:48:55.911405318Z" level=info msg="loading plugin \"io.containerd.tracing.processor.v1.otlp\"..." type=io.containerd.tracing.processor.v1 Feb 9 09:48:55.911527 env[1673]: time="2024-02-09T09:48:55.911436782Z" level=info msg="skip loading plugin \"io.containerd.tracing.processor.v1.otlp\"..." error="no OpenTelemetry endpoint: skip plugin" type=io.containerd.tracing.processor.v1 Feb 9 09:48:55.911527 env[1673]: time="2024-02-09T09:48:55.911467046Z" level=info msg="loading plugin \"io.containerd.internal.v1.tracing\"..." type=io.containerd.internal.v1 Feb 9 09:48:55.911527 env[1673]: time="2024-02-09T09:48:55.911503334Z" level=error msg="failed to initialize a tracing processor \"otlp\"" error="no OpenTelemetry endpoint: skip plugin" Feb 9 09:48:55.911721 env[1673]: time="2024-02-09T09:48:55.911568518Z" level=info msg="loading plugin \"io.containerd.grpc.v1.cri\"..." type=io.containerd.grpc.v1 Feb 9 09:48:55.912011 env[1673]: time="2024-02-09T09:48:55.911903174Z" level=info msg="Start cri plugin with config {PluginConfig:{ContainerdConfig:{Snapshotter:overlayfs DefaultRuntimeName:runc DefaultRuntime:{Type: Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0} UntrustedWorkloadRuntime:{Type: Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0} Runtimes:map[runc:{Type:io.containerd.runc.v2 Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[SystemdCgroup:true] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0}] NoPivot:false DisableSnapshotAnnotations:true DiscardUnpackedLayers:false IgnoreRdtNotEnabledErrors:false} CniConfig:{NetworkPluginBinDir:/opt/cni/bin NetworkPluginConfDir:/etc/cni/net.d NetworkPluginMaxConfNum:1 NetworkPluginConfTemplate: IPPreference:} Registry:{ConfigPath: Mirrors:map[] Configs:map[] Auths:map[] Headers:map[]} ImageDecryption:{KeyModel:node} DisableTCPService:true StreamServerAddress:127.0.0.1 StreamServerPort:0 StreamIdleTimeout:4h0m0s EnableSelinux:true SelinuxCategoryRange:1024 SandboxImage:registry.k8s.io/pause:3.6 StatsCollectPeriod:10 SystemdCgroup:false EnableTLSStreaming:false X509KeyPairStreaming:{TLSCertFile: TLSKeyFile:} MaxContainerLogLineSize:16384 DisableCgroup:false DisableApparmor:false RestrictOOMScoreAdj:false MaxConcurrentDownloads:3 DisableProcMount:false UnsetSeccompProfile: TolerateMissingHugetlbController:true DisableHugetlbController:true DeviceOwnershipFromSecurityContext:false IgnoreImageDefinedVolumes:false NetNSMountsUnderStateDir:false EnableUnprivilegedPorts:false EnableUnprivilegedICMP:false} ContainerdRootDir:/var/lib/containerd ContainerdEndpoint:/run/containerd/containerd.sock RootDir:/var/lib/containerd/io.containerd.grpc.v1.cri StateDir:/run/containerd/io.containerd.grpc.v1.cri}" Feb 9 09:48:55.913032 env[1673]: time="2024-02-09T09:48:55.912014342Z" level=info msg="Connect containerd service" Feb 9 09:48:55.913032 env[1673]: time="2024-02-09T09:48:55.912073286Z" level=info msg="Get image filesystem path \"/var/lib/containerd/io.containerd.snapshotter.v1.overlayfs\"" Feb 9 09:48:55.932473 env[1673]: time="2024-02-09T09:48:55.930562358Z" level=error msg="failed to load cni during init, please check CRI plugin status before setting up network for pods" error="cni config load failed: no network config found in /etc/cni/net.d: cni plugin not initialized: failed to load cni config" Feb 9 09:48:55.933294 env[1673]: time="2024-02-09T09:48:55.933236618Z" level=info msg=serving... address=/run/containerd/containerd.sock.ttrpc Feb 9 09:48:55.933400 env[1673]: time="2024-02-09T09:48:55.933354374Z" level=info msg=serving... address=/run/containerd/containerd.sock Feb 9 09:48:55.933560 systemd[1]: Started containerd.service. Feb 9 09:48:55.935090 env[1673]: time="2024-02-09T09:48:55.933935378Z" level=info msg="containerd successfully booted in 0.312407s" Feb 9 09:48:55.975672 env[1673]: time="2024-02-09T09:48:55.975590702Z" level=info msg="Start subscribing containerd event" Feb 9 09:48:55.975835 env[1673]: time="2024-02-09T09:48:55.975705086Z" level=info msg="Start recovering state" Feb 9 09:48:55.975894 env[1673]: time="2024-02-09T09:48:55.975849074Z" level=info msg="Start event monitor" Feb 9 09:48:55.975949 env[1673]: time="2024-02-09T09:48:55.975891518Z" level=info msg="Start snapshots syncer" Feb 9 09:48:55.975949 env[1673]: time="2024-02-09T09:48:55.975917270Z" level=info msg="Start cni network conf syncer for default" Feb 9 09:48:55.976046 env[1673]: time="2024-02-09T09:48:55.975946946Z" level=info msg="Start streaming server" Feb 9 09:48:56.046525 dbus-daemon[1642]: [system] Successfully activated service 'org.freedesktop.hostname1' Feb 9 09:48:56.046775 systemd[1]: Started systemd-hostnamed.service. Feb 9 09:48:56.049412 dbus-daemon[1642]: [system] Activating via systemd: service name='org.freedesktop.PolicyKit1' unit='polkit.service' requested by ':1.6' (uid=0 pid=1700 comm="/usr/lib/systemd/systemd-hostnamed" label="system_u:system_r:kernel_t:s0") Feb 9 09:48:56.054084 systemd[1]: Starting polkit.service... Feb 9 09:48:56.069289 tar[1660]: ./ptp Feb 9 09:48:56.102221 polkitd[1755]: Started polkitd version 121 Feb 9 09:48:56.139049 polkitd[1755]: Loading rules from directory /etc/polkit-1/rules.d Feb 9 09:48:56.146318 polkitd[1755]: Loading rules from directory /usr/share/polkit-1/rules.d Feb 9 09:48:56.153183 polkitd[1755]: Finished loading, compiling and executing 2 rules Feb 9 09:48:56.155442 dbus-daemon[1642]: [system] Successfully activated service 'org.freedesktop.PolicyKit1' Feb 9 09:48:56.155714 systemd[1]: Started polkit.service. Feb 9 09:48:56.158233 polkitd[1755]: Acquired the name org.freedesktop.PolicyKit1 on the system bus Feb 9 09:48:56.204984 systemd-hostnamed[1700]: Hostname set to (transient) Feb 9 09:48:56.205174 systemd-resolved[1605]: System hostname changed to 'ip-172-31-26-157'. Feb 9 09:48:56.268272 coreos-metadata[1641]: Feb 09 09:48:56.261 INFO Putting http://169.254.169.254/latest/api/token: Attempt #1 Feb 9 09:48:56.269100 coreos-metadata[1641]: Feb 09 09:48:56.268 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/public-keys: Attempt #1 Feb 9 09:48:56.270476 coreos-metadata[1641]: Feb 09 09:48:56.269 INFO Fetch successful Feb 9 09:48:56.271077 coreos-metadata[1641]: Feb 09 09:48:56.270 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/public-keys/0/openssh-key: Attempt #1 Feb 9 09:48:56.271402 coreos-metadata[1641]: Feb 09 09:48:56.271 INFO Fetch successful Feb 9 09:48:56.278642 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO Create new startup processor Feb 9 09:48:56.279411 unknown[1641]: wrote ssh authorized keys file for user: core Feb 9 09:48:56.293518 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [LongRunningPluginsManager] registered plugins: {} Feb 9 09:48:56.293664 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO Initializing bookkeeping folders Feb 9 09:48:56.293664 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO removing the completed state files Feb 9 09:48:56.293664 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO Initializing bookkeeping folders for long running plugins Feb 9 09:48:56.293664 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO Initializing replies folder for MDS reply requests that couldn't reach the service Feb 9 09:48:56.293875 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO Initializing healthcheck folders for long running plugins Feb 9 09:48:56.293875 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO Initializing locations for inventory plugin Feb 9 09:48:56.293875 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO Initializing default location for custom inventory Feb 9 09:48:56.293875 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO Initializing default location for file inventory Feb 9 09:48:56.293875 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO Initializing default location for role inventory Feb 9 09:48:56.293875 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO Init the cloudwatchlogs publisher Feb 9 09:48:56.294180 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [instanceID=i-00f8d8662dab0aee9] Successfully loaded platform independent plugin aws:runPowerShellScript Feb 9 09:48:56.294180 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [instanceID=i-00f8d8662dab0aee9] Successfully loaded platform independent plugin aws:configureDocker Feb 9 09:48:56.294180 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [instanceID=i-00f8d8662dab0aee9] Successfully loaded platform independent plugin aws:runDockerAction Feb 9 09:48:56.294180 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [instanceID=i-00f8d8662dab0aee9] Successfully loaded platform independent plugin aws:refreshAssociation Feb 9 09:48:56.294180 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [instanceID=i-00f8d8662dab0aee9] Successfully loaded platform independent plugin aws:configurePackage Feb 9 09:48:56.294180 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [instanceID=i-00f8d8662dab0aee9] Successfully loaded platform independent plugin aws:softwareInventory Feb 9 09:48:56.294502 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [instanceID=i-00f8d8662dab0aee9] Successfully loaded platform independent plugin aws:updateSsmAgent Feb 9 09:48:56.294502 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [instanceID=i-00f8d8662dab0aee9] Successfully loaded platform independent plugin aws:downloadContent Feb 9 09:48:56.294502 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [instanceID=i-00f8d8662dab0aee9] Successfully loaded platform independent plugin aws:runDocument Feb 9 09:48:56.294502 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [instanceID=i-00f8d8662dab0aee9] Successfully loaded platform dependent plugin aws:runShellScript Feb 9 09:48:56.294689 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO Starting Agent: amazon-ssm-agent - v2.3.1319.0 Feb 9 09:48:56.294689 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO OS: linux, Arch: arm64 Feb 9 09:48:56.298202 amazon-ssm-agent[1639]: datastore file /var/lib/amazon/ssm/i-00f8d8662dab0aee9/longrunningplugins/datastore/store doesn't exist - no long running plugins to execute Feb 9 09:48:56.303889 update-ssh-keys[1812]: Updated "/home/core/.ssh/authorized_keys" Feb 9 09:48:56.305198 systemd[1]: Finished coreos-metadata-sshkeys@core.service. Feb 9 09:48:56.344500 tar[1660]: ./vlan Feb 9 09:48:56.387962 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [MessageGatewayService] Starting session document processing engine... Feb 9 09:48:56.482897 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [MessageGatewayService] [EngineProcessor] Starting Feb 9 09:48:56.538974 tar[1660]: ./host-device Feb 9 09:48:56.577300 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [MessageGatewayService] SSM Agent is trying to setup control channel for Session Manager module. Feb 9 09:48:56.652400 tar[1660]: ./tuning Feb 9 09:48:56.671774 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [MessageGatewayService] Setting up websocket for controlchannel for instance: i-00f8d8662dab0aee9, requestId: 9baba78c-9751-4a46-b9c2-561ae44b2ca3 Feb 9 09:48:56.745175 tar[1660]: ./vrf Feb 9 09:48:56.766498 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [OfflineService] Starting document processing engine... Feb 9 09:48:56.841400 tar[1660]: ./sbr Feb 9 09:48:56.861419 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [OfflineService] [EngineProcessor] Starting Feb 9 09:48:56.941659 tar[1660]: ./tap Feb 9 09:48:56.956547 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [OfflineService] [EngineProcessor] Initial processing Feb 9 09:48:57.025400 tar[1660]: ./dhcp Feb 9 09:48:57.051857 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [OfflineService] Starting message polling Feb 9 09:48:57.147431 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [OfflineService] Starting send replies to MDS Feb 9 09:48:57.177377 systemd[1]: Finished prepare-critools.service. Feb 9 09:48:57.243110 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [LongRunningPluginsManager] starting long running plugin manager Feb 9 09:48:57.250600 tar[1660]: ./static Feb 9 09:48:57.297078 tar[1660]: ./firewall Feb 9 09:48:57.339004 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [LongRunningPluginsManager] there aren't any long running plugin to execute Feb 9 09:48:57.367007 tar[1660]: ./macvlan Feb 9 09:48:57.430394 tar[1660]: ./dummy Feb 9 09:48:57.435104 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [LongRunningPluginsManager] There are no long running plugins currently getting executed - skipping their healthcheck Feb 9 09:48:57.493308 tar[1660]: ./bridge Feb 9 09:48:57.531402 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [MessageGatewayService] listening reply. Feb 9 09:48:57.562040 tar[1660]: ./ipvlan Feb 9 09:48:57.624764 tar[1660]: ./portmap Feb 9 09:48:57.627880 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [MessagingDeliveryService] Starting document processing engine... Feb 9 09:48:57.684277 tar[1660]: ./host-local Feb 9 09:48:57.724573 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [MessagingDeliveryService] [EngineProcessor] Starting Feb 9 09:48:57.756970 systemd[1]: Finished prepare-cni-plugins.service. Feb 9 09:48:57.803750 locksmithd[1709]: locksmithd starting currentOperation="UPDATE_STATUS_IDLE" strategy="reboot" Feb 9 09:48:57.821452 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [MessagingDeliveryService] [EngineProcessor] Initial processing Feb 9 09:48:57.918555 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [MessagingDeliveryService] Starting message polling Feb 9 09:48:58.015839 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [MessagingDeliveryService] Starting send replies to MDS Feb 9 09:48:58.113225 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [instanceID=i-00f8d8662dab0aee9] Starting association polling Feb 9 09:48:58.210836 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [MessagingDeliveryService] [Association] [EngineProcessor] Starting Feb 9 09:48:58.308695 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [MessagingDeliveryService] [Association] Launching response handler Feb 9 09:48:58.406694 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [MessagingDeliveryService] [Association] [EngineProcessor] Initial processing Feb 9 09:48:58.504906 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [MessagingDeliveryService] [Association] Initializing association scheduling service Feb 9 09:48:58.603398 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [MessagingDeliveryService] [Association] Association scheduling service initialized Feb 9 09:48:58.701998 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [StartupProcessor] Executing startup processor tasks Feb 9 09:48:58.800819 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [StartupProcessor] Write to serial port: Amazon SSM Agent v2.3.1319.0 is running Feb 9 09:48:58.899932 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [StartupProcessor] Write to serial port: OsProductName: Flatcar Container Linux by Kinvolk Feb 9 09:48:58.998894 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [StartupProcessor] Write to serial port: OsVersion: 3510.3.2 Feb 9 09:48:59.098110 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [HealthCheck] HealthCheck reporting agent health. Feb 9 09:48:59.197543 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [MessageGatewayService] Opening websocket connection to: wss://ssmmessages.us-west-2.amazonaws.com/v1/control-channel/i-00f8d8662dab0aee9?role=subscribe&stream=input Feb 9 09:48:59.297159 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [MessageGatewayService] Successfully opened websocket connection to: wss://ssmmessages.us-west-2.amazonaws.com/v1/control-channel/i-00f8d8662dab0aee9?role=subscribe&stream=input Feb 9 09:48:59.396934 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [MessageGatewayService] Starting receiving message from control channel Feb 9 09:48:59.496955 amazon-ssm-agent[1639]: 2024-02-09 09:48:56 INFO [MessageGatewayService] [EngineProcessor] Initial processing Feb 9 09:48:59.597144 amazon-ssm-agent[1639]: 2024-02-09 09:48:58 INFO [MessagingDeliveryService] [Association] No associations on boot. Requerying for associations after 30 seconds. Feb 9 09:49:01.657836 sshd_keygen[1678]: ssh-keygen: generating new host keys: RSA ECDSA ED25519 Feb 9 09:49:01.695766 systemd[1]: Finished sshd-keygen.service. Feb 9 09:49:01.700352 systemd[1]: Starting issuegen.service... Feb 9 09:49:01.710771 systemd[1]: issuegen.service: Deactivated successfully. Feb 9 09:49:01.711167 systemd[1]: Finished issuegen.service. Feb 9 09:49:01.715748 systemd[1]: Starting systemd-user-sessions.service... Feb 9 09:49:01.729426 systemd[1]: Finished systemd-user-sessions.service. Feb 9 09:49:01.734250 systemd[1]: Started getty@tty1.service. Feb 9 09:49:01.738630 systemd[1]: Started serial-getty@ttyS0.service. Feb 9 09:49:01.740779 systemd[1]: Reached target getty.target. Feb 9 09:49:01.742499 systemd[1]: Reached target multi-user.target. Feb 9 09:49:01.756560 systemd[1]: Starting systemd-update-utmp-runlevel.service... Feb 9 09:49:01.771475 systemd[1]: systemd-update-utmp-runlevel.service: Deactivated successfully. Feb 9 09:49:01.771872 systemd[1]: Finished systemd-update-utmp-runlevel.service. Feb 9 09:49:01.775501 systemd[1]: Startup finished in 1.130s (kernel) + 10.457s (initrd) + 14.146s (userspace) = 25.735s. Feb 9 09:49:04.917215 systemd[1]: Created slice system-sshd.slice. Feb 9 09:49:04.919579 systemd[1]: Started sshd@0-172.31.26.157:22-139.178.89.65:35116.service. Feb 9 09:49:05.108077 sshd[1853]: Accepted publickey for core from 139.178.89.65 port 35116 ssh2: RSA SHA256:1++YWC0h0fEpfkRPeemtMi9ARVJF0YKl/HjB0qv5R1M Feb 9 09:49:05.112119 sshd[1853]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 09:49:05.129449 systemd[1]: Created slice user-500.slice. Feb 9 09:49:05.131782 systemd[1]: Starting user-runtime-dir@500.service... Feb 9 09:49:05.139297 systemd-logind[1652]: New session 1 of user core. Feb 9 09:49:05.150827 systemd[1]: Finished user-runtime-dir@500.service. Feb 9 09:49:05.155331 systemd[1]: Starting user@500.service... Feb 9 09:49:05.161668 (systemd)[1856]: pam_unix(systemd-user:session): session opened for user core(uid=500) by (uid=0) Feb 9 09:49:05.334748 systemd[1856]: Queued start job for default target default.target. Feb 9 09:49:05.336336 systemd[1856]: Reached target paths.target. Feb 9 09:49:05.336530 systemd[1856]: Reached target sockets.target. Feb 9 09:49:05.336931 systemd[1856]: Reached target timers.target. Feb 9 09:49:05.337118 systemd[1856]: Reached target basic.target. Feb 9 09:49:05.337366 systemd[1856]: Reached target default.target. Feb 9 09:49:05.337455 systemd[1]: Started user@500.service. Feb 9 09:49:05.337654 systemd[1856]: Startup finished in 164ms. Feb 9 09:49:05.341695 systemd[1]: Started session-1.scope. Feb 9 09:49:05.489752 systemd[1]: Started sshd@1-172.31.26.157:22-139.178.89.65:35118.service. Feb 9 09:49:05.675546 sshd[1865]: Accepted publickey for core from 139.178.89.65 port 35118 ssh2: RSA SHA256:1++YWC0h0fEpfkRPeemtMi9ARVJF0YKl/HjB0qv5R1M Feb 9 09:49:05.677883 sshd[1865]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 09:49:05.686317 systemd-logind[1652]: New session 2 of user core. Feb 9 09:49:05.687260 systemd[1]: Started session-2.scope. Feb 9 09:49:05.820095 sshd[1865]: pam_unix(sshd:session): session closed for user core Feb 9 09:49:05.825445 systemd-logind[1652]: Session 2 logged out. Waiting for processes to exit. Feb 9 09:49:05.826015 systemd[1]: sshd@1-172.31.26.157:22-139.178.89.65:35118.service: Deactivated successfully. Feb 9 09:49:05.827312 systemd[1]: session-2.scope: Deactivated successfully. Feb 9 09:49:05.828830 systemd-logind[1652]: Removed session 2. Feb 9 09:49:05.847362 systemd[1]: Started sshd@2-172.31.26.157:22-139.178.89.65:35128.service. Feb 9 09:49:06.018799 sshd[1871]: Accepted publickey for core from 139.178.89.65 port 35128 ssh2: RSA SHA256:1++YWC0h0fEpfkRPeemtMi9ARVJF0YKl/HjB0qv5R1M Feb 9 09:49:06.021788 sshd[1871]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 09:49:06.030104 systemd[1]: Started session-3.scope. Feb 9 09:49:06.031114 systemd-logind[1652]: New session 3 of user core. Feb 9 09:49:06.152334 sshd[1871]: pam_unix(sshd:session): session closed for user core Feb 9 09:49:06.157429 systemd-logind[1652]: Session 3 logged out. Waiting for processes to exit. Feb 9 09:49:06.157585 systemd[1]: session-3.scope: Deactivated successfully. Feb 9 09:49:06.158695 systemd[1]: sshd@2-172.31.26.157:22-139.178.89.65:35128.service: Deactivated successfully. Feb 9 09:49:06.160921 systemd-logind[1652]: Removed session 3. Feb 9 09:49:06.179543 systemd[1]: Started sshd@3-172.31.26.157:22-139.178.89.65:35130.service. Feb 9 09:49:06.349771 sshd[1877]: Accepted publickey for core from 139.178.89.65 port 35130 ssh2: RSA SHA256:1++YWC0h0fEpfkRPeemtMi9ARVJF0YKl/HjB0qv5R1M Feb 9 09:49:06.352578 sshd[1877]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 09:49:06.362107 systemd[1]: Started session-4.scope. Feb 9 09:49:06.362869 systemd-logind[1652]: New session 4 of user core. Feb 9 09:49:06.490067 sshd[1877]: pam_unix(sshd:session): session closed for user core Feb 9 09:49:06.495348 systemd-logind[1652]: Session 4 logged out. Waiting for processes to exit. Feb 9 09:49:06.495901 systemd[1]: sshd@3-172.31.26.157:22-139.178.89.65:35130.service: Deactivated successfully. Feb 9 09:49:06.497154 systemd[1]: session-4.scope: Deactivated successfully. Feb 9 09:49:06.498557 systemd-logind[1652]: Removed session 4. Feb 9 09:49:06.516866 systemd[1]: Started sshd@4-172.31.26.157:22-139.178.89.65:35140.service. Feb 9 09:49:06.684603 sshd[1883]: Accepted publickey for core from 139.178.89.65 port 35140 ssh2: RSA SHA256:1++YWC0h0fEpfkRPeemtMi9ARVJF0YKl/HjB0qv5R1M Feb 9 09:49:06.687576 sshd[1883]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 09:49:06.694842 systemd-logind[1652]: New session 5 of user core. Feb 9 09:49:06.695755 systemd[1]: Started session-5.scope. Feb 9 09:49:06.808511 sudo[1886]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/sbin/setenforce 1 Feb 9 09:49:06.809666 sudo[1886]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Feb 9 09:49:06.821424 dbus-daemon[1642]: avc: received setenforce notice (enforcing=1) Feb 9 09:49:06.824113 sudo[1886]: pam_unix(sudo:session): session closed for user root Feb 9 09:49:06.847594 sshd[1883]: pam_unix(sshd:session): session closed for user core Feb 9 09:49:06.852885 systemd-logind[1652]: Session 5 logged out. Waiting for processes to exit. Feb 9 09:49:06.853592 systemd[1]: sshd@4-172.31.26.157:22-139.178.89.65:35140.service: Deactivated successfully. Feb 9 09:49:06.854823 systemd[1]: session-5.scope: Deactivated successfully. Feb 9 09:49:06.856339 systemd-logind[1652]: Removed session 5. Feb 9 09:49:06.877124 systemd[1]: Started sshd@5-172.31.26.157:22-139.178.89.65:35156.service. Feb 9 09:49:07.047477 sshd[1890]: Accepted publickey for core from 139.178.89.65 port 35156 ssh2: RSA SHA256:1++YWC0h0fEpfkRPeemtMi9ARVJF0YKl/HjB0qv5R1M Feb 9 09:49:07.050478 sshd[1890]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 09:49:07.059205 systemd[1]: Started session-6.scope. Feb 9 09:49:07.060277 systemd-logind[1652]: New session 6 of user core. Feb 9 09:49:07.166415 sudo[1894]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/bin/rm -rf /etc/audit/rules.d/80-selinux.rules /etc/audit/rules.d/99-default.rules Feb 9 09:49:07.167444 sudo[1894]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Feb 9 09:49:07.172762 sudo[1894]: pam_unix(sudo:session): session closed for user root Feb 9 09:49:07.181773 sudo[1893]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/bin/systemctl restart audit-rules Feb 9 09:49:07.182753 sudo[1893]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Feb 9 09:49:07.199373 systemd[1]: Stopping audit-rules.service... Feb 9 09:49:07.200000 audit: CONFIG_CHANGE auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=remove_rule key=(null) list=5 res=1 Feb 9 09:49:07.201937 auditctl[1897]: No rules Feb 9 09:49:07.203331 kernel: kauditd_printk_skb: 72 callbacks suppressed Feb 9 09:49:07.203386 kernel: audit: type=1305 audit(1707472147.200:166): auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=remove_rule key=(null) list=5 res=1 Feb 9 09:49:07.203951 systemd[1]: audit-rules.service: Deactivated successfully. Feb 9 09:49:07.204316 systemd[1]: Stopped audit-rules.service. Feb 9 09:49:07.200000 audit[1897]: SYSCALL arch=c00000b7 syscall=206 success=yes exit=1056 a0=3 a1=ffffdeb410b0 a2=420 a3=0 items=0 ppid=1 pid=1897 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:07.207890 systemd[1]: Starting audit-rules.service... Feb 9 09:49:07.220128 kernel: audit: type=1300 audit(1707472147.200:166): arch=c00000b7 syscall=206 success=yes exit=1056 a0=3 a1=ffffdeb410b0 a2=420 a3=0 items=0 ppid=1 pid=1897 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:07.200000 audit: PROCTITLE proctitle=2F7362696E2F617564697463746C002D44 Feb 9 09:49:07.227226 kernel: audit: type=1327 audit(1707472147.200:166): proctitle=2F7362696E2F617564697463746C002D44 Feb 9 09:49:07.203000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:49:07.235659 kernel: audit: type=1131 audit(1707472147.203:167): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:49:07.249968 augenrules[1914]: No rules Feb 9 09:49:07.251680 systemd[1]: Finished audit-rules.service. Feb 9 09:49:07.250000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:49:07.253562 sudo[1893]: pam_unix(sudo:session): session closed for user root Feb 9 09:49:07.252000 audit[1893]: USER_END pid=1893 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 09:49:07.271326 kernel: audit: type=1130 audit(1707472147.250:168): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:49:07.271405 kernel: audit: type=1106 audit(1707472147.252:169): pid=1893 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 09:49:07.252000 audit[1893]: CRED_DISP pid=1893 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 09:49:07.279537 kernel: audit: type=1104 audit(1707472147.252:170): pid=1893 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 09:49:07.283577 sshd[1890]: pam_unix(sshd:session): session closed for user core Feb 9 09:49:07.284000 audit[1890]: USER_END pid=1890 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Feb 9 09:49:07.297174 systemd[1]: sshd@5-172.31.26.157:22-139.178.89.65:35156.service: Deactivated successfully. Feb 9 09:49:07.284000 audit[1890]: CRED_DISP pid=1890 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Feb 9 09:49:07.298375 systemd[1]: session-6.scope: Deactivated successfully. Feb 9 09:49:07.306277 kernel: audit: type=1106 audit(1707472147.284:171): pid=1890 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Feb 9 09:49:07.306352 kernel: audit: type=1104 audit(1707472147.284:172): pid=1890 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Feb 9 09:49:07.296000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@5-172.31.26.157:22-139.178.89.65:35156 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:49:07.308676 kernel: audit: type=1131 audit(1707472147.296:173): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@5-172.31.26.157:22-139.178.89.65:35156 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:49:07.308060 systemd-logind[1652]: Session 6 logged out. Waiting for processes to exit. Feb 9 09:49:07.315107 systemd[1]: Started sshd@6-172.31.26.157:22-139.178.89.65:35170.service. Feb 9 09:49:07.317000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@6-172.31.26.157:22-139.178.89.65:35170 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:49:07.320340 systemd-logind[1652]: Removed session 6. Feb 9 09:49:07.489000 audit[1920]: USER_ACCT pid=1920 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_access,pam_unix,pam_faillock,pam_permit acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Feb 9 09:49:07.491306 sshd[1920]: Accepted publickey for core from 139.178.89.65 port 35170 ssh2: RSA SHA256:1++YWC0h0fEpfkRPeemtMi9ARVJF0YKl/HjB0qv5R1M Feb 9 09:49:07.491000 audit[1920]: CRED_ACQ pid=1920 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Feb 9 09:49:07.492000 audit[1920]: SYSCALL arch=c00000b7 syscall=64 success=yes exit=3 a0=5 a1=ffffc3228000 a2=3 a3=1 items=0 ppid=1 pid=1920 auid=500 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=7 comm="sshd" exe="/usr/sbin/sshd" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:07.492000 audit: PROCTITLE proctitle=737368643A20636F7265205B707269765D Feb 9 09:49:07.494123 sshd[1920]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 09:49:07.501229 systemd-logind[1652]: New session 7 of user core. Feb 9 09:49:07.502631 systemd[1]: Started session-7.scope. Feb 9 09:49:07.510000 audit[1920]: USER_START pid=1920 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Feb 9 09:49:07.512000 audit[1922]: CRED_ACQ pid=1922 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Feb 9 09:49:07.606000 audit[1923]: USER_ACCT pid=1923 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_unix,pam_faillock,pam_permit acct="core" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 09:49:07.608557 sudo[1923]: core : PWD=/home/core ; USER=root ; COMMAND=/home/core/install.sh Feb 9 09:49:07.608000 audit[1923]: CRED_REFR pid=1923 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 09:49:07.609755 sudo[1923]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Feb 9 09:49:07.611000 audit[1923]: USER_START pid=1923 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 09:49:08.250090 systemd[1]: Reloading. Feb 9 09:49:08.346724 /usr/lib/systemd/system-generators/torcx-generator[1953]: time="2024-02-09T09:49:08Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.2 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.2 /var/lib/torcx/store]" Feb 9 09:49:08.346788 /usr/lib/systemd/system-generators/torcx-generator[1953]: time="2024-02-09T09:49:08Z" level=info msg="torcx already run" Feb 9 09:49:08.535946 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Feb 9 09:49:08.536231 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Feb 9 09:49:08.579105 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Feb 9 09:49:08.723000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.723000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.723000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.723000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.723000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.723000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.723000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.724000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.724000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.724000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.724000 audit: BPF prog-id=37 op=LOAD Feb 9 09:49:08.724000 audit: BPF prog-id=27 op=UNLOAD Feb 9 09:49:08.726000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.726000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.726000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.727000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.727000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.727000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.727000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.727000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.727000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.727000 audit: BPF prog-id=38 op=LOAD Feb 9 09:49:08.727000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.727000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.727000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.728000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.728000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.728000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.728000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.728000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.728000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.728000 audit: BPF prog-id=39 op=LOAD Feb 9 09:49:08.728000 audit: BPF prog-id=21 op=UNLOAD Feb 9 09:49:08.729000 audit: BPF prog-id=22 op=UNLOAD Feb 9 09:49:08.734000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.734000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.734000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.734000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.734000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.734000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.734000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.734000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.734000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.735000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.735000 audit: BPF prog-id=40 op=LOAD Feb 9 09:49:08.735000 audit: BPF prog-id=29 op=UNLOAD Feb 9 09:49:08.735000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.736000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.736000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.736000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.736000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.736000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.736000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.736000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.736000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.737000 audit: BPF prog-id=41 op=LOAD Feb 9 09:49:08.737000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.737000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.737000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.737000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.737000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.737000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.737000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.737000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.737000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.738000 audit: BPF prog-id=42 op=LOAD Feb 9 09:49:08.738000 audit: BPF prog-id=30 op=UNLOAD Feb 9 09:49:08.738000 audit: BPF prog-id=31 op=UNLOAD Feb 9 09:49:08.739000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.739000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.739000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.739000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.739000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.739000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.739000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.739000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.739000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.740000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.740000 audit: BPF prog-id=43 op=LOAD Feb 9 09:49:08.740000 audit: BPF prog-id=23 op=UNLOAD Feb 9 09:49:08.741000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.741000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.741000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.741000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.741000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.742000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.742000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.742000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.742000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.742000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.742000 audit: BPF prog-id=44 op=LOAD Feb 9 09:49:08.742000 audit: BPF prog-id=24 op=UNLOAD Feb 9 09:49:08.743000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.743000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.743000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.743000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.743000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.743000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.743000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.743000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.743000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.743000 audit: BPF prog-id=45 op=LOAD Feb 9 09:49:08.744000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.744000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.744000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.744000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.744000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.744000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.744000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.744000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.744000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.744000 audit: BPF prog-id=46 op=LOAD Feb 9 09:49:08.745000 audit: BPF prog-id=25 op=UNLOAD Feb 9 09:49:08.745000 audit: BPF prog-id=26 op=UNLOAD Feb 9 09:49:08.747000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.747000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.747000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.747000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.747000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.747000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.747000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.747000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.747000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.748000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.748000 audit: BPF prog-id=47 op=LOAD Feb 9 09:49:08.748000 audit: BPF prog-id=35 op=UNLOAD Feb 9 09:49:08.750000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.750000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.750000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.750000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.750000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.750000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.750000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.750000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.751000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.751000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.751000 audit: BPF prog-id=48 op=LOAD Feb 9 09:49:08.751000 audit: BPF prog-id=18 op=UNLOAD Feb 9 09:49:08.752000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.752000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.752000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.752000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.752000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.752000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.752000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.752000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.752000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.752000 audit: BPF prog-id=49 op=LOAD Feb 9 09:49:08.753000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.753000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.753000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.753000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.753000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.753000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.753000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.753000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.753000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.753000 audit: BPF prog-id=50 op=LOAD Feb 9 09:49:08.754000 audit: BPF prog-id=19 op=UNLOAD Feb 9 09:49:08.754000 audit: BPF prog-id=20 op=UNLOAD Feb 9 09:49:08.760000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.760000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.760000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.760000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.760000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.760000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.760000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.760000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.760000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.761000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.761000 audit: BPF prog-id=51 op=LOAD Feb 9 09:49:08.761000 audit: BPF prog-id=32 op=UNLOAD Feb 9 09:49:08.761000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.761000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.761000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.761000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.761000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.761000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.761000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.761000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.762000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.762000 audit: BPF prog-id=52 op=LOAD Feb 9 09:49:08.762000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.762000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.762000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.762000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.762000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.762000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.762000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.762000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.763000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.763000 audit: BPF prog-id=53 op=LOAD Feb 9 09:49:08.763000 audit: BPF prog-id=33 op=UNLOAD Feb 9 09:49:08.763000 audit: BPF prog-id=34 op=UNLOAD Feb 9 09:49:08.764000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.765000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.765000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.765000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.765000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.765000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.765000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.765000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.765000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.766000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:08.766000 audit: BPF prog-id=54 op=LOAD Feb 9 09:49:08.766000 audit: BPF prog-id=28 op=UNLOAD Feb 9 09:49:08.785297 systemd[1]: Started kubelet.service. Feb 9 09:49:08.784000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:49:08.811640 systemd[1]: Starting coreos-metadata.service... Feb 9 09:49:08.935583 kubelet[2008]: E0209 09:49:08.935501 2008 run.go:74] "command failed" err="failed to load kubelet config file, error: failed to load Kubelet config file /var/lib/kubelet/config.yaml, error failed to read kubelet config file \"/var/lib/kubelet/config.yaml\", error: open /var/lib/kubelet/config.yaml: no such file or directory, path: /var/lib/kubelet/config.yaml" Feb 9 09:49:08.939461 systemd[1]: kubelet.service: Main process exited, code=exited, status=1/FAILURE Feb 9 09:49:08.939789 systemd[1]: kubelet.service: Failed with result 'exit-code'. Feb 9 09:49:08.939000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=failed' Feb 9 09:49:09.005884 coreos-metadata[2016]: Feb 09 09:49:09.005 INFO Putting http://169.254.169.254/latest/api/token: Attempt #1 Feb 9 09:49:09.007318 coreos-metadata[2016]: Feb 09 09:49:09.007 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/instance-id: Attempt #1 Feb 9 09:49:09.008012 coreos-metadata[2016]: Feb 09 09:49:09.007 INFO Fetch successful Feb 9 09:49:09.008097 coreos-metadata[2016]: Feb 09 09:49:09.008 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/instance-type: Attempt #1 Feb 9 09:49:09.008745 coreos-metadata[2016]: Feb 09 09:49:09.008 INFO Fetch successful Feb 9 09:49:09.008827 coreos-metadata[2016]: Feb 09 09:49:09.008 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/local-ipv4: Attempt #1 Feb 9 09:49:09.009390 coreos-metadata[2016]: Feb 09 09:49:09.009 INFO Fetch successful Feb 9 09:49:09.009475 coreos-metadata[2016]: Feb 09 09:49:09.009 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/public-ipv4: Attempt #1 Feb 9 09:49:09.009982 coreos-metadata[2016]: Feb 09 09:49:09.009 INFO Fetch successful Feb 9 09:49:09.010056 coreos-metadata[2016]: Feb 09 09:49:09.009 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/placement/availability-zone: Attempt #1 Feb 9 09:49:09.010603 coreos-metadata[2016]: Feb 09 09:49:09.010 INFO Fetch successful Feb 9 09:49:09.010679 coreos-metadata[2016]: Feb 09 09:49:09.010 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/hostname: Attempt #1 Feb 9 09:49:09.011228 coreos-metadata[2016]: Feb 09 09:49:09.011 INFO Fetch successful Feb 9 09:49:09.011322 coreos-metadata[2016]: Feb 09 09:49:09.011 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/public-hostname: Attempt #1 Feb 9 09:49:09.011836 coreos-metadata[2016]: Feb 09 09:49:09.011 INFO Fetch successful Feb 9 09:49:09.011908 coreos-metadata[2016]: Feb 09 09:49:09.011 INFO Fetching http://169.254.169.254/2019-10-01/dynamic/instance-identity/document: Attempt #1 Feb 9 09:49:09.012535 coreos-metadata[2016]: Feb 09 09:49:09.012 INFO Fetch successful Feb 9 09:49:09.026744 systemd[1]: Finished coreos-metadata.service. Feb 9 09:49:09.026000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=coreos-metadata comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:49:09.479867 systemd[1]: Stopped kubelet.service. Feb 9 09:49:09.479000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:49:09.479000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:49:09.513235 systemd[1]: Reloading. Feb 9 09:49:09.637622 /usr/lib/systemd/system-generators/torcx-generator[2075]: time="2024-02-09T09:49:09Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.2 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.2 /var/lib/torcx/store]" Feb 9 09:49:09.637688 /usr/lib/systemd/system-generators/torcx-generator[2075]: time="2024-02-09T09:49:09Z" level=info msg="torcx already run" Feb 9 09:49:09.795300 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Feb 9 09:49:09.796064 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Feb 9 09:49:09.838913 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Feb 9 09:49:09.983000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.983000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.984000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.984000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.984000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.984000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.984000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.984000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.984000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.985000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.985000 audit: BPF prog-id=55 op=LOAD Feb 9 09:49:09.985000 audit: BPF prog-id=37 op=UNLOAD Feb 9 09:49:09.987000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.987000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.987000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.987000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.987000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.987000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.987000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.987000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.988000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.988000 audit: BPF prog-id=56 op=LOAD Feb 9 09:49:09.988000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.988000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.988000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.988000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.988000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.988000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.988000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.989000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.989000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.989000 audit: BPF prog-id=57 op=LOAD Feb 9 09:49:09.989000 audit: BPF prog-id=38 op=UNLOAD Feb 9 09:49:09.989000 audit: BPF prog-id=39 op=UNLOAD Feb 9 09:49:09.994000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.994000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.994000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.994000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.994000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.995000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.995000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.995000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.995000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.996000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.996000 audit: BPF prog-id=58 op=LOAD Feb 9 09:49:09.996000 audit: BPF prog-id=40 op=UNLOAD Feb 9 09:49:09.996000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.996000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.996000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.996000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.997000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.997000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.997000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.997000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.997000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.997000 audit: BPF prog-id=59 op=LOAD Feb 9 09:49:09.997000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.997000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.997000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.998000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.998000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.998000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.998000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.998000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.998000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.998000 audit: BPF prog-id=60 op=LOAD Feb 9 09:49:09.998000 audit: BPF prog-id=41 op=UNLOAD Feb 9 09:49:09.998000 audit: BPF prog-id=42 op=UNLOAD Feb 9 09:49:09.999000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.999000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:09.999000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.000000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.000000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.000000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.000000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.000000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.000000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.000000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.001000 audit: BPF prog-id=61 op=LOAD Feb 9 09:49:10.001000 audit: BPF prog-id=43 op=UNLOAD Feb 9 09:49:10.002000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.002000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.002000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.002000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.002000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.002000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.002000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.002000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.002000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.003000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.003000 audit: BPF prog-id=62 op=LOAD Feb 9 09:49:10.003000 audit: BPF prog-id=44 op=UNLOAD Feb 9 09:49:10.003000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.003000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.003000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.003000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.004000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.004000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.004000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.004000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.004000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.004000 audit: BPF prog-id=63 op=LOAD Feb 9 09:49:10.004000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.004000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.004000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.005000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.005000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.005000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.005000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.005000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.005000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.005000 audit: BPF prog-id=64 op=LOAD Feb 9 09:49:10.005000 audit: BPF prog-id=45 op=UNLOAD Feb 9 09:49:10.005000 audit: BPF prog-id=46 op=UNLOAD Feb 9 09:49:10.007000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.007000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.007000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.007000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.007000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.008000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.008000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.008000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.008000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.008000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.008000 audit: BPF prog-id=65 op=LOAD Feb 9 09:49:10.008000 audit: BPF prog-id=47 op=UNLOAD Feb 9 09:49:10.010000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.010000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.010000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.010000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.010000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.010000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.010000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.010000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.010000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.010000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.010000 audit: BPF prog-id=66 op=LOAD Feb 9 09:49:10.010000 audit: BPF prog-id=48 op=UNLOAD Feb 9 09:49:10.010000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.010000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.010000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.010000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.011000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.011000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.011000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.011000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.011000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.011000 audit: BPF prog-id=67 op=LOAD Feb 9 09:49:10.011000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.011000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.011000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.011000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.011000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.011000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.011000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.011000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.011000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.011000 audit: BPF prog-id=68 op=LOAD Feb 9 09:49:10.011000 audit: BPF prog-id=49 op=UNLOAD Feb 9 09:49:10.011000 audit: BPF prog-id=50 op=UNLOAD Feb 9 09:49:10.017000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.017000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.017000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.017000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.017000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.017000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.017000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.017000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.017000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.017000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.017000 audit: BPF prog-id=69 op=LOAD Feb 9 09:49:10.017000 audit: BPF prog-id=51 op=UNLOAD Feb 9 09:49:10.017000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.017000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.017000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.017000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.017000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.017000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.017000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.017000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.017000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.017000 audit: BPF prog-id=70 op=LOAD Feb 9 09:49:10.017000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.018000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.018000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.018000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.018000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.018000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.018000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.018000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.018000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.018000 audit: BPF prog-id=71 op=LOAD Feb 9 09:49:10.018000 audit: BPF prog-id=52 op=UNLOAD Feb 9 09:49:10.018000 audit: BPF prog-id=53 op=UNLOAD Feb 9 09:49:10.019000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.019000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.019000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.019000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.019000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.019000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.019000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.019000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.019000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.019000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.019000 audit: BPF prog-id=72 op=LOAD Feb 9 09:49:10.019000 audit: BPF prog-id=54 op=UNLOAD Feb 9 09:49:10.073000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:49:10.073763 systemd[1]: Started kubelet.service. Feb 9 09:49:10.161875 kubelet[2129]: Flag --container-runtime-endpoint has been deprecated, This parameter should be set via the config file specified by the Kubelet's --config flag. See https://kubernetes.io/docs/tasks/administer-cluster/kubelet-config-file/ for more information. Feb 9 09:49:10.162494 kubelet[2129]: Flag --pod-infra-container-image has been deprecated, will be removed in a future release. Image garbage collector will get sandbox image information from CRI. Feb 9 09:49:10.162591 kubelet[2129]: Flag --volume-plugin-dir has been deprecated, This parameter should be set via the config file specified by the Kubelet's --config flag. See https://kubernetes.io/docs/tasks/administer-cluster/kubelet-config-file/ for more information. Feb 9 09:49:10.162828 kubelet[2129]: I0209 09:49:10.162769 2129 server.go:199] "--pod-infra-container-image will not be pruned by the image garbage collector in kubelet and should also be set in the remote runtime" Feb 9 09:49:10.757487 kubelet[2129]: I0209 09:49:10.757434 2129 server.go:415] "Kubelet version" kubeletVersion="v1.27.2" Feb 9 09:49:10.757797 kubelet[2129]: I0209 09:49:10.757775 2129 server.go:417] "Golang settings" GOGC="" GOMAXPROCS="" GOTRACEBACK="" Feb 9 09:49:10.758273 kubelet[2129]: I0209 09:49:10.758248 2129 server.go:837] "Client rotation is on, will bootstrap in background" Feb 9 09:49:10.762371 kubelet[2129]: I0209 09:49:10.762319 2129 dynamic_cafile_content.go:157] "Starting controller" name="client-ca-bundle::/etc/kubernetes/pki/ca.crt" Feb 9 09:49:10.766068 kubelet[2129]: W0209 09:49:10.766034 2129 machine.go:65] Cannot read vendor id correctly, set empty. Feb 9 09:49:10.767478 kubelet[2129]: I0209 09:49:10.767440 2129 server.go:662] "--cgroups-per-qos enabled, but --cgroup-root was not specified. defaulting to /" Feb 9 09:49:10.768082 kubelet[2129]: I0209 09:49:10.768059 2129 container_manager_linux.go:266] "Container manager verified user specified cgroup-root exists" cgroupRoot=[] Feb 9 09:49:10.768346 kubelet[2129]: I0209 09:49:10.768323 2129 container_manager_linux.go:271] "Creating Container Manager object based on Node Config" nodeConfig={RuntimeCgroupsName: SystemCgroupsName: KubeletCgroupsName: KubeletOOMScoreAdj:-999 ContainerRuntime: CgroupsPerQOS:true CgroupRoot:/ CgroupDriver:systemd KubeletRootDir:/var/lib/kubelet ProtectKernelDefaults:false NodeAllocatableConfig:{KubeReservedCgroupName: SystemReservedCgroupName: ReservedSystemCPUs: EnforceNodeAllocatable:map[pods:{}] KubeReserved:map[] SystemReserved:map[] HardEvictionThresholds:[{Signal:nodefs.available Operator:LessThan Value:{Quantity: Percentage:0.1} GracePeriod:0s MinReclaim:} {Signal:nodefs.inodesFree Operator:LessThan Value:{Quantity: Percentage:0.05} GracePeriod:0s MinReclaim:} {Signal:imagefs.available Operator:LessThan Value:{Quantity: Percentage:0.15} GracePeriod:0s MinReclaim:} {Signal:memory.available Operator:LessThan Value:{Quantity:100Mi Percentage:0} GracePeriod:0s MinReclaim:}]} QOSReserved:map[] CPUManagerPolicy:none CPUManagerPolicyOptions:map[] TopologyManagerScope:container CPUManagerReconcilePeriod:10s ExperimentalMemoryManagerPolicy:None ExperimentalMemoryManagerReservedMemory:[] PodPidsLimit:-1 EnforceCPULimits:true CPUCFSQuotaPeriod:100ms TopologyManagerPolicy:none ExperimentalTopologyManagerPolicyOptions:map[]} Feb 9 09:49:10.768572 kubelet[2129]: I0209 09:49:10.768550 2129 topology_manager.go:136] "Creating topology manager with policy per scope" topologyPolicyName="none" topologyScopeName="container" Feb 9 09:49:10.768704 kubelet[2129]: I0209 09:49:10.768684 2129 container_manager_linux.go:302] "Creating device plugin manager" Feb 9 09:49:10.768956 kubelet[2129]: I0209 09:49:10.768935 2129 state_mem.go:36] "Initialized new in-memory state store" Feb 9 09:49:10.775102 kubelet[2129]: I0209 09:49:10.775056 2129 kubelet.go:405] "Attempting to sync node with API server" Feb 9 09:49:10.775102 kubelet[2129]: I0209 09:49:10.775104 2129 kubelet.go:298] "Adding static pod path" path="/etc/kubernetes/manifests" Feb 9 09:49:10.775352 kubelet[2129]: I0209 09:49:10.775168 2129 kubelet.go:309] "Adding apiserver pod source" Feb 9 09:49:10.775352 kubelet[2129]: I0209 09:49:10.775200 2129 apiserver.go:42] "Waiting for node sync before watching apiserver pods" Feb 9 09:49:10.776212 kubelet[2129]: E0209 09:49:10.776088 2129 file.go:98] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:10.776368 kubelet[2129]: E0209 09:49:10.776327 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:10.777248 kubelet[2129]: I0209 09:49:10.777204 2129 kuberuntime_manager.go:257] "Container runtime initialized" containerRuntime="containerd" version="1.6.16" apiVersion="v1" Feb 9 09:49:10.777739 kubelet[2129]: W0209 09:49:10.777701 2129 probe.go:268] Flexvolume plugin directory at /opt/libexec/kubernetes/kubelet-plugins/volume/exec/ does not exist. Recreating. Feb 9 09:49:10.778647 kubelet[2129]: I0209 09:49:10.778590 2129 server.go:1168] "Started kubelet" Feb 9 09:49:10.778977 kubelet[2129]: I0209 09:49:10.778938 2129 server.go:162] "Starting to listen" address="0.0.0.0" port=10250 Feb 9 09:49:10.780040 kubelet[2129]: I0209 09:49:10.779988 2129 server.go:461] "Adding debug handlers to kubelet server" Feb 9 09:49:10.779000 audit[2129]: AVC avc: denied { mac_admin } for pid=2129 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.779000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Feb 9 09:49:10.779000 audit[2129]: SYSCALL arch=c00000b7 syscall=5 success=no exit=-22 a0=40008cf260 a1=4000057ed8 a2=40008cf230 a3=25 items=0 ppid=1 pid=2129 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:10.779000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Feb 9 09:49:10.781719 kubelet[2129]: I0209 09:49:10.781687 2129 kubelet.go:1355] "Unprivileged containerized plugins might not work, could not set selinux context on plugin registration dir" path="/var/lib/kubelet/plugins_registry" err="setxattr /var/lib/kubelet/plugins_registry: invalid argument" Feb 9 09:49:10.780000 audit[2129]: AVC avc: denied { mac_admin } for pid=2129 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.780000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Feb 9 09:49:10.780000 audit[2129]: SYSCALL arch=c00000b7 syscall=5 success=no exit=-22 a0=4000ab03a0 a1=4000057ef0 a2=40008cf2f0 a3=25 items=0 ppid=1 pid=2129 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:10.780000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Feb 9 09:49:10.782216 kubelet[2129]: I0209 09:49:10.781997 2129 ratelimit.go:65] "Setting rate limiting for podresources endpoint" qps=100 burstTokens=10 Feb 9 09:49:10.782341 kubelet[2129]: I0209 09:49:10.782317 2129 kubelet.go:1359] "Unprivileged containerized plugins might not work, could not set selinux context on plugins dir" path="/var/lib/kubelet/plugins" err="setxattr /var/lib/kubelet/plugins: invalid argument" Feb 9 09:49:10.782575 kubelet[2129]: I0209 09:49:10.782551 2129 fs_resource_analyzer.go:67] "Starting FS ResourceAnalyzer" Feb 9 09:49:10.790017 kubelet[2129]: I0209 09:49:10.788567 2129 volume_manager.go:284] "Starting Kubelet Volume Manager" Feb 9 09:49:10.790017 kubelet[2129]: I0209 09:49:10.788746 2129 desired_state_of_world_populator.go:145] "Desired state populator starts to run" Feb 9 09:49:10.790017 kubelet[2129]: E0209 09:49:10.789913 2129 cri_stats_provider.go:455] "Failed to get the info of the filesystem with mountpoint" err="unable to find data in memory cache" mountpoint="/var/lib/containerd/io.containerd.snapshotter.v1.overlayfs" Feb 9 09:49:10.790017 kubelet[2129]: E0209 09:49:10.789953 2129 kubelet.go:1400] "Image garbage collection failed once. Stats initialization may not have completed yet" err="invalid capacity 0 on image filesystem" Feb 9 09:49:10.832121 kubelet[2129]: E0209 09:49:10.832080 2129 controller.go:146] "Failed to ensure lease exists, will retry" err="leases.coordination.k8s.io \"172.31.26.157\" is forbidden: User \"system:anonymous\" cannot get resource \"leases\" in API group \"coordination.k8s.io\" in the namespace \"kube-node-lease\"" interval="200ms" Feb 9 09:49:10.832756 kubelet[2129]: W0209 09:49:10.832718 2129 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.Node: nodes "172.31.26.157" is forbidden: User "system:anonymous" cannot list resource "nodes" in API group "" at the cluster scope Feb 9 09:49:10.832953 kubelet[2129]: E0209 09:49:10.832930 2129 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.Node: failed to list *v1.Node: nodes "172.31.26.157" is forbidden: User "system:anonymous" cannot list resource "nodes" in API group "" at the cluster scope Feb 9 09:49:10.833281 kubelet[2129]: W0209 09:49:10.833252 2129 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.Service: services is forbidden: User "system:anonymous" cannot list resource "services" in API group "" at the cluster scope Feb 9 09:49:10.833436 kubelet[2129]: E0209 09:49:10.833415 2129 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.Service: failed to list *v1.Service: services is forbidden: User "system:anonymous" cannot list resource "services" in API group "" at the cluster scope Feb 9 09:49:10.836230 kubelet[2129]: E0209 09:49:10.835893 2129 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.26.157.17b228dfe3072d3c", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.26.157", UID:"172.31.26.157", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"Starting", Message:"Starting kubelet.", Source:v1.EventSource{Component:"kubelet", Host:"172.31.26.157"}, FirstTimestamp:time.Date(2024, time.February, 9, 9, 49, 10, 778555708, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 9, 49, 10, 778555708, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 09:49:10.837515 kubelet[2129]: W0209 09:49:10.837043 2129 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.CSIDriver: csidrivers.storage.k8s.io is forbidden: User "system:anonymous" cannot list resource "csidrivers" in API group "storage.k8s.io" at the cluster scope Feb 9 09:49:10.837760 kubelet[2129]: E0209 09:49:10.837736 2129 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.CSIDriver: failed to list *v1.CSIDriver: csidrivers.storage.k8s.io is forbidden: User "system:anonymous" cannot list resource "csidrivers" in API group "storage.k8s.io" at the cluster scope Feb 9 09:49:10.847314 kubelet[2129]: E0209 09:49:10.847167 2129 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.26.157.17b228dfe3b4d4ec", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.26.157", UID:"172.31.26.157", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"InvalidDiskCapacity", Message:"invalid capacity 0 on image filesystem", Source:v1.EventSource{Component:"kubelet", Host:"172.31.26.157"}, FirstTimestamp:time.Date(2024, time.February, 9, 9, 49, 10, 789936364, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 9, 49, 10, 789936364, time.Local), Count:1, Type:"Warning", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 09:49:10.860000 audit[2144]: NETFILTER_CFG table=mangle:2 family=2 entries=2 op=nft_register_chain pid=2144 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 09:49:10.860000 audit[2144]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=136 a0=3 a1=ffffd2e00530 a2=0 a3=1 items=0 ppid=2129 pid=2144 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:10.860000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D49505441424C45532D48494E54002D74006D616E676C65 Feb 9 09:49:10.862000 audit[2147]: NETFILTER_CFG table=filter:3 family=2 entries=2 op=nft_register_chain pid=2147 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 09:49:10.862000 audit[2147]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=132 a0=3 a1=ffffd19d9610 a2=0 a3=1 items=0 ppid=2129 pid=2147 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:10.862000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4649524557414C4C002D740066696C746572 Feb 9 09:49:10.876822 kubelet[2129]: I0209 09:49:10.876781 2129 cpu_manager.go:214] "Starting CPU manager" policy="none" Feb 9 09:49:10.876822 kubelet[2129]: I0209 09:49:10.876820 2129 cpu_manager.go:215] "Reconciling" reconcilePeriod="10s" Feb 9 09:49:10.877075 kubelet[2129]: I0209 09:49:10.876855 2129 state_mem.go:36] "Initialized new in-memory state store" Feb 9 09:49:10.878237 kubelet[2129]: E0209 09:49:10.878052 2129 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.26.157.17b228dfe8ce39fc", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.26.157", UID:"172.31.26.157", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 172.31.26.157 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"172.31.26.157"}, FirstTimestamp:time.Date(2024, time.February, 9, 9, 49, 10, 875486716, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 9, 49, 10, 875486716, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 09:49:10.881675 kubelet[2129]: E0209 09:49:10.881503 2129 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.26.157.17b228dfe8ce6390", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.26.157", UID:"172.31.26.157", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 172.31.26.157 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"172.31.26.157"}, FirstTimestamp:time.Date(2024, time.February, 9, 9, 49, 10, 875497360, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 9, 49, 10, 875497360, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 09:49:10.882093 kubelet[2129]: I0209 09:49:10.881800 2129 policy_none.go:49] "None policy: Start" Feb 9 09:49:10.883334 kubelet[2129]: I0209 09:49:10.883301 2129 memory_manager.go:169] "Starting memorymanager" policy="None" Feb 9 09:49:10.883580 kubelet[2129]: I0209 09:49:10.883555 2129 state_mem.go:35] "Initializing new in-memory state store" Feb 9 09:49:10.884129 kubelet[2129]: E0209 09:49:10.884005 2129 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.26.157.17b228dfe8ce7cb0", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.26.157", UID:"172.31.26.157", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 172.31.26.157 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"172.31.26.157"}, FirstTimestamp:time.Date(2024, time.February, 9, 9, 49, 10, 875503792, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 9, 49, 10, 875503792, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 09:49:10.889588 kubelet[2129]: I0209 09:49:10.889535 2129 kubelet_node_status.go:70] "Attempting to register node" node="172.31.26.157" Feb 9 09:49:10.891907 kubelet[2129]: E0209 09:49:10.891842 2129 kubelet_node_status.go:92] "Unable to register node with API server" err="nodes is forbidden: User \"system:anonymous\" cannot create resource \"nodes\" in API group \"\" at the cluster scope" node="172.31.26.157" Feb 9 09:49:10.895504 systemd[1]: Created slice kubepods.slice. Feb 9 09:49:10.873000 audit[2149]: NETFILTER_CFG table=filter:4 family=2 entries=2 op=nft_register_chain pid=2149 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 09:49:10.873000 audit[2149]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=312 a0=3 a1=ffffe7ebfa40 a2=0 a3=1 items=0 ppid=2129 pid=2149 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:10.873000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6A004B5542452D4649524557414C4C Feb 9 09:49:10.897468 kubelet[2129]: E0209 09:49:10.897355 2129 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.26.157.17b228dfe8ce39fc", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.26.157", UID:"172.31.26.157", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 172.31.26.157 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"172.31.26.157"}, FirstTimestamp:time.Date(2024, time.February, 9, 9, 49, 10, 875486716, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 9, 49, 10, 889477732, time.Local), Count:2, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.26.157.17b228dfe8ce39fc" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 09:49:10.903000 audit[2154]: NETFILTER_CFG table=filter:5 family=2 entries=2 op=nft_register_chain pid=2154 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 09:49:10.905192 kubelet[2129]: E0209 09:49:10.903823 2129 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.26.157.17b228dfe8ce6390", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.26.157", UID:"172.31.26.157", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 172.31.26.157 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"172.31.26.157"}, FirstTimestamp:time.Date(2024, time.February, 9, 9, 49, 10, 875497360, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 9, 49, 10, 889485652, time.Local), Count:2, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.26.157.17b228dfe8ce6390" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 09:49:10.903000 audit[2154]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=312 a0=3 a1=ffffecb98290 a2=0 a3=1 items=0 ppid=2129 pid=2154 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:10.903000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6A004B5542452D4649524557414C4C Feb 9 09:49:10.909774 systemd[1]: Created slice kubepods-burstable.slice. Feb 9 09:49:10.911807 kubelet[2129]: E0209 09:49:10.911665 2129 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.26.157.17b228dfe8ce7cb0", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.26.157", UID:"172.31.26.157", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 172.31.26.157 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"172.31.26.157"}, FirstTimestamp:time.Date(2024, time.February, 9, 9, 49, 10, 875503792, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 9, 49, 10, 889490884, time.Local), Count:2, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.26.157.17b228dfe8ce7cb0" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 09:49:10.916584 systemd[1]: Created slice kubepods-besteffort.slice. Feb 9 09:49:10.924572 kubelet[2129]: I0209 09:49:10.924521 2129 manager.go:455] "Failed to read data from checkpoint" checkpoint="kubelet_internal_checkpoint" err="checkpoint is not found" Feb 9 09:49:10.923000 audit[2129]: AVC avc: denied { mac_admin } for pid=2129 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:10.923000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Feb 9 09:49:10.923000 audit[2129]: SYSCALL arch=c00000b7 syscall=5 success=no exit=-22 a0=4000e68480 a1=4000793a70 a2=4000e68450 a3=25 items=0 ppid=1 pid=2129 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:10.923000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Feb 9 09:49:10.925019 kubelet[2129]: I0209 09:49:10.924709 2129 server.go:88] "Unprivileged containerized plugins might not work. Could not set selinux context on socket dir" path="/var/lib/kubelet/device-plugins/" err="setxattr /var/lib/kubelet/device-plugins/: invalid argument" Feb 9 09:49:10.925104 kubelet[2129]: I0209 09:49:10.925025 2129 plugin_manager.go:118] "Starting Kubelet Plugin Manager" Feb 9 09:49:10.928066 kubelet[2129]: E0209 09:49:10.928017 2129 eviction_manager.go:262] "Eviction manager: failed to get summary stats" err="failed to get node info: node \"172.31.26.157\" not found" Feb 9 09:49:10.931840 kubelet[2129]: E0209 09:49:10.931707 2129 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.26.157.17b228dfec0303b9", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.26.157", UID:"172.31.26.157", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeAllocatableEnforced", Message:"Updated Node Allocatable limit across pods", Source:v1.EventSource{Component:"kubelet", Host:"172.31.26.157"}, FirstTimestamp:time.Date(2024, time.February, 9, 9, 49, 10, 929277881, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 9, 49, 10, 929277881, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 09:49:10.975000 audit[2159]: NETFILTER_CFG table=filter:6 family=2 entries=1 op=nft_register_rule pid=2159 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 09:49:10.975000 audit[2159]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=924 a0=3 a1=ffffcfa05970 a2=0 a3=1 items=0 ppid=2129 pid=2159 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:10.975000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D41004B5542452D4649524557414C4C002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E7400626C6F636B20696E636F6D696E67206C6F63616C6E657420636F6E6E656374696F6E73002D2D647374003132372E302E302E302F38 Feb 9 09:49:10.977297 kubelet[2129]: I0209 09:49:10.977266 2129 kubelet_network_linux.go:63] "Initialized iptables rules." protocol=IPv4 Feb 9 09:49:10.978000 audit[2161]: NETFILTER_CFG table=mangle:7 family=2 entries=1 op=nft_register_chain pid=2161 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 09:49:10.978000 audit[2161]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffcb48b450 a2=0 a3=1 items=0 ppid=2129 pid=2161 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:10.978000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006D616E676C65 Feb 9 09:49:10.978000 audit[2160]: NETFILTER_CFG table=mangle:8 family=10 entries=2 op=nft_register_chain pid=2160 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 09:49:10.978000 audit[2160]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=136 a0=3 a1=ffffeecaaf40 a2=0 a3=1 items=0 ppid=2129 pid=2160 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:10.978000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D49505441424C45532D48494E54002D74006D616E676C65 Feb 9 09:49:10.980062 kubelet[2129]: I0209 09:49:10.980033 2129 kubelet_network_linux.go:63] "Initialized iptables rules." protocol=IPv6 Feb 9 09:49:10.980277 kubelet[2129]: I0209 09:49:10.980256 2129 status_manager.go:207] "Starting to sync pod status with apiserver" Feb 9 09:49:10.980407 kubelet[2129]: I0209 09:49:10.980385 2129 kubelet.go:2257] "Starting kubelet main sync loop" Feb 9 09:49:10.980578 kubelet[2129]: E0209 09:49:10.980558 2129 kubelet.go:2281] "Skipping pod synchronization" err="PLEG is not healthy: pleg has yet to be successful" Feb 9 09:49:10.982817 kubelet[2129]: W0209 09:49:10.982782 2129 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.RuntimeClass: runtimeclasses.node.k8s.io is forbidden: User "system:anonymous" cannot list resource "runtimeclasses" in API group "node.k8s.io" at the cluster scope Feb 9 09:49:10.983083 kubelet[2129]: E0209 09:49:10.983057 2129 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.RuntimeClass: failed to list *v1.RuntimeClass: runtimeclasses.node.k8s.io is forbidden: User "system:anonymous" cannot list resource "runtimeclasses" in API group "node.k8s.io" at the cluster scope Feb 9 09:49:10.982000 audit[2162]: NETFILTER_CFG table=mangle:9 family=10 entries=1 op=nft_register_chain pid=2162 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 09:49:10.982000 audit[2162]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=fffffdbf6870 a2=0 a3=1 items=0 ppid=2129 pid=2162 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:10.982000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006D616E676C65 Feb 9 09:49:10.983000 audit[2163]: NETFILTER_CFG table=nat:10 family=2 entries=2 op=nft_register_chain pid=2163 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 09:49:10.983000 audit[2163]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=128 a0=3 a1=fffffcbc18c0 a2=0 a3=1 items=0 ppid=2129 pid=2163 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:10.983000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006E6174 Feb 9 09:49:10.985000 audit[2164]: NETFILTER_CFG table=nat:11 family=10 entries=2 op=nft_register_chain pid=2164 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 09:49:10.985000 audit[2164]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=128 a0=3 a1=ffffdb9ccb40 a2=0 a3=1 items=0 ppid=2129 pid=2164 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:10.985000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006E6174 Feb 9 09:49:10.986000 audit[2165]: NETFILTER_CFG table=filter:12 family=2 entries=1 op=nft_register_chain pid=2165 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 09:49:10.986000 audit[2165]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffe8953070 a2=0 a3=1 items=0 ppid=2129 pid=2165 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:10.986000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D740066696C746572 Feb 9 09:49:10.988000 audit[2166]: NETFILTER_CFG table=filter:13 family=10 entries=2 op=nft_register_chain pid=2166 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 09:49:10.988000 audit[2166]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=136 a0=3 a1=ffffe932ddd0 a2=0 a3=1 items=0 ppid=2129 pid=2166 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:10.988000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D740066696C746572 Feb 9 09:49:11.034801 kubelet[2129]: E0209 09:49:11.034695 2129 controller.go:146] "Failed to ensure lease exists, will retry" err="leases.coordination.k8s.io \"172.31.26.157\" is forbidden: User \"system:anonymous\" cannot get resource \"leases\" in API group \"coordination.k8s.io\" in the namespace \"kube-node-lease\"" interval="400ms" Feb 9 09:49:11.093287 kubelet[2129]: I0209 09:49:11.093253 2129 kubelet_node_status.go:70] "Attempting to register node" node="172.31.26.157" Feb 9 09:49:11.100910 kubelet[2129]: E0209 09:49:11.100876 2129 kubelet_node_status.go:92] "Unable to register node with API server" err="nodes is forbidden: User \"system:anonymous\" cannot create resource \"nodes\" in API group \"\" at the cluster scope" node="172.31.26.157" Feb 9 09:49:11.101100 kubelet[2129]: E0209 09:49:11.100890 2129 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.26.157.17b228dfe8ce39fc", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.26.157", UID:"172.31.26.157", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 172.31.26.157 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"172.31.26.157"}, FirstTimestamp:time.Date(2024, time.February, 9, 9, 49, 10, 875486716, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 9, 49, 11, 93203833, time.Local), Count:3, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.26.157.17b228dfe8ce39fc" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 09:49:11.104718 kubelet[2129]: E0209 09:49:11.104620 2129 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.26.157.17b228dfe8ce6390", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.26.157", UID:"172.31.26.157", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 172.31.26.157 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"172.31.26.157"}, FirstTimestamp:time.Date(2024, time.February, 9, 9, 49, 10, 875497360, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 9, 49, 11, 93211585, time.Local), Count:3, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.26.157.17b228dfe8ce6390" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 09:49:11.106809 kubelet[2129]: E0209 09:49:11.106717 2129 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.26.157.17b228dfe8ce7cb0", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.26.157", UID:"172.31.26.157", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 172.31.26.157 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"172.31.26.157"}, FirstTimestamp:time.Date(2024, time.February, 9, 9, 49, 10, 875503792, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 9, 49, 11, 93216013, time.Local), Count:3, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.26.157.17b228dfe8ce7cb0" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 09:49:11.436966 kubelet[2129]: E0209 09:49:11.436853 2129 controller.go:146] "Failed to ensure lease exists, will retry" err="leases.coordination.k8s.io \"172.31.26.157\" is forbidden: User \"system:anonymous\" cannot get resource \"leases\" in API group \"coordination.k8s.io\" in the namespace \"kube-node-lease\"" interval="800ms" Feb 9 09:49:11.502951 kubelet[2129]: I0209 09:49:11.502900 2129 kubelet_node_status.go:70] "Attempting to register node" node="172.31.26.157" Feb 9 09:49:11.505387 kubelet[2129]: E0209 09:49:11.505354 2129 kubelet_node_status.go:92] "Unable to register node with API server" err="nodes is forbidden: User \"system:anonymous\" cannot create resource \"nodes\" in API group \"\" at the cluster scope" node="172.31.26.157" Feb 9 09:49:11.505563 kubelet[2129]: E0209 09:49:11.505368 2129 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.26.157.17b228dfe8ce39fc", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.26.157", UID:"172.31.26.157", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 172.31.26.157 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"172.31.26.157"}, FirstTimestamp:time.Date(2024, time.February, 9, 9, 49, 10, 875486716, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 9, 49, 11, 502841295, time.Local), Count:4, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.26.157.17b228dfe8ce39fc" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 09:49:11.509600 kubelet[2129]: E0209 09:49:11.509500 2129 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.26.157.17b228dfe8ce6390", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.26.157", UID:"172.31.26.157", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 172.31.26.157 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"172.31.26.157"}, FirstTimestamp:time.Date(2024, time.February, 9, 9, 49, 10, 875497360, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 9, 49, 11, 502862211, time.Local), Count:4, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.26.157.17b228dfe8ce6390" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 09:49:11.512417 kubelet[2129]: E0209 09:49:11.512322 2129 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.26.157.17b228dfe8ce7cb0", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.26.157", UID:"172.31.26.157", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 172.31.26.157 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"172.31.26.157"}, FirstTimestamp:time.Date(2024, time.February, 9, 9, 49, 10, 875503792, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 9, 49, 11, 502867671, time.Local), Count:4, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.26.157.17b228dfe8ce7cb0" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 09:49:11.661456 kubelet[2129]: W0209 09:49:11.661419 2129 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.CSIDriver: csidrivers.storage.k8s.io is forbidden: User "system:anonymous" cannot list resource "csidrivers" in API group "storage.k8s.io" at the cluster scope Feb 9 09:49:11.661697 kubelet[2129]: E0209 09:49:11.661674 2129 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.CSIDriver: failed to list *v1.CSIDriver: csidrivers.storage.k8s.io is forbidden: User "system:anonymous" cannot list resource "csidrivers" in API group "storage.k8s.io" at the cluster scope Feb 9 09:49:11.762027 kubelet[2129]: I0209 09:49:11.761904 2129 transport.go:147] "Certificate rotation detected, shutting down client connections to start using new credentials" Feb 9 09:49:11.777272 kubelet[2129]: E0209 09:49:11.777233 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:12.245522 kubelet[2129]: E0209 09:49:12.245394 2129 nodelease.go:49] "Failed to get node when trying to set owner ref to the node lease" err="nodes \"172.31.26.157\" not found" node="172.31.26.157" Feb 9 09:49:12.255386 kubelet[2129]: E0209 09:49:12.255328 2129 csi_plugin.go:295] Failed to initialize CSINode: error updating CSINode annotation: timed out waiting for the condition; caused by: nodes "172.31.26.157" not found Feb 9 09:49:12.307213 kubelet[2129]: I0209 09:49:12.307174 2129 kubelet_node_status.go:70] "Attempting to register node" node="172.31.26.157" Feb 9 09:49:12.322993 kubelet[2129]: I0209 09:49:12.322948 2129 kubelet_node_status.go:73] "Successfully registered node" node="172.31.26.157" Feb 9 09:49:12.359615 kubelet[2129]: E0209 09:49:12.359579 2129 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.26.157\" not found" Feb 9 09:49:12.461290 kubelet[2129]: I0209 09:49:12.461217 2129 kuberuntime_manager.go:1460] "Updating runtime config through cri with podcidr" CIDR="192.168.1.0/24" Feb 9 09:49:12.462341 env[1673]: time="2024-02-09T09:49:12.462195556Z" level=info msg="No cni config template is specified, wait for other system components to drop the config." Feb 9 09:49:12.463152 kubelet[2129]: I0209 09:49:12.463080 2129 kubelet_network.go:61] "Updating Pod CIDR" originalPodCIDR="" newPodCIDR="192.168.1.0/24" Feb 9 09:49:12.615000 audit[1923]: USER_END pid=1923 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 09:49:12.616505 sudo[1923]: pam_unix(sudo:session): session closed for user root Feb 9 09:49:12.618960 kernel: kauditd_printk_skb: 477 callbacks suppressed Feb 9 09:49:12.619096 kernel: audit: type=1106 audit(1707472152.615:616): pid=1923 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 09:49:12.615000 audit[1923]: CRED_DISP pid=1923 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 09:49:12.635697 kernel: audit: type=1104 audit(1707472152.615:617): pid=1923 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 09:49:12.641433 sshd[1920]: pam_unix(sshd:session): session closed for user core Feb 9 09:49:12.642000 audit[1920]: USER_END pid=1920 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Feb 9 09:49:12.645956 systemd[1]: session-7.scope: Deactivated successfully. Feb 9 09:49:12.647098 systemd[1]: sshd@6-172.31.26.157:22-139.178.89.65:35170.service: Deactivated successfully. Feb 9 09:49:12.642000 audit[1920]: CRED_DISP pid=1920 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Feb 9 09:49:12.664800 kernel: audit: type=1106 audit(1707472152.642:618): pid=1920 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Feb 9 09:49:12.664890 kernel: audit: type=1104 audit(1707472152.642:619): pid=1920 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Feb 9 09:49:12.642000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@6-172.31.26.157:22-139.178.89.65:35170 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:49:12.665174 systemd-logind[1652]: Session 7 logged out. Waiting for processes to exit. Feb 9 09:49:12.673766 kernel: audit: type=1131 audit(1707472152.642:620): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@6-172.31.26.157:22-139.178.89.65:35170 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:49:12.676028 systemd-logind[1652]: Removed session 7. Feb 9 09:49:12.777480 kubelet[2129]: E0209 09:49:12.777445 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:12.777986 kubelet[2129]: I0209 09:49:12.777782 2129 apiserver.go:52] "Watching apiserver" Feb 9 09:49:12.784880 kubelet[2129]: I0209 09:49:12.784843 2129 topology_manager.go:212] "Topology Admit Handler" Feb 9 09:49:12.785192 kubelet[2129]: I0209 09:49:12.785169 2129 topology_manager.go:212] "Topology Admit Handler" Feb 9 09:49:12.785387 kubelet[2129]: I0209 09:49:12.785365 2129 topology_manager.go:212] "Topology Admit Handler" Feb 9 09:49:12.787273 kubelet[2129]: E0209 09:49:12.785443 2129 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-v96lh" podUID=fe988a42-0383-4a5b-80cd-d77b9230142f Feb 9 09:49:12.792182 kubelet[2129]: I0209 09:49:12.791360 2129 desired_state_of_world_populator.go:153] "Finished populating initial desired state of world" Feb 9 09:49:12.795981 systemd[1]: Created slice kubepods-besteffort-pod6cbea80f_2275_49c6_a6cc_fbf1fa6b8478.slice. Feb 9 09:49:12.800947 kubelet[2129]: I0209 09:49:12.800897 2129 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"lib-modules\" (UniqueName: \"kubernetes.io/host-path/1e042837-fcc4-42fd-848a-d5c61fcba122-lib-modules\") pod \"calico-node-gqqnr\" (UID: \"1e042837-fcc4-42fd-848a-d5c61fcba122\") " pod="calico-system/calico-node-gqqnr" Feb 9 09:49:12.801122 kubelet[2129]: I0209 09:49:12.800970 2129 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"var-run-calico\" (UniqueName: \"kubernetes.io/host-path/1e042837-fcc4-42fd-848a-d5c61fcba122-var-run-calico\") pod \"calico-node-gqqnr\" (UID: \"1e042837-fcc4-42fd-848a-d5c61fcba122\") " pod="calico-system/calico-node-gqqnr" Feb 9 09:49:12.801122 kubelet[2129]: I0209 09:49:12.801023 2129 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"var-lib-calico\" (UniqueName: \"kubernetes.io/host-path/1e042837-fcc4-42fd-848a-d5c61fcba122-var-lib-calico\") pod \"calico-node-gqqnr\" (UID: \"1e042837-fcc4-42fd-848a-d5c61fcba122\") " pod="calico-system/calico-node-gqqnr" Feb 9 09:49:12.801122 kubelet[2129]: I0209 09:49:12.801068 2129 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-lj52l\" (UniqueName: \"kubernetes.io/projected/1e042837-fcc4-42fd-848a-d5c61fcba122-kube-api-access-lj52l\") pod \"calico-node-gqqnr\" (UID: \"1e042837-fcc4-42fd-848a-d5c61fcba122\") " pod="calico-system/calico-node-gqqnr" Feb 9 09:49:12.801122 kubelet[2129]: I0209 09:49:12.801116 2129 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"registration-dir\" (UniqueName: \"kubernetes.io/host-path/fe988a42-0383-4a5b-80cd-d77b9230142f-registration-dir\") pod \"csi-node-driver-v96lh\" (UID: \"fe988a42-0383-4a5b-80cd-d77b9230142f\") " pod="calico-system/csi-node-driver-v96lh" Feb 9 09:49:12.801445 kubelet[2129]: I0209 09:49:12.801216 2129 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-gfdcd\" (UniqueName: \"kubernetes.io/projected/fe988a42-0383-4a5b-80cd-d77b9230142f-kube-api-access-gfdcd\") pod \"csi-node-driver-v96lh\" (UID: \"fe988a42-0383-4a5b-80cd-d77b9230142f\") " pod="calico-system/csi-node-driver-v96lh" Feb 9 09:49:12.801445 kubelet[2129]: I0209 09:49:12.801265 2129 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"xtables-lock\" (UniqueName: \"kubernetes.io/host-path/6cbea80f-2275-49c6-a6cc-fbf1fa6b8478-xtables-lock\") pod \"kube-proxy-qnpgj\" (UID: \"6cbea80f-2275-49c6-a6cc-fbf1fa6b8478\") " pod="kube-system/kube-proxy-qnpgj" Feb 9 09:49:12.801445 kubelet[2129]: I0209 09:49:12.801325 2129 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"lib-modules\" (UniqueName: \"kubernetes.io/host-path/6cbea80f-2275-49c6-a6cc-fbf1fa6b8478-lib-modules\") pod \"kube-proxy-qnpgj\" (UID: \"6cbea80f-2275-49c6-a6cc-fbf1fa6b8478\") " pod="kube-system/kube-proxy-qnpgj" Feb 9 09:49:12.801445 kubelet[2129]: I0209 09:49:12.801370 2129 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-qddvs\" (UniqueName: \"kubernetes.io/projected/6cbea80f-2275-49c6-a6cc-fbf1fa6b8478-kube-api-access-qddvs\") pod \"kube-proxy-qnpgj\" (UID: \"6cbea80f-2275-49c6-a6cc-fbf1fa6b8478\") " pod="kube-system/kube-proxy-qnpgj" Feb 9 09:49:12.801445 kubelet[2129]: I0209 09:49:12.801411 2129 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"xtables-lock\" (UniqueName: \"kubernetes.io/host-path/1e042837-fcc4-42fd-848a-d5c61fcba122-xtables-lock\") pod \"calico-node-gqqnr\" (UID: \"1e042837-fcc4-42fd-848a-d5c61fcba122\") " pod="calico-system/calico-node-gqqnr" Feb 9 09:49:12.801707 kubelet[2129]: I0209 09:49:12.801452 2129 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"policysync\" (UniqueName: \"kubernetes.io/host-path/1e042837-fcc4-42fd-848a-d5c61fcba122-policysync\") pod \"calico-node-gqqnr\" (UID: \"1e042837-fcc4-42fd-848a-d5c61fcba122\") " pod="calico-system/calico-node-gqqnr" Feb 9 09:49:12.801707 kubelet[2129]: I0209 09:49:12.801499 2129 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-net-dir\" (UniqueName: \"kubernetes.io/host-path/1e042837-fcc4-42fd-848a-d5c61fcba122-cni-net-dir\") pod \"calico-node-gqqnr\" (UID: \"1e042837-fcc4-42fd-848a-d5c61fcba122\") " pod="calico-system/calico-node-gqqnr" Feb 9 09:49:12.801707 kubelet[2129]: I0209 09:49:12.801551 2129 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"varrun\" (UniqueName: \"kubernetes.io/host-path/fe988a42-0383-4a5b-80cd-d77b9230142f-varrun\") pod \"csi-node-driver-v96lh\" (UID: \"fe988a42-0383-4a5b-80cd-d77b9230142f\") " pod="calico-system/csi-node-driver-v96lh" Feb 9 09:49:12.801707 kubelet[2129]: I0209 09:49:12.801592 2129 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-proxy\" (UniqueName: \"kubernetes.io/configmap/6cbea80f-2275-49c6-a6cc-fbf1fa6b8478-kube-proxy\") pod \"kube-proxy-qnpgj\" (UID: \"6cbea80f-2275-49c6-a6cc-fbf1fa6b8478\") " pod="kube-system/kube-proxy-qnpgj" Feb 9 09:49:12.801707 kubelet[2129]: I0209 09:49:12.801633 2129 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-bin-dir\" (UniqueName: \"kubernetes.io/host-path/1e042837-fcc4-42fd-848a-d5c61fcba122-cni-bin-dir\") pod \"calico-node-gqqnr\" (UID: \"1e042837-fcc4-42fd-848a-d5c61fcba122\") " pod="calico-system/calico-node-gqqnr" Feb 9 09:49:12.801981 kubelet[2129]: I0209 09:49:12.801676 2129 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kubelet-dir\" (UniqueName: \"kubernetes.io/host-path/fe988a42-0383-4a5b-80cd-d77b9230142f-kubelet-dir\") pod \"csi-node-driver-v96lh\" (UID: \"fe988a42-0383-4a5b-80cd-d77b9230142f\") " pod="calico-system/csi-node-driver-v96lh" Feb 9 09:49:12.801981 kubelet[2129]: I0209 09:49:12.801718 2129 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"tigera-ca-bundle\" (UniqueName: \"kubernetes.io/configmap/1e042837-fcc4-42fd-848a-d5c61fcba122-tigera-ca-bundle\") pod \"calico-node-gqqnr\" (UID: \"1e042837-fcc4-42fd-848a-d5c61fcba122\") " pod="calico-system/calico-node-gqqnr" Feb 9 09:49:12.801981 kubelet[2129]: I0209 09:49:12.801760 2129 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-log-dir\" (UniqueName: \"kubernetes.io/host-path/1e042837-fcc4-42fd-848a-d5c61fcba122-cni-log-dir\") pod \"calico-node-gqqnr\" (UID: \"1e042837-fcc4-42fd-848a-d5c61fcba122\") " pod="calico-system/calico-node-gqqnr" Feb 9 09:49:12.801981 kubelet[2129]: I0209 09:49:12.801803 2129 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"flexvol-driver-host\" (UniqueName: \"kubernetes.io/host-path/1e042837-fcc4-42fd-848a-d5c61fcba122-flexvol-driver-host\") pod \"calico-node-gqqnr\" (UID: \"1e042837-fcc4-42fd-848a-d5c61fcba122\") " pod="calico-system/calico-node-gqqnr" Feb 9 09:49:12.801981 kubelet[2129]: I0209 09:49:12.801845 2129 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"socket-dir\" (UniqueName: \"kubernetes.io/host-path/fe988a42-0383-4a5b-80cd-d77b9230142f-socket-dir\") pod \"csi-node-driver-v96lh\" (UID: \"fe988a42-0383-4a5b-80cd-d77b9230142f\") " pod="calico-system/csi-node-driver-v96lh" Feb 9 09:49:12.802329 kubelet[2129]: I0209 09:49:12.801888 2129 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"node-certs\" (UniqueName: \"kubernetes.io/secret/1e042837-fcc4-42fd-848a-d5c61fcba122-node-certs\") pod \"calico-node-gqqnr\" (UID: \"1e042837-fcc4-42fd-848a-d5c61fcba122\") " pod="calico-system/calico-node-gqqnr" Feb 9 09:49:12.802329 kubelet[2129]: I0209 09:49:12.801905 2129 reconciler.go:41] "Reconciler: start to sync state" Feb 9 09:49:12.811243 systemd[1]: Created slice kubepods-besteffort-pod1e042837_fcc4_42fd_848a_d5c61fcba122.slice. Feb 9 09:49:12.917558 kubelet[2129]: E0209 09:49:12.913528 2129 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 09:49:12.917558 kubelet[2129]: W0209 09:49:12.913565 2129 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 09:49:12.917558 kubelet[2129]: E0209 09:49:12.913606 2129 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 09:49:12.917558 kubelet[2129]: E0209 09:49:12.913893 2129 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 09:49:12.917558 kubelet[2129]: W0209 09:49:12.913908 2129 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 09:49:12.917558 kubelet[2129]: E0209 09:49:12.913932 2129 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 09:49:12.917558 kubelet[2129]: E0209 09:49:12.914225 2129 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 09:49:12.917558 kubelet[2129]: W0209 09:49:12.914242 2129 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 09:49:12.917558 kubelet[2129]: E0209 09:49:12.914267 2129 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 09:49:12.917558 kubelet[2129]: E0209 09:49:12.914942 2129 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 09:49:12.918301 kubelet[2129]: W0209 09:49:12.914960 2129 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 09:49:12.918301 kubelet[2129]: E0209 09:49:12.915104 2129 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 09:49:12.918301 kubelet[2129]: E0209 09:49:12.916680 2129 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 09:49:12.918301 kubelet[2129]: W0209 09:49:12.916703 2129 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 09:49:12.918301 kubelet[2129]: E0209 09:49:12.916733 2129 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 09:49:12.963381 kubelet[2129]: E0209 09:49:12.963329 2129 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 09:49:12.963381 kubelet[2129]: W0209 09:49:12.963365 2129 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 09:49:12.963607 kubelet[2129]: E0209 09:49:12.963399 2129 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 09:49:12.978074 kubelet[2129]: E0209 09:49:12.978023 2129 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 09:49:12.978074 kubelet[2129]: W0209 09:49:12.978060 2129 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 09:49:12.978293 kubelet[2129]: E0209 09:49:12.978097 2129 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 09:49:13.003413 kubelet[2129]: E0209 09:49:13.003382 2129 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 09:49:13.003627 kubelet[2129]: W0209 09:49:13.003601 2129 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 09:49:13.003755 kubelet[2129]: E0209 09:49:13.003733 2129 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 09:49:13.114163 env[1673]: time="2024-02-09T09:49:13.113318451Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:kube-proxy-qnpgj,Uid:6cbea80f-2275-49c6-a6cc-fbf1fa6b8478,Namespace:kube-system,Attempt:0,}" Feb 9 09:49:13.118322 env[1673]: time="2024-02-09T09:49:13.118262560Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-node-gqqnr,Uid:1e042837-fcc4-42fd-848a-d5c61fcba122,Namespace:calico-system,Attempt:0,}" Feb 9 09:49:13.674287 env[1673]: time="2024-02-09T09:49:13.674204694Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:13.676593 env[1673]: time="2024-02-09T09:49:13.676402662Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:13.680573 env[1673]: time="2024-02-09T09:49:13.680518758Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:7d46a07936af93fcce097459055f93ab07331509aa55f4a2a90d95a3ace1850e,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:13.682743 env[1673]: time="2024-02-09T09:49:13.682684146Z" level=info msg="ImageUpdate event &ImageUpdate{Name:sha256:7d46a07936af93fcce097459055f93ab07331509aa55f4a2a90d95a3ace1850e,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:13.685783 env[1673]: time="2024-02-09T09:49:13.685735626Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:13.690167 env[1673]: time="2024-02-09T09:49:13.690105798Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/pause@sha256:3d380ca8864549e74af4b29c10f9cb0956236dfb01c40ca076fb6c37253234db,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:13.692573 env[1673]: time="2024-02-09T09:49:13.692527590Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:13.695173 env[1673]: time="2024-02-09T09:49:13.695083770Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause@sha256:3d380ca8864549e74af4b29c10f9cb0956236dfb01c40ca076fb6c37253234db,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:13.726452 env[1673]: time="2024-02-09T09:49:13.726332899Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 9 09:49:13.726592 env[1673]: time="2024-02-09T09:49:13.726472387Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 9 09:49:13.726592 env[1673]: time="2024-02-09T09:49:13.726558187Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 9 09:49:13.726962 env[1673]: time="2024-02-09T09:49:13.726885283Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/8a64778766c5e3e3baa0101ece45ed7ebd47a8431244bddc1ccd723e96cf73ef pid=2188 runtime=io.containerd.runc.v2 Feb 9 09:49:13.729895 env[1673]: time="2024-02-09T09:49:13.729063823Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 9 09:49:13.729895 env[1673]: time="2024-02-09T09:49:13.729216679Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 9 09:49:13.729895 env[1673]: time="2024-02-09T09:49:13.729245587Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 9 09:49:13.731374 env[1673]: time="2024-02-09T09:49:13.731223979Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/1c85c863b8e9fe8ed50a3dd4ea72bf69a9a0593a4a3aadddadc3831cb7a6c5c8 pid=2201 runtime=io.containerd.runc.v2 Feb 9 09:49:13.758809 systemd[1]: Started cri-containerd-8a64778766c5e3e3baa0101ece45ed7ebd47a8431244bddc1ccd723e96cf73ef.scope. Feb 9 09:49:13.770173 systemd[1]: Started cri-containerd-1c85c863b8e9fe8ed50a3dd4ea72bf69a9a0593a4a3aadddadc3831cb7a6c5c8.scope. Feb 9 09:49:13.778698 kubelet[2129]: E0209 09:49:13.778647 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:13.805000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.814162 kernel: audit: type=1400 audit(1707472153.805:621): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.805000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.823192 kernel: audit: type=1400 audit(1707472153.805:622): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.805000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.805000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.838127 kernel: audit: type=1400 audit(1707472153.805:623): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.838230 kernel: audit: type=1400 audit(1707472153.805:624): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.805000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.839264 kernel: audit: audit_backlog=65 > audit_backlog_limit=64 Feb 9 09:49:13.805000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.805000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.805000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.805000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.814000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.814000 audit: BPF prog-id=73 op=LOAD Feb 9 09:49:13.822000 audit[2218]: AVC avc: denied { bpf } for pid=2218 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.822000 audit[2218]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000115b38 a2=10 a3=0 items=0 ppid=2188 pid=2218 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:13.822000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3861363437373837363663356533653362616130313031656365343565 Feb 9 09:49:13.822000 audit[2218]: AVC avc: denied { perfmon } for pid=2218 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.822000 audit[2218]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001155a0 a2=3c a3=0 items=0 ppid=2188 pid=2218 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:13.822000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3861363437373837363663356533653362616130313031656365343565 Feb 9 09:49:13.822000 audit[2218]: AVC avc: denied { bpf } for pid=2218 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.822000 audit[2218]: AVC avc: denied { bpf } for pid=2218 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.822000 audit[2218]: AVC avc: denied { bpf } for pid=2218 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.822000 audit[2218]: AVC avc: denied { perfmon } for pid=2218 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.822000 audit[2218]: AVC avc: denied { perfmon } for pid=2218 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.822000 audit[2218]: AVC avc: denied { perfmon } for pid=2218 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.822000 audit[2218]: AVC avc: denied { perfmon } for pid=2218 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.822000 audit[2218]: AVC avc: denied { perfmon } for pid=2218 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.822000 audit[2218]: AVC avc: denied { bpf } for pid=2218 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.830000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.830000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.830000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.830000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.830000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.830000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.830000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.830000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.830000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.836000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.836000 audit: BPF prog-id=74 op=LOAD Feb 9 09:49:13.822000 audit[2218]: AVC avc: denied { bpf } for pid=2218 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.822000 audit: BPF prog-id=75 op=LOAD Feb 9 09:49:13.822000 audit[2218]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001158e0 a2=78 a3=0 items=0 ppid=2188 pid=2218 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:13.822000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3861363437373837363663356533653362616130313031656365343565 Feb 9 09:49:13.837000 audit[2219]: AVC avc: denied { bpf } for pid=2219 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.837000 audit[2218]: AVC avc: denied { bpf } for pid=2218 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.837000 audit[2219]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000145b38 a2=10 a3=0 items=0 ppid=2201 pid=2219 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:13.837000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3163383563383633623865396665386564353061336464346561373262 Feb 9 09:49:13.837000 audit[2219]: AVC avc: denied { perfmon } for pid=2219 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.837000 audit[2218]: AVC avc: denied { bpf } for pid=2218 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.837000 audit[2218]: AVC avc: denied { perfmon } for pid=2218 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.837000 audit[2218]: AVC avc: denied { perfmon } for pid=2218 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.837000 audit[2219]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=2201 pid=2219 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:13.837000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3163383563383633623865396665386564353061336464346561373262 Feb 9 09:49:13.837000 audit[2218]: AVC avc: denied { perfmon } for pid=2218 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.837000 audit[2218]: AVC avc: denied { perfmon } for pid=2218 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.837000 audit[2218]: AVC avc: denied { perfmon } for pid=2218 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.837000 audit[2218]: AVC avc: denied { bpf } for pid=2218 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.837000 audit[2219]: AVC avc: denied { bpf } for pid=2219 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.837000 audit[2219]: AVC avc: denied { bpf } for pid=2219 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.837000 audit[2219]: AVC avc: denied { bpf } for pid=2219 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.837000 audit[2219]: AVC avc: denied { perfmon } for pid=2219 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.837000 audit[2219]: AVC avc: denied { perfmon } for pid=2219 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.837000 audit[2218]: AVC avc: denied { bpf } for pid=2218 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.837000 audit[2219]: AVC avc: denied { perfmon } for pid=2219 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.837000 audit: BPF prog-id=76 op=LOAD Feb 9 09:49:13.837000 audit[2219]: AVC avc: denied { perfmon } for pid=2219 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.837000 audit[2218]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000115670 a2=78 a3=0 items=0 ppid=2188 pid=2218 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:13.837000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3861363437373837363663356533653362616130313031656365343565 Feb 9 09:49:13.837000 audit: BPF prog-id=76 op=UNLOAD Feb 9 09:49:13.837000 audit: BPF prog-id=75 op=UNLOAD Feb 9 09:49:13.837000 audit[2218]: AVC avc: denied { bpf } for pid=2218 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.837000 audit[2218]: AVC avc: denied { bpf } for pid=2218 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.837000 audit[2219]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=2201 pid=2219 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:13.837000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3163383563383633623865396665386564353061336464346561373262 Feb 9 09:49:13.840000 audit[2219]: AVC avc: denied { bpf } for pid=2219 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.840000 audit[2219]: AVC avc: denied { bpf } for pid=2219 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.840000 audit[2219]: AVC avc: denied { perfmon } for pid=2219 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.840000 audit[2219]: AVC avc: denied { perfmon } for pid=2219 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.840000 audit[2219]: AVC avc: denied { perfmon } for pid=2219 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.840000 audit[2219]: AVC avc: denied { perfmon } for pid=2219 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.840000 audit[2219]: AVC avc: denied { perfmon } for pid=2219 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.840000 audit[2219]: AVC avc: denied { bpf } for pid=2219 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.840000 audit[2219]: AVC avc: denied { bpf } for pid=2219 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.840000 audit: BPF prog-id=79 op=LOAD Feb 9 09:49:13.840000 audit[2219]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=2201 pid=2219 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:13.840000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3163383563383633623865396665386564353061336464346561373262 Feb 9 09:49:13.840000 audit: BPF prog-id=79 op=UNLOAD Feb 9 09:49:13.840000 audit: BPF prog-id=78 op=UNLOAD Feb 9 09:49:13.840000 audit[2219]: AVC avc: denied { bpf } for pid=2219 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.840000 audit[2219]: AVC avc: denied { bpf } for pid=2219 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.840000 audit[2219]: AVC avc: denied { bpf } for pid=2219 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.840000 audit[2219]: AVC avc: denied { perfmon } for pid=2219 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.840000 audit[2219]: AVC avc: denied { perfmon } for pid=2219 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.840000 audit[2219]: AVC avc: denied { perfmon } for pid=2219 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.840000 audit[2219]: AVC avc: denied { perfmon } for pid=2219 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.840000 audit[2219]: AVC avc: denied { perfmon } for pid=2219 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.840000 audit[2219]: AVC avc: denied { bpf } for pid=2219 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.840000 audit[2219]: AVC avc: denied { bpf } for pid=2219 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:13.840000 audit: BPF prog-id=80 op=LOAD Feb 9 09:49:13.840000 audit[2219]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=2201 pid=2219 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:13.840000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3163383563383633623865396665386564353061336464346561373262 Feb 9 09:49:13.837000 audit[2218]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000115b40 a2=78 a3=0 items=0 ppid=2188 pid=2218 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:13.837000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3861363437373837363663356533653362616130313031656365343565 Feb 9 09:49:13.879778 env[1673]: time="2024-02-09T09:49:13.878681083Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-node-gqqnr,Uid:1e042837-fcc4-42fd-848a-d5c61fcba122,Namespace:calico-system,Attempt:0,} returns sandbox id \"1c85c863b8e9fe8ed50a3dd4ea72bf69a9a0593a4a3aadddadc3831cb7a6c5c8\"" Feb 9 09:49:13.883276 env[1673]: time="2024-02-09T09:49:13.883221079Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.0\"" Feb 9 09:49:13.884702 env[1673]: time="2024-02-09T09:49:13.884642539Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:kube-proxy-qnpgj,Uid:6cbea80f-2275-49c6-a6cc-fbf1fa6b8478,Namespace:kube-system,Attempt:0,} returns sandbox id \"8a64778766c5e3e3baa0101ece45ed7ebd47a8431244bddc1ccd723e96cf73ef\"" Feb 9 09:49:13.917617 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3855707259.mount: Deactivated successfully. Feb 9 09:49:13.981122 kubelet[2129]: E0209 09:49:13.980978 2129 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-v96lh" podUID=fe988a42-0383-4a5b-80cd-d77b9230142f Feb 9 09:49:14.779435 kubelet[2129]: E0209 09:49:14.779379 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:15.662329 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2093564116.mount: Deactivated successfully. Feb 9 09:49:15.780879 kubelet[2129]: E0209 09:49:15.780809 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:15.802038 env[1673]: time="2024-02-09T09:49:15.801960321Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:15.806030 env[1673]: time="2024-02-09T09:49:15.805962861Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:cbddd33ed55a4a5c129e8f09945d426860425b9778d9402efe7bcefea7990a57,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:15.808932 env[1673]: time="2024-02-09T09:49:15.808860537Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:15.811451 env[1673]: time="2024-02-09T09:49:15.811388457Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol@sha256:b05edbd1f80db4ada229e6001a666a7dd36bb6ab617143684fb3d28abfc4b71e,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:15.812523 env[1673]: time="2024-02-09T09:49:15.812478693Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.0\" returns image reference \"sha256:cbddd33ed55a4a5c129e8f09945d426860425b9778d9402efe7bcefea7990a57\"" Feb 9 09:49:15.814608 env[1673]: time="2024-02-09T09:49:15.814556637Z" level=info msg="PullImage \"registry.k8s.io/kube-proxy:v1.27.10\"" Feb 9 09:49:15.817732 env[1673]: time="2024-02-09T09:49:15.817666917Z" level=info msg="CreateContainer within sandbox \"1c85c863b8e9fe8ed50a3dd4ea72bf69a9a0593a4a3aadddadc3831cb7a6c5c8\" for container &ContainerMetadata{Name:flexvol-driver,Attempt:0,}" Feb 9 09:49:15.841056 env[1673]: time="2024-02-09T09:49:15.840977781Z" level=info msg="CreateContainer within sandbox \"1c85c863b8e9fe8ed50a3dd4ea72bf69a9a0593a4a3aadddadc3831cb7a6c5c8\" for &ContainerMetadata{Name:flexvol-driver,Attempt:0,} returns container id \"ea2355c638ad7c53b16502272078875d20403645a7273371a7a5303db9b8d0e7\"" Feb 9 09:49:15.842265 env[1673]: time="2024-02-09T09:49:15.842203569Z" level=info msg="StartContainer for \"ea2355c638ad7c53b16502272078875d20403645a7273371a7a5303db9b8d0e7\"" Feb 9 09:49:15.893251 systemd[1]: Started cri-containerd-ea2355c638ad7c53b16502272078875d20403645a7273371a7a5303db9b8d0e7.scope. Feb 9 09:49:15.938000 audit[2275]: AVC avc: denied { perfmon } for pid=2275 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:15.938000 audit[2275]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=2201 pid=2275 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:15.938000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6561323335356336333861643763353362313635303232373230373838 Feb 9 09:49:15.938000 audit[2275]: AVC avc: denied { bpf } for pid=2275 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:15.938000 audit[2275]: AVC avc: denied { bpf } for pid=2275 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:15.938000 audit[2275]: AVC avc: denied { bpf } for pid=2275 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:15.938000 audit[2275]: AVC avc: denied { perfmon } for pid=2275 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:15.938000 audit[2275]: AVC avc: denied { perfmon } for pid=2275 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:15.938000 audit[2275]: AVC avc: denied { perfmon } for pid=2275 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:15.938000 audit[2275]: AVC avc: denied { perfmon } for pid=2275 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:15.938000 audit[2275]: AVC avc: denied { perfmon } for pid=2275 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:15.938000 audit[2275]: AVC avc: denied { bpf } for pid=2275 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:15.938000 audit[2275]: AVC avc: denied { bpf } for pid=2275 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:15.938000 audit: BPF prog-id=81 op=LOAD Feb 9 09:49:15.938000 audit[2275]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=2201 pid=2275 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:15.938000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6561323335356336333861643763353362313635303232373230373838 Feb 9 09:49:15.940000 audit[2275]: AVC avc: denied { bpf } for pid=2275 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:15.940000 audit[2275]: AVC avc: denied { bpf } for pid=2275 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:15.940000 audit[2275]: AVC avc: denied { perfmon } for pid=2275 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:15.940000 audit[2275]: AVC avc: denied { perfmon } for pid=2275 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:15.940000 audit[2275]: AVC avc: denied { perfmon } for pid=2275 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:15.940000 audit[2275]: AVC avc: denied { perfmon } for pid=2275 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:15.940000 audit[2275]: AVC avc: denied { perfmon } for pid=2275 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:15.940000 audit[2275]: AVC avc: denied { bpf } for pid=2275 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:15.940000 audit[2275]: AVC avc: denied { bpf } for pid=2275 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:15.940000 audit: BPF prog-id=82 op=LOAD Feb 9 09:49:15.940000 audit[2275]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=2201 pid=2275 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:15.940000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6561323335356336333861643763353362313635303232373230373838 Feb 9 09:49:15.940000 audit: BPF prog-id=82 op=UNLOAD Feb 9 09:49:15.940000 audit: BPF prog-id=81 op=UNLOAD Feb 9 09:49:15.940000 audit[2275]: AVC avc: denied { bpf } for pid=2275 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:15.940000 audit[2275]: AVC avc: denied { bpf } for pid=2275 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:15.940000 audit[2275]: AVC avc: denied { bpf } for pid=2275 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:15.940000 audit[2275]: AVC avc: denied { perfmon } for pid=2275 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:15.940000 audit[2275]: AVC avc: denied { perfmon } for pid=2275 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:15.940000 audit[2275]: AVC avc: denied { perfmon } for pid=2275 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:15.940000 audit[2275]: AVC avc: denied { perfmon } for pid=2275 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:15.940000 audit[2275]: AVC avc: denied { perfmon } for pid=2275 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:15.940000 audit[2275]: AVC avc: denied { bpf } for pid=2275 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:15.940000 audit[2275]: AVC avc: denied { bpf } for pid=2275 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:15.940000 audit: BPF prog-id=83 op=LOAD Feb 9 09:49:15.940000 audit[2275]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=2201 pid=2275 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:15.940000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6561323335356336333861643763353362313635303232373230373838 Feb 9 09:49:15.980796 kubelet[2129]: E0209 09:49:15.980742 2129 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-v96lh" podUID=fe988a42-0383-4a5b-80cd-d77b9230142f Feb 9 09:49:15.982405 env[1673]: time="2024-02-09T09:49:15.981233014Z" level=info msg="StartContainer for \"ea2355c638ad7c53b16502272078875d20403645a7273371a7a5303db9b8d0e7\" returns successfully" Feb 9 09:49:15.990991 systemd[1]: cri-containerd-ea2355c638ad7c53b16502272078875d20403645a7273371a7a5303db9b8d0e7.scope: Deactivated successfully. Feb 9 09:49:15.993000 audit: BPF prog-id=83 op=UNLOAD Feb 9 09:49:16.109358 env[1673]: time="2024-02-09T09:49:16.109247094Z" level=info msg="shim disconnected" id=ea2355c638ad7c53b16502272078875d20403645a7273371a7a5303db9b8d0e7 Feb 9 09:49:16.109614 env[1673]: time="2024-02-09T09:49:16.109375986Z" level=warning msg="cleaning up after shim disconnected" id=ea2355c638ad7c53b16502272078875d20403645a7273371a7a5303db9b8d0e7 namespace=k8s.io Feb 9 09:49:16.109614 env[1673]: time="2024-02-09T09:49:16.109399590Z" level=info msg="cleaning up dead shim" Feb 9 09:49:16.124929 env[1673]: time="2024-02-09T09:49:16.124854450Z" level=warning msg="cleanup warnings time=\"2024-02-09T09:49:16Z\" level=info msg=\"starting signal loop\" namespace=k8s.io pid=2320 runtime=io.containerd.runc.v2\n" Feb 9 09:49:16.484168 systemd[1]: run-containerd-io.containerd.runtime.v2.task-k8s.io-ea2355c638ad7c53b16502272078875d20403645a7273371a7a5303db9b8d0e7-rootfs.mount: Deactivated successfully. Feb 9 09:49:16.782008 kubelet[2129]: E0209 09:49:16.781841 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:17.182284 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3812916733.mount: Deactivated successfully. Feb 9 09:49:17.782667 kubelet[2129]: E0209 09:49:17.782580 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:17.935914 env[1673]: time="2024-02-09T09:49:17.935829719Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/kube-proxy:v1.27.10,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:17.939426 env[1673]: time="2024-02-09T09:49:17.939325223Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:f17f9528c5073692925255c3de3f310109480873912e8b5ddc171ae1e64324ef,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:17.941817 env[1673]: time="2024-02-09T09:49:17.941751443Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/kube-proxy:v1.27.10,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:17.945188 env[1673]: time="2024-02-09T09:49:17.945100343Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/kube-proxy@sha256:d084b53c772f62ec38fddb2348a82d4234016daf6cd43fedbf0b3281f3790f88,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:17.945671 env[1673]: time="2024-02-09T09:49:17.945616127Z" level=info msg="PullImage \"registry.k8s.io/kube-proxy:v1.27.10\" returns image reference \"sha256:f17f9528c5073692925255c3de3f310109480873912e8b5ddc171ae1e64324ef\"" Feb 9 09:49:17.948480 env[1673]: time="2024-02-09T09:49:17.948313463Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/cni:v3.27.0\"" Feb 9 09:49:17.950992 env[1673]: time="2024-02-09T09:49:17.950661744Z" level=info msg="CreateContainer within sandbox \"8a64778766c5e3e3baa0101ece45ed7ebd47a8431244bddc1ccd723e96cf73ef\" for container &ContainerMetadata{Name:kube-proxy,Attempt:0,}" Feb 9 09:49:17.975252 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1425884856.mount: Deactivated successfully. Feb 9 09:49:17.982100 kubelet[2129]: E0209 09:49:17.982030 2129 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-v96lh" podUID=fe988a42-0383-4a5b-80cd-d77b9230142f Feb 9 09:49:17.985069 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3187085536.mount: Deactivated successfully. Feb 9 09:49:17.993230 env[1673]: time="2024-02-09T09:49:17.993163740Z" level=info msg="CreateContainer within sandbox \"8a64778766c5e3e3baa0101ece45ed7ebd47a8431244bddc1ccd723e96cf73ef\" for &ContainerMetadata{Name:kube-proxy,Attempt:0,} returns container id \"a33da5d6a84e66014dabb0905cefb0f060c1ea948d03dddbc82e2b5ed8f262e7\"" Feb 9 09:49:17.994405 env[1673]: time="2024-02-09T09:49:17.994356636Z" level=info msg="StartContainer for \"a33da5d6a84e66014dabb0905cefb0f060c1ea948d03dddbc82e2b5ed8f262e7\"" Feb 9 09:49:18.038425 systemd[1]: Started cri-containerd-a33da5d6a84e66014dabb0905cefb0f060c1ea948d03dddbc82e2b5ed8f262e7.scope. Feb 9 09:49:18.088280 kernel: kauditd_printk_skb: 179 callbacks suppressed Feb 9 09:49:18.088485 kernel: audit: type=1400 audit(1707472158.077:664): avc: denied { perfmon } for pid=2341 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.077000 audit[2341]: AVC avc: denied { perfmon } for pid=2341 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.077000 audit[2341]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=2188 pid=2341 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.100050 kernel: audit: type=1300 audit(1707472158.077:664): arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=2188 pid=2341 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.077000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6133336461356436613834653636303134646162623039303563656662 Feb 9 09:49:18.110251 kernel: audit: type=1327 audit(1707472158.077:664): proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6133336461356436613834653636303134646162623039303563656662 Feb 9 09:49:18.077000 audit[2341]: AVC avc: denied { bpf } for pid=2341 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.118914 kernel: audit: type=1400 audit(1707472158.077:665): avc: denied { bpf } for pid=2341 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.077000 audit[2341]: AVC avc: denied { bpf } for pid=2341 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.129606 kernel: audit: type=1400 audit(1707472158.077:665): avc: denied { bpf } for pid=2341 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.077000 audit[2341]: AVC avc: denied { bpf } for pid=2341 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.139343 kernel: audit: type=1400 audit(1707472158.077:665): avc: denied { bpf } for pid=2341 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.077000 audit[2341]: AVC avc: denied { perfmon } for pid=2341 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.148106 kernel: audit: type=1400 audit(1707472158.077:665): avc: denied { perfmon } for pid=2341 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.148290 kernel: audit: type=1400 audit(1707472158.077:665): avc: denied { perfmon } for pid=2341 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.077000 audit[2341]: AVC avc: denied { perfmon } for pid=2341 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.077000 audit[2341]: AVC avc: denied { perfmon } for pid=2341 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.164067 kernel: audit: type=1400 audit(1707472158.077:665): avc: denied { perfmon } for pid=2341 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.077000 audit[2341]: AVC avc: denied { perfmon } for pid=2341 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.172167 kernel: audit: type=1400 audit(1707472158.077:665): avc: denied { perfmon } for pid=2341 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.077000 audit[2341]: AVC avc: denied { perfmon } for pid=2341 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.077000 audit[2341]: AVC avc: denied { bpf } for pid=2341 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.077000 audit[2341]: AVC avc: denied { bpf } for pid=2341 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.077000 audit: BPF prog-id=84 op=LOAD Feb 9 09:49:18.077000 audit[2341]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=2188 pid=2341 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.077000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6133336461356436613834653636303134646162623039303563656662 Feb 9 09:49:18.079000 audit[2341]: AVC avc: denied { bpf } for pid=2341 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.079000 audit[2341]: AVC avc: denied { bpf } for pid=2341 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.079000 audit[2341]: AVC avc: denied { perfmon } for pid=2341 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.079000 audit[2341]: AVC avc: denied { perfmon } for pid=2341 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.079000 audit[2341]: AVC avc: denied { perfmon } for pid=2341 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.079000 audit[2341]: AVC avc: denied { perfmon } for pid=2341 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.079000 audit[2341]: AVC avc: denied { perfmon } for pid=2341 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.079000 audit[2341]: AVC avc: denied { bpf } for pid=2341 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.079000 audit[2341]: AVC avc: denied { bpf } for pid=2341 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.079000 audit: BPF prog-id=85 op=LOAD Feb 9 09:49:18.079000 audit[2341]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=2188 pid=2341 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.079000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6133336461356436613834653636303134646162623039303563656662 Feb 9 09:49:18.087000 audit: BPF prog-id=85 op=UNLOAD Feb 9 09:49:18.087000 audit: BPF prog-id=84 op=UNLOAD Feb 9 09:49:18.087000 audit[2341]: AVC avc: denied { bpf } for pid=2341 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.087000 audit[2341]: AVC avc: denied { bpf } for pid=2341 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.087000 audit[2341]: AVC avc: denied { bpf } for pid=2341 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.087000 audit[2341]: AVC avc: denied { perfmon } for pid=2341 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.087000 audit[2341]: AVC avc: denied { perfmon } for pid=2341 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.087000 audit[2341]: AVC avc: denied { perfmon } for pid=2341 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.087000 audit[2341]: AVC avc: denied { perfmon } for pid=2341 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.087000 audit[2341]: AVC avc: denied { perfmon } for pid=2341 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.087000 audit[2341]: AVC avc: denied { bpf } for pid=2341 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.087000 audit[2341]: AVC avc: denied { bpf } for pid=2341 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:18.087000 audit: BPF prog-id=86 op=LOAD Feb 9 09:49:18.087000 audit[2341]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=2188 pid=2341 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.087000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6133336461356436613834653636303134646162623039303563656662 Feb 9 09:49:18.176048 env[1673]: time="2024-02-09T09:49:18.174461205Z" level=info msg="StartContainer for \"a33da5d6a84e66014dabb0905cefb0f060c1ea948d03dddbc82e2b5ed8f262e7\" returns successfully" Feb 9 09:49:18.266000 audit[2389]: NETFILTER_CFG table=mangle:14 family=10 entries=1 op=nft_register_chain pid=2389 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 09:49:18.266000 audit[2389]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=fffff6d96490 a2=0 a3=ffff91b156c0 items=0 ppid=2352 pid=2389 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.266000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006D616E676C65 Feb 9 09:49:18.269000 audit[2390]: NETFILTER_CFG table=mangle:15 family=2 entries=1 op=nft_register_chain pid=2390 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 09:49:18.269000 audit[2390]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=fffffe06d5e0 a2=0 a3=ffffb26366c0 items=0 ppid=2352 pid=2390 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.269000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006D616E676C65 Feb 9 09:49:18.272000 audit[2391]: NETFILTER_CFG table=nat:16 family=10 entries=1 op=nft_register_chain pid=2391 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 09:49:18.272000 audit[2391]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=fffffa476480 a2=0 a3=ffffb89de6c0 items=0 ppid=2352 pid=2391 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.272000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006E6174 Feb 9 09:49:18.274000 audit[2393]: NETFILTER_CFG table=nat:17 family=2 entries=1 op=nft_register_chain pid=2393 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 09:49:18.274000 audit[2393]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=fffff599fa40 a2=0 a3=ffffa191a6c0 items=0 ppid=2352 pid=2393 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.274000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006E6174 Feb 9 09:49:18.275000 audit[2394]: NETFILTER_CFG table=filter:18 family=10 entries=1 op=nft_register_chain pid=2394 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 09:49:18.275000 audit[2394]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffdeb876c0 a2=0 a3=ffff89f166c0 items=0 ppid=2352 pid=2394 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.275000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D740066696C746572 Feb 9 09:49:18.279000 audit[2396]: NETFILTER_CFG table=filter:19 family=2 entries=1 op=nft_register_chain pid=2396 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 09:49:18.279000 audit[2396]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffda7c62a0 a2=0 a3=ffff988056c0 items=0 ppid=2352 pid=2396 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.279000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D740066696C746572 Feb 9 09:49:18.375000 audit[2397]: NETFILTER_CFG table=filter:20 family=2 entries=1 op=nft_register_chain pid=2397 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 09:49:18.375000 audit[2397]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=108 a0=3 a1=ffffea477480 a2=0 a3=ffffb4e056c0 items=0 ppid=2352 pid=2397 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.375000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D45585445524E414C2D5345525649434553002D740066696C746572 Feb 9 09:49:18.384000 audit[2399]: NETFILTER_CFG table=filter:21 family=2 entries=1 op=nft_register_rule pid=2399 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 09:49:18.384000 audit[2399]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=752 a0=3 a1=ffffe93e0fa0 a2=0 a3=ffff8ddc86c0 items=0 ppid=2352 pid=2399 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.384000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C652073657276696365 Feb 9 09:49:18.391000 audit[2402]: NETFILTER_CFG table=filter:22 family=2 entries=2 op=nft_register_chain pid=2402 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 09:49:18.391000 audit[2402]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=836 a0=3 a1=ffffda446fb0 a2=0 a3=ffff995326c0 items=0 ppid=2352 pid=2402 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.391000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C65207365727669 Feb 9 09:49:18.394000 audit[2403]: NETFILTER_CFG table=filter:23 family=2 entries=1 op=nft_register_chain pid=2403 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 09:49:18.394000 audit[2403]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=fffff13edef0 a2=0 a3=ffff974ed6c0 items=0 ppid=2352 pid=2403 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.394000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4E4F4445504F525453002D740066696C746572 Feb 9 09:49:18.399000 audit[2405]: NETFILTER_CFG table=filter:24 family=2 entries=1 op=nft_register_rule pid=2405 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 09:49:18.399000 audit[2405]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=528 a0=3 a1=ffffc2f1ea00 a2=0 a3=ffffadd776c0 items=0 ppid=2352 pid=2405 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.399000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206865616C746820636865636B207365727669636520706F727473002D6A004B5542452D4E4F4445504F525453 Feb 9 09:49:18.402000 audit[2406]: NETFILTER_CFG table=filter:25 family=2 entries=1 op=nft_register_chain pid=2406 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 09:49:18.402000 audit[2406]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffda46f4d0 a2=0 a3=ffffa5c716c0 items=0 ppid=2352 pid=2406 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.402000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D740066696C746572 Feb 9 09:49:18.407000 audit[2408]: NETFILTER_CFG table=filter:26 family=2 entries=1 op=nft_register_rule pid=2408 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 09:49:18.407000 audit[2408]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=744 a0=3 a1=fffff2db3b80 a2=0 a3=ffffaa3126c0 items=0 ppid=2352 pid=2408 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.407000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D Feb 9 09:49:18.416000 audit[2411]: NETFILTER_CFG table=filter:27 family=2 entries=1 op=nft_register_rule pid=2411 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 09:49:18.416000 audit[2411]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=744 a0=3 a1=ffffc5ddc110 a2=0 a3=ffffbaece6c0 items=0 ppid=2352 pid=2411 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.416000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D53 Feb 9 09:49:18.418000 audit[2412]: NETFILTER_CFG table=filter:28 family=2 entries=1 op=nft_register_chain pid=2412 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 09:49:18.418000 audit[2412]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffebe87c80 a2=0 a3=ffffa35466c0 items=0 ppid=2352 pid=2412 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.418000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D464F5257415244002D740066696C746572 Feb 9 09:49:18.423000 audit[2414]: NETFILTER_CFG table=filter:29 family=2 entries=1 op=nft_register_rule pid=2414 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 09:49:18.423000 audit[2414]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=528 a0=3 a1=ffffcade8520 a2=0 a3=ffffa019a6c0 items=0 ppid=2352 pid=2414 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.423000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320666F7277617264696E672072756C6573002D6A004B5542452D464F5257415244 Feb 9 09:49:18.426000 audit[2415]: NETFILTER_CFG table=filter:30 family=2 entries=1 op=nft_register_chain pid=2415 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 09:49:18.426000 audit[2415]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffcc319360 a2=0 a3=ffff80dde6c0 items=0 ppid=2352 pid=2415 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.426000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D4649524557414C4C002D740066696C746572 Feb 9 09:49:18.432000 audit[2417]: NETFILTER_CFG table=filter:31 family=2 entries=1 op=nft_register_rule pid=2417 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 09:49:18.432000 audit[2417]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffc2148a40 a2=0 a3=ffffb89386c0 items=0 ppid=2352 pid=2417 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.432000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Feb 9 09:49:18.442000 audit[2420]: NETFILTER_CFG table=filter:32 family=2 entries=1 op=nft_register_rule pid=2420 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 09:49:18.442000 audit[2420]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=fffffe6fdde0 a2=0 a3=ffff83cde6c0 items=0 ppid=2352 pid=2420 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.442000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Feb 9 09:49:18.449000 audit[2423]: NETFILTER_CFG table=filter:33 family=2 entries=1 op=nft_register_rule pid=2423 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 09:49:18.449000 audit[2423]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffc3a934b0 a2=0 a3=ffffa101b6c0 items=0 ppid=2352 pid=2423 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.449000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D Feb 9 09:49:18.452000 audit[2424]: NETFILTER_CFG table=nat:34 family=2 entries=1 op=nft_register_chain pid=2424 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 09:49:18.452000 audit[2424]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=96 a0=3 a1=ffffecd66ec0 a2=0 a3=ffff8ffdf6c0 items=0 ppid=2352 pid=2424 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.452000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D74006E6174 Feb 9 09:49:18.457000 audit[2426]: NETFILTER_CFG table=nat:35 family=2 entries=2 op=nft_register_chain pid=2426 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 09:49:18.457000 audit[2426]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=600 a0=3 a1=ffffe2333b00 a2=0 a3=ffffa42b06c0 items=0 ppid=2352 pid=2426 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.457000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Feb 9 09:49:18.489000 audit[2432]: NETFILTER_CFG table=nat:36 family=2 entries=2 op=nft_register_chain pid=2432 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 09:49:18.489000 audit[2432]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=608 a0=3 a1=ffffe2ec5c80 a2=0 a3=ffff8b8bd6c0 items=0 ppid=2352 pid=2432 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.489000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900505245524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Feb 9 09:49:18.503000 audit[2437]: NETFILTER_CFG table=nat:37 family=2 entries=1 op=nft_register_chain pid=2437 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 09:49:18.503000 audit[2437]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffc2cb3e90 a2=0 a3=ffff8de2a6c0 items=0 ppid=2352 pid=2437 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.503000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D504F5354524F5554494E47002D74006E6174 Feb 9 09:49:18.509000 audit[2439]: NETFILTER_CFG table=nat:38 family=2 entries=2 op=nft_register_chain pid=2439 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 09:49:18.509000 audit[2439]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=612 a0=3 a1=ffffd79bb4f0 a2=0 a3=ffff9734d6c0 items=0 ppid=2352 pid=2439 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.509000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900504F5354524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320706F7374726F7574696E672072756C6573002D6A004B5542452D504F5354524F5554494E47 Feb 9 09:49:18.519000 audit[2441]: NETFILTER_CFG table=filter:39 family=2 entries=5 op=nft_register_rule pid=2441 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 09:49:18.519000 audit[2441]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=2844 a0=3 a1=ffffeb6b5260 a2=0 a3=ffff9d1396c0 items=0 ppid=2352 pid=2441 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.519000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 09:49:18.547000 audit[2441]: NETFILTER_CFG table=nat:40 family=2 entries=54 op=nft_register_chain pid=2441 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 09:49:18.547000 audit[2441]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=24988 a0=3 a1=ffffeb6b5260 a2=0 a3=ffff9d1396c0 items=0 ppid=2352 pid=2441 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.547000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 09:49:18.566000 audit[2449]: NETFILTER_CFG table=filter:41 family=10 entries=1 op=nft_register_chain pid=2449 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 09:49:18.566000 audit[2449]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=108 a0=3 a1=ffffcbd85750 a2=0 a3=ffffa23296c0 items=0 ppid=2352 pid=2449 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.566000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D45585445524E414C2D5345525649434553002D740066696C746572 Feb 9 09:49:18.571000 audit[2451]: NETFILTER_CFG table=filter:42 family=10 entries=2 op=nft_register_chain pid=2451 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 09:49:18.571000 audit[2451]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=836 a0=3 a1=fffffd6b95a0 a2=0 a3=ffffb75ba6c0 items=0 ppid=2352 pid=2451 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.571000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C6520736572766963 Feb 9 09:49:18.579000 audit[2454]: NETFILTER_CFG table=filter:43 family=10 entries=2 op=nft_register_chain pid=2454 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 09:49:18.579000 audit[2454]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=836 a0=3 a1=ffffcae4c540 a2=0 a3=ffff829706c0 items=0 ppid=2352 pid=2454 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.579000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C652073657276 Feb 9 09:49:18.582000 audit[2455]: NETFILTER_CFG table=filter:44 family=10 entries=1 op=nft_register_chain pid=2455 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 09:49:18.582000 audit[2455]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffd92f7690 a2=0 a3=ffff914e36c0 items=0 ppid=2352 pid=2455 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.582000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4E4F4445504F525453002D740066696C746572 Feb 9 09:49:18.587000 audit[2457]: NETFILTER_CFG table=filter:45 family=10 entries=1 op=nft_register_rule pid=2457 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 09:49:18.587000 audit[2457]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=528 a0=3 a1=ffffee2c3690 a2=0 a3=ffffaa3766c0 items=0 ppid=2352 pid=2457 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.587000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206865616C746820636865636B207365727669636520706F727473002D6A004B5542452D4E4F4445504F525453 Feb 9 09:49:18.590000 audit[2458]: NETFILTER_CFG table=filter:46 family=10 entries=1 op=nft_register_chain pid=2458 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 09:49:18.590000 audit[2458]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=fffff003ba80 a2=0 a3=ffffac2b36c0 items=0 ppid=2352 pid=2458 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.590000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D740066696C746572 Feb 9 09:49:18.595000 audit[2460]: NETFILTER_CFG table=filter:47 family=10 entries=1 op=nft_register_rule pid=2460 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 09:49:18.595000 audit[2460]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=744 a0=3 a1=ffffe5994400 a2=0 a3=ffffa5b766c0 items=0 ppid=2352 pid=2460 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.595000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B554245 Feb 9 09:49:18.602000 audit[2463]: NETFILTER_CFG table=filter:48 family=10 entries=2 op=nft_register_chain pid=2463 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 09:49:18.602000 audit[2463]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=828 a0=3 a1=ffffd2200380 a2=0 a3=ffff931776c0 items=0 ppid=2352 pid=2463 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.602000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D Feb 9 09:49:18.604000 audit[2464]: NETFILTER_CFG table=filter:49 family=10 entries=1 op=nft_register_chain pid=2464 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 09:49:18.604000 audit[2464]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffd2c94940 a2=0 a3=ffffad2c56c0 items=0 ppid=2352 pid=2464 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.604000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D464F5257415244002D740066696C746572 Feb 9 09:49:18.609000 audit[2466]: NETFILTER_CFG table=filter:50 family=10 entries=1 op=nft_register_rule pid=2466 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 09:49:18.609000 audit[2466]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=528 a0=3 a1=ffffd01b2110 a2=0 a3=ffffadbdd6c0 items=0 ppid=2352 pid=2466 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.609000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320666F7277617264696E672072756C6573002D6A004B5542452D464F5257415244 Feb 9 09:49:18.611000 audit[2467]: NETFILTER_CFG table=filter:51 family=10 entries=1 op=nft_register_chain pid=2467 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 09:49:18.611000 audit[2467]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=fffff4162cd0 a2=0 a3=ffff823916c0 items=0 ppid=2352 pid=2467 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.611000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D4649524557414C4C002D740066696C746572 Feb 9 09:49:18.616000 audit[2469]: NETFILTER_CFG table=filter:52 family=10 entries=1 op=nft_register_rule pid=2469 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 09:49:18.616000 audit[2469]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=fffff6529900 a2=0 a3=ffff969386c0 items=0 ppid=2352 pid=2469 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.616000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Feb 9 09:49:18.623000 audit[2472]: NETFILTER_CFG table=filter:53 family=10 entries=1 op=nft_register_rule pid=2472 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 09:49:18.623000 audit[2472]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffc2f40cb0 a2=0 a3=ffff959e86c0 items=0 ppid=2352 pid=2472 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.623000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D Feb 9 09:49:18.631000 audit[2475]: NETFILTER_CFG table=filter:54 family=10 entries=1 op=nft_register_rule pid=2475 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 09:49:18.631000 audit[2475]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffc8b9cae0 a2=0 a3=ffff83b386c0 items=0 ppid=2352 pid=2475 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.631000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C Feb 9 09:49:18.638000 audit[2476]: NETFILTER_CFG table=nat:55 family=10 entries=1 op=nft_register_chain pid=2476 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 09:49:18.638000 audit[2476]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=96 a0=3 a1=ffffd7d27fa0 a2=0 a3=ffff80d9d6c0 items=0 ppid=2352 pid=2476 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.638000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D74006E6174 Feb 9 09:49:18.644000 audit[2478]: NETFILTER_CFG table=nat:56 family=10 entries=2 op=nft_register_chain pid=2478 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 09:49:18.644000 audit[2478]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=600 a0=3 a1=ffffd7f5c7e0 a2=0 a3=ffff82c826c0 items=0 ppid=2352 pid=2478 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.644000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Feb 9 09:49:18.653000 audit[2481]: NETFILTER_CFG table=nat:57 family=10 entries=2 op=nft_register_chain pid=2481 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 09:49:18.653000 audit[2481]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=608 a0=3 a1=fffffe5c6bc0 a2=0 a3=ffff8c16a6c0 items=0 ppid=2352 pid=2481 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.653000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900505245524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Feb 9 09:49:18.657000 audit[2482]: NETFILTER_CFG table=filter:58 family=10 entries=1 op=nft_register_chain pid=2482 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 09:49:18.657000 audit[2482]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffc7fc8800 a2=0 a3=ffffb1f326c0 items=0 ppid=2352 pid=2482 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.657000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4649524557414C4C002D740066696C746572 Feb 9 09:49:18.662000 audit[2484]: NETFILTER_CFG table=filter:59 family=10 entries=1 op=nft_register_rule pid=2484 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 09:49:18.662000 audit[2484]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=228 a0=3 a1=ffffd13a1870 a2=0 a3=ffff978176c0 items=0 ppid=2352 pid=2484 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.662000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6A004B5542452D4649524557414C4C Feb 9 09:49:18.669000 audit[2487]: NETFILTER_CFG table=filter:60 family=10 entries=1 op=nft_register_rule pid=2487 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 09:49:18.669000 audit[2487]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=228 a0=3 a1=ffffd5ccbb80 a2=0 a3=ffffb59626c0 items=0 ppid=2352 pid=2487 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.669000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6A004B5542452D4649524557414C4C Feb 9 09:49:18.672000 audit[2488]: NETFILTER_CFG table=nat:61 family=10 entries=1 op=nft_register_chain pid=2488 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 09:49:18.672000 audit[2488]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffe67aae40 a2=0 a3=ffff85ea26c0 items=0 ppid=2352 pid=2488 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.672000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D504F5354524F5554494E47002D74006E6174 Feb 9 09:49:18.677000 audit[2490]: NETFILTER_CFG table=nat:62 family=10 entries=2 op=nft_register_chain pid=2490 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 09:49:18.677000 audit[2490]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=612 a0=3 a1=ffffc0008930 a2=0 a3=ffff881996c0 items=0 ppid=2352 pid=2490 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.677000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900504F5354524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320706F7374726F7574696E672072756C6573002D6A004B5542452D504F5354524F5554494E47 Feb 9 09:49:18.684000 audit[2492]: NETFILTER_CFG table=filter:63 family=10 entries=3 op=nft_register_rule pid=2492 subj=system_u:system_r:kernel_t:s0 comm="ip6tables-resto" Feb 9 09:49:18.684000 audit[2492]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=1916 a0=3 a1=ffffd2ed32c0 a2=0 a3=ffff8d1cb6c0 items=0 ppid=2352 pid=2492 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables-resto" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.684000 audit: PROCTITLE proctitle=6970367461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 09:49:18.686000 audit[2492]: NETFILTER_CFG table=nat:64 family=10 entries=7 op=nft_register_chain pid=2492 subj=system_u:system_r:kernel_t:s0 comm="ip6tables-resto" Feb 9 09:49:18.686000 audit[2492]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=1968 a0=3 a1=ffffd2ed32c0 a2=0 a3=ffff8d1cb6c0 items=0 ppid=2352 pid=2492 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables-resto" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:18.686000 audit: PROCTITLE proctitle=6970367461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 09:49:18.783773 kubelet[2129]: E0209 09:49:18.783669 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:19.269525 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2226151444.mount: Deactivated successfully. Feb 9 09:49:19.784572 kubelet[2129]: E0209 09:49:19.784503 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:19.981885 kubelet[2129]: E0209 09:49:19.981803 2129 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-v96lh" podUID=fe988a42-0383-4a5b-80cd-d77b9230142f Feb 9 09:49:20.785075 kubelet[2129]: E0209 09:49:20.785015 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:21.785244 kubelet[2129]: E0209 09:49:21.785190 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:21.981412 kubelet[2129]: E0209 09:49:21.981350 2129 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-v96lh" podUID=fe988a42-0383-4a5b-80cd-d77b9230142f Feb 9 09:49:22.786319 kubelet[2129]: E0209 09:49:22.786235 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:22.826467 env[1673]: time="2024-02-09T09:49:22.826386076Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/cni:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:22.830275 env[1673]: time="2024-02-09T09:49:22.830222344Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:9c9318f5fbf505fc3d84676966009a3887e58ea1e3eac10039e5a96dfceb254b,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:22.832917 env[1673]: time="2024-02-09T09:49:22.832868764Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/cni:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:22.835854 env[1673]: time="2024-02-09T09:49:22.835809820Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/cni@sha256:d943b4c23e82a39b0186a1a3b2fe8f728e543d503df72d7be521501a82b7e7b4,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:22.837295 env[1673]: time="2024-02-09T09:49:22.837221068Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/cni:v3.27.0\" returns image reference \"sha256:9c9318f5fbf505fc3d84676966009a3887e58ea1e3eac10039e5a96dfceb254b\"" Feb 9 09:49:22.841839 env[1673]: time="2024-02-09T09:49:22.841783048Z" level=info msg="CreateContainer within sandbox \"1c85c863b8e9fe8ed50a3dd4ea72bf69a9a0593a4a3aadddadc3831cb7a6c5c8\" for container &ContainerMetadata{Name:install-cni,Attempt:0,}" Feb 9 09:49:22.864003 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3280188661.mount: Deactivated successfully. Feb 9 09:49:22.874327 env[1673]: time="2024-02-09T09:49:22.874253716Z" level=info msg="CreateContainer within sandbox \"1c85c863b8e9fe8ed50a3dd4ea72bf69a9a0593a4a3aadddadc3831cb7a6c5c8\" for &ContainerMetadata{Name:install-cni,Attempt:0,} returns container id \"afcdbf4607a063ebc400aac64b103ba0853f53447dbf7c66dc1511a1fdc998fd\"" Feb 9 09:49:22.875503 env[1673]: time="2024-02-09T09:49:22.875449708Z" level=info msg="StartContainer for \"afcdbf4607a063ebc400aac64b103ba0853f53447dbf7c66dc1511a1fdc998fd\"" Feb 9 09:49:22.913576 systemd[1]: run-containerd-runc-k8s.io-afcdbf4607a063ebc400aac64b103ba0853f53447dbf7c66dc1511a1fdc998fd-runc.rlQCBr.mount: Deactivated successfully. Feb 9 09:49:22.922715 systemd[1]: Started cri-containerd-afcdbf4607a063ebc400aac64b103ba0853f53447dbf7c66dc1511a1fdc998fd.scope. Feb 9 09:49:22.956000 audit[2500]: AVC avc: denied { perfmon } for pid=2500 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:22.956000 audit[2500]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=400019d5a0 a2=3c a3=0 items=0 ppid=2201 pid=2500 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:22.956000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6166636462663436303761303633656263343030616163363462313033 Feb 9 09:49:22.956000 audit[2500]: AVC avc: denied { bpf } for pid=2500 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:22.956000 audit[2500]: AVC avc: denied { bpf } for pid=2500 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:22.956000 audit[2500]: AVC avc: denied { bpf } for pid=2500 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:22.956000 audit[2500]: AVC avc: denied { perfmon } for pid=2500 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:22.956000 audit[2500]: AVC avc: denied { perfmon } for pid=2500 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:22.956000 audit[2500]: AVC avc: denied { perfmon } for pid=2500 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:22.956000 audit[2500]: AVC avc: denied { perfmon } for pid=2500 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:22.956000 audit[2500]: AVC avc: denied { perfmon } for pid=2500 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:22.956000 audit[2500]: AVC avc: denied { bpf } for pid=2500 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:22.956000 audit[2500]: AVC avc: denied { bpf } for pid=2500 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:22.956000 audit: BPF prog-id=87 op=LOAD Feb 9 09:49:22.956000 audit[2500]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=400019d8e0 a2=78 a3=0 items=0 ppid=2201 pid=2500 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:22.956000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6166636462663436303761303633656263343030616163363462313033 Feb 9 09:49:22.956000 audit[2500]: AVC avc: denied { bpf } for pid=2500 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:22.956000 audit[2500]: AVC avc: denied { bpf } for pid=2500 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:22.956000 audit[2500]: AVC avc: denied { perfmon } for pid=2500 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:22.956000 audit[2500]: AVC avc: denied { perfmon } for pid=2500 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:22.956000 audit[2500]: AVC avc: denied { perfmon } for pid=2500 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:22.956000 audit[2500]: AVC avc: denied { perfmon } for pid=2500 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:22.956000 audit[2500]: AVC avc: denied { perfmon } for pid=2500 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:22.956000 audit[2500]: AVC avc: denied { bpf } for pid=2500 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:22.956000 audit[2500]: AVC avc: denied { bpf } for pid=2500 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:22.956000 audit: BPF prog-id=88 op=LOAD Feb 9 09:49:22.956000 audit[2500]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=400019d670 a2=78 a3=0 items=0 ppid=2201 pid=2500 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:22.956000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6166636462663436303761303633656263343030616163363462313033 Feb 9 09:49:22.956000 audit: BPF prog-id=88 op=UNLOAD Feb 9 09:49:22.956000 audit: BPF prog-id=87 op=UNLOAD Feb 9 09:49:22.956000 audit[2500]: AVC avc: denied { bpf } for pid=2500 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:22.956000 audit[2500]: AVC avc: denied { bpf } for pid=2500 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:22.956000 audit[2500]: AVC avc: denied { bpf } for pid=2500 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:22.956000 audit[2500]: AVC avc: denied { perfmon } for pid=2500 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:22.956000 audit[2500]: AVC avc: denied { perfmon } for pid=2500 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:22.956000 audit[2500]: AVC avc: denied { perfmon } for pid=2500 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:22.956000 audit[2500]: AVC avc: denied { perfmon } for pid=2500 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:22.956000 audit[2500]: AVC avc: denied { perfmon } for pid=2500 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:22.956000 audit[2500]: AVC avc: denied { bpf } for pid=2500 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:22.956000 audit[2500]: AVC avc: denied { bpf } for pid=2500 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:22.956000 audit: BPF prog-id=89 op=LOAD Feb 9 09:49:22.956000 audit[2500]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=400019db40 a2=78 a3=0 items=0 ppid=2201 pid=2500 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:22.956000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6166636462663436303761303633656263343030616163363462313033 Feb 9 09:49:22.991638 env[1673]: time="2024-02-09T09:49:22.991550549Z" level=info msg="StartContainer for \"afcdbf4607a063ebc400aac64b103ba0853f53447dbf7c66dc1511a1fdc998fd\" returns successfully" Feb 9 09:49:23.057206 kubelet[2129]: I0209 09:49:23.057031 2129 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="kube-system/kube-proxy-qnpgj" podStartSLOduration=6.997116469 podCreationTimestamp="2024-02-09 09:49:12 +0000 UTC" firstStartedPulling="2024-02-09 09:49:13.887204779 +0000 UTC m=+3.803856140" lastFinishedPulling="2024-02-09 09:49:17.947027687 +0000 UTC m=+7.863679048" observedRunningTime="2024-02-09 09:49:19.045541521 +0000 UTC m=+8.962192894" watchObservedRunningTime="2024-02-09 09:49:23.056939377 +0000 UTC m=+12.973590750" Feb 9 09:49:23.787161 kubelet[2129]: E0209 09:49:23.787090 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:23.981578 kubelet[2129]: E0209 09:49:23.981541 2129 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-v96lh" podUID=fe988a42-0383-4a5b-80cd-d77b9230142f Feb 9 09:49:24.192002 env[1673]: time="2024-02-09T09:49:24.191848467Z" level=error msg="failed to reload cni configuration after receiving fs change event(\"/etc/cni/net.d/calico-kubeconfig\": WRITE)" error="cni config load failed: no network config found in /etc/cni/net.d: cni plugin not initialized: failed to load cni config" Feb 9 09:49:24.198334 systemd[1]: cri-containerd-afcdbf4607a063ebc400aac64b103ba0853f53447dbf7c66dc1511a1fdc998fd.scope: Deactivated successfully. Feb 9 09:49:24.199000 audit: BPF prog-id=89 op=UNLOAD Feb 9 09:49:24.202721 kernel: kauditd_printk_skb: 229 callbacks suppressed Feb 9 09:49:24.202811 kernel: audit: type=1334 audit(1707472164.199:727): prog-id=89 op=UNLOAD Feb 9 09:49:24.238236 systemd[1]: run-containerd-io.containerd.runtime.v2.task-k8s.io-afcdbf4607a063ebc400aac64b103ba0853f53447dbf7c66dc1511a1fdc998fd-rootfs.mount: Deactivated successfully. Feb 9 09:49:24.278215 kubelet[2129]: I0209 09:49:24.277188 2129 kubelet_node_status.go:493] "Fast updating node status as it just became ready" Feb 9 09:49:24.787875 kubelet[2129]: E0209 09:49:24.787814 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:25.747264 env[1673]: time="2024-02-09T09:49:25.747181302Z" level=info msg="shim disconnected" id=afcdbf4607a063ebc400aac64b103ba0853f53447dbf7c66dc1511a1fdc998fd Feb 9 09:49:25.747264 env[1673]: time="2024-02-09T09:49:25.747251838Z" level=warning msg="cleaning up after shim disconnected" id=afcdbf4607a063ebc400aac64b103ba0853f53447dbf7c66dc1511a1fdc998fd namespace=k8s.io Feb 9 09:49:25.747937 env[1673]: time="2024-02-09T09:49:25.747274446Z" level=info msg="cleaning up dead shim" Feb 9 09:49:25.762264 env[1673]: time="2024-02-09T09:49:25.762201138Z" level=warning msg="cleanup warnings time=\"2024-02-09T09:49:25Z\" level=info msg=\"starting signal loop\" namespace=k8s.io pid=2544 runtime=io.containerd.runc.v2\n" Feb 9 09:49:25.789511 kubelet[2129]: E0209 09:49:25.789447 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:25.989706 systemd[1]: Created slice kubepods-besteffort-podfe988a42_0383_4a5b_80cd_d77b9230142f.slice. Feb 9 09:49:25.996373 env[1673]: time="2024-02-09T09:49:25.996320587Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-v96lh,Uid:fe988a42-0383-4a5b-80cd-d77b9230142f,Namespace:calico-system,Attempt:0,}" Feb 9 09:49:26.044226 env[1673]: time="2024-02-09T09:49:26.044066728Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node:v3.27.0\"" Feb 9 09:49:26.118926 env[1673]: time="2024-02-09T09:49:26.118824316Z" level=error msg="Failed to destroy network for sandbox \"a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47\"" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 09:49:26.121556 systemd[1]: run-containerd-io.containerd.grpc.v1.cri-sandboxes-a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47-shm.mount: Deactivated successfully. Feb 9 09:49:26.122953 env[1673]: time="2024-02-09T09:49:26.122868820Z" level=error msg="encountered an error cleaning up failed sandbox \"a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47\", marking sandbox state as SANDBOX_UNKNOWN" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 09:49:26.123212 env[1673]: time="2024-02-09T09:49:26.123120196Z" level=error msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-v96lh,Uid:fe988a42-0383-4a5b-80cd-d77b9230142f,Namespace:calico-system,Attempt:0,} failed, error" error="failed to setup network for sandbox \"a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 09:49:26.124015 kubelet[2129]: E0209 09:49:26.123673 2129 remote_runtime.go:176] "RunPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 09:49:26.124015 kubelet[2129]: E0209 09:49:26.123777 2129 kuberuntime_sandbox.go:72] "Failed to create sandbox for pod" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="calico-system/csi-node-driver-v96lh" Feb 9 09:49:26.124015 kubelet[2129]: E0209 09:49:26.123840 2129 kuberuntime_manager.go:1122] "CreatePodSandbox for pod failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="calico-system/csi-node-driver-v96lh" Feb 9 09:49:26.124332 kubelet[2129]: E0209 09:49:26.123954 2129 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"CreatePodSandbox\" for \"csi-node-driver-v96lh_calico-system(fe988a42-0383-4a5b-80cd-d77b9230142f)\" with CreatePodSandboxError: \"Failed to create sandbox for pod \\\"csi-node-driver-v96lh_calico-system(fe988a42-0383-4a5b-80cd-d77b9230142f)\\\": rpc error: code = Unknown desc = failed to setup network for sandbox \\\"a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47\\\": plugin type=\\\"calico\\\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="calico-system/csi-node-driver-v96lh" podUID=fe988a42-0383-4a5b-80cd-d77b9230142f Feb 9 09:49:26.210585 systemd[1]: systemd-hostnamed.service: Deactivated successfully. Feb 9 09:49:26.209000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-hostnamed comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:49:26.219194 kernel: audit: type=1131 audit(1707472166.209:728): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-hostnamed comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 09:49:26.244000 audit: BPF prog-id=71 op=UNLOAD Feb 9 09:49:26.244000 audit: BPF prog-id=70 op=UNLOAD Feb 9 09:49:26.250366 kernel: audit: type=1334 audit(1707472166.244:729): prog-id=71 op=UNLOAD Feb 9 09:49:26.250467 kernel: audit: type=1334 audit(1707472166.244:730): prog-id=70 op=UNLOAD Feb 9 09:49:26.250531 kernel: audit: type=1334 audit(1707472166.244:731): prog-id=69 op=UNLOAD Feb 9 09:49:26.244000 audit: BPF prog-id=69 op=UNLOAD Feb 9 09:49:26.781030 kubelet[2129]: I0209 09:49:26.780951 2129 topology_manager.go:212] "Topology Admit Handler" Feb 9 09:49:26.790120 systemd[1]: Created slice kubepods-besteffort-podbf74fe68_5bcf_4e85_912b_b3d7ba06c977.slice. Feb 9 09:49:26.791218 kubelet[2129]: E0209 09:49:26.790862 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:26.796648 kubelet[2129]: I0209 09:49:26.796573 2129 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-tm6b5\" (UniqueName: \"kubernetes.io/projected/bf74fe68-5bcf-4e85-912b-b3d7ba06c977-kube-api-access-tm6b5\") pod \"nginx-deployment-845c78c8b9-28sbm\" (UID: \"bf74fe68-5bcf-4e85-912b-b3d7ba06c977\") " pod="default/nginx-deployment-845c78c8b9-28sbm" Feb 9 09:49:27.046749 kubelet[2129]: I0209 09:49:27.045754 2129 pod_container_deletor.go:80] "Container not found in pod's containers" containerID="a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" Feb 9 09:49:27.047369 env[1673]: time="2024-02-09T09:49:27.047296154Z" level=info msg="StopPodSandbox for \"a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47\"" Feb 9 09:49:27.094955 env[1673]: time="2024-02-09T09:49:27.094854630Z" level=error msg="StopPodSandbox for \"a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47\" failed" error="failed to destroy network for sandbox \"a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 09:49:27.095255 env[1673]: time="2024-02-09T09:49:27.094914413Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-845c78c8b9-28sbm,Uid:bf74fe68-5bcf-4e85-912b-b3d7ba06c977,Namespace:default,Attempt:0,}" Feb 9 09:49:27.095604 kubelet[2129]: E0209 09:49:27.095568 2129 remote_runtime.go:205] "StopPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to destroy network for sandbox \"a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" podSandboxID="a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" Feb 9 09:49:27.095713 kubelet[2129]: E0209 09:49:27.095652 2129 kuberuntime_manager.go:1312] "Failed to stop sandbox" podSandboxID={Type:containerd ID:a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47} Feb 9 09:49:27.095783 kubelet[2129]: E0209 09:49:27.095722 2129 kuberuntime_manager.go:1038] "killPodWithSyncResult failed" err="failed to \"KillPodSandbox\" for \"fe988a42-0383-4a5b-80cd-d77b9230142f\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" Feb 9 09:49:27.095918 kubelet[2129]: E0209 09:49:27.095805 2129 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"KillPodSandbox\" for \"fe988a42-0383-4a5b-80cd-d77b9230142f\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="calico-system/csi-node-driver-v96lh" podUID=fe988a42-0383-4a5b-80cd-d77b9230142f Feb 9 09:49:27.206852 env[1673]: time="2024-02-09T09:49:27.206757659Z" level=error msg="Failed to destroy network for sandbox \"6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99\"" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 09:49:27.209309 systemd[1]: run-containerd-io.containerd.grpc.v1.cri-sandboxes-6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99-shm.mount: Deactivated successfully. Feb 9 09:49:27.210937 env[1673]: time="2024-02-09T09:49:27.210834551Z" level=error msg="encountered an error cleaning up failed sandbox \"6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99\", marking sandbox state as SANDBOX_UNKNOWN" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 09:49:27.211075 env[1673]: time="2024-02-09T09:49:27.210949927Z" level=error msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-845c78c8b9-28sbm,Uid:bf74fe68-5bcf-4e85-912b-b3d7ba06c977,Namespace:default,Attempt:0,} failed, error" error="failed to setup network for sandbox \"6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 09:49:27.211471 kubelet[2129]: E0209 09:49:27.211419 2129 remote_runtime.go:176] "RunPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 09:49:27.211567 kubelet[2129]: E0209 09:49:27.211524 2129 kuberuntime_sandbox.go:72] "Failed to create sandbox for pod" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="default/nginx-deployment-845c78c8b9-28sbm" Feb 9 09:49:27.211635 kubelet[2129]: E0209 09:49:27.211587 2129 kuberuntime_manager.go:1122] "CreatePodSandbox for pod failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="default/nginx-deployment-845c78c8b9-28sbm" Feb 9 09:49:27.211720 kubelet[2129]: E0209 09:49:27.211690 2129 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"CreatePodSandbox\" for \"nginx-deployment-845c78c8b9-28sbm_default(bf74fe68-5bcf-4e85-912b-b3d7ba06c977)\" with CreatePodSandboxError: \"Failed to create sandbox for pod \\\"nginx-deployment-845c78c8b9-28sbm_default(bf74fe68-5bcf-4e85-912b-b3d7ba06c977)\\\": rpc error: code = Unknown desc = failed to setup network for sandbox \\\"6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99\\\": plugin type=\\\"calico\\\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="default/nginx-deployment-845c78c8b9-28sbm" podUID=bf74fe68-5bcf-4e85-912b-b3d7ba06c977 Feb 9 09:49:27.791480 kubelet[2129]: E0209 09:49:27.791407 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:28.051072 kubelet[2129]: I0209 09:49:28.050947 2129 pod_container_deletor.go:80] "Container not found in pod's containers" containerID="6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" Feb 9 09:49:28.052573 env[1673]: time="2024-02-09T09:49:28.052519838Z" level=info msg="StopPodSandbox for \"6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99\"" Feb 9 09:49:28.147263 env[1673]: time="2024-02-09T09:49:28.147187106Z" level=error msg="StopPodSandbox for \"6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99\" failed" error="failed to destroy network for sandbox \"6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 09:49:28.148017 kubelet[2129]: E0209 09:49:28.147799 2129 remote_runtime.go:205] "StopPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to destroy network for sandbox \"6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" podSandboxID="6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" Feb 9 09:49:28.148017 kubelet[2129]: E0209 09:49:28.147864 2129 kuberuntime_manager.go:1312] "Failed to stop sandbox" podSandboxID={Type:containerd ID:6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99} Feb 9 09:49:28.148017 kubelet[2129]: E0209 09:49:28.147928 2129 kuberuntime_manager.go:1038] "killPodWithSyncResult failed" err="failed to \"KillPodSandbox\" for \"bf74fe68-5bcf-4e85-912b-b3d7ba06c977\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" Feb 9 09:49:28.148017 kubelet[2129]: E0209 09:49:28.147982 2129 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"KillPodSandbox\" for \"bf74fe68-5bcf-4e85-912b-b3d7ba06c977\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="default/nginx-deployment-845c78c8b9-28sbm" podUID=bf74fe68-5bcf-4e85-912b-b3d7ba06c977 Feb 9 09:49:28.791773 kubelet[2129]: E0209 09:49:28.791719 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:28.852735 amazon-ssm-agent[1639]: 2024-02-09 09:49:28 INFO [MessagingDeliveryService] [Association] Schedule manager refreshed with 0 associations, 0 new associations associated Feb 9 09:49:29.791968 kubelet[2129]: E0209 09:49:29.791896 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:30.776013 kubelet[2129]: E0209 09:49:30.775959 2129 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:30.792153 kubelet[2129]: E0209 09:49:30.792080 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:31.793231 kubelet[2129]: E0209 09:49:31.793166 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:32.793973 kubelet[2129]: E0209 09:49:32.793908 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:33.794103 kubelet[2129]: E0209 09:49:33.794046 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:34.680147 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount475578704.mount: Deactivated successfully. Feb 9 09:49:34.779261 env[1673]: time="2024-02-09T09:49:34.779130129Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:34.782579 env[1673]: time="2024-02-09T09:49:34.782530379Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:c445639cb28807ced09724016dc3b273b170b14d3b3d0c39b1affa1cc6b68774,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:34.786610 env[1673]: time="2024-02-09T09:49:34.786563868Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/node:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:34.790676 env[1673]: time="2024-02-09T09:49:34.790614888Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node@sha256:a45dffb21a0e9ca8962f36359a2ab776beeecd93843543c2fa1745d7bbb0f754,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:34.792010 env[1673]: time="2024-02-09T09:49:34.791957552Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node:v3.27.0\" returns image reference \"sha256:c445639cb28807ced09724016dc3b273b170b14d3b3d0c39b1affa1cc6b68774\"" Feb 9 09:49:34.794302 kubelet[2129]: E0209 09:49:34.794241 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:34.818320 env[1673]: time="2024-02-09T09:49:34.818265305Z" level=info msg="CreateContainer within sandbox \"1c85c863b8e9fe8ed50a3dd4ea72bf69a9a0593a4a3aadddadc3831cb7a6c5c8\" for container &ContainerMetadata{Name:calico-node,Attempt:0,}" Feb 9 09:49:34.845566 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount260149983.mount: Deactivated successfully. Feb 9 09:49:34.853511 env[1673]: time="2024-02-09T09:49:34.853428587Z" level=info msg="CreateContainer within sandbox \"1c85c863b8e9fe8ed50a3dd4ea72bf69a9a0593a4a3aadddadc3831cb7a6c5c8\" for &ContainerMetadata{Name:calico-node,Attempt:0,} returns container id \"dcc0bcb5528f0c8e3839ad8a18009acbf87d7b01926421bd701fba828ab7968c\"" Feb 9 09:49:34.854204 env[1673]: time="2024-02-09T09:49:34.854119160Z" level=info msg="StartContainer for \"dcc0bcb5528f0c8e3839ad8a18009acbf87d7b01926421bd701fba828ab7968c\"" Feb 9 09:49:34.884591 systemd[1]: Started cri-containerd-dcc0bcb5528f0c8e3839ad8a18009acbf87d7b01926421bd701fba828ab7968c.scope. Feb 9 09:49:34.927000 audit[2670]: AVC avc: denied { perfmon } for pid=2670 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:34.927000 audit[2670]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=2201 pid=2670 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:34.937187 kernel: audit: type=1400 audit(1707472174.927:732): avc: denied { perfmon } for pid=2670 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:34.927000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6463633062636235353238663063386533383339616438613138303039 Feb 9 09:49:34.961421 kernel: audit: type=1300 audit(1707472174.927:732): arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=2201 pid=2670 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:34.961606 kernel: audit: type=1327 audit(1707472174.927:732): proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6463633062636235353238663063386533383339616438613138303039 Feb 9 09:49:34.927000 audit[2670]: AVC avc: denied { bpf } for pid=2670 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:34.970025 kernel: audit: type=1400 audit(1707472174.927:733): avc: denied { bpf } for pid=2670 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:34.927000 audit[2670]: AVC avc: denied { bpf } for pid=2670 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:34.977537 kernel: audit: type=1400 audit(1707472174.927:733): avc: denied { bpf } for pid=2670 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:34.927000 audit[2670]: AVC avc: denied { bpf } for pid=2670 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:34.986072 kernel: audit: type=1400 audit(1707472174.927:733): avc: denied { bpf } for pid=2670 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:34.927000 audit[2670]: AVC avc: denied { perfmon } for pid=2670 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:34.993926 kernel: audit: type=1400 audit(1707472174.927:733): avc: denied { perfmon } for pid=2670 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:34.927000 audit[2670]: AVC avc: denied { perfmon } for pid=2670 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:35.003085 kernel: audit: type=1400 audit(1707472174.927:733): avc: denied { perfmon } for pid=2670 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:34.927000 audit[2670]: AVC avc: denied { perfmon } for pid=2670 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:35.011430 kernel: audit: type=1400 audit(1707472174.927:733): avc: denied { perfmon } for pid=2670 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:34.927000 audit[2670]: AVC avc: denied { perfmon } for pid=2670 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:35.019593 kernel: audit: type=1400 audit(1707472174.927:733): avc: denied { perfmon } for pid=2670 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:34.927000 audit[2670]: AVC avc: denied { perfmon } for pid=2670 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:34.927000 audit[2670]: AVC avc: denied { bpf } for pid=2670 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:34.927000 audit[2670]: AVC avc: denied { bpf } for pid=2670 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:35.020574 env[1673]: time="2024-02-09T09:49:35.020519030Z" level=info msg="StartContainer for \"dcc0bcb5528f0c8e3839ad8a18009acbf87d7b01926421bd701fba828ab7968c\" returns successfully" Feb 9 09:49:34.927000 audit: BPF prog-id=90 op=LOAD Feb 9 09:49:34.927000 audit[2670]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=2201 pid=2670 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:34.927000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6463633062636235353238663063386533383339616438613138303039 Feb 9 09:49:34.935000 audit[2670]: AVC avc: denied { bpf } for pid=2670 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:34.935000 audit[2670]: AVC avc: denied { bpf } for pid=2670 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:34.935000 audit[2670]: AVC avc: denied { perfmon } for pid=2670 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:34.935000 audit[2670]: AVC avc: denied { perfmon } for pid=2670 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:34.935000 audit[2670]: AVC avc: denied { perfmon } for pid=2670 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:34.935000 audit[2670]: AVC avc: denied { perfmon } for pid=2670 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:34.935000 audit[2670]: AVC avc: denied { perfmon } for pid=2670 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:34.935000 audit[2670]: AVC avc: denied { bpf } for pid=2670 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:34.935000 audit[2670]: AVC avc: denied { bpf } for pid=2670 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:34.935000 audit: BPF prog-id=91 op=LOAD Feb 9 09:49:34.935000 audit[2670]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=2201 pid=2670 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:34.935000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6463633062636235353238663063386533383339616438613138303039 Feb 9 09:49:34.935000 audit: BPF prog-id=91 op=UNLOAD Feb 9 09:49:34.935000 audit: BPF prog-id=90 op=UNLOAD Feb 9 09:49:34.935000 audit[2670]: AVC avc: denied { bpf } for pid=2670 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:34.935000 audit[2670]: AVC avc: denied { bpf } for pid=2670 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:34.935000 audit[2670]: AVC avc: denied { bpf } for pid=2670 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:34.935000 audit[2670]: AVC avc: denied { perfmon } for pid=2670 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:34.935000 audit[2670]: AVC avc: denied { perfmon } for pid=2670 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:34.935000 audit[2670]: AVC avc: denied { perfmon } for pid=2670 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:34.935000 audit[2670]: AVC avc: denied { perfmon } for pid=2670 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:34.935000 audit[2670]: AVC avc: denied { perfmon } for pid=2670 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:34.935000 audit[2670]: AVC avc: denied { bpf } for pid=2670 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:34.935000 audit[2670]: AVC avc: denied { bpf } for pid=2670 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:34.935000 audit: BPF prog-id=92 op=LOAD Feb 9 09:49:34.935000 audit[2670]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=2201 pid=2670 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:34.935000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6463633062636235353238663063386533383339616438613138303039 Feb 9 09:49:35.121965 kubelet[2129]: I0209 09:49:35.121276 2129 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="calico-system/calico-node-gqqnr" podStartSLOduration=2.211099998 podCreationTimestamp="2024-02-09 09:49:12 +0000 UTC" firstStartedPulling="2024-02-09 09:49:13.882337615 +0000 UTC m=+3.798988976" lastFinishedPulling="2024-02-09 09:49:34.792437158 +0000 UTC m=+24.709088519" observedRunningTime="2024-02-09 09:49:35.121180389 +0000 UTC m=+25.037831750" watchObservedRunningTime="2024-02-09 09:49:35.121199541 +0000 UTC m=+25.037850914" Feb 9 09:49:35.132282 kernel: wireguard: WireGuard 1.0.0 loaded. See www.wireguard.com for information. Feb 9 09:49:35.132455 kernel: wireguard: Copyright (C) 2015-2019 Jason A. Donenfeld . All Rights Reserved. Feb 9 09:49:35.794615 kubelet[2129]: E0209 09:49:35.794533 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:36.122913 systemd[1]: run-containerd-runc-k8s.io-dcc0bcb5528f0c8e3839ad8a18009acbf87d7b01926421bd701fba828ab7968c-runc.rCPsll.mount: Deactivated successfully. Feb 9 09:49:36.616000 audit[2832]: AVC avc: denied { write } for pid=2832 comm="tee" name="fd" dev="proc" ino=15814 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 9 09:49:36.616000 audit[2841]: AVC avc: denied { write } for pid=2841 comm="tee" name="fd" dev="proc" ino=14998 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 9 09:49:36.616000 audit[2841]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffd1937984 a2=241 a3=1b6 items=1 ppid=2783 pid=2841 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:36.616000 audit: CWD cwd="/etc/service/enabled/felix/log" Feb 9 09:49:36.616000 audit: PATH item=0 name="/dev/fd/63" inode=14992 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 09:49:36.616000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 9 09:49:36.616000 audit[2830]: AVC avc: denied { write } for pid=2830 comm="tee" name="fd" dev="proc" ino=15002 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 9 09:49:36.616000 audit[2830]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffe5ef8974 a2=241 a3=1b6 items=1 ppid=2791 pid=2830 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:36.616000 audit: CWD cwd="/etc/service/enabled/allocate-tunnel-addrs/log" Feb 9 09:49:36.616000 audit: PATH item=0 name="/dev/fd/63" inode=15807 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 09:49:36.616000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 9 09:49:36.618000 audit[2834]: AVC avc: denied { write } for pid=2834 comm="tee" name="fd" dev="proc" ino=15006 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 9 09:49:36.618000 audit[2834]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffc8966975 a2=241 a3=1b6 items=1 ppid=2782 pid=2834 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:36.618000 audit: CWD cwd="/etc/service/enabled/node-status-reporter/log" Feb 9 09:49:36.618000 audit: PATH item=0 name="/dev/fd/63" inode=14984 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 09:49:36.618000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 9 09:49:36.620000 audit[2844]: AVC avc: denied { write } for pid=2844 comm="tee" name="fd" dev="proc" ino=15010 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 9 09:49:36.620000 audit[2844]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffc287b984 a2=241 a3=1b6 items=1 ppid=2784 pid=2844 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:36.620000 audit: CWD cwd="/etc/service/enabled/bird6/log" Feb 9 09:49:36.620000 audit: PATH item=0 name="/dev/fd/63" inode=14993 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 09:49:36.620000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 9 09:49:36.623000 audit[2842]: AVC avc: denied { write } for pid=2842 comm="tee" name="fd" dev="proc" ino=15817 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 9 09:49:36.616000 audit[2832]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffdf4d8985 a2=241 a3=1b6 items=1 ppid=2780 pid=2832 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:36.616000 audit: CWD cwd="/etc/service/enabled/bird/log" Feb 9 09:49:36.616000 audit: PATH item=0 name="/dev/fd/63" inode=14981 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 09:49:36.616000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 9 09:49:36.629000 audit[2838]: AVC avc: denied { write } for pid=2838 comm="tee" name="fd" dev="proc" ino=15012 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 9 09:49:36.629000 audit[2838]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffc45b7984 a2=241 a3=1b6 items=1 ppid=2790 pid=2838 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:36.629000 audit: CWD cwd="/etc/service/enabled/confd/log" Feb 9 09:49:36.629000 audit: PATH item=0 name="/dev/fd/63" inode=14989 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 09:49:36.629000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 9 09:49:36.623000 audit[2842]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffcb35b986 a2=241 a3=1b6 items=1 ppid=2788 pid=2842 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:36.623000 audit: CWD cwd="/etc/service/enabled/cni/log" Feb 9 09:49:36.623000 audit: PATH item=0 name="/dev/fd/63" inode=15811 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 09:49:36.623000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 9 09:49:36.795515 kubelet[2129]: E0209 09:49:36.795436 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:36.924175 kernel: Initializing XFRM netlink socket Feb 9 09:49:37.162377 (udev-worker)[2704]: Network interface NamePolicy= disabled on kernel command line. Feb 9 09:49:37.167112 (udev-worker)[2917]: Network interface NamePolicy= disabled on kernel command line. Feb 9 09:49:37.167000 audit[2918]: AVC avc: denied { bpf } for pid=2918 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:37.167000 audit[2918]: AVC avc: denied { bpf } for pid=2918 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:37.167000 audit[2918]: AVC avc: denied { perfmon } for pid=2918 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:37.167000 audit[2918]: AVC avc: denied { perfmon } for pid=2918 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:37.167000 audit[2918]: AVC avc: denied { perfmon } for pid=2918 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:37.167000 audit[2918]: AVC avc: denied { perfmon } for pid=2918 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:37.167000 audit[2918]: AVC avc: denied { perfmon } for pid=2918 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:37.167000 audit[2918]: AVC avc: denied { bpf } for pid=2918 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:37.167000 audit[2918]: AVC avc: denied { bpf } for pid=2918 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:37.167000 audit: BPF prog-id=93 op=LOAD Feb 9 09:49:37.167000 audit[2918]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=3 a0=5 a1=ffffe5170608 a2=70 a3=0 items=0 ppid=2785 pid=2918 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:37.167000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 9 09:49:37.168000 audit: BPF prog-id=93 op=UNLOAD Feb 9 09:49:37.168000 audit[2918]: AVC avc: denied { bpf } for pid=2918 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:37.168000 audit[2918]: AVC avc: denied { bpf } for pid=2918 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:37.168000 audit[2918]: AVC avc: denied { perfmon } for pid=2918 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:37.168000 audit[2918]: AVC avc: denied { perfmon } for pid=2918 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:37.168000 audit[2918]: AVC avc: denied { perfmon } for pid=2918 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:37.168000 audit[2918]: AVC avc: denied { perfmon } for pid=2918 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:37.168000 audit[2918]: AVC avc: denied { perfmon } for pid=2918 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:37.168000 audit[2918]: AVC avc: denied { bpf } for pid=2918 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:37.168000 audit[2918]: AVC avc: denied { bpf } for pid=2918 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:37.168000 audit: BPF prog-id=94 op=LOAD Feb 9 09:49:37.168000 audit[2918]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=3 a0=5 a1=ffffe5170608 a2=70 a3=4a174c items=0 ppid=2785 pid=2918 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:37.168000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 9 09:49:37.168000 audit: BPF prog-id=94 op=UNLOAD Feb 9 09:49:37.168000 audit[2918]: AVC avc: denied { bpf } for pid=2918 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:37.168000 audit[2918]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=3 a0=0 a1=ffffe5170638 a2=70 a3=1c5973f items=0 ppid=2785 pid=2918 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:37.168000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 9 09:49:37.169000 audit[2918]: AVC avc: denied { bpf } for pid=2918 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:37.169000 audit[2918]: AVC avc: denied { bpf } for pid=2918 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:37.169000 audit[2918]: AVC avc: denied { bpf } for pid=2918 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:37.169000 audit[2918]: AVC avc: denied { perfmon } for pid=2918 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:37.169000 audit[2918]: AVC avc: denied { perfmon } for pid=2918 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:37.169000 audit[2918]: AVC avc: denied { perfmon } for pid=2918 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:37.169000 audit[2918]: AVC avc: denied { perfmon } for pid=2918 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:37.169000 audit[2918]: AVC avc: denied { perfmon } for pid=2918 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:37.169000 audit[2918]: AVC avc: denied { bpf } for pid=2918 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:37.169000 audit[2918]: AVC avc: denied { bpf } for pid=2918 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:37.169000 audit: BPF prog-id=95 op=LOAD Feb 9 09:49:37.169000 audit[2918]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=5 a0=5 a1=ffffe5170588 a2=70 a3=1c59759 items=0 ppid=2785 pid=2918 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:37.169000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 9 09:49:37.182000 audit[2921]: AVC avc: denied { bpf } for pid=2921 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:37.182000 audit[2921]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=fffff6b00d08 a2=70 a3=0 items=0 ppid=2785 pid=2921 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:37.182000 audit: PROCTITLE proctitle=627066746F6F6C002D2D6A736F6E002D2D7072657474790070726F670073686F770070696E6E6564002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41 Feb 9 09:49:37.184000 audit[2921]: AVC avc: denied { bpf } for pid=2921 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:37.184000 audit[2921]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=fffff6b00be8 a2=70 a3=2 items=0 ppid=2785 pid=2921 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:37.184000 audit: PROCTITLE proctitle=627066746F6F6C002D2D6A736F6E002D2D7072657474790070726F670073686F770070696E6E6564002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41 Feb 9 09:49:37.193000 audit: BPF prog-id=95 op=UNLOAD Feb 9 09:49:37.278000 audit[2943]: NETFILTER_CFG table=raw:65 family=2 entries=19 op=nft_register_chain pid=2943 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 09:49:37.278000 audit[2943]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=6132 a0=3 a1=ffffe4653ae0 a2=0 a3=ffffae182fa8 items=0 ppid=2785 pid=2943 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:37.278000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 09:49:37.286000 audit[2950]: NETFILTER_CFG table=mangle:66 family=2 entries=19 op=nft_register_chain pid=2950 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 09:49:37.286000 audit[2950]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=6800 a0=3 a1=ffffe0c4c6e0 a2=0 a3=ffff88b56fa8 items=0 ppid=2785 pid=2950 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:37.286000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 09:49:37.293000 audit[2944]: NETFILTER_CFG table=filter:67 family=2 entries=39 op=nft_register_chain pid=2944 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 09:49:37.293000 audit[2944]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=18472 a0=3 a1=fffff0dbf0a0 a2=0 a3=ffffbdab7fa8 items=0 ppid=2785 pid=2944 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:37.293000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 09:49:37.295000 audit[2946]: NETFILTER_CFG table=nat:68 family=2 entries=16 op=nft_register_chain pid=2946 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 09:49:37.295000 audit[2946]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5188 a0=3 a1=fffff0e744e0 a2=0 a3=ffffa1560fa8 items=0 ppid=2785 pid=2946 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:37.295000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 09:49:37.796343 kubelet[2129]: E0209 09:49:37.796248 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:37.941660 systemd-networkd[1460]: vxlan.calico: Link UP Feb 9 09:49:37.941674 systemd-networkd[1460]: vxlan.calico: Gained carrier Feb 9 09:49:38.796832 kubelet[2129]: E0209 09:49:38.796761 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:39.559562 systemd-networkd[1460]: vxlan.calico: Gained IPv6LL Feb 9 09:49:39.797338 kubelet[2129]: E0209 09:49:39.797279 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:39.982886 env[1673]: time="2024-02-09T09:49:39.982423307Z" level=info msg="StopPodSandbox for \"6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99\"" Feb 9 09:49:40.144938 env[1673]: 2024-02-09 09:49:40.063 [INFO][2974] k8s.go 578: Cleaning up netns ContainerID="6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" Feb 9 09:49:40.144938 env[1673]: 2024-02-09 09:49:40.064 [INFO][2974] dataplane_linux.go 530: Deleting workload's device in netns. ContainerID="6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" iface="eth0" netns="/var/run/netns/cni-a9e10a09-a624-d1c7-f954-b822aecc1d97" Feb 9 09:49:40.144938 env[1673]: 2024-02-09 09:49:40.064 [INFO][2974] dataplane_linux.go 541: Entered netns, deleting veth. ContainerID="6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" iface="eth0" netns="/var/run/netns/cni-a9e10a09-a624-d1c7-f954-b822aecc1d97" Feb 9 09:49:40.144938 env[1673]: 2024-02-09 09:49:40.065 [INFO][2974] dataplane_linux.go 568: Workload's veth was already gone. Nothing to do. ContainerID="6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" iface="eth0" netns="/var/run/netns/cni-a9e10a09-a624-d1c7-f954-b822aecc1d97" Feb 9 09:49:40.144938 env[1673]: 2024-02-09 09:49:40.065 [INFO][2974] k8s.go 585: Releasing IP address(es) ContainerID="6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" Feb 9 09:49:40.144938 env[1673]: 2024-02-09 09:49:40.065 [INFO][2974] utils.go 188: Calico CNI releasing IP address ContainerID="6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" Feb 9 09:49:40.144938 env[1673]: 2024-02-09 09:49:40.118 [INFO][2980] ipam_plugin.go 415: Releasing address using handleID ContainerID="6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" HandleID="k8s-pod-network.6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" Workload="172.31.26.157-k8s-nginx--deployment--845c78c8b9--28sbm-eth0" Feb 9 09:49:40.144938 env[1673]: 2024-02-09 09:49:40.118 [INFO][2980] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 09:49:40.144938 env[1673]: 2024-02-09 09:49:40.118 [INFO][2980] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 09:49:40.144938 env[1673]: 2024-02-09 09:49:40.133 [WARNING][2980] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" HandleID="k8s-pod-network.6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" Workload="172.31.26.157-k8s-nginx--deployment--845c78c8b9--28sbm-eth0" Feb 9 09:49:40.144938 env[1673]: 2024-02-09 09:49:40.133 [INFO][2980] ipam_plugin.go 443: Releasing address using workloadID ContainerID="6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" HandleID="k8s-pod-network.6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" Workload="172.31.26.157-k8s-nginx--deployment--845c78c8b9--28sbm-eth0" Feb 9 09:49:40.144938 env[1673]: 2024-02-09 09:49:40.135 [INFO][2980] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 09:49:40.144938 env[1673]: 2024-02-09 09:49:40.137 [INFO][2974] k8s.go 591: Teardown processing complete. ContainerID="6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" Feb 9 09:49:40.144938 env[1673]: time="2024-02-09T09:49:40.144565448Z" level=info msg="TearDown network for sandbox \"6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99\" successfully" Feb 9 09:49:40.144938 env[1673]: time="2024-02-09T09:49:40.144625423Z" level=info msg="StopPodSandbox for \"6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99\" returns successfully" Feb 9 09:49:40.143340 systemd[1]: run-netns-cni\x2da9e10a09\x2da624\x2dd1c7\x2df954\x2db822aecc1d97.mount: Deactivated successfully. Feb 9 09:49:40.148204 env[1673]: time="2024-02-09T09:49:40.148073515Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-845c78c8b9-28sbm,Uid:bf74fe68-5bcf-4e85-912b-b3d7ba06c977,Namespace:default,Attempt:1,}" Feb 9 09:49:40.483542 systemd-networkd[1460]: calic00b399a0f5: Link UP Feb 9 09:49:40.490816 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 9 09:49:40.490990 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): calic00b399a0f5: link becomes ready Feb 9 09:49:40.491168 systemd-networkd[1460]: calic00b399a0f5: Gained carrier Feb 9 09:49:40.513037 env[1673]: 2024-02-09 09:49:40.326 [INFO][2986] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.26.157-k8s-nginx--deployment--845c78c8b9--28sbm-eth0 nginx-deployment-845c78c8b9- default bf74fe68-5bcf-4e85-912b-b3d7ba06c977 948 0 2024-02-09 09:49:26 +0000 UTC map[app:nginx pod-template-hash:845c78c8b9 projectcalico.org/namespace:default projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 172.31.26.157 nginx-deployment-845c78c8b9-28sbm eth0 default [] [] [kns.default ksa.default.default] calic00b399a0f5 [] []}} ContainerID="3a4b49a731d6fbc36a5cdd41602504e4ee02c680b3718e201fc8324fbc46bc5a" Namespace="default" Pod="nginx-deployment-845c78c8b9-28sbm" WorkloadEndpoint="172.31.26.157-k8s-nginx--deployment--845c78c8b9--28sbm-" Feb 9 09:49:40.513037 env[1673]: 2024-02-09 09:49:40.327 [INFO][2986] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="3a4b49a731d6fbc36a5cdd41602504e4ee02c680b3718e201fc8324fbc46bc5a" Namespace="default" Pod="nginx-deployment-845c78c8b9-28sbm" WorkloadEndpoint="172.31.26.157-k8s-nginx--deployment--845c78c8b9--28sbm-eth0" Feb 9 09:49:40.513037 env[1673]: 2024-02-09 09:49:40.378 [INFO][2997] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="3a4b49a731d6fbc36a5cdd41602504e4ee02c680b3718e201fc8324fbc46bc5a" HandleID="k8s-pod-network.3a4b49a731d6fbc36a5cdd41602504e4ee02c680b3718e201fc8324fbc46bc5a" Workload="172.31.26.157-k8s-nginx--deployment--845c78c8b9--28sbm-eth0" Feb 9 09:49:40.513037 env[1673]: 2024-02-09 09:49:40.408 [INFO][2997] ipam_plugin.go 268: Auto assigning IP ContainerID="3a4b49a731d6fbc36a5cdd41602504e4ee02c680b3718e201fc8324fbc46bc5a" HandleID="k8s-pod-network.3a4b49a731d6fbc36a5cdd41602504e4ee02c680b3718e201fc8324fbc46bc5a" Workload="172.31.26.157-k8s-nginx--deployment--845c78c8b9--28sbm-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x4000203190), Attrs:map[string]string{"namespace":"default", "node":"172.31.26.157", "pod":"nginx-deployment-845c78c8b9-28sbm", "timestamp":"2024-02-09 09:49:40.378600843 +0000 UTC"}, Hostname:"172.31.26.157", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 9 09:49:40.513037 env[1673]: 2024-02-09 09:49:40.408 [INFO][2997] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 09:49:40.513037 env[1673]: 2024-02-09 09:49:40.408 [INFO][2997] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 09:49:40.513037 env[1673]: 2024-02-09 09:49:40.408 [INFO][2997] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.26.157' Feb 9 09:49:40.513037 env[1673]: 2024-02-09 09:49:40.412 [INFO][2997] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.3a4b49a731d6fbc36a5cdd41602504e4ee02c680b3718e201fc8324fbc46bc5a" host="172.31.26.157" Feb 9 09:49:40.513037 env[1673]: 2024-02-09 09:49:40.425 [INFO][2997] ipam.go 372: Looking up existing affinities for host host="172.31.26.157" Feb 9 09:49:40.513037 env[1673]: 2024-02-09 09:49:40.441 [INFO][2997] ipam.go 489: Trying affinity for 192.168.26.128/26 host="172.31.26.157" Feb 9 09:49:40.513037 env[1673]: 2024-02-09 09:49:40.446 [INFO][2997] ipam.go 155: Attempting to load block cidr=192.168.26.128/26 host="172.31.26.157" Feb 9 09:49:40.513037 env[1673]: 2024-02-09 09:49:40.450 [INFO][2997] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.26.128/26 host="172.31.26.157" Feb 9 09:49:40.513037 env[1673]: 2024-02-09 09:49:40.451 [INFO][2997] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.26.128/26 handle="k8s-pod-network.3a4b49a731d6fbc36a5cdd41602504e4ee02c680b3718e201fc8324fbc46bc5a" host="172.31.26.157" Feb 9 09:49:40.513037 env[1673]: 2024-02-09 09:49:40.454 [INFO][2997] ipam.go 1682: Creating new handle: k8s-pod-network.3a4b49a731d6fbc36a5cdd41602504e4ee02c680b3718e201fc8324fbc46bc5a Feb 9 09:49:40.513037 env[1673]: 2024-02-09 09:49:40.461 [INFO][2997] ipam.go 1203: Writing block in order to claim IPs block=192.168.26.128/26 handle="k8s-pod-network.3a4b49a731d6fbc36a5cdd41602504e4ee02c680b3718e201fc8324fbc46bc5a" host="172.31.26.157" Feb 9 09:49:40.513037 env[1673]: 2024-02-09 09:49:40.468 [INFO][2997] ipam.go 1216: Successfully claimed IPs: [192.168.26.129/26] block=192.168.26.128/26 handle="k8s-pod-network.3a4b49a731d6fbc36a5cdd41602504e4ee02c680b3718e201fc8324fbc46bc5a" host="172.31.26.157" Feb 9 09:49:40.513037 env[1673]: 2024-02-09 09:49:40.468 [INFO][2997] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.26.129/26] handle="k8s-pod-network.3a4b49a731d6fbc36a5cdd41602504e4ee02c680b3718e201fc8324fbc46bc5a" host="172.31.26.157" Feb 9 09:49:40.513037 env[1673]: 2024-02-09 09:49:40.468 [INFO][2997] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 09:49:40.513037 env[1673]: 2024-02-09 09:49:40.468 [INFO][2997] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.26.129/26] IPv6=[] ContainerID="3a4b49a731d6fbc36a5cdd41602504e4ee02c680b3718e201fc8324fbc46bc5a" HandleID="k8s-pod-network.3a4b49a731d6fbc36a5cdd41602504e4ee02c680b3718e201fc8324fbc46bc5a" Workload="172.31.26.157-k8s-nginx--deployment--845c78c8b9--28sbm-eth0" Feb 9 09:49:40.514433 env[1673]: 2024-02-09 09:49:40.474 [INFO][2986] k8s.go 385: Populated endpoint ContainerID="3a4b49a731d6fbc36a5cdd41602504e4ee02c680b3718e201fc8324fbc46bc5a" Namespace="default" Pod="nginx-deployment-845c78c8b9-28sbm" WorkloadEndpoint="172.31.26.157-k8s-nginx--deployment--845c78c8b9--28sbm-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.26.157-k8s-nginx--deployment--845c78c8b9--28sbm-eth0", GenerateName:"nginx-deployment-845c78c8b9-", Namespace:"default", SelfLink:"", UID:"bf74fe68-5bcf-4e85-912b-b3d7ba06c977", ResourceVersion:"948", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 9, 49, 26, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"845c78c8b9", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.26.157", ContainerID:"", Pod:"nginx-deployment-845c78c8b9-28sbm", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.26.129/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"calic00b399a0f5", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 09:49:40.514433 env[1673]: 2024-02-09 09:49:40.474 [INFO][2986] k8s.go 386: Calico CNI using IPs: [192.168.26.129/32] ContainerID="3a4b49a731d6fbc36a5cdd41602504e4ee02c680b3718e201fc8324fbc46bc5a" Namespace="default" Pod="nginx-deployment-845c78c8b9-28sbm" WorkloadEndpoint="172.31.26.157-k8s-nginx--deployment--845c78c8b9--28sbm-eth0" Feb 9 09:49:40.514433 env[1673]: 2024-02-09 09:49:40.475 [INFO][2986] dataplane_linux.go 68: Setting the host side veth name to calic00b399a0f5 ContainerID="3a4b49a731d6fbc36a5cdd41602504e4ee02c680b3718e201fc8324fbc46bc5a" Namespace="default" Pod="nginx-deployment-845c78c8b9-28sbm" WorkloadEndpoint="172.31.26.157-k8s-nginx--deployment--845c78c8b9--28sbm-eth0" Feb 9 09:49:40.514433 env[1673]: 2024-02-09 09:49:40.492 [INFO][2986] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="3a4b49a731d6fbc36a5cdd41602504e4ee02c680b3718e201fc8324fbc46bc5a" Namespace="default" Pod="nginx-deployment-845c78c8b9-28sbm" WorkloadEndpoint="172.31.26.157-k8s-nginx--deployment--845c78c8b9--28sbm-eth0" Feb 9 09:49:40.514433 env[1673]: 2024-02-09 09:49:40.495 [INFO][2986] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="3a4b49a731d6fbc36a5cdd41602504e4ee02c680b3718e201fc8324fbc46bc5a" Namespace="default" Pod="nginx-deployment-845c78c8b9-28sbm" WorkloadEndpoint="172.31.26.157-k8s-nginx--deployment--845c78c8b9--28sbm-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.26.157-k8s-nginx--deployment--845c78c8b9--28sbm-eth0", GenerateName:"nginx-deployment-845c78c8b9-", Namespace:"default", SelfLink:"", UID:"bf74fe68-5bcf-4e85-912b-b3d7ba06c977", ResourceVersion:"948", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 9, 49, 26, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"845c78c8b9", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.26.157", ContainerID:"3a4b49a731d6fbc36a5cdd41602504e4ee02c680b3718e201fc8324fbc46bc5a", Pod:"nginx-deployment-845c78c8b9-28sbm", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.26.129/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"calic00b399a0f5", MAC:"ae:ce:2c:eb:3f:21", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 09:49:40.514433 env[1673]: 2024-02-09 09:49:40.507 [INFO][2986] k8s.go 491: Wrote updated endpoint to datastore ContainerID="3a4b49a731d6fbc36a5cdd41602504e4ee02c680b3718e201fc8324fbc46bc5a" Namespace="default" Pod="nginx-deployment-845c78c8b9-28sbm" WorkloadEndpoint="172.31.26.157-k8s-nginx--deployment--845c78c8b9--28sbm-eth0" Feb 9 09:49:40.571461 kernel: kauditd_printk_skb: 129 callbacks suppressed Feb 9 09:49:40.571629 kernel: audit: type=1325 audit(1707472180.558:758): table=filter:69 family=2 entries=36 op=nft_register_chain pid=3026 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 09:49:40.558000 audit[3026]: NETFILTER_CFG table=filter:69 family=2 entries=36 op=nft_register_chain pid=3026 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 09:49:40.572024 env[1673]: time="2024-02-09T09:49:40.559287938Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 9 09:49:40.572024 env[1673]: time="2024-02-09T09:49:40.571651820Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 9 09:49:40.572024 env[1673]: time="2024-02-09T09:49:40.571705448Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 9 09:49:40.572351 env[1673]: time="2024-02-09T09:49:40.572183641Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/3a4b49a731d6fbc36a5cdd41602504e4ee02c680b3718e201fc8324fbc46bc5a pid=3025 runtime=io.containerd.runc.v2 Feb 9 09:49:40.558000 audit[3026]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=19876 a0=3 a1=ffffc4d6ce70 a2=0 a3=ffff8f60bfa8 items=0 ppid=2785 pid=3026 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:40.586374 kernel: audit: type=1300 audit(1707472180.558:758): arch=c00000b7 syscall=211 success=yes exit=19876 a0=3 a1=ffffc4d6ce70 a2=0 a3=ffff8f60bfa8 items=0 ppid=2785 pid=3026 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:40.558000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 09:49:40.593817 kernel: audit: type=1327 audit(1707472180.558:758): proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 09:49:40.642537 systemd[1]: Started cri-containerd-3a4b49a731d6fbc36a5cdd41602504e4ee02c680b3718e201fc8324fbc46bc5a.scope. Feb 9 09:49:40.669000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.669000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.688466 kernel: audit: type=1400 audit(1707472180.669:759): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.688849 kernel: audit: type=1400 audit(1707472180.669:760): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.688920 kernel: audit: type=1400 audit(1707472180.669:761): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.669000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.669000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.703014 kernel: audit: type=1400 audit(1707472180.669:762): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.669000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.710892 kernel: audit: type=1400 audit(1707472180.669:763): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.669000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.669000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.726072 kernel: audit: type=1400 audit(1707472180.669:764): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.726235 kernel: audit: type=1400 audit(1707472180.669:765): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.669000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.669000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.669000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.669000 audit: BPF prog-id=96 op=LOAD Feb 9 09:49:40.677000 audit[3036]: AVC avc: denied { bpf } for pid=3036 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.677000 audit[3036]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000195b38 a2=10 a3=0 items=0 ppid=3025 pid=3036 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:40.677000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3361346234396137333164366662633336613563646434313630323530 Feb 9 09:49:40.677000 audit[3036]: AVC avc: denied { perfmon } for pid=3036 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.677000 audit[3036]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=3025 pid=3036 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:40.677000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3361346234396137333164366662633336613563646434313630323530 Feb 9 09:49:40.677000 audit[3036]: AVC avc: denied { bpf } for pid=3036 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.677000 audit[3036]: AVC avc: denied { bpf } for pid=3036 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.677000 audit[3036]: AVC avc: denied { bpf } for pid=3036 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.677000 audit[3036]: AVC avc: denied { perfmon } for pid=3036 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.677000 audit[3036]: AVC avc: denied { perfmon } for pid=3036 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.677000 audit[3036]: AVC avc: denied { perfmon } for pid=3036 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.677000 audit[3036]: AVC avc: denied { perfmon } for pid=3036 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.677000 audit[3036]: AVC avc: denied { perfmon } for pid=3036 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.677000 audit[3036]: AVC avc: denied { bpf } for pid=3036 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.677000 audit[3036]: AVC avc: denied { bpf } for pid=3036 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.677000 audit: BPF prog-id=97 op=LOAD Feb 9 09:49:40.677000 audit[3036]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=3025 pid=3036 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:40.677000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3361346234396137333164366662633336613563646434313630323530 Feb 9 09:49:40.677000 audit[3036]: AVC avc: denied { bpf } for pid=3036 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.677000 audit[3036]: AVC avc: denied { bpf } for pid=3036 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.677000 audit[3036]: AVC avc: denied { perfmon } for pid=3036 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.677000 audit[3036]: AVC avc: denied { perfmon } for pid=3036 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.677000 audit[3036]: AVC avc: denied { perfmon } for pid=3036 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.677000 audit[3036]: AVC avc: denied { perfmon } for pid=3036 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.677000 audit[3036]: AVC avc: denied { perfmon } for pid=3036 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.677000 audit[3036]: AVC avc: denied { bpf } for pid=3036 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.677000 audit[3036]: AVC avc: denied { bpf } for pid=3036 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.677000 audit: BPF prog-id=98 op=LOAD Feb 9 09:49:40.677000 audit[3036]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=3025 pid=3036 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:40.677000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3361346234396137333164366662633336613563646434313630323530 Feb 9 09:49:40.678000 audit: BPF prog-id=98 op=UNLOAD Feb 9 09:49:40.678000 audit: BPF prog-id=97 op=UNLOAD Feb 9 09:49:40.678000 audit[3036]: AVC avc: denied { bpf } for pid=3036 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.678000 audit[3036]: AVC avc: denied { bpf } for pid=3036 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.678000 audit[3036]: AVC avc: denied { bpf } for pid=3036 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.678000 audit[3036]: AVC avc: denied { perfmon } for pid=3036 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.678000 audit[3036]: AVC avc: denied { perfmon } for pid=3036 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.678000 audit[3036]: AVC avc: denied { perfmon } for pid=3036 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.678000 audit[3036]: AVC avc: denied { perfmon } for pid=3036 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.678000 audit[3036]: AVC avc: denied { perfmon } for pid=3036 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.678000 audit[3036]: AVC avc: denied { bpf } for pid=3036 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.678000 audit[3036]: AVC avc: denied { bpf } for pid=3036 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:40.678000 audit: BPF prog-id=99 op=LOAD Feb 9 09:49:40.678000 audit[3036]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=3025 pid=3036 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:40.678000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3361346234396137333164366662633336613563646434313630323530 Feb 9 09:49:40.758277 env[1673]: time="2024-02-09T09:49:40.758216913Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-845c78c8b9-28sbm,Uid:bf74fe68-5bcf-4e85-912b-b3d7ba06c977,Namespace:default,Attempt:1,} returns sandbox id \"3a4b49a731d6fbc36a5cdd41602504e4ee02c680b3718e201fc8324fbc46bc5a\"" Feb 9 09:49:40.761744 env[1673]: time="2024-02-09T09:49:40.761693144Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\"" Feb 9 09:49:40.798272 kubelet[2129]: E0209 09:49:40.798219 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:41.041283 update_engine[1655]: I0209 09:49:41.041126 1655 update_attempter.cc:509] Updating boot flags... Feb 9 09:49:41.143428 systemd[1]: run-containerd-runc-k8s.io-3a4b49a731d6fbc36a5cdd41602504e4ee02c680b3718e201fc8324fbc46bc5a-runc.1aCnP8.mount: Deactivated successfully. Feb 9 09:49:41.671878 systemd-networkd[1460]: calic00b399a0f5: Gained IPv6LL Feb 9 09:49:41.798823 kubelet[2129]: E0209 09:49:41.798677 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:41.982555 env[1673]: time="2024-02-09T09:49:41.982272039Z" level=info msg="StopPodSandbox for \"a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47\"" Feb 9 09:49:42.135389 env[1673]: 2024-02-09 09:49:42.077 [INFO][3252] k8s.go 578: Cleaning up netns ContainerID="a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" Feb 9 09:49:42.135389 env[1673]: 2024-02-09 09:49:42.077 [INFO][3252] dataplane_linux.go 530: Deleting workload's device in netns. ContainerID="a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" iface="eth0" netns="/var/run/netns/cni-5ae6db3b-9e55-38c7-b578-6ae1e465b76f" Feb 9 09:49:42.135389 env[1673]: 2024-02-09 09:49:42.078 [INFO][3252] dataplane_linux.go 541: Entered netns, deleting veth. ContainerID="a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" iface="eth0" netns="/var/run/netns/cni-5ae6db3b-9e55-38c7-b578-6ae1e465b76f" Feb 9 09:49:42.135389 env[1673]: 2024-02-09 09:49:42.078 [INFO][3252] dataplane_linux.go 568: Workload's veth was already gone. Nothing to do. ContainerID="a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" iface="eth0" netns="/var/run/netns/cni-5ae6db3b-9e55-38c7-b578-6ae1e465b76f" Feb 9 09:49:42.135389 env[1673]: 2024-02-09 09:49:42.078 [INFO][3252] k8s.go 585: Releasing IP address(es) ContainerID="a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" Feb 9 09:49:42.135389 env[1673]: 2024-02-09 09:49:42.079 [INFO][3252] utils.go 188: Calico CNI releasing IP address ContainerID="a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" Feb 9 09:49:42.135389 env[1673]: 2024-02-09 09:49:42.112 [INFO][3259] ipam_plugin.go 415: Releasing address using handleID ContainerID="a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" HandleID="k8s-pod-network.a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" Workload="172.31.26.157-k8s-csi--node--driver--v96lh-eth0" Feb 9 09:49:42.135389 env[1673]: 2024-02-09 09:49:42.112 [INFO][3259] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 09:49:42.135389 env[1673]: 2024-02-09 09:49:42.112 [INFO][3259] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 09:49:42.135389 env[1673]: 2024-02-09 09:49:42.127 [WARNING][3259] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" HandleID="k8s-pod-network.a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" Workload="172.31.26.157-k8s-csi--node--driver--v96lh-eth0" Feb 9 09:49:42.135389 env[1673]: 2024-02-09 09:49:42.127 [INFO][3259] ipam_plugin.go 443: Releasing address using workloadID ContainerID="a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" HandleID="k8s-pod-network.a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" Workload="172.31.26.157-k8s-csi--node--driver--v96lh-eth0" Feb 9 09:49:42.135389 env[1673]: 2024-02-09 09:49:42.130 [INFO][3259] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 09:49:42.135389 env[1673]: 2024-02-09 09:49:42.133 [INFO][3252] k8s.go 591: Teardown processing complete. ContainerID="a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" Feb 9 09:49:42.139204 systemd[1]: run-netns-cni\x2d5ae6db3b\x2d9e55\x2d38c7\x2db578\x2d6ae1e465b76f.mount: Deactivated successfully. Feb 9 09:49:42.140621 env[1673]: time="2024-02-09T09:49:42.140550541Z" level=info msg="TearDown network for sandbox \"a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47\" successfully" Feb 9 09:49:42.140817 env[1673]: time="2024-02-09T09:49:42.140783830Z" level=info msg="StopPodSandbox for \"a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47\" returns successfully" Feb 9 09:49:42.142042 env[1673]: time="2024-02-09T09:49:42.141966092Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-v96lh,Uid:fe988a42-0383-4a5b-80cd-d77b9230142f,Namespace:calico-system,Attempt:1,}" Feb 9 09:49:42.449436 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 9 09:49:42.452373 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): calieee3be59591: link becomes ready Feb 9 09:49:42.450885 systemd-networkd[1460]: calieee3be59591: Link UP Feb 9 09:49:42.451643 systemd-networkd[1460]: calieee3be59591: Gained carrier Feb 9 09:49:42.484683 env[1673]: 2024-02-09 09:49:42.230 [INFO][3265] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.26.157-k8s-csi--node--driver--v96lh-eth0 csi-node-driver- calico-system fe988a42-0383-4a5b-80cd-d77b9230142f 958 0 2024-02-09 09:49:12 +0000 UTC map[app.kubernetes.io/name:csi-node-driver controller-revision-hash:86b88cf7c9 k8s-app:csi-node-driver name:csi-node-driver pod-template-generation:1 projectcalico.org/namespace:calico-system projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 172.31.26.157 csi-node-driver-v96lh eth0 default [] [] [kns.calico-system ksa.calico-system.default] calieee3be59591 [] []}} ContainerID="1fd9a938a6972460125e142ffe562c5e5cc53f29056b9eb3b53881161a82eec3" Namespace="calico-system" Pod="csi-node-driver-v96lh" WorkloadEndpoint="172.31.26.157-k8s-csi--node--driver--v96lh-" Feb 9 09:49:42.484683 env[1673]: 2024-02-09 09:49:42.230 [INFO][3265] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="1fd9a938a6972460125e142ffe562c5e5cc53f29056b9eb3b53881161a82eec3" Namespace="calico-system" Pod="csi-node-driver-v96lh" WorkloadEndpoint="172.31.26.157-k8s-csi--node--driver--v96lh-eth0" Feb 9 09:49:42.484683 env[1673]: 2024-02-09 09:49:42.345 [INFO][3277] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="1fd9a938a6972460125e142ffe562c5e5cc53f29056b9eb3b53881161a82eec3" HandleID="k8s-pod-network.1fd9a938a6972460125e142ffe562c5e5cc53f29056b9eb3b53881161a82eec3" Workload="172.31.26.157-k8s-csi--node--driver--v96lh-eth0" Feb 9 09:49:42.484683 env[1673]: 2024-02-09 09:49:42.376 [INFO][3277] ipam_plugin.go 268: Auto assigning IP ContainerID="1fd9a938a6972460125e142ffe562c5e5cc53f29056b9eb3b53881161a82eec3" HandleID="k8s-pod-network.1fd9a938a6972460125e142ffe562c5e5cc53f29056b9eb3b53881161a82eec3" Workload="172.31.26.157-k8s-csi--node--driver--v96lh-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x400011de10), Attrs:map[string]string{"namespace":"calico-system", "node":"172.31.26.157", "pod":"csi-node-driver-v96lh", "timestamp":"2024-02-09 09:49:42.345114913 +0000 UTC"}, Hostname:"172.31.26.157", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 9 09:49:42.484683 env[1673]: 2024-02-09 09:49:42.376 [INFO][3277] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 09:49:42.484683 env[1673]: 2024-02-09 09:49:42.376 [INFO][3277] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 09:49:42.484683 env[1673]: 2024-02-09 09:49:42.376 [INFO][3277] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.26.157' Feb 9 09:49:42.484683 env[1673]: 2024-02-09 09:49:42.380 [INFO][3277] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.1fd9a938a6972460125e142ffe562c5e5cc53f29056b9eb3b53881161a82eec3" host="172.31.26.157" Feb 9 09:49:42.484683 env[1673]: 2024-02-09 09:49:42.388 [INFO][3277] ipam.go 372: Looking up existing affinities for host host="172.31.26.157" Feb 9 09:49:42.484683 env[1673]: 2024-02-09 09:49:42.397 [INFO][3277] ipam.go 489: Trying affinity for 192.168.26.128/26 host="172.31.26.157" Feb 9 09:49:42.484683 env[1673]: 2024-02-09 09:49:42.401 [INFO][3277] ipam.go 155: Attempting to load block cidr=192.168.26.128/26 host="172.31.26.157" Feb 9 09:49:42.484683 env[1673]: 2024-02-09 09:49:42.405 [INFO][3277] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.26.128/26 host="172.31.26.157" Feb 9 09:49:42.484683 env[1673]: 2024-02-09 09:49:42.406 [INFO][3277] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.26.128/26 handle="k8s-pod-network.1fd9a938a6972460125e142ffe562c5e5cc53f29056b9eb3b53881161a82eec3" host="172.31.26.157" Feb 9 09:49:42.484683 env[1673]: 2024-02-09 09:49:42.409 [INFO][3277] ipam.go 1682: Creating new handle: k8s-pod-network.1fd9a938a6972460125e142ffe562c5e5cc53f29056b9eb3b53881161a82eec3 Feb 9 09:49:42.484683 env[1673]: 2024-02-09 09:49:42.415 [INFO][3277] ipam.go 1203: Writing block in order to claim IPs block=192.168.26.128/26 handle="k8s-pod-network.1fd9a938a6972460125e142ffe562c5e5cc53f29056b9eb3b53881161a82eec3" host="172.31.26.157" Feb 9 09:49:42.484683 env[1673]: 2024-02-09 09:49:42.426 [INFO][3277] ipam.go 1216: Successfully claimed IPs: [192.168.26.130/26] block=192.168.26.128/26 handle="k8s-pod-network.1fd9a938a6972460125e142ffe562c5e5cc53f29056b9eb3b53881161a82eec3" host="172.31.26.157" Feb 9 09:49:42.484683 env[1673]: 2024-02-09 09:49:42.426 [INFO][3277] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.26.130/26] handle="k8s-pod-network.1fd9a938a6972460125e142ffe562c5e5cc53f29056b9eb3b53881161a82eec3" host="172.31.26.157" Feb 9 09:49:42.484683 env[1673]: 2024-02-09 09:49:42.427 [INFO][3277] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 09:49:42.484683 env[1673]: 2024-02-09 09:49:42.427 [INFO][3277] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.26.130/26] IPv6=[] ContainerID="1fd9a938a6972460125e142ffe562c5e5cc53f29056b9eb3b53881161a82eec3" HandleID="k8s-pod-network.1fd9a938a6972460125e142ffe562c5e5cc53f29056b9eb3b53881161a82eec3" Workload="172.31.26.157-k8s-csi--node--driver--v96lh-eth0" Feb 9 09:49:42.485901 env[1673]: 2024-02-09 09:49:42.430 [INFO][3265] k8s.go 385: Populated endpoint ContainerID="1fd9a938a6972460125e142ffe562c5e5cc53f29056b9eb3b53881161a82eec3" Namespace="calico-system" Pod="csi-node-driver-v96lh" WorkloadEndpoint="172.31.26.157-k8s-csi--node--driver--v96lh-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.26.157-k8s-csi--node--driver--v96lh-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"fe988a42-0383-4a5b-80cd-d77b9230142f", ResourceVersion:"958", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 9, 49, 12, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"86b88cf7c9", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.26.157", ContainerID:"", Pod:"csi-node-driver-v96lh", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.26.130/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"calieee3be59591", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 09:49:42.485901 env[1673]: 2024-02-09 09:49:42.430 [INFO][3265] k8s.go 386: Calico CNI using IPs: [192.168.26.130/32] ContainerID="1fd9a938a6972460125e142ffe562c5e5cc53f29056b9eb3b53881161a82eec3" Namespace="calico-system" Pod="csi-node-driver-v96lh" WorkloadEndpoint="172.31.26.157-k8s-csi--node--driver--v96lh-eth0" Feb 9 09:49:42.485901 env[1673]: 2024-02-09 09:49:42.430 [INFO][3265] dataplane_linux.go 68: Setting the host side veth name to calieee3be59591 ContainerID="1fd9a938a6972460125e142ffe562c5e5cc53f29056b9eb3b53881161a82eec3" Namespace="calico-system" Pod="csi-node-driver-v96lh" WorkloadEndpoint="172.31.26.157-k8s-csi--node--driver--v96lh-eth0" Feb 9 09:49:42.485901 env[1673]: 2024-02-09 09:49:42.453 [INFO][3265] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="1fd9a938a6972460125e142ffe562c5e5cc53f29056b9eb3b53881161a82eec3" Namespace="calico-system" Pod="csi-node-driver-v96lh" WorkloadEndpoint="172.31.26.157-k8s-csi--node--driver--v96lh-eth0" Feb 9 09:49:42.485901 env[1673]: 2024-02-09 09:49:42.455 [INFO][3265] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="1fd9a938a6972460125e142ffe562c5e5cc53f29056b9eb3b53881161a82eec3" Namespace="calico-system" Pod="csi-node-driver-v96lh" WorkloadEndpoint="172.31.26.157-k8s-csi--node--driver--v96lh-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.26.157-k8s-csi--node--driver--v96lh-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"fe988a42-0383-4a5b-80cd-d77b9230142f", ResourceVersion:"958", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 9, 49, 12, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"86b88cf7c9", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.26.157", ContainerID:"1fd9a938a6972460125e142ffe562c5e5cc53f29056b9eb3b53881161a82eec3", Pod:"csi-node-driver-v96lh", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.26.130/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"calieee3be59591", MAC:"32:9f:6a:cc:73:4e", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 09:49:42.485901 env[1673]: 2024-02-09 09:49:42.469 [INFO][3265] k8s.go 491: Wrote updated endpoint to datastore ContainerID="1fd9a938a6972460125e142ffe562c5e5cc53f29056b9eb3b53881161a82eec3" Namespace="calico-system" Pod="csi-node-driver-v96lh" WorkloadEndpoint="172.31.26.157-k8s-csi--node--driver--v96lh-eth0" Feb 9 09:49:42.528000 audit[3307]: NETFILTER_CFG table=filter:70 family=2 entries=40 op=nft_register_chain pid=3307 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 09:49:42.528000 audit[3307]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=21096 a0=3 a1=fffff5077a90 a2=0 a3=ffff92999fa8 items=0 ppid=2785 pid=3307 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:42.528000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 09:49:42.590481 env[1673]: time="2024-02-09T09:49:42.588550813Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 9 09:49:42.590481 env[1673]: time="2024-02-09T09:49:42.588615552Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 9 09:49:42.590481 env[1673]: time="2024-02-09T09:49:42.588641676Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 9 09:49:42.590481 env[1673]: time="2024-02-09T09:49:42.588918237Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/1fd9a938a6972460125e142ffe562c5e5cc53f29056b9eb3b53881161a82eec3 pid=3315 runtime=io.containerd.runc.v2 Feb 9 09:49:42.629279 systemd[1]: Started cri-containerd-1fd9a938a6972460125e142ffe562c5e5cc53f29056b9eb3b53881161a82eec3.scope. Feb 9 09:49:42.667000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.667000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.667000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.667000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.667000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.667000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.667000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.667000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.667000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.668000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.668000 audit: BPF prog-id=100 op=LOAD Feb 9 09:49:42.669000 audit[3325]: AVC avc: denied { bpf } for pid=3325 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.669000 audit[3325]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000147b38 a2=10 a3=0 items=0 ppid=3315 pid=3325 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:42.669000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3166643961393338613639373234363031323565313432666665353632 Feb 9 09:49:42.669000 audit[3325]: AVC avc: denied { perfmon } for pid=3325 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.669000 audit[3325]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001475a0 a2=3c a3=0 items=0 ppid=3315 pid=3325 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:42.669000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3166643961393338613639373234363031323565313432666665353632 Feb 9 09:49:42.669000 audit[3325]: AVC avc: denied { bpf } for pid=3325 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.669000 audit[3325]: AVC avc: denied { bpf } for pid=3325 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.669000 audit[3325]: AVC avc: denied { bpf } for pid=3325 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.669000 audit[3325]: AVC avc: denied { perfmon } for pid=3325 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.669000 audit[3325]: AVC avc: denied { perfmon } for pid=3325 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.669000 audit[3325]: AVC avc: denied { perfmon } for pid=3325 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.669000 audit[3325]: AVC avc: denied { perfmon } for pid=3325 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.669000 audit[3325]: AVC avc: denied { perfmon } for pid=3325 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.669000 audit[3325]: AVC avc: denied { bpf } for pid=3325 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.669000 audit[3325]: AVC avc: denied { bpf } for pid=3325 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.669000 audit: BPF prog-id=101 op=LOAD Feb 9 09:49:42.669000 audit[3325]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001478e0 a2=78 a3=0 items=0 ppid=3315 pid=3325 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:42.669000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3166643961393338613639373234363031323565313432666665353632 Feb 9 09:49:42.669000 audit[3325]: AVC avc: denied { bpf } for pid=3325 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.669000 audit[3325]: AVC avc: denied { bpf } for pid=3325 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.669000 audit[3325]: AVC avc: denied { perfmon } for pid=3325 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.669000 audit[3325]: AVC avc: denied { perfmon } for pid=3325 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.669000 audit[3325]: AVC avc: denied { perfmon } for pid=3325 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.669000 audit[3325]: AVC avc: denied { perfmon } for pid=3325 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.669000 audit[3325]: AVC avc: denied { perfmon } for pid=3325 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.669000 audit[3325]: AVC avc: denied { bpf } for pid=3325 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.669000 audit[3325]: AVC avc: denied { bpf } for pid=3325 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.669000 audit: BPF prog-id=102 op=LOAD Feb 9 09:49:42.669000 audit[3325]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000147670 a2=78 a3=0 items=0 ppid=3315 pid=3325 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:42.669000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3166643961393338613639373234363031323565313432666665353632 Feb 9 09:49:42.670000 audit: BPF prog-id=102 op=UNLOAD Feb 9 09:49:42.670000 audit: BPF prog-id=101 op=UNLOAD Feb 9 09:49:42.670000 audit[3325]: AVC avc: denied { bpf } for pid=3325 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.670000 audit[3325]: AVC avc: denied { bpf } for pid=3325 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.670000 audit[3325]: AVC avc: denied { bpf } for pid=3325 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.670000 audit[3325]: AVC avc: denied { perfmon } for pid=3325 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.670000 audit[3325]: AVC avc: denied { perfmon } for pid=3325 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.670000 audit[3325]: AVC avc: denied { perfmon } for pid=3325 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.670000 audit[3325]: AVC avc: denied { perfmon } for pid=3325 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.670000 audit[3325]: AVC avc: denied { perfmon } for pid=3325 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.670000 audit[3325]: AVC avc: denied { bpf } for pid=3325 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.670000 audit[3325]: AVC avc: denied { bpf } for pid=3325 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:42.670000 audit: BPF prog-id=103 op=LOAD Feb 9 09:49:42.670000 audit[3325]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000147b40 a2=78 a3=0 items=0 ppid=3315 pid=3325 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:42.670000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3166643961393338613639373234363031323565313432666665353632 Feb 9 09:49:42.723459 env[1673]: time="2024-02-09T09:49:42.723319665Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-v96lh,Uid:fe988a42-0383-4a5b-80cd-d77b9230142f,Namespace:calico-system,Attempt:1,} returns sandbox id \"1fd9a938a6972460125e142ffe562c5e5cc53f29056b9eb3b53881161a82eec3\"" Feb 9 09:49:42.800019 kubelet[2129]: E0209 09:49:42.799943 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:43.800210 kubelet[2129]: E0209 09:49:43.800109 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:44.424441 systemd-networkd[1460]: calieee3be59591: Gained IPv6LL Feb 9 09:49:44.800916 kubelet[2129]: E0209 09:49:44.800843 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:44.998306 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1723257802.mount: Deactivated successfully. Feb 9 09:49:45.802045 kubelet[2129]: E0209 09:49:45.801979 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:46.510768 env[1673]: time="2024-02-09T09:49:46.510710399Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:46.513486 env[1673]: time="2024-02-09T09:49:46.513422841Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:01bfff6bfbc6f0e8a890bad9e22c5392e6dbfd67def93467db6231d4be1b719b,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:46.518260 env[1673]: time="2024-02-09T09:49:46.518188824Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:46.521686 env[1673]: time="2024-02-09T09:49:46.521629515Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/nginx@sha256:e34a272f01984c973b1e034e197c02f77dda18981038e3a54e957554ada4fec6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:46.522333 env[1673]: time="2024-02-09T09:49:46.522281625Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\" returns image reference \"sha256:01bfff6bfbc6f0e8a890bad9e22c5392e6dbfd67def93467db6231d4be1b719b\"" Feb 9 09:49:46.524894 env[1673]: time="2024-02-09T09:49:46.524831276Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/csi:v3.27.0\"" Feb 9 09:49:46.526774 env[1673]: time="2024-02-09T09:49:46.526682319Z" level=info msg="CreateContainer within sandbox \"3a4b49a731d6fbc36a5cdd41602504e4ee02c680b3718e201fc8324fbc46bc5a\" for container &ContainerMetadata{Name:nginx,Attempt:0,}" Feb 9 09:49:46.547996 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1157697530.mount: Deactivated successfully. Feb 9 09:49:46.559052 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1094769495.mount: Deactivated successfully. Feb 9 09:49:46.565758 env[1673]: time="2024-02-09T09:49:46.565670548Z" level=info msg="CreateContainer within sandbox \"3a4b49a731d6fbc36a5cdd41602504e4ee02c680b3718e201fc8324fbc46bc5a\" for &ContainerMetadata{Name:nginx,Attempt:0,} returns container id \"37e39b155b24e00ad0d998ea1b9d271f1a3a77cfbd1b66264bd00cd77bc9b957\"" Feb 9 09:49:46.567480 env[1673]: time="2024-02-09T09:49:46.567420815Z" level=info msg="StartContainer for \"37e39b155b24e00ad0d998ea1b9d271f1a3a77cfbd1b66264bd00cd77bc9b957\"" Feb 9 09:49:46.604659 systemd[1]: Started cri-containerd-37e39b155b24e00ad0d998ea1b9d271f1a3a77cfbd1b66264bd00cd77bc9b957.scope. Feb 9 09:49:46.638204 kernel: kauditd_printk_skb: 110 callbacks suppressed Feb 9 09:49:46.638356 kernel: audit: type=1400 audit(1707472186.634:796): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.634000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.634000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.652711 kernel: audit: type=1400 audit(1707472186.634:797): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.634000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.660371 kernel: audit: type=1400 audit(1707472186.634:798): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.634000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.668376 kernel: audit: type=1400 audit(1707472186.634:799): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.668517 kernel: audit: type=1400 audit(1707472186.634:800): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.634000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.676363 kernel: audit: type=1400 audit(1707472186.634:801): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.634000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.634000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.692448 kernel: audit: type=1400 audit(1707472186.634:802): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.634000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.701359 kernel: audit: type=1400 audit(1707472186.634:803): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.634000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.709640 kernel: audit: type=1400 audit(1707472186.634:804): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.636000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.721178 kernel: audit: type=1400 audit(1707472186.636:805): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.636000 audit: BPF prog-id=104 op=LOAD Feb 9 09:49:46.637000 audit[3356]: AVC avc: denied { bpf } for pid=3356 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.637000 audit[3356]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=400014db38 a2=10 a3=0 items=0 ppid=3025 pid=3356 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:46.637000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3337653339623135356232346530306164306439393865613162396432 Feb 9 09:49:46.637000 audit[3356]: AVC avc: denied { perfmon } for pid=3356 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.637000 audit[3356]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=400014d5a0 a2=3c a3=0 items=0 ppid=3025 pid=3356 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:46.637000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3337653339623135356232346530306164306439393865613162396432 Feb 9 09:49:46.638000 audit[3356]: AVC avc: denied { bpf } for pid=3356 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.638000 audit[3356]: AVC avc: denied { bpf } for pid=3356 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.638000 audit[3356]: AVC avc: denied { bpf } for pid=3356 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.638000 audit[3356]: AVC avc: denied { perfmon } for pid=3356 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.638000 audit[3356]: AVC avc: denied { perfmon } for pid=3356 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.638000 audit[3356]: AVC avc: denied { perfmon } for pid=3356 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.638000 audit[3356]: AVC avc: denied { perfmon } for pid=3356 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.638000 audit[3356]: AVC avc: denied { perfmon } for pid=3356 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.638000 audit[3356]: AVC avc: denied { bpf } for pid=3356 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.638000 audit[3356]: AVC avc: denied { bpf } for pid=3356 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.638000 audit: BPF prog-id=105 op=LOAD Feb 9 09:49:46.638000 audit[3356]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=400014d8e0 a2=78 a3=0 items=0 ppid=3025 pid=3356 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:46.638000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3337653339623135356232346530306164306439393865613162396432 Feb 9 09:49:46.644000 audit[3356]: AVC avc: denied { bpf } for pid=3356 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.644000 audit[3356]: AVC avc: denied { bpf } for pid=3356 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.644000 audit[3356]: AVC avc: denied { perfmon } for pid=3356 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.644000 audit[3356]: AVC avc: denied { perfmon } for pid=3356 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.644000 audit[3356]: AVC avc: denied { perfmon } for pid=3356 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.644000 audit[3356]: AVC avc: denied { perfmon } for pid=3356 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.644000 audit[3356]: AVC avc: denied { perfmon } for pid=3356 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.644000 audit[3356]: AVC avc: denied { bpf } for pid=3356 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.644000 audit[3356]: AVC avc: denied { bpf } for pid=3356 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.644000 audit: BPF prog-id=106 op=LOAD Feb 9 09:49:46.644000 audit[3356]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=400014d670 a2=78 a3=0 items=0 ppid=3025 pid=3356 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:46.644000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3337653339623135356232346530306164306439393865613162396432 Feb 9 09:49:46.651000 audit: BPF prog-id=106 op=UNLOAD Feb 9 09:49:46.651000 audit: BPF prog-id=105 op=UNLOAD Feb 9 09:49:46.651000 audit[3356]: AVC avc: denied { bpf } for pid=3356 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.651000 audit[3356]: AVC avc: denied { bpf } for pid=3356 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.651000 audit[3356]: AVC avc: denied { bpf } for pid=3356 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.651000 audit[3356]: AVC avc: denied { perfmon } for pid=3356 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.651000 audit[3356]: AVC avc: denied { perfmon } for pid=3356 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.651000 audit[3356]: AVC avc: denied { perfmon } for pid=3356 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.651000 audit[3356]: AVC avc: denied { perfmon } for pid=3356 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.651000 audit[3356]: AVC avc: denied { perfmon } for pid=3356 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.651000 audit[3356]: AVC avc: denied { bpf } for pid=3356 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.651000 audit[3356]: AVC avc: denied { bpf } for pid=3356 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:46.651000 audit: BPF prog-id=107 op=LOAD Feb 9 09:49:46.651000 audit[3356]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=400014db40 a2=78 a3=0 items=0 ppid=3025 pid=3356 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:46.651000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3337653339623135356232346530306164306439393865613162396432 Feb 9 09:49:46.737491 env[1673]: time="2024-02-09T09:49:46.737429005Z" level=info msg="StartContainer for \"37e39b155b24e00ad0d998ea1b9d271f1a3a77cfbd1b66264bd00cd77bc9b957\" returns successfully" Feb 9 09:49:46.803075 kubelet[2129]: E0209 09:49:46.802871 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:47.136503 kubelet[2129]: I0209 09:49:47.136383 2129 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="default/nginx-deployment-845c78c8b9-28sbm" podStartSLOduration=15.373646472 podCreationTimestamp="2024-02-09 09:49:26 +0000 UTC" firstStartedPulling="2024-02-09 09:49:40.760818452 +0000 UTC m=+30.677469813" lastFinishedPulling="2024-02-09 09:49:46.523504785 +0000 UTC m=+36.440156146" observedRunningTime="2024-02-09 09:49:47.136314589 +0000 UTC m=+37.052965974" watchObservedRunningTime="2024-02-09 09:49:47.136332805 +0000 UTC m=+37.052984154" Feb 9 09:49:47.804154 kubelet[2129]: E0209 09:49:47.804074 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:48.177189 env[1673]: time="2024-02-09T09:49:48.177014906Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/csi:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:48.179904 env[1673]: time="2024-02-09T09:49:48.179854562Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:4b71e7439e0eba34a97844591560a009f37e8e6c17a386a34d416c1cc872dee8,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:48.182552 env[1673]: time="2024-02-09T09:49:48.182488240Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/csi:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:48.185075 env[1673]: time="2024-02-09T09:49:48.185015023Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/csi@sha256:2b9021393c17e87ba8a3c89f5b3719941812f4e4751caa0b71eb2233bff48738,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:48.186014 env[1673]: time="2024-02-09T09:49:48.185970167Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/csi:v3.27.0\" returns image reference \"sha256:4b71e7439e0eba34a97844591560a009f37e8e6c17a386a34d416c1cc872dee8\"" Feb 9 09:49:48.189585 env[1673]: time="2024-02-09T09:49:48.189527945Z" level=info msg="CreateContainer within sandbox \"1fd9a938a6972460125e142ffe562c5e5cc53f29056b9eb3b53881161a82eec3\" for container &ContainerMetadata{Name:calico-csi,Attempt:0,}" Feb 9 09:49:48.212559 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1167431610.mount: Deactivated successfully. Feb 9 09:49:48.221526 env[1673]: time="2024-02-09T09:49:48.221375439Z" level=info msg="CreateContainer within sandbox \"1fd9a938a6972460125e142ffe562c5e5cc53f29056b9eb3b53881161a82eec3\" for &ContainerMetadata{Name:calico-csi,Attempt:0,} returns container id \"5eb0b8fc0de3b34a9079a4f49916b5e718b82e0e31cda1d3a655a4a395ab090b\"" Feb 9 09:49:48.222552 env[1673]: time="2024-02-09T09:49:48.222476202Z" level=info msg="StartContainer for \"5eb0b8fc0de3b34a9079a4f49916b5e718b82e0e31cda1d3a655a4a395ab090b\"" Feb 9 09:49:48.272193 systemd[1]: Started cri-containerd-5eb0b8fc0de3b34a9079a4f49916b5e718b82e0e31cda1d3a655a4a395ab090b.scope. Feb 9 09:49:48.307000 audit[3420]: AVC avc: denied { perfmon } for pid=3420 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:48.307000 audit[3420]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=3315 pid=3420 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:48.307000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3565623062386663306465336233346139303739613466343939313662 Feb 9 09:49:48.308000 audit[3420]: AVC avc: denied { bpf } for pid=3420 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:48.308000 audit[3420]: AVC avc: denied { bpf } for pid=3420 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:48.308000 audit[3420]: AVC avc: denied { bpf } for pid=3420 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:48.308000 audit[3420]: AVC avc: denied { perfmon } for pid=3420 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:48.308000 audit[3420]: AVC avc: denied { perfmon } for pid=3420 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:48.308000 audit[3420]: AVC avc: denied { perfmon } for pid=3420 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:48.308000 audit[3420]: AVC avc: denied { perfmon } for pid=3420 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:48.308000 audit[3420]: AVC avc: denied { perfmon } for pid=3420 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:48.308000 audit[3420]: AVC avc: denied { bpf } for pid=3420 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:48.308000 audit[3420]: AVC avc: denied { bpf } for pid=3420 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:48.308000 audit: BPF prog-id=108 op=LOAD Feb 9 09:49:48.308000 audit[3420]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=3315 pid=3420 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:48.308000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3565623062386663306465336233346139303739613466343939313662 Feb 9 09:49:48.309000 audit[3420]: AVC avc: denied { bpf } for pid=3420 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:48.309000 audit[3420]: AVC avc: denied { bpf } for pid=3420 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:48.309000 audit[3420]: AVC avc: denied { perfmon } for pid=3420 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:48.309000 audit[3420]: AVC avc: denied { perfmon } for pid=3420 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:48.309000 audit[3420]: AVC avc: denied { perfmon } for pid=3420 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:48.309000 audit[3420]: AVC avc: denied { perfmon } for pid=3420 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:48.309000 audit[3420]: AVC avc: denied { perfmon } for pid=3420 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:48.309000 audit[3420]: AVC avc: denied { bpf } for pid=3420 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:48.309000 audit[3420]: AVC avc: denied { bpf } for pid=3420 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:48.309000 audit: BPF prog-id=109 op=LOAD Feb 9 09:49:48.309000 audit[3420]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=3315 pid=3420 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:48.309000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3565623062386663306465336233346139303739613466343939313662 Feb 9 09:49:48.310000 audit: BPF prog-id=109 op=UNLOAD Feb 9 09:49:48.311000 audit: BPF prog-id=108 op=UNLOAD Feb 9 09:49:48.311000 audit[3420]: AVC avc: denied { bpf } for pid=3420 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:48.311000 audit[3420]: AVC avc: denied { bpf } for pid=3420 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:48.311000 audit[3420]: AVC avc: denied { bpf } for pid=3420 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:48.311000 audit[3420]: AVC avc: denied { perfmon } for pid=3420 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:48.311000 audit[3420]: AVC avc: denied { perfmon } for pid=3420 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:48.311000 audit[3420]: AVC avc: denied { perfmon } for pid=3420 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:48.311000 audit[3420]: AVC avc: denied { perfmon } for pid=3420 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:48.311000 audit[3420]: AVC avc: denied { perfmon } for pid=3420 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:48.311000 audit[3420]: AVC avc: denied { bpf } for pid=3420 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:48.311000 audit[3420]: AVC avc: denied { bpf } for pid=3420 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:48.311000 audit: BPF prog-id=110 op=LOAD Feb 9 09:49:48.311000 audit[3420]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=3315 pid=3420 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:48.311000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3565623062386663306465336233346139303739613466343939313662 Feb 9 09:49:48.345288 env[1673]: time="2024-02-09T09:49:48.345220859Z" level=info msg="StartContainer for \"5eb0b8fc0de3b34a9079a4f49916b5e718b82e0e31cda1d3a655a4a395ab090b\" returns successfully" Feb 9 09:49:48.348062 env[1673]: time="2024-02-09T09:49:48.347999304Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node-driver-registrar:v3.27.0\"" Feb 9 09:49:48.541507 systemd[1]: run-containerd-runc-k8s.io-5eb0b8fc0de3b34a9079a4f49916b5e718b82e0e31cda1d3a655a4a395ab090b-runc.GFNjID.mount: Deactivated successfully. Feb 9 09:49:48.805278 kubelet[2129]: E0209 09:49:48.804816 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:49.805299 kubelet[2129]: E0209 09:49:49.805231 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:50.043072 systemd[1]: run-containerd-runc-k8s.io-dcc0bcb5528f0c8e3839ad8a18009acbf87d7b01926421bd701fba828ab7968c-runc.VjbKJC.mount: Deactivated successfully. Feb 9 09:49:50.045866 env[1673]: time="2024-02-09T09:49:50.043707794Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node-driver-registrar:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:50.047763 env[1673]: time="2024-02-09T09:49:50.047709129Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:9dbda087e98c46610fb8629cf530f1fe49eee4b17d2afe455664ca446ec39d43,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:50.050535 env[1673]: time="2024-02-09T09:49:50.050483485Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/node-driver-registrar:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:50.053870 env[1673]: time="2024-02-09T09:49:50.053808612Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node-driver-registrar@sha256:45a7aba6020a7cf7b866cb8a8d481b30c97e9b3407e1459aaa65a5b4cc06633a,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:49:50.057207 env[1673]: time="2024-02-09T09:49:50.054366644Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node-driver-registrar:v3.27.0\" returns image reference \"sha256:9dbda087e98c46610fb8629cf530f1fe49eee4b17d2afe455664ca446ec39d43\"" Feb 9 09:49:50.058860 env[1673]: time="2024-02-09T09:49:50.058780116Z" level=info msg="CreateContainer within sandbox \"1fd9a938a6972460125e142ffe562c5e5cc53f29056b9eb3b53881161a82eec3\" for container &ContainerMetadata{Name:csi-node-driver-registrar,Attempt:0,}" Feb 9 09:49:50.085186 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount4057579476.mount: Deactivated successfully. Feb 9 09:49:50.094578 env[1673]: time="2024-02-09T09:49:50.094487137Z" level=info msg="CreateContainer within sandbox \"1fd9a938a6972460125e142ffe562c5e5cc53f29056b9eb3b53881161a82eec3\" for &ContainerMetadata{Name:csi-node-driver-registrar,Attempt:0,} returns container id \"1d03da61c1e12e47ea43a3928004975c95a86cdbc00c4ad06c3342c9bc5370c3\"" Feb 9 09:49:50.095721 env[1673]: time="2024-02-09T09:49:50.095654669Z" level=info msg="StartContainer for \"1d03da61c1e12e47ea43a3928004975c95a86cdbc00c4ad06c3342c9bc5370c3\"" Feb 9 09:49:50.130829 systemd[1]: Started cri-containerd-1d03da61c1e12e47ea43a3928004975c95a86cdbc00c4ad06c3342c9bc5370c3.scope. Feb 9 09:49:50.182000 audit[3476]: AVC avc: denied { perfmon } for pid=3476 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:50.182000 audit[3476]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001475a0 a2=3c a3=0 items=0 ppid=3315 pid=3476 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:50.182000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3164303364613631633165313265343765613433613339323830303439 Feb 9 09:49:50.182000 audit[3476]: AVC avc: denied { bpf } for pid=3476 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:50.182000 audit[3476]: AVC avc: denied { bpf } for pid=3476 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:50.182000 audit[3476]: AVC avc: denied { bpf } for pid=3476 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:50.182000 audit[3476]: AVC avc: denied { perfmon } for pid=3476 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:50.182000 audit[3476]: AVC avc: denied { perfmon } for pid=3476 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:50.182000 audit[3476]: AVC avc: denied { perfmon } for pid=3476 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:50.182000 audit[3476]: AVC avc: denied { perfmon } for pid=3476 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:50.182000 audit[3476]: AVC avc: denied { perfmon } for pid=3476 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:50.182000 audit[3476]: AVC avc: denied { bpf } for pid=3476 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:50.182000 audit[3476]: AVC avc: denied { bpf } for pid=3476 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:50.182000 audit: BPF prog-id=111 op=LOAD Feb 9 09:49:50.182000 audit[3476]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001478e0 a2=78 a3=0 items=0 ppid=3315 pid=3476 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:50.182000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3164303364613631633165313265343765613433613339323830303439 Feb 9 09:49:50.183000 audit[3476]: AVC avc: denied { bpf } for pid=3476 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:50.183000 audit[3476]: AVC avc: denied { bpf } for pid=3476 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:50.183000 audit[3476]: AVC avc: denied { perfmon } for pid=3476 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:50.183000 audit[3476]: AVC avc: denied { perfmon } for pid=3476 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:50.183000 audit[3476]: AVC avc: denied { perfmon } for pid=3476 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:50.183000 audit[3476]: AVC avc: denied { perfmon } for pid=3476 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:50.183000 audit[3476]: AVC avc: denied { perfmon } for pid=3476 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:50.183000 audit[3476]: AVC avc: denied { bpf } for pid=3476 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:50.183000 audit[3476]: AVC avc: denied { bpf } for pid=3476 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:50.183000 audit: BPF prog-id=112 op=LOAD Feb 9 09:49:50.183000 audit[3476]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000147670 a2=78 a3=0 items=0 ppid=3315 pid=3476 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:50.183000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3164303364613631633165313265343765613433613339323830303439 Feb 9 09:49:50.183000 audit: BPF prog-id=112 op=UNLOAD Feb 9 09:49:50.183000 audit: BPF prog-id=111 op=UNLOAD Feb 9 09:49:50.183000 audit[3476]: AVC avc: denied { bpf } for pid=3476 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:50.183000 audit[3476]: AVC avc: denied { bpf } for pid=3476 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:50.183000 audit[3476]: AVC avc: denied { bpf } for pid=3476 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:50.183000 audit[3476]: AVC avc: denied { perfmon } for pid=3476 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:50.183000 audit[3476]: AVC avc: denied { perfmon } for pid=3476 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:50.183000 audit[3476]: AVC avc: denied { perfmon } for pid=3476 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:50.183000 audit[3476]: AVC avc: denied { perfmon } for pid=3476 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:50.183000 audit[3476]: AVC avc: denied { perfmon } for pid=3476 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:50.183000 audit[3476]: AVC avc: denied { bpf } for pid=3476 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:50.183000 audit[3476]: AVC avc: denied { bpf } for pid=3476 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:50.183000 audit: BPF prog-id=113 op=LOAD Feb 9 09:49:50.183000 audit[3476]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000147b40 a2=78 a3=0 items=0 ppid=3315 pid=3476 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:50.183000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3164303364613631633165313265343765613433613339323830303439 Feb 9 09:49:50.225030 env[1673]: time="2024-02-09T09:49:50.224944538Z" level=info msg="StartContainer for \"1d03da61c1e12e47ea43a3928004975c95a86cdbc00c4ad06c3342c9bc5370c3\" returns successfully" Feb 9 09:49:50.776012 kubelet[2129]: E0209 09:49:50.775971 2129 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:50.805769 kubelet[2129]: E0209 09:49:50.805714 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:50.961835 kubelet[2129]: I0209 09:49:50.961795 2129 csi_plugin.go:99] kubernetes.io/csi: Trying to validate a new CSI Driver with name: csi.tigera.io endpoint: /var/lib/kubelet/plugins/csi.tigera.io/csi.sock versions: 1.0.0 Feb 9 09:49:50.962063 kubelet[2129]: I0209 09:49:50.962042 2129 csi_plugin.go:112] kubernetes.io/csi: Register new plugin with name: csi.tigera.io at endpoint: /var/lib/kubelet/plugins/csi.tigera.io/csi.sock Feb 9 09:49:51.806569 kubelet[2129]: E0209 09:49:51.806527 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:51.991000 audit[3509]: NETFILTER_CFG table=filter:71 family=2 entries=20 op=nft_register_rule pid=3509 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 09:49:51.995256 kernel: kauditd_printk_skb: 133 callbacks suppressed Feb 9 09:49:51.995334 kernel: audit: type=1325 audit(1707472191.991:826): table=filter:71 family=2 entries=20 op=nft_register_rule pid=3509 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 09:49:51.991000 audit[3509]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=11292 a0=3 a1=ffffe1c66a30 a2=0 a3=ffff831a96c0 items=0 ppid=2352 pid=3509 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:52.012750 kernel: audit: type=1300 audit(1707472191.991:826): arch=c00000b7 syscall=211 success=yes exit=11292 a0=3 a1=ffffe1c66a30 a2=0 a3=ffff831a96c0 items=0 ppid=2352 pid=3509 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:51.991000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 09:49:52.018791 kernel: audit: type=1327 audit(1707472191.991:826): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 09:49:51.993000 audit[3509]: NETFILTER_CFG table=nat:72 family=2 entries=20 op=nft_register_rule pid=3509 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 09:49:52.025018 kernel: audit: type=1325 audit(1707472191.993:827): table=nat:72 family=2 entries=20 op=nft_register_rule pid=3509 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 09:49:52.025244 kernel: audit: type=1300 audit(1707472191.993:827): arch=c00000b7 syscall=211 success=yes exit=5484 a0=3 a1=ffffe1c66a30 a2=0 a3=ffff831a96c0 items=0 ppid=2352 pid=3509 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:51.993000 audit[3509]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5484 a0=3 a1=ffffe1c66a30 a2=0 a3=ffff831a96c0 items=0 ppid=2352 pid=3509 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:51.993000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 09:49:52.042187 kernel: audit: type=1327 audit(1707472191.993:827): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 09:49:52.042255 kernel: audit: type=1325 audit(1707472192.033:828): table=filter:73 family=2 entries=32 op=nft_register_rule pid=3514 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 09:49:52.033000 audit[3514]: NETFILTER_CFG table=filter:73 family=2 entries=32 op=nft_register_rule pid=3514 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 09:49:52.047842 kernel: audit: type=1300 audit(1707472192.033:828): arch=c00000b7 syscall=211 success=yes exit=11292 a0=3 a1=ffffc4c3d270 a2=0 a3=ffff80f496c0 items=0 ppid=2352 pid=3514 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:52.033000 audit[3514]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=11292 a0=3 a1=ffffc4c3d270 a2=0 a3=ffff80f496c0 items=0 ppid=2352 pid=3514 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:52.033000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 09:49:52.064923 kernel: audit: type=1327 audit(1707472192.033:828): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 09:49:52.034000 audit[3514]: NETFILTER_CFG table=nat:74 family=2 entries=20 op=nft_register_rule pid=3514 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 09:49:52.034000 audit[3514]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5484 a0=3 a1=ffffc4c3d270 a2=0 a3=ffff80f496c0 items=0 ppid=2352 pid=3514 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:52.034000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 09:49:52.079174 kernel: audit: type=1325 audit(1707472192.034:829): table=nat:74 family=2 entries=20 op=nft_register_rule pid=3514 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 09:49:52.086105 kubelet[2129]: I0209 09:49:52.086063 2129 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="calico-system/csi-node-driver-v96lh" podStartSLOduration=32.759274067 podCreationTimestamp="2024-02-09 09:49:12 +0000 UTC" firstStartedPulling="2024-02-09 09:49:42.729516832 +0000 UTC m=+32.646168193" lastFinishedPulling="2024-02-09 09:49:50.056251458 +0000 UTC m=+39.972902831" observedRunningTime="2024-02-09 09:49:51.183306501 +0000 UTC m=+41.099957874" watchObservedRunningTime="2024-02-09 09:49:52.086008705 +0000 UTC m=+42.002660078" Feb 9 09:49:52.086698 kubelet[2129]: I0209 09:49:52.086668 2129 topology_manager.go:212] "Topology Admit Handler" Feb 9 09:49:52.096257 kubelet[2129]: I0209 09:49:52.094649 2129 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"data\" (UniqueName: \"kubernetes.io/empty-dir/bb56da5e-8c10-4e1e-a49c-aab0597a596b-data\") pod \"nfs-server-provisioner-0\" (UID: \"bb56da5e-8c10-4e1e-a49c-aab0597a596b\") " pod="default/nfs-server-provisioner-0" Feb 9 09:49:52.096257 kubelet[2129]: I0209 09:49:52.094748 2129 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-5d9k6\" (UniqueName: \"kubernetes.io/projected/bb56da5e-8c10-4e1e-a49c-aab0597a596b-kube-api-access-5d9k6\") pod \"nfs-server-provisioner-0\" (UID: \"bb56da5e-8c10-4e1e-a49c-aab0597a596b\") " pod="default/nfs-server-provisioner-0" Feb 9 09:49:52.097835 systemd[1]: Created slice kubepods-besteffort-podbb56da5e_8c10_4e1e_a49c_aab0597a596b.slice. Feb 9 09:49:52.404484 env[1673]: time="2024-02-09T09:49:52.403526726Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nfs-server-provisioner-0,Uid:bb56da5e-8c10-4e1e-a49c-aab0597a596b,Namespace:default,Attempt:0,}" Feb 9 09:49:52.721727 systemd-networkd[1460]: cali60e51b789ff: Link UP Feb 9 09:49:52.722795 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 9 09:49:52.722854 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali60e51b789ff: link becomes ready Feb 9 09:49:52.724283 systemd-networkd[1460]: cali60e51b789ff: Gained carrier Feb 9 09:49:52.725882 (udev-worker)[3512]: Network interface NamePolicy= disabled on kernel command line. Feb 9 09:49:52.759018 env[1673]: 2024-02-09 09:49:52.497 [INFO][3516] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.26.157-k8s-nfs--server--provisioner--0-eth0 nfs-server-provisioner- default bb56da5e-8c10-4e1e-a49c-aab0597a596b 1024 0 2024-02-09 09:49:52 +0000 UTC map[app:nfs-server-provisioner chart:nfs-server-provisioner-1.8.0 controller-revision-hash:nfs-server-provisioner-d5cbb7f57 heritage:Helm projectcalico.org/namespace:default projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:nfs-server-provisioner release:nfs-server-provisioner statefulset.kubernetes.io/pod-name:nfs-server-provisioner-0] map[] [] [] []} {k8s 172.31.26.157 nfs-server-provisioner-0 eth0 nfs-server-provisioner [] [] [kns.default ksa.default.nfs-server-provisioner] cali60e51b789ff [{nfs TCP 2049 0 } {nfs-udp UDP 2049 0 } {nlockmgr TCP 32803 0 } {nlockmgr-udp UDP 32803 0 } {mountd TCP 20048 0 } {mountd-udp UDP 20048 0 } {rquotad TCP 875 0 } {rquotad-udp UDP 875 0 } {rpcbind TCP 111 0 } {rpcbind-udp UDP 111 0 } {statd TCP 662 0 } {statd-udp UDP 662 0 }] []}} ContainerID="907383654616b3790afdd52e71842e80a6698dbca68fbf20fab4cb7b5a3d9c44" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.26.157-k8s-nfs--server--provisioner--0-" Feb 9 09:49:52.759018 env[1673]: 2024-02-09 09:49:52.497 [INFO][3516] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="907383654616b3790afdd52e71842e80a6698dbca68fbf20fab4cb7b5a3d9c44" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.26.157-k8s-nfs--server--provisioner--0-eth0" Feb 9 09:49:52.759018 env[1673]: 2024-02-09 09:49:52.551 [INFO][3528] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="907383654616b3790afdd52e71842e80a6698dbca68fbf20fab4cb7b5a3d9c44" HandleID="k8s-pod-network.907383654616b3790afdd52e71842e80a6698dbca68fbf20fab4cb7b5a3d9c44" Workload="172.31.26.157-k8s-nfs--server--provisioner--0-eth0" Feb 9 09:49:52.759018 env[1673]: 2024-02-09 09:49:52.607 [INFO][3528] ipam_plugin.go 268: Auto assigning IP ContainerID="907383654616b3790afdd52e71842e80a6698dbca68fbf20fab4cb7b5a3d9c44" HandleID="k8s-pod-network.907383654616b3790afdd52e71842e80a6698dbca68fbf20fab4cb7b5a3d9c44" Workload="172.31.26.157-k8s-nfs--server--provisioner--0-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x4000294a50), Attrs:map[string]string{"namespace":"default", "node":"172.31.26.157", "pod":"nfs-server-provisioner-0", "timestamp":"2024-02-09 09:49:52.551267312 +0000 UTC"}, Hostname:"172.31.26.157", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 9 09:49:52.759018 env[1673]: 2024-02-09 09:49:52.607 [INFO][3528] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 09:49:52.759018 env[1673]: 2024-02-09 09:49:52.607 [INFO][3528] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 09:49:52.759018 env[1673]: 2024-02-09 09:49:52.607 [INFO][3528] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.26.157' Feb 9 09:49:52.759018 env[1673]: 2024-02-09 09:49:52.614 [INFO][3528] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.907383654616b3790afdd52e71842e80a6698dbca68fbf20fab4cb7b5a3d9c44" host="172.31.26.157" Feb 9 09:49:52.759018 env[1673]: 2024-02-09 09:49:52.641 [INFO][3528] ipam.go 372: Looking up existing affinities for host host="172.31.26.157" Feb 9 09:49:52.759018 env[1673]: 2024-02-09 09:49:52.668 [INFO][3528] ipam.go 489: Trying affinity for 192.168.26.128/26 host="172.31.26.157" Feb 9 09:49:52.759018 env[1673]: 2024-02-09 09:49:52.677 [INFO][3528] ipam.go 155: Attempting to load block cidr=192.168.26.128/26 host="172.31.26.157" Feb 9 09:49:52.759018 env[1673]: 2024-02-09 09:49:52.684 [INFO][3528] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.26.128/26 host="172.31.26.157" Feb 9 09:49:52.759018 env[1673]: 2024-02-09 09:49:52.684 [INFO][3528] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.26.128/26 handle="k8s-pod-network.907383654616b3790afdd52e71842e80a6698dbca68fbf20fab4cb7b5a3d9c44" host="172.31.26.157" Feb 9 09:49:52.759018 env[1673]: 2024-02-09 09:49:52.687 [INFO][3528] ipam.go 1682: Creating new handle: k8s-pod-network.907383654616b3790afdd52e71842e80a6698dbca68fbf20fab4cb7b5a3d9c44 Feb 9 09:49:52.759018 env[1673]: 2024-02-09 09:49:52.697 [INFO][3528] ipam.go 1203: Writing block in order to claim IPs block=192.168.26.128/26 handle="k8s-pod-network.907383654616b3790afdd52e71842e80a6698dbca68fbf20fab4cb7b5a3d9c44" host="172.31.26.157" Feb 9 09:49:52.759018 env[1673]: 2024-02-09 09:49:52.711 [INFO][3528] ipam.go 1216: Successfully claimed IPs: [192.168.26.131/26] block=192.168.26.128/26 handle="k8s-pod-network.907383654616b3790afdd52e71842e80a6698dbca68fbf20fab4cb7b5a3d9c44" host="172.31.26.157" Feb 9 09:49:52.759018 env[1673]: 2024-02-09 09:49:52.711 [INFO][3528] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.26.131/26] handle="k8s-pod-network.907383654616b3790afdd52e71842e80a6698dbca68fbf20fab4cb7b5a3d9c44" host="172.31.26.157" Feb 9 09:49:52.759018 env[1673]: 2024-02-09 09:49:52.711 [INFO][3528] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 09:49:52.759018 env[1673]: 2024-02-09 09:49:52.711 [INFO][3528] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.26.131/26] IPv6=[] ContainerID="907383654616b3790afdd52e71842e80a6698dbca68fbf20fab4cb7b5a3d9c44" HandleID="k8s-pod-network.907383654616b3790afdd52e71842e80a6698dbca68fbf20fab4cb7b5a3d9c44" Workload="172.31.26.157-k8s-nfs--server--provisioner--0-eth0" Feb 9 09:49:52.760219 env[1673]: 2024-02-09 09:49:52.713 [INFO][3516] k8s.go 385: Populated endpoint ContainerID="907383654616b3790afdd52e71842e80a6698dbca68fbf20fab4cb7b5a3d9c44" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.26.157-k8s-nfs--server--provisioner--0-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.26.157-k8s-nfs--server--provisioner--0-eth0", GenerateName:"nfs-server-provisioner-", Namespace:"default", SelfLink:"", UID:"bb56da5e-8c10-4e1e-a49c-aab0597a596b", ResourceVersion:"1024", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 9, 49, 52, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nfs-server-provisioner", "chart":"nfs-server-provisioner-1.8.0", "controller-revision-hash":"nfs-server-provisioner-d5cbb7f57", "heritage":"Helm", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"nfs-server-provisioner", "release":"nfs-server-provisioner", "statefulset.kubernetes.io/pod-name":"nfs-server-provisioner-0"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.26.157", ContainerID:"", Pod:"nfs-server-provisioner-0", Endpoint:"eth0", ServiceAccountName:"nfs-server-provisioner", IPNetworks:[]string{"192.168.26.131/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.nfs-server-provisioner"}, InterfaceName:"cali60e51b789ff", MAC:"", Ports:[]v3.WorkloadEndpointPort{v3.WorkloadEndpointPort{Name:"nfs", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nfs-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x296, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x296, HostPort:0x0, HostIP:""}}, AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 09:49:52.760219 env[1673]: 2024-02-09 09:49:52.714 [INFO][3516] k8s.go 386: Calico CNI using IPs: [192.168.26.131/32] ContainerID="907383654616b3790afdd52e71842e80a6698dbca68fbf20fab4cb7b5a3d9c44" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.26.157-k8s-nfs--server--provisioner--0-eth0" Feb 9 09:49:52.760219 env[1673]: 2024-02-09 09:49:52.714 [INFO][3516] dataplane_linux.go 68: Setting the host side veth name to cali60e51b789ff ContainerID="907383654616b3790afdd52e71842e80a6698dbca68fbf20fab4cb7b5a3d9c44" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.26.157-k8s-nfs--server--provisioner--0-eth0" Feb 9 09:49:52.760219 env[1673]: 2024-02-09 09:49:52.723 [INFO][3516] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="907383654616b3790afdd52e71842e80a6698dbca68fbf20fab4cb7b5a3d9c44" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.26.157-k8s-nfs--server--provisioner--0-eth0" Feb 9 09:49:52.760557 env[1673]: 2024-02-09 09:49:52.724 [INFO][3516] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="907383654616b3790afdd52e71842e80a6698dbca68fbf20fab4cb7b5a3d9c44" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.26.157-k8s-nfs--server--provisioner--0-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.26.157-k8s-nfs--server--provisioner--0-eth0", GenerateName:"nfs-server-provisioner-", Namespace:"default", SelfLink:"", UID:"bb56da5e-8c10-4e1e-a49c-aab0597a596b", ResourceVersion:"1024", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 9, 49, 52, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nfs-server-provisioner", "chart":"nfs-server-provisioner-1.8.0", "controller-revision-hash":"nfs-server-provisioner-d5cbb7f57", "heritage":"Helm", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"nfs-server-provisioner", "release":"nfs-server-provisioner", "statefulset.kubernetes.io/pod-name":"nfs-server-provisioner-0"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.26.157", ContainerID:"907383654616b3790afdd52e71842e80a6698dbca68fbf20fab4cb7b5a3d9c44", Pod:"nfs-server-provisioner-0", Endpoint:"eth0", ServiceAccountName:"nfs-server-provisioner", IPNetworks:[]string{"192.168.26.131/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.nfs-server-provisioner"}, InterfaceName:"cali60e51b789ff", MAC:"0a:2f:1b:14:d9:b1", Ports:[]v3.WorkloadEndpointPort{v3.WorkloadEndpointPort{Name:"nfs", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nfs-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x296, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x296, HostPort:0x0, HostIP:""}}, AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 09:49:52.760557 env[1673]: 2024-02-09 09:49:52.756 [INFO][3516] k8s.go 491: Wrote updated endpoint to datastore ContainerID="907383654616b3790afdd52e71842e80a6698dbca68fbf20fab4cb7b5a3d9c44" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.26.157-k8s-nfs--server--provisioner--0-eth0" Feb 9 09:49:52.796392 env[1673]: time="2024-02-09T09:49:52.796262277Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 9 09:49:52.796392 env[1673]: time="2024-02-09T09:49:52.796342209Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 9 09:49:52.796682 env[1673]: time="2024-02-09T09:49:52.796369640Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 9 09:49:52.796682 env[1673]: time="2024-02-09T09:49:52.796624039Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/907383654616b3790afdd52e71842e80a6698dbca68fbf20fab4cb7b5a3d9c44 pid=3559 runtime=io.containerd.runc.v2 Feb 9 09:49:52.808118 kubelet[2129]: E0209 09:49:52.808066 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:52.825000 audit[3576]: NETFILTER_CFG table=filter:75 family=2 entries=38 op=nft_register_chain pid=3576 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 09:49:52.825000 audit[3576]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=19500 a0=3 a1=ffffc1824610 a2=0 a3=ffffa20b6fa8 items=0 ppid=2785 pid=3576 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:52.825000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 09:49:52.830614 systemd[1]: Started cri-containerd-907383654616b3790afdd52e71842e80a6698dbca68fbf20fab4cb7b5a3d9c44.scope. Feb 9 09:49:52.874000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.874000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.874000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.874000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.874000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.874000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.874000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.874000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.874000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.874000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.874000 audit: BPF prog-id=114 op=LOAD Feb 9 09:49:52.876000 audit[3568]: AVC avc: denied { bpf } for pid=3568 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.876000 audit[3568]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000195b38 a2=10 a3=0 items=0 ppid=3559 pid=3568 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:52.876000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3930373338333635343631366233373930616664643532653731383432 Feb 9 09:49:52.876000 audit[3568]: AVC avc: denied { perfmon } for pid=3568 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.876000 audit[3568]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=3559 pid=3568 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:52.876000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3930373338333635343631366233373930616664643532653731383432 Feb 9 09:49:52.876000 audit[3568]: AVC avc: denied { bpf } for pid=3568 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.876000 audit[3568]: AVC avc: denied { bpf } for pid=3568 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.876000 audit[3568]: AVC avc: denied { bpf } for pid=3568 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.876000 audit[3568]: AVC avc: denied { perfmon } for pid=3568 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.876000 audit[3568]: AVC avc: denied { perfmon } for pid=3568 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.876000 audit[3568]: AVC avc: denied { perfmon } for pid=3568 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.876000 audit[3568]: AVC avc: denied { perfmon } for pid=3568 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.876000 audit[3568]: AVC avc: denied { perfmon } for pid=3568 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.876000 audit[3568]: AVC avc: denied { bpf } for pid=3568 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.876000 audit[3568]: AVC avc: denied { bpf } for pid=3568 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.876000 audit: BPF prog-id=115 op=LOAD Feb 9 09:49:52.876000 audit[3568]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=3559 pid=3568 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:52.876000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3930373338333635343631366233373930616664643532653731383432 Feb 9 09:49:52.877000 audit[3568]: AVC avc: denied { bpf } for pid=3568 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.877000 audit[3568]: AVC avc: denied { bpf } for pid=3568 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.877000 audit[3568]: AVC avc: denied { perfmon } for pid=3568 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.877000 audit[3568]: AVC avc: denied { perfmon } for pid=3568 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.877000 audit[3568]: AVC avc: denied { perfmon } for pid=3568 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.877000 audit[3568]: AVC avc: denied { perfmon } for pid=3568 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.877000 audit[3568]: AVC avc: denied { perfmon } for pid=3568 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.877000 audit[3568]: AVC avc: denied { bpf } for pid=3568 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.877000 audit[3568]: AVC avc: denied { bpf } for pid=3568 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.877000 audit: BPF prog-id=116 op=LOAD Feb 9 09:49:52.877000 audit[3568]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=3559 pid=3568 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:52.877000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3930373338333635343631366233373930616664643532653731383432 Feb 9 09:49:52.877000 audit: BPF prog-id=116 op=UNLOAD Feb 9 09:49:52.877000 audit: BPF prog-id=115 op=UNLOAD Feb 9 09:49:52.877000 audit[3568]: AVC avc: denied { bpf } for pid=3568 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.877000 audit[3568]: AVC avc: denied { bpf } for pid=3568 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.877000 audit[3568]: AVC avc: denied { bpf } for pid=3568 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.877000 audit[3568]: AVC avc: denied { perfmon } for pid=3568 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.877000 audit[3568]: AVC avc: denied { perfmon } for pid=3568 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.877000 audit[3568]: AVC avc: denied { perfmon } for pid=3568 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.877000 audit[3568]: AVC avc: denied { perfmon } for pid=3568 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.877000 audit[3568]: AVC avc: denied { perfmon } for pid=3568 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.877000 audit[3568]: AVC avc: denied { bpf } for pid=3568 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.877000 audit[3568]: AVC avc: denied { bpf } for pid=3568 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:52.877000 audit: BPF prog-id=117 op=LOAD Feb 9 09:49:52.877000 audit[3568]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=3559 pid=3568 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:52.877000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3930373338333635343631366233373930616664643532653731383432 Feb 9 09:49:52.926045 env[1673]: time="2024-02-09T09:49:52.925979159Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nfs-server-provisioner-0,Uid:bb56da5e-8c10-4e1e-a49c-aab0597a596b,Namespace:default,Attempt:0,} returns sandbox id \"907383654616b3790afdd52e71842e80a6698dbca68fbf20fab4cb7b5a3d9c44\"" Feb 9 09:49:52.929288 env[1673]: time="2024-02-09T09:49:52.929216990Z" level=info msg="PullImage \"registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8\"" Feb 9 09:49:53.099000 audit[3594]: NETFILTER_CFG table=filter:76 family=2 entries=33 op=nft_register_rule pid=3594 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 09:49:53.099000 audit[3594]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=11996 a0=3 a1=ffffec500950 a2=0 a3=ffffbc7926c0 items=0 ppid=2352 pid=3594 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:53.099000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 09:49:53.101000 audit[3594]: NETFILTER_CFG table=nat:77 family=2 entries=20 op=nft_register_rule pid=3594 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 09:49:53.101000 audit[3594]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5484 a0=3 a1=ffffec500950 a2=0 a3=ffffbc7926c0 items=0 ppid=2352 pid=3594 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:53.101000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 09:49:53.108254 kubelet[2129]: I0209 09:49:53.108042 2129 topology_manager.go:212] "Topology Admit Handler" Feb 9 09:49:53.118888 systemd[1]: Created slice kubepods-besteffort-poda23c231f_0f65_4e8e_b617_cac8e0cf4f71.slice. Feb 9 09:49:53.122183 kubelet[2129]: W0209 09:49:53.121510 2129 reflector.go:533] object-"calico-apiserver"/"kube-root-ca.crt": failed to list *v1.ConfigMap: configmaps "kube-root-ca.crt" is forbidden: User "system:node:172.31.26.157" cannot list resource "configmaps" in API group "" in the namespace "calico-apiserver": no relationship found between node '172.31.26.157' and this object Feb 9 09:49:53.122183 kubelet[2129]: E0209 09:49:53.121585 2129 reflector.go:148] object-"calico-apiserver"/"kube-root-ca.crt": Failed to watch *v1.ConfigMap: failed to list *v1.ConfigMap: configmaps "kube-root-ca.crt" is forbidden: User "system:node:172.31.26.157" cannot list resource "configmaps" in API group "" in the namespace "calico-apiserver": no relationship found between node '172.31.26.157' and this object Feb 9 09:49:53.122183 kubelet[2129]: W0209 09:49:53.121701 2129 reflector.go:533] object-"calico-apiserver"/"calico-apiserver-certs": failed to list *v1.Secret: secrets "calico-apiserver-certs" is forbidden: User "system:node:172.31.26.157" cannot list resource "secrets" in API group "" in the namespace "calico-apiserver": no relationship found between node '172.31.26.157' and this object Feb 9 09:49:53.122183 kubelet[2129]: E0209 09:49:53.121751 2129 reflector.go:148] object-"calico-apiserver"/"calico-apiserver-certs": Failed to watch *v1.Secret: failed to list *v1.Secret: secrets "calico-apiserver-certs" is forbidden: User "system:node:172.31.26.157" cannot list resource "secrets" in API group "" in the namespace "calico-apiserver": no relationship found between node '172.31.26.157' and this object Feb 9 09:49:53.205572 kubelet[2129]: I0209 09:49:53.205526 2129 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"calico-apiserver-certs\" (UniqueName: \"kubernetes.io/secret/a23c231f-0f65-4e8e-b617-cac8e0cf4f71-calico-apiserver-certs\") pod \"calico-apiserver-66cf7848b7-zmck2\" (UID: \"a23c231f-0f65-4e8e-b617-cac8e0cf4f71\") " pod="calico-apiserver/calico-apiserver-66cf7848b7-zmck2" Feb 9 09:49:53.205741 kubelet[2129]: I0209 09:49:53.205603 2129 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-fmnpm\" (UniqueName: \"kubernetes.io/projected/a23c231f-0f65-4e8e-b617-cac8e0cf4f71-kube-api-access-fmnpm\") pod \"calico-apiserver-66cf7848b7-zmck2\" (UID: \"a23c231f-0f65-4e8e-b617-cac8e0cf4f71\") " pod="calico-apiserver/calico-apiserver-66cf7848b7-zmck2" Feb 9 09:49:53.217190 systemd[1]: run-containerd-runc-k8s.io-907383654616b3790afdd52e71842e80a6698dbca68fbf20fab4cb7b5a3d9c44-runc.7QOncg.mount: Deactivated successfully. Feb 9 09:49:53.808391 kubelet[2129]: E0209 09:49:53.808322 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:54.143000 audit[3596]: NETFILTER_CFG table=filter:78 family=2 entries=34 op=nft_register_rule pid=3596 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 09:49:54.143000 audit[3596]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=11996 a0=3 a1=ffffd15348e0 a2=0 a3=ffffbea5c6c0 items=0 ppid=2352 pid=3596 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:54.143000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 09:49:54.147000 audit[3596]: NETFILTER_CFG table=nat:79 family=2 entries=20 op=nft_register_rule pid=3596 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 09:49:54.147000 audit[3596]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5484 a0=3 a1=ffffd15348e0 a2=0 a3=ffffbea5c6c0 items=0 ppid=2352 pid=3596 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:54.147000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 09:49:54.280421 systemd-networkd[1460]: cali60e51b789ff: Gained IPv6LL Feb 9 09:49:54.306662 kubelet[2129]: E0209 09:49:54.306624 2129 secret.go:194] Couldn't get secret calico-apiserver/calico-apiserver-certs: failed to sync secret cache: timed out waiting for the condition Feb 9 09:49:54.307090 kubelet[2129]: E0209 09:49:54.307065 2129 nestedpendingoperations.go:348] Operation for "{volumeName:kubernetes.io/secret/a23c231f-0f65-4e8e-b617-cac8e0cf4f71-calico-apiserver-certs podName:a23c231f-0f65-4e8e-b617-cac8e0cf4f71 nodeName:}" failed. No retries permitted until 2024-02-09 09:49:54.807017737 +0000 UTC m=+44.723669098 (durationBeforeRetry 500ms). Error: MountVolume.SetUp failed for volume "calico-apiserver-certs" (UniqueName: "kubernetes.io/secret/a23c231f-0f65-4e8e-b617-cac8e0cf4f71-calico-apiserver-certs") pod "calico-apiserver-66cf7848b7-zmck2" (UID: "a23c231f-0f65-4e8e-b617-cac8e0cf4f71") : failed to sync secret cache: timed out waiting for the condition Feb 9 09:49:54.809455 kubelet[2129]: E0209 09:49:54.809404 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:54.925875 env[1673]: time="2024-02-09T09:49:54.925794920Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-apiserver-66cf7848b7-zmck2,Uid:a23c231f-0f65-4e8e-b617-cac8e0cf4f71,Namespace:calico-apiserver,Attempt:0,}" Feb 9 09:49:55.187957 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 9 09:49:55.188798 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): calied5a11c16ba: link becomes ready Feb 9 09:49:55.183903 systemd-networkd[1460]: calied5a11c16ba: Link UP Feb 9 09:49:55.188039 systemd-networkd[1460]: calied5a11c16ba: Gained carrier Feb 9 09:49:55.222127 env[1673]: 2024-02-09 09:49:55.042 [INFO][3599] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.26.157-k8s-calico--apiserver--66cf7848b7--zmck2-eth0 calico-apiserver-66cf7848b7- calico-apiserver a23c231f-0f65-4e8e-b617-cac8e0cf4f71 1065 0 2024-02-09 09:49:53 +0000 UTC map[apiserver:true app.kubernetes.io/name:calico-apiserver k8s-app:calico-apiserver pod-template-hash:66cf7848b7 projectcalico.org/namespace:calico-apiserver projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:calico-apiserver] map[] [] [] []} {k8s 172.31.26.157 calico-apiserver-66cf7848b7-zmck2 eth0 calico-apiserver [] [] [kns.calico-apiserver ksa.calico-apiserver.calico-apiserver] calied5a11c16ba [] []}} ContainerID="778a140b7cc02f9ef5677e81de61e367c9dbf58d5decd65c7d2990753150869c" Namespace="calico-apiserver" Pod="calico-apiserver-66cf7848b7-zmck2" WorkloadEndpoint="172.31.26.157-k8s-calico--apiserver--66cf7848b7--zmck2-" Feb 9 09:49:55.222127 env[1673]: 2024-02-09 09:49:55.042 [INFO][3599] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="778a140b7cc02f9ef5677e81de61e367c9dbf58d5decd65c7d2990753150869c" Namespace="calico-apiserver" Pod="calico-apiserver-66cf7848b7-zmck2" WorkloadEndpoint="172.31.26.157-k8s-calico--apiserver--66cf7848b7--zmck2-eth0" Feb 9 09:49:55.222127 env[1673]: 2024-02-09 09:49:55.094 [INFO][3611] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="778a140b7cc02f9ef5677e81de61e367c9dbf58d5decd65c7d2990753150869c" HandleID="k8s-pod-network.778a140b7cc02f9ef5677e81de61e367c9dbf58d5decd65c7d2990753150869c" Workload="172.31.26.157-k8s-calico--apiserver--66cf7848b7--zmck2-eth0" Feb 9 09:49:55.222127 env[1673]: 2024-02-09 09:49:55.121 [INFO][3611] ipam_plugin.go 268: Auto assigning IP ContainerID="778a140b7cc02f9ef5677e81de61e367c9dbf58d5decd65c7d2990753150869c" HandleID="k8s-pod-network.778a140b7cc02f9ef5677e81de61e367c9dbf58d5decd65c7d2990753150869c" Workload="172.31.26.157-k8s-calico--apiserver--66cf7848b7--zmck2-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x40002b27c0), Attrs:map[string]string{"namespace":"calico-apiserver", "node":"172.31.26.157", "pod":"calico-apiserver-66cf7848b7-zmck2", "timestamp":"2024-02-09 09:49:55.094308233 +0000 UTC"}, Hostname:"172.31.26.157", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 9 09:49:55.222127 env[1673]: 2024-02-09 09:49:55.121 [INFO][3611] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 09:49:55.222127 env[1673]: 2024-02-09 09:49:55.121 [INFO][3611] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 09:49:55.222127 env[1673]: 2024-02-09 09:49:55.122 [INFO][3611] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.26.157' Feb 9 09:49:55.222127 env[1673]: 2024-02-09 09:49:55.125 [INFO][3611] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.778a140b7cc02f9ef5677e81de61e367c9dbf58d5decd65c7d2990753150869c" host="172.31.26.157" Feb 9 09:49:55.222127 env[1673]: 2024-02-09 09:49:55.131 [INFO][3611] ipam.go 372: Looking up existing affinities for host host="172.31.26.157" Feb 9 09:49:55.222127 env[1673]: 2024-02-09 09:49:55.139 [INFO][3611] ipam.go 489: Trying affinity for 192.168.26.128/26 host="172.31.26.157" Feb 9 09:49:55.222127 env[1673]: 2024-02-09 09:49:55.142 [INFO][3611] ipam.go 155: Attempting to load block cidr=192.168.26.128/26 host="172.31.26.157" Feb 9 09:49:55.222127 env[1673]: 2024-02-09 09:49:55.148 [INFO][3611] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.26.128/26 host="172.31.26.157" Feb 9 09:49:55.222127 env[1673]: 2024-02-09 09:49:55.148 [INFO][3611] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.26.128/26 handle="k8s-pod-network.778a140b7cc02f9ef5677e81de61e367c9dbf58d5decd65c7d2990753150869c" host="172.31.26.157" Feb 9 09:49:55.222127 env[1673]: 2024-02-09 09:49:55.151 [INFO][3611] ipam.go 1682: Creating new handle: k8s-pod-network.778a140b7cc02f9ef5677e81de61e367c9dbf58d5decd65c7d2990753150869c Feb 9 09:49:55.222127 env[1673]: 2024-02-09 09:49:55.157 [INFO][3611] ipam.go 1203: Writing block in order to claim IPs block=192.168.26.128/26 handle="k8s-pod-network.778a140b7cc02f9ef5677e81de61e367c9dbf58d5decd65c7d2990753150869c" host="172.31.26.157" Feb 9 09:49:55.222127 env[1673]: 2024-02-09 09:49:55.169 [INFO][3611] ipam.go 1216: Successfully claimed IPs: [192.168.26.132/26] block=192.168.26.128/26 handle="k8s-pod-network.778a140b7cc02f9ef5677e81de61e367c9dbf58d5decd65c7d2990753150869c" host="172.31.26.157" Feb 9 09:49:55.222127 env[1673]: 2024-02-09 09:49:55.169 [INFO][3611] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.26.132/26] handle="k8s-pod-network.778a140b7cc02f9ef5677e81de61e367c9dbf58d5decd65c7d2990753150869c" host="172.31.26.157" Feb 9 09:49:55.222127 env[1673]: 2024-02-09 09:49:55.169 [INFO][3611] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 09:49:55.222127 env[1673]: 2024-02-09 09:49:55.169 [INFO][3611] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.26.132/26] IPv6=[] ContainerID="778a140b7cc02f9ef5677e81de61e367c9dbf58d5decd65c7d2990753150869c" HandleID="k8s-pod-network.778a140b7cc02f9ef5677e81de61e367c9dbf58d5decd65c7d2990753150869c" Workload="172.31.26.157-k8s-calico--apiserver--66cf7848b7--zmck2-eth0" Feb 9 09:49:55.223640 env[1673]: 2024-02-09 09:49:55.175 [INFO][3599] k8s.go 385: Populated endpoint ContainerID="778a140b7cc02f9ef5677e81de61e367c9dbf58d5decd65c7d2990753150869c" Namespace="calico-apiserver" Pod="calico-apiserver-66cf7848b7-zmck2" WorkloadEndpoint="172.31.26.157-k8s-calico--apiserver--66cf7848b7--zmck2-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.26.157-k8s-calico--apiserver--66cf7848b7--zmck2-eth0", GenerateName:"calico-apiserver-66cf7848b7-", Namespace:"calico-apiserver", SelfLink:"", UID:"a23c231f-0f65-4e8e-b617-cac8e0cf4f71", ResourceVersion:"1065", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 9, 49, 53, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"apiserver":"true", "app.kubernetes.io/name":"calico-apiserver", "k8s-app":"calico-apiserver", "pod-template-hash":"66cf7848b7", "projectcalico.org/namespace":"calico-apiserver", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"calico-apiserver"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.26.157", ContainerID:"", Pod:"calico-apiserver-66cf7848b7-zmck2", Endpoint:"eth0", ServiceAccountName:"calico-apiserver", IPNetworks:[]string{"192.168.26.132/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-apiserver", "ksa.calico-apiserver.calico-apiserver"}, InterfaceName:"calied5a11c16ba", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 09:49:55.223640 env[1673]: 2024-02-09 09:49:55.175 [INFO][3599] k8s.go 386: Calico CNI using IPs: [192.168.26.132/32] ContainerID="778a140b7cc02f9ef5677e81de61e367c9dbf58d5decd65c7d2990753150869c" Namespace="calico-apiserver" Pod="calico-apiserver-66cf7848b7-zmck2" WorkloadEndpoint="172.31.26.157-k8s-calico--apiserver--66cf7848b7--zmck2-eth0" Feb 9 09:49:55.223640 env[1673]: 2024-02-09 09:49:55.175 [INFO][3599] dataplane_linux.go 68: Setting the host side veth name to calied5a11c16ba ContainerID="778a140b7cc02f9ef5677e81de61e367c9dbf58d5decd65c7d2990753150869c" Namespace="calico-apiserver" Pod="calico-apiserver-66cf7848b7-zmck2" WorkloadEndpoint="172.31.26.157-k8s-calico--apiserver--66cf7848b7--zmck2-eth0" Feb 9 09:49:55.223640 env[1673]: 2024-02-09 09:49:55.191 [INFO][3599] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="778a140b7cc02f9ef5677e81de61e367c9dbf58d5decd65c7d2990753150869c" Namespace="calico-apiserver" Pod="calico-apiserver-66cf7848b7-zmck2" WorkloadEndpoint="172.31.26.157-k8s-calico--apiserver--66cf7848b7--zmck2-eth0" Feb 9 09:49:55.223640 env[1673]: 2024-02-09 09:49:55.192 [INFO][3599] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="778a140b7cc02f9ef5677e81de61e367c9dbf58d5decd65c7d2990753150869c" Namespace="calico-apiserver" Pod="calico-apiserver-66cf7848b7-zmck2" WorkloadEndpoint="172.31.26.157-k8s-calico--apiserver--66cf7848b7--zmck2-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.26.157-k8s-calico--apiserver--66cf7848b7--zmck2-eth0", GenerateName:"calico-apiserver-66cf7848b7-", Namespace:"calico-apiserver", SelfLink:"", UID:"a23c231f-0f65-4e8e-b617-cac8e0cf4f71", ResourceVersion:"1065", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 9, 49, 53, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"apiserver":"true", "app.kubernetes.io/name":"calico-apiserver", "k8s-app":"calico-apiserver", "pod-template-hash":"66cf7848b7", "projectcalico.org/namespace":"calico-apiserver", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"calico-apiserver"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.26.157", ContainerID:"778a140b7cc02f9ef5677e81de61e367c9dbf58d5decd65c7d2990753150869c", Pod:"calico-apiserver-66cf7848b7-zmck2", Endpoint:"eth0", ServiceAccountName:"calico-apiserver", IPNetworks:[]string{"192.168.26.132/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-apiserver", "ksa.calico-apiserver.calico-apiserver"}, InterfaceName:"calied5a11c16ba", MAC:"b2:3c:d8:0a:3a:15", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 09:49:55.223640 env[1673]: 2024-02-09 09:49:55.201 [INFO][3599] k8s.go 491: Wrote updated endpoint to datastore ContainerID="778a140b7cc02f9ef5677e81de61e367c9dbf58d5decd65c7d2990753150869c" Namespace="calico-apiserver" Pod="calico-apiserver-66cf7848b7-zmck2" WorkloadEndpoint="172.31.26.157-k8s-calico--apiserver--66cf7848b7--zmck2-eth0" Feb 9 09:49:55.292000 audit[3639]: NETFILTER_CFG table=filter:80 family=2 entries=61 op=nft_register_chain pid=3639 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 09:49:55.292000 audit[3639]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=30956 a0=3 a1=ffffe2b5bc70 a2=0 a3=ffff8225cfa8 items=0 ppid=2785 pid=3639 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:55.292000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 09:49:55.308107 env[1673]: time="2024-02-09T09:49:55.281596120Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 9 09:49:55.308107 env[1673]: time="2024-02-09T09:49:55.281667508Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 9 09:49:55.308107 env[1673]: time="2024-02-09T09:49:55.281692852Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 9 09:49:55.308107 env[1673]: time="2024-02-09T09:49:55.281957006Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/778a140b7cc02f9ef5677e81de61e367c9dbf58d5decd65c7d2990753150869c pid=3643 runtime=io.containerd.runc.v2 Feb 9 09:49:55.357551 systemd[1]: run-containerd-runc-k8s.io-778a140b7cc02f9ef5677e81de61e367c9dbf58d5decd65c7d2990753150869c-runc.ufK9k6.mount: Deactivated successfully. Feb 9 09:49:55.363414 systemd[1]: Started cri-containerd-778a140b7cc02f9ef5677e81de61e367c9dbf58d5decd65c7d2990753150869c.scope. Feb 9 09:49:55.390000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.390000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.390000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.390000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.390000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.391000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.391000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.391000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.391000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.391000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.391000 audit: BPF prog-id=118 op=LOAD Feb 9 09:49:55.393000 audit[3654]: AVC avc: denied { bpf } for pid=3654 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.393000 audit[3654]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=40001bdb38 a2=10 a3=0 items=0 ppid=3643 pid=3654 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:55.393000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3737386131343062376363303266396566353637376538316465363165 Feb 9 09:49:55.393000 audit[3654]: AVC avc: denied { perfmon } for pid=3654 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.393000 audit[3654]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001bd5a0 a2=3c a3=0 items=0 ppid=3643 pid=3654 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:55.393000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3737386131343062376363303266396566353637376538316465363165 Feb 9 09:49:55.393000 audit[3654]: AVC avc: denied { bpf } for pid=3654 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.393000 audit[3654]: AVC avc: denied { bpf } for pid=3654 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.393000 audit[3654]: AVC avc: denied { bpf } for pid=3654 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.393000 audit[3654]: AVC avc: denied { perfmon } for pid=3654 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.393000 audit[3654]: AVC avc: denied { perfmon } for pid=3654 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.393000 audit[3654]: AVC avc: denied { perfmon } for pid=3654 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.393000 audit[3654]: AVC avc: denied { perfmon } for pid=3654 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.393000 audit[3654]: AVC avc: denied { perfmon } for pid=3654 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.393000 audit[3654]: AVC avc: denied { bpf } for pid=3654 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.393000 audit[3654]: AVC avc: denied { bpf } for pid=3654 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.393000 audit: BPF prog-id=119 op=LOAD Feb 9 09:49:55.393000 audit[3654]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001bd8e0 a2=78 a3=0 items=0 ppid=3643 pid=3654 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:55.393000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3737386131343062376363303266396566353637376538316465363165 Feb 9 09:49:55.393000 audit[3654]: AVC avc: denied { bpf } for pid=3654 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.393000 audit[3654]: AVC avc: denied { bpf } for pid=3654 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.393000 audit[3654]: AVC avc: denied { perfmon } for pid=3654 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.393000 audit[3654]: AVC avc: denied { perfmon } for pid=3654 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.393000 audit[3654]: AVC avc: denied { perfmon } for pid=3654 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.393000 audit[3654]: AVC avc: denied { perfmon } for pid=3654 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.393000 audit[3654]: AVC avc: denied { perfmon } for pid=3654 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.393000 audit[3654]: AVC avc: denied { bpf } for pid=3654 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.393000 audit[3654]: AVC avc: denied { bpf } for pid=3654 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.393000 audit: BPF prog-id=120 op=LOAD Feb 9 09:49:55.393000 audit[3654]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=40001bd670 a2=78 a3=0 items=0 ppid=3643 pid=3654 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:55.393000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3737386131343062376363303266396566353637376538316465363165 Feb 9 09:49:55.393000 audit: BPF prog-id=120 op=UNLOAD Feb 9 09:49:55.393000 audit: BPF prog-id=119 op=UNLOAD Feb 9 09:49:55.393000 audit[3654]: AVC avc: denied { bpf } for pid=3654 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.393000 audit[3654]: AVC avc: denied { bpf } for pid=3654 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.393000 audit[3654]: AVC avc: denied { bpf } for pid=3654 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.393000 audit[3654]: AVC avc: denied { perfmon } for pid=3654 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.393000 audit[3654]: AVC avc: denied { perfmon } for pid=3654 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.393000 audit[3654]: AVC avc: denied { perfmon } for pid=3654 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.393000 audit[3654]: AVC avc: denied { perfmon } for pid=3654 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.393000 audit[3654]: AVC avc: denied { perfmon } for pid=3654 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.393000 audit[3654]: AVC avc: denied { bpf } for pid=3654 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.393000 audit[3654]: AVC avc: denied { bpf } for pid=3654 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:49:55.393000 audit: BPF prog-id=121 op=LOAD Feb 9 09:49:55.393000 audit[3654]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001bdb40 a2=78 a3=0 items=0 ppid=3643 pid=3654 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:55.393000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3737386131343062376363303266396566353637376538316465363165 Feb 9 09:49:55.437585 env[1673]: time="2024-02-09T09:49:55.437520374Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-apiserver-66cf7848b7-zmck2,Uid:a23c231f-0f65-4e8e-b617-cac8e0cf4f71,Namespace:calico-apiserver,Attempt:0,} returns sandbox id \"778a140b7cc02f9ef5677e81de61e367c9dbf58d5decd65c7d2990753150869c\"" Feb 9 09:49:55.810451 kubelet[2129]: E0209 09:49:55.810388 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:56.526218 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2072782834.mount: Deactivated successfully. Feb 9 09:49:56.647782 systemd-networkd[1460]: calied5a11c16ba: Gained IPv6LL Feb 9 09:49:56.811243 kubelet[2129]: E0209 09:49:56.811009 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:57.812301 kubelet[2129]: E0209 09:49:57.812204 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:58.405032 kernel: kauditd_printk_skb: 134 callbacks suppressed Feb 9 09:49:58.405231 kernel: audit: type=1325 audit(1707472198.395:872): table=filter:81 family=2 entries=34 op=nft_register_rule pid=3686 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 09:49:58.395000 audit[3686]: NETFILTER_CFG table=filter:81 family=2 entries=34 op=nft_register_rule pid=3686 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 09:49:58.395000 audit[3686]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=11996 a0=3 a1=ffffcbf607f0 a2=0 a3=ffff9e9716c0 items=0 ppid=2352 pid=3686 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:58.395000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 09:49:58.429158 kernel: audit: type=1300 audit(1707472198.395:872): arch=c00000b7 syscall=211 success=yes exit=11996 a0=3 a1=ffffcbf607f0 a2=0 a3=ffff9e9716c0 items=0 ppid=2352 pid=3686 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:58.429287 kernel: audit: type=1327 audit(1707472198.395:872): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 09:49:58.437509 kernel: audit: type=1325 audit(1707472198.406:873): table=nat:82 family=2 entries=20 op=nft_register_rule pid=3686 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 09:49:58.406000 audit[3686]: NETFILTER_CFG table=nat:82 family=2 entries=20 op=nft_register_rule pid=3686 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 09:49:58.406000 audit[3686]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5484 a0=3 a1=ffffcbf607f0 a2=0 a3=ffff9e9716c0 items=0 ppid=2352 pid=3686 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:58.406000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 09:49:58.450182 kernel: audit: type=1300 audit(1707472198.406:873): arch=c00000b7 syscall=211 success=yes exit=5484 a0=3 a1=ffffcbf607f0 a2=0 a3=ffff9e9716c0 items=0 ppid=2352 pid=3686 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:49:58.456208 kernel: audit: type=1327 audit(1707472198.406:873): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 09:49:58.812985 kubelet[2129]: E0209 09:49:58.812896 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:49:59.814002 kubelet[2129]: E0209 09:49:59.813906 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:00.120899 env[1673]: time="2024-02-09T09:50:00.120708598Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:50:00.124861 env[1673]: time="2024-02-09T09:50:00.124797678Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:5a42a519e0a8cf95c3c5f18f767c58c8c8b072aaea0a26e5e47a6f206c7df685,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:50:00.128024 env[1673]: time="2024-02-09T09:50:00.127972710Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:50:00.131088 env[1673]: time="2024-02-09T09:50:00.131027706Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/sig-storage/nfs-provisioner@sha256:c825f3d5e28bde099bd7a3daace28772d412c9157ad47fa752a9ad0baafc118d,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:50:00.132815 env[1673]: time="2024-02-09T09:50:00.132766187Z" level=info msg="PullImage \"registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8\" returns image reference \"sha256:5a42a519e0a8cf95c3c5f18f767c58c8c8b072aaea0a26e5e47a6f206c7df685\"" Feb 9 09:50:00.134541 env[1673]: time="2024-02-09T09:50:00.134489261Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/apiserver:v3.27.0\"" Feb 9 09:50:00.137257 env[1673]: time="2024-02-09T09:50:00.137066443Z" level=info msg="CreateContainer within sandbox \"907383654616b3790afdd52e71842e80a6698dbca68fbf20fab4cb7b5a3d9c44\" for container &ContainerMetadata{Name:nfs-server-provisioner,Attempt:0,}" Feb 9 09:50:00.160380 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount365005484.mount: Deactivated successfully. Feb 9 09:50:00.172239 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount424869355.mount: Deactivated successfully. Feb 9 09:50:00.184748 env[1673]: time="2024-02-09T09:50:00.184689975Z" level=info msg="CreateContainer within sandbox \"907383654616b3790afdd52e71842e80a6698dbca68fbf20fab4cb7b5a3d9c44\" for &ContainerMetadata{Name:nfs-server-provisioner,Attempt:0,} returns container id \"1582df1ea75293cc70eb51dfbe7656fc6175719887ed062d2276399db5619221\"" Feb 9 09:50:00.185981 env[1673]: time="2024-02-09T09:50:00.185932583Z" level=info msg="StartContainer for \"1582df1ea75293cc70eb51dfbe7656fc6175719887ed062d2276399db5619221\"" Feb 9 09:50:00.220414 systemd[1]: Started cri-containerd-1582df1ea75293cc70eb51dfbe7656fc6175719887ed062d2276399db5619221.scope. Feb 9 09:50:00.254000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.257000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.271068 kernel: audit: type=1400 audit(1707472200.254:874): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.271224 kernel: audit: type=1400 audit(1707472200.257:875): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.257000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.278825 kernel: audit: type=1400 audit(1707472200.257:876): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.257000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.286610 kernel: audit: type=1400 audit(1707472200.257:877): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.257000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.257000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.257000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.257000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.257000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.261000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.261000 audit: BPF prog-id=122 op=LOAD Feb 9 09:50:00.262000 audit[3694]: AVC avc: denied { bpf } for pid=3694 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.262000 audit[3694]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000145b38 a2=10 a3=0 items=0 ppid=3559 pid=3694 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:00.262000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3135383264663165613735323933636337306562353164666265373635 Feb 9 09:50:00.262000 audit[3694]: AVC avc: denied { perfmon } for pid=3694 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.262000 audit[3694]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=3559 pid=3694 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:00.262000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3135383264663165613735323933636337306562353164666265373635 Feb 9 09:50:00.262000 audit[3694]: AVC avc: denied { bpf } for pid=3694 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.262000 audit[3694]: AVC avc: denied { bpf } for pid=3694 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.262000 audit[3694]: AVC avc: denied { bpf } for pid=3694 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.262000 audit[3694]: AVC avc: denied { perfmon } for pid=3694 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.262000 audit[3694]: AVC avc: denied { perfmon } for pid=3694 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.262000 audit[3694]: AVC avc: denied { perfmon } for pid=3694 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.262000 audit[3694]: AVC avc: denied { perfmon } for pid=3694 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.262000 audit[3694]: AVC avc: denied { perfmon } for pid=3694 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.262000 audit[3694]: AVC avc: denied { bpf } for pid=3694 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.262000 audit[3694]: AVC avc: denied { bpf } for pid=3694 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.262000 audit: BPF prog-id=123 op=LOAD Feb 9 09:50:00.262000 audit[3694]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=3559 pid=3694 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:00.262000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3135383264663165613735323933636337306562353164666265373635 Feb 9 09:50:00.270000 audit[3694]: AVC avc: denied { bpf } for pid=3694 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.270000 audit[3694]: AVC avc: denied { bpf } for pid=3694 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.270000 audit[3694]: AVC avc: denied { perfmon } for pid=3694 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.270000 audit[3694]: AVC avc: denied { perfmon } for pid=3694 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.270000 audit[3694]: AVC avc: denied { perfmon } for pid=3694 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.270000 audit[3694]: AVC avc: denied { perfmon } for pid=3694 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.270000 audit[3694]: AVC avc: denied { perfmon } for pid=3694 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.270000 audit[3694]: AVC avc: denied { bpf } for pid=3694 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.270000 audit[3694]: AVC avc: denied { bpf } for pid=3694 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.270000 audit: BPF prog-id=124 op=LOAD Feb 9 09:50:00.270000 audit[3694]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=3559 pid=3694 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:00.270000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3135383264663165613735323933636337306562353164666265373635 Feb 9 09:50:00.270000 audit: BPF prog-id=124 op=UNLOAD Feb 9 09:50:00.270000 audit: BPF prog-id=123 op=UNLOAD Feb 9 09:50:00.270000 audit[3694]: AVC avc: denied { bpf } for pid=3694 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.270000 audit[3694]: AVC avc: denied { bpf } for pid=3694 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.270000 audit[3694]: AVC avc: denied { bpf } for pid=3694 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.270000 audit[3694]: AVC avc: denied { perfmon } for pid=3694 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.270000 audit[3694]: AVC avc: denied { perfmon } for pid=3694 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.270000 audit[3694]: AVC avc: denied { perfmon } for pid=3694 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.270000 audit[3694]: AVC avc: denied { perfmon } for pid=3694 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.270000 audit[3694]: AVC avc: denied { perfmon } for pid=3694 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.270000 audit[3694]: AVC avc: denied { bpf } for pid=3694 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.270000 audit[3694]: AVC avc: denied { bpf } for pid=3694 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:00.270000 audit: BPF prog-id=125 op=LOAD Feb 9 09:50:00.270000 audit[3694]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=3559 pid=3694 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:00.270000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3135383264663165613735323933636337306562353164666265373635 Feb 9 09:50:00.314711 env[1673]: time="2024-02-09T09:50:00.314640127Z" level=info msg="StartContainer for \"1582df1ea75293cc70eb51dfbe7656fc6175719887ed062d2276399db5619221\" returns successfully" Feb 9 09:50:00.424000 audit[3725]: AVC avc: denied { search } for pid=3725 comm="rpcbind" name="crypto" dev="proc" ino=19185 scontext=system_u:system_r:svirt_lxc_net_t:s0:c675,c913 tcontext=system_u:object_r:sysctl_crypto_t:s0 tclass=dir permissive=0 Feb 9 09:50:00.424000 audit[3725]: SYSCALL arch=c00000b7 syscall=56 success=no exit=-13 a0=ffffffffffffff9c a1=ffffa458f000 a2=0 a3=0 items=0 ppid=3704 pid=3725 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="rpcbind" exe="/usr/bin/rpcbind" subj=system_u:system_r:svirt_lxc_net_t:s0:c675,c913 key=(null) Feb 9 09:50:00.424000 audit: PROCTITLE proctitle=2F7573722F7362696E2F72706362696E64002D77 Feb 9 09:50:00.506000 audit[3730]: AVC avc: denied { search } for pid=3730 comm="dbus-daemon" name="crypto" dev="proc" ino=19185 scontext=system_u:system_r:svirt_lxc_net_t:s0:c675,c913 tcontext=system_u:object_r:sysctl_crypto_t:s0 tclass=dir permissive=0 Feb 9 09:50:00.506000 audit[3730]: SYSCALL arch=c00000b7 syscall=56 success=no exit=-13 a0=ffffffffffffff9c a1=ffff8617f000 a2=0 a3=0 items=0 ppid=3704 pid=3730 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="dbus-daemon" exe="/usr/bin/dbus-daemon" subj=system_u:system_r:svirt_lxc_net_t:s0:c675,c913 key=(null) Feb 9 09:50:00.506000 audit: PROCTITLE proctitle=646275732D6461656D6F6E002D2D73797374656D002D2D6E6F70696466696C65 Feb 9 09:50:00.512000 audit[3731]: AVC avc: denied { watch } for pid=3731 comm="dbus-daemon" path="/usr/share/dbus-1/system.d" dev="overlay" ino=537961 scontext=system_u:system_r:svirt_lxc_net_t:s0:c675,c913 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c675,c913 tclass=dir permissive=0 Feb 9 09:50:00.512000 audit[3731]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=6 a1=aaaaea4ecce0 a2=2c8 a3=aaaaea4e8a60 items=0 ppid=3704 pid=3731 auid=4294967295 uid=81 gid=81 euid=81 suid=81 fsuid=81 egid=81 sgid=81 fsgid=81 tty=(none) ses=4294967295 comm="dbus-daemon" exe="/usr/bin/dbus-daemon" subj=system_u:system_r:svirt_lxc_net_t:s0:c675,c913 key=(null) Feb 9 09:50:00.512000 audit: PROCTITLE proctitle=646275732D6461656D6F6E002D2D73797374656D002D2D6E6F70696466696C65 Feb 9 09:50:00.520000 audit[3732]: AVC avc: denied { read } for pid=3732 comm="ganesha.nfsd" name="overcommit_memory" dev="proc" ino=19277 scontext=system_u:system_r:svirt_lxc_net_t:s0:c675,c913 tcontext=system_u:object_r:sysctl_vm_overcommit_t:s0 tclass=file permissive=0 Feb 9 09:50:00.520000 audit[3732]: SYSCALL arch=c00000b7 syscall=56 success=no exit=-13 a0=ffffff9c a1=ffff9edca570 a2=80000 a3=0 items=0 ppid=3704 pid=3732 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ganesha.nfsd" exe="/usr/local/bin/ganesha.nfsd" subj=system_u:system_r:svirt_lxc_net_t:s0:c675,c913 key=(null) Feb 9 09:50:00.520000 audit: PROCTITLE proctitle=67616E657368612E6E667364002D46002D4C002F6578706F72742F67616E657368612E6C6F67002D70002F7661722F72756E2F67616E657368612E706964002D66002F6578706F72742F7666732E636F6E66 Feb 9 09:50:00.522000 audit[3732]: AVC avc: denied { search } for pid=3732 comm="ganesha.nfsd" name="crypto" dev="proc" ino=19185 scontext=system_u:system_r:svirt_lxc_net_t:s0:c675,c913 tcontext=system_u:object_r:sysctl_crypto_t:s0 tclass=dir permissive=0 Feb 9 09:50:00.522000 audit[3732]: SYSCALL arch=c00000b7 syscall=56 success=no exit=-13 a0=ffffffffffffff9c a1=ffff9e15f000 a2=0 a3=0 items=0 ppid=3704 pid=3732 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ganesha.nfsd" exe="/usr/local/bin/ganesha.nfsd" subj=system_u:system_r:svirt_lxc_net_t:s0:c675,c913 key=(null) Feb 9 09:50:00.522000 audit: PROCTITLE proctitle=67616E657368612E6E667364002D46002D4C002F6578706F72742F67616E657368612E6C6F67002D70002F7661722F72756E2F67616E657368612E706964002D66002F6578706F72742F7666732E636F6E66 Feb 9 09:50:00.814406 kubelet[2129]: E0209 09:50:00.814347 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:01.203775 kubelet[2129]: I0209 09:50:01.203637 2129 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="default/nfs-server-provisioner-0" podStartSLOduration=1.998458378 podCreationTimestamp="2024-02-09 09:49:52 +0000 UTC" firstStartedPulling="2024-02-09 09:49:52.928254896 +0000 UTC m=+42.844906257" lastFinishedPulling="2024-02-09 09:50:00.133357113 +0000 UTC m=+50.050008486" observedRunningTime="2024-02-09 09:50:01.203046661 +0000 UTC m=+51.119698046" watchObservedRunningTime="2024-02-09 09:50:01.203560607 +0000 UTC m=+51.120211980" Feb 9 09:50:01.230000 audit[3737]: NETFILTER_CFG table=filter:83 family=2 entries=22 op=nft_register_rule pid=3737 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 09:50:01.230000 audit[3737]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=3548 a0=3 a1=ffffdbbd0620 a2=0 a3=ffff902e66c0 items=0 ppid=2352 pid=3737 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:01.230000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 09:50:01.237000 audit[3737]: NETFILTER_CFG table=nat:84 family=2 entries=104 op=nft_register_chain pid=3737 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 09:50:01.237000 audit[3737]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=47436 a0=3 a1=ffffdbbd0620 a2=0 a3=ffff902e66c0 items=0 ppid=2352 pid=3737 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:01.237000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 09:50:01.607885 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3876413937.mount: Deactivated successfully. Feb 9 09:50:01.814715 kubelet[2129]: E0209 09:50:01.814650 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:02.815257 kubelet[2129]: E0209 09:50:02.815188 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:03.745215 env[1673]: time="2024-02-09T09:50:03.744620249Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/apiserver:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:50:03.748285 env[1673]: time="2024-02-09T09:50:03.748222530Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:24494ef6c7de0e2dcf21ad9fb6c94801c53f120443e256a5e1b54eccd57058a9,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:50:03.751073 env[1673]: time="2024-02-09T09:50:03.751018977Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/apiserver:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:50:03.756192 env[1673]: time="2024-02-09T09:50:03.756109733Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/apiserver:v3.27.0\" returns image reference \"sha256:24494ef6c7de0e2dcf21ad9fb6c94801c53f120443e256a5e1b54eccd57058a9\"" Feb 9 09:50:03.757321 env[1673]: time="2024-02-09T09:50:03.754843497Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/apiserver@sha256:5ff0bdc8d0b2e9d7819703b18867f60f9153ed01da81e2bbfa22002abec9dc26,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:50:03.759562 env[1673]: time="2024-02-09T09:50:03.759507210Z" level=info msg="CreateContainer within sandbox \"778a140b7cc02f9ef5677e81de61e367c9dbf58d5decd65c7d2990753150869c\" for container &ContainerMetadata{Name:calico-apiserver,Attempt:0,}" Feb 9 09:50:03.786403 env[1673]: time="2024-02-09T09:50:03.786340901Z" level=info msg="CreateContainer within sandbox \"778a140b7cc02f9ef5677e81de61e367c9dbf58d5decd65c7d2990753150869c\" for &ContainerMetadata{Name:calico-apiserver,Attempt:0,} returns container id \"f75c166fc48a3b54bd4cd2db6b2ac26f238a2e6c00cf651769cdf5d5f20384de\"" Feb 9 09:50:03.788212 env[1673]: time="2024-02-09T09:50:03.788166647Z" level=info msg="StartContainer for \"f75c166fc48a3b54bd4cd2db6b2ac26f238a2e6c00cf651769cdf5d5f20384de\"" Feb 9 09:50:03.815617 kubelet[2129]: E0209 09:50:03.815511 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:03.826474 systemd[1]: Started cri-containerd-f75c166fc48a3b54bd4cd2db6b2ac26f238a2e6c00cf651769cdf5d5f20384de.scope. Feb 9 09:50:03.865861 kernel: kauditd_printk_skb: 74 callbacks suppressed Feb 9 09:50:03.866000 kernel: audit: type=1400 audit(1707472203.862:899): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.862000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.862000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.880164 kernel: audit: type=1400 audit(1707472203.862:900): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.880277 kernel: audit: type=1400 audit(1707472203.862:901): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.862000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.887376 kernel: audit: type=1400 audit(1707472203.862:902): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.862000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.862000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.902352 kernel: audit: type=1400 audit(1707472203.862:903): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.862000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.909848 kernel: audit: type=1400 audit(1707472203.862:904): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.862000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.917354 kernel: audit: type=1400 audit(1707472203.862:905): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.862000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.924963 kernel: audit: type=1400 audit(1707472203.862:906): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.862000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.864000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.940080 kernel: audit: type=1400 audit(1707472203.862:907): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.940205 kernel: audit: type=1400 audit(1707472203.864:908): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.864000 audit: BPF prog-id=126 op=LOAD Feb 9 09:50:03.872000 audit[3747]: AVC avc: denied { bpf } for pid=3747 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.872000 audit[3747]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000145b38 a2=10 a3=0 items=0 ppid=3643 pid=3747 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:03.872000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6637356331363666633438613362353462643463643264623662326163 Feb 9 09:50:03.872000 audit[3747]: AVC avc: denied { perfmon } for pid=3747 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.872000 audit[3747]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=3643 pid=3747 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:03.872000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6637356331363666633438613362353462643463643264623662326163 Feb 9 09:50:03.872000 audit[3747]: AVC avc: denied { bpf } for pid=3747 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.872000 audit[3747]: AVC avc: denied { bpf } for pid=3747 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.872000 audit[3747]: AVC avc: denied { bpf } for pid=3747 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.872000 audit[3747]: AVC avc: denied { perfmon } for pid=3747 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.872000 audit[3747]: AVC avc: denied { perfmon } for pid=3747 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.872000 audit[3747]: AVC avc: denied { perfmon } for pid=3747 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.872000 audit[3747]: AVC avc: denied { perfmon } for pid=3747 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.872000 audit[3747]: AVC avc: denied { perfmon } for pid=3747 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.872000 audit[3747]: AVC avc: denied { bpf } for pid=3747 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.872000 audit[3747]: AVC avc: denied { bpf } for pid=3747 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.872000 audit: BPF prog-id=127 op=LOAD Feb 9 09:50:03.872000 audit[3747]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=3643 pid=3747 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:03.872000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6637356331363666633438613362353462643463643264623662326163 Feb 9 09:50:03.879000 audit[3747]: AVC avc: denied { bpf } for pid=3747 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.879000 audit[3747]: AVC avc: denied { bpf } for pid=3747 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.879000 audit[3747]: AVC avc: denied { perfmon } for pid=3747 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.879000 audit[3747]: AVC avc: denied { perfmon } for pid=3747 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.879000 audit[3747]: AVC avc: denied { perfmon } for pid=3747 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.879000 audit[3747]: AVC avc: denied { perfmon } for pid=3747 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.879000 audit[3747]: AVC avc: denied { perfmon } for pid=3747 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.879000 audit[3747]: AVC avc: denied { bpf } for pid=3747 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.879000 audit[3747]: AVC avc: denied { bpf } for pid=3747 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.879000 audit: BPF prog-id=128 op=LOAD Feb 9 09:50:03.879000 audit[3747]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=3643 pid=3747 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:03.879000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6637356331363666633438613362353462643463643264623662326163 Feb 9 09:50:03.886000 audit: BPF prog-id=128 op=UNLOAD Feb 9 09:50:03.886000 audit: BPF prog-id=127 op=UNLOAD Feb 9 09:50:03.886000 audit[3747]: AVC avc: denied { bpf } for pid=3747 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.886000 audit[3747]: AVC avc: denied { bpf } for pid=3747 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.886000 audit[3747]: AVC avc: denied { bpf } for pid=3747 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.886000 audit[3747]: AVC avc: denied { perfmon } for pid=3747 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.886000 audit[3747]: AVC avc: denied { perfmon } for pid=3747 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.886000 audit[3747]: AVC avc: denied { perfmon } for pid=3747 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.886000 audit[3747]: AVC avc: denied { perfmon } for pid=3747 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.886000 audit[3747]: AVC avc: denied { perfmon } for pid=3747 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.886000 audit[3747]: AVC avc: denied { bpf } for pid=3747 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.886000 audit[3747]: AVC avc: denied { bpf } for pid=3747 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:03.886000 audit: BPF prog-id=129 op=LOAD Feb 9 09:50:03.886000 audit[3747]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=3643 pid=3747 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:03.886000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6637356331363666633438613362353462643463643264623662326163 Feb 9 09:50:03.970690 env[1673]: time="2024-02-09T09:50:03.970626440Z" level=info msg="StartContainer for \"f75c166fc48a3b54bd4cd2db6b2ac26f238a2e6c00cf651769cdf5d5f20384de\" returns successfully" Feb 9 09:50:04.247000 audit[3778]: NETFILTER_CFG table=filter:85 family=2 entries=10 op=nft_register_rule pid=3778 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 09:50:04.247000 audit[3778]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=3548 a0=3 a1=ffffca9edef0 a2=0 a3=ffffafb6f6c0 items=0 ppid=2352 pid=3778 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:04.247000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 09:50:04.250000 audit[3778]: NETFILTER_CFG table=nat:86 family=2 entries=44 op=nft_register_rule pid=3778 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 09:50:04.250000 audit[3778]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=14220 a0=3 a1=ffffca9edef0 a2=0 a3=ffffafb6f6c0 items=0 ppid=2352 pid=3778 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:04.250000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 09:50:04.815974 kubelet[2129]: E0209 09:50:04.815921 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:05.534000 audit[3759]: AVC avc: denied { watch } for pid=3759 comm="apiserver" path="/calico-apiserver-certs/..2024_02_09_09_49_54.2974875980/tls.crt" dev="tmpfs" ino=4 scontext=system_u:system_r:svirt_lxc_net_t:s0:c40,c614 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c40,c614 tclass=file permissive=0 Feb 9 09:50:05.534000 audit[3759]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=8 a1=4000dfcb20 a2=fc6 a3=0 items=0 ppid=3643 pid=3759 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="apiserver" exe="/code/apiserver" subj=system_u:system_r:svirt_lxc_net_t:s0:c40,c614 key=(null) Feb 9 09:50:05.534000 audit: PROCTITLE proctitle=2E2F617069736572766572002D2D7365637572652D706F72743D35343433002D2D746C732D707269766174652D6B65792D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C732E6B6579002D2D746C732D636572742D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C Feb 9 09:50:05.816748 kubelet[2129]: E0209 09:50:05.816586 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:06.817167 kubelet[2129]: E0209 09:50:06.817100 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:07.818123 kubelet[2129]: E0209 09:50:07.818068 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:08.818830 kubelet[2129]: E0209 09:50:08.818711 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:09.820277 kubelet[2129]: E0209 09:50:09.820216 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:10.776300 kubelet[2129]: E0209 09:50:10.776228 2129 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:10.796068 env[1673]: time="2024-02-09T09:50:10.796008748Z" level=info msg="StopPodSandbox for \"a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47\"" Feb 9 09:50:10.821320 kubelet[2129]: E0209 09:50:10.821217 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:10.920882 env[1673]: 2024-02-09 09:50:10.860 [WARNING][3811] k8s.go 542: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.26.157-k8s-csi--node--driver--v96lh-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"fe988a42-0383-4a5b-80cd-d77b9230142f", ResourceVersion:"1003", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 9, 49, 12, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"86b88cf7c9", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.26.157", ContainerID:"1fd9a938a6972460125e142ffe562c5e5cc53f29056b9eb3b53881161a82eec3", Pod:"csi-node-driver-v96lh", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.26.130/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"calieee3be59591", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 09:50:10.920882 env[1673]: 2024-02-09 09:50:10.861 [INFO][3811] k8s.go 578: Cleaning up netns ContainerID="a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" Feb 9 09:50:10.920882 env[1673]: 2024-02-09 09:50:10.861 [INFO][3811] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" iface="eth0" netns="" Feb 9 09:50:10.920882 env[1673]: 2024-02-09 09:50:10.861 [INFO][3811] k8s.go 585: Releasing IP address(es) ContainerID="a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" Feb 9 09:50:10.920882 env[1673]: 2024-02-09 09:50:10.861 [INFO][3811] utils.go 188: Calico CNI releasing IP address ContainerID="a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" Feb 9 09:50:10.920882 env[1673]: 2024-02-09 09:50:10.901 [INFO][3817] ipam_plugin.go 415: Releasing address using handleID ContainerID="a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" HandleID="k8s-pod-network.a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" Workload="172.31.26.157-k8s-csi--node--driver--v96lh-eth0" Feb 9 09:50:10.920882 env[1673]: 2024-02-09 09:50:10.901 [INFO][3817] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 09:50:10.920882 env[1673]: 2024-02-09 09:50:10.901 [INFO][3817] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 09:50:10.920882 env[1673]: 2024-02-09 09:50:10.914 [WARNING][3817] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" HandleID="k8s-pod-network.a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" Workload="172.31.26.157-k8s-csi--node--driver--v96lh-eth0" Feb 9 09:50:10.920882 env[1673]: 2024-02-09 09:50:10.914 [INFO][3817] ipam_plugin.go 443: Releasing address using workloadID ContainerID="a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" HandleID="k8s-pod-network.a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" Workload="172.31.26.157-k8s-csi--node--driver--v96lh-eth0" Feb 9 09:50:10.920882 env[1673]: 2024-02-09 09:50:10.916 [INFO][3817] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 09:50:10.920882 env[1673]: 2024-02-09 09:50:10.918 [INFO][3811] k8s.go 591: Teardown processing complete. ContainerID="a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" Feb 9 09:50:10.921967 env[1673]: time="2024-02-09T09:50:10.920930644Z" level=info msg="TearDown network for sandbox \"a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47\" successfully" Feb 9 09:50:10.921967 env[1673]: time="2024-02-09T09:50:10.920976568Z" level=info msg="StopPodSandbox for \"a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47\" returns successfully" Feb 9 09:50:10.922979 env[1673]: time="2024-02-09T09:50:10.922927428Z" level=info msg="RemovePodSandbox for \"a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47\"" Feb 9 09:50:10.923105 env[1673]: time="2024-02-09T09:50:10.922987500Z" level=info msg="Forcibly stopping sandbox \"a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47\"" Feb 9 09:50:11.069639 env[1673]: 2024-02-09 09:50:11.002 [WARNING][3835] k8s.go 542: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.26.157-k8s-csi--node--driver--v96lh-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"fe988a42-0383-4a5b-80cd-d77b9230142f", ResourceVersion:"1003", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 9, 49, 12, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"86b88cf7c9", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.26.157", ContainerID:"1fd9a938a6972460125e142ffe562c5e5cc53f29056b9eb3b53881161a82eec3", Pod:"csi-node-driver-v96lh", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.26.130/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"calieee3be59591", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 09:50:11.069639 env[1673]: 2024-02-09 09:50:11.003 [INFO][3835] k8s.go 578: Cleaning up netns ContainerID="a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" Feb 9 09:50:11.069639 env[1673]: 2024-02-09 09:50:11.003 [INFO][3835] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" iface="eth0" netns="" Feb 9 09:50:11.069639 env[1673]: 2024-02-09 09:50:11.003 [INFO][3835] k8s.go 585: Releasing IP address(es) ContainerID="a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" Feb 9 09:50:11.069639 env[1673]: 2024-02-09 09:50:11.003 [INFO][3835] utils.go 188: Calico CNI releasing IP address ContainerID="a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" Feb 9 09:50:11.069639 env[1673]: 2024-02-09 09:50:11.038 [INFO][3843] ipam_plugin.go 415: Releasing address using handleID ContainerID="a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" HandleID="k8s-pod-network.a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" Workload="172.31.26.157-k8s-csi--node--driver--v96lh-eth0" Feb 9 09:50:11.069639 env[1673]: 2024-02-09 09:50:11.039 [INFO][3843] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 09:50:11.069639 env[1673]: 2024-02-09 09:50:11.039 [INFO][3843] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 09:50:11.069639 env[1673]: 2024-02-09 09:50:11.055 [WARNING][3843] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" HandleID="k8s-pod-network.a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" Workload="172.31.26.157-k8s-csi--node--driver--v96lh-eth0" Feb 9 09:50:11.069639 env[1673]: 2024-02-09 09:50:11.055 [INFO][3843] ipam_plugin.go 443: Releasing address using workloadID ContainerID="a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" HandleID="k8s-pod-network.a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" Workload="172.31.26.157-k8s-csi--node--driver--v96lh-eth0" Feb 9 09:50:11.069639 env[1673]: 2024-02-09 09:50:11.059 [INFO][3843] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 09:50:11.069639 env[1673]: 2024-02-09 09:50:11.065 [INFO][3835] k8s.go 591: Teardown processing complete. ContainerID="a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47" Feb 9 09:50:11.069639 env[1673]: time="2024-02-09T09:50:11.068278727Z" level=info msg="TearDown network for sandbox \"a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47\" successfully" Feb 9 09:50:11.074464 env[1673]: time="2024-02-09T09:50:11.074362908Z" level=info msg="RemovePodSandbox \"a4448d3e1adb50672017150618655d25e968dcdf7c2a0c5c031027426e13aa47\" returns successfully" Feb 9 09:50:11.077045 env[1673]: time="2024-02-09T09:50:11.076869883Z" level=info msg="StopPodSandbox for \"6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99\"" Feb 9 09:50:11.213677 env[1673]: 2024-02-09 09:50:11.157 [WARNING][3863] k8s.go 542: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.26.157-k8s-nginx--deployment--845c78c8b9--28sbm-eth0", GenerateName:"nginx-deployment-845c78c8b9-", Namespace:"default", SelfLink:"", UID:"bf74fe68-5bcf-4e85-912b-b3d7ba06c977", ResourceVersion:"976", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 9, 49, 26, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"845c78c8b9", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.26.157", ContainerID:"3a4b49a731d6fbc36a5cdd41602504e4ee02c680b3718e201fc8324fbc46bc5a", Pod:"nginx-deployment-845c78c8b9-28sbm", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.26.129/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"calic00b399a0f5", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 09:50:11.213677 env[1673]: 2024-02-09 09:50:11.157 [INFO][3863] k8s.go 578: Cleaning up netns ContainerID="6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" Feb 9 09:50:11.213677 env[1673]: 2024-02-09 09:50:11.157 [INFO][3863] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" iface="eth0" netns="" Feb 9 09:50:11.213677 env[1673]: 2024-02-09 09:50:11.157 [INFO][3863] k8s.go 585: Releasing IP address(es) ContainerID="6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" Feb 9 09:50:11.213677 env[1673]: 2024-02-09 09:50:11.157 [INFO][3863] utils.go 188: Calico CNI releasing IP address ContainerID="6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" Feb 9 09:50:11.213677 env[1673]: 2024-02-09 09:50:11.192 [INFO][3869] ipam_plugin.go 415: Releasing address using handleID ContainerID="6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" HandleID="k8s-pod-network.6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" Workload="172.31.26.157-k8s-nginx--deployment--845c78c8b9--28sbm-eth0" Feb 9 09:50:11.213677 env[1673]: 2024-02-09 09:50:11.192 [INFO][3869] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 09:50:11.213677 env[1673]: 2024-02-09 09:50:11.192 [INFO][3869] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 09:50:11.213677 env[1673]: 2024-02-09 09:50:11.206 [WARNING][3869] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" HandleID="k8s-pod-network.6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" Workload="172.31.26.157-k8s-nginx--deployment--845c78c8b9--28sbm-eth0" Feb 9 09:50:11.213677 env[1673]: 2024-02-09 09:50:11.206 [INFO][3869] ipam_plugin.go 443: Releasing address using workloadID ContainerID="6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" HandleID="k8s-pod-network.6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" Workload="172.31.26.157-k8s-nginx--deployment--845c78c8b9--28sbm-eth0" Feb 9 09:50:11.213677 env[1673]: 2024-02-09 09:50:11.209 [INFO][3869] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 09:50:11.213677 env[1673]: 2024-02-09 09:50:11.211 [INFO][3863] k8s.go 591: Teardown processing complete. ContainerID="6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" Feb 9 09:50:11.214790 env[1673]: time="2024-02-09T09:50:11.214724986Z" level=info msg="TearDown network for sandbox \"6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99\" successfully" Feb 9 09:50:11.214947 env[1673]: time="2024-02-09T09:50:11.214898134Z" level=info msg="StopPodSandbox for \"6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99\" returns successfully" Feb 9 09:50:11.215831 env[1673]: time="2024-02-09T09:50:11.215789180Z" level=info msg="RemovePodSandbox for \"6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99\"" Feb 9 09:50:11.216286 env[1673]: time="2024-02-09T09:50:11.216207523Z" level=info msg="Forcibly stopping sandbox \"6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99\"" Feb 9 09:50:11.342540 env[1673]: 2024-02-09 09:50:11.282 [WARNING][3888] k8s.go 542: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.26.157-k8s-nginx--deployment--845c78c8b9--28sbm-eth0", GenerateName:"nginx-deployment-845c78c8b9-", Namespace:"default", SelfLink:"", UID:"bf74fe68-5bcf-4e85-912b-b3d7ba06c977", ResourceVersion:"976", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 9, 49, 26, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"845c78c8b9", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.26.157", ContainerID:"3a4b49a731d6fbc36a5cdd41602504e4ee02c680b3718e201fc8324fbc46bc5a", Pod:"nginx-deployment-845c78c8b9-28sbm", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.26.129/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"calic00b399a0f5", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 09:50:11.342540 env[1673]: 2024-02-09 09:50:11.282 [INFO][3888] k8s.go 578: Cleaning up netns ContainerID="6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" Feb 9 09:50:11.342540 env[1673]: 2024-02-09 09:50:11.282 [INFO][3888] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" iface="eth0" netns="" Feb 9 09:50:11.342540 env[1673]: 2024-02-09 09:50:11.282 [INFO][3888] k8s.go 585: Releasing IP address(es) ContainerID="6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" Feb 9 09:50:11.342540 env[1673]: 2024-02-09 09:50:11.283 [INFO][3888] utils.go 188: Calico CNI releasing IP address ContainerID="6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" Feb 9 09:50:11.342540 env[1673]: 2024-02-09 09:50:11.320 [INFO][3894] ipam_plugin.go 415: Releasing address using handleID ContainerID="6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" HandleID="k8s-pod-network.6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" Workload="172.31.26.157-k8s-nginx--deployment--845c78c8b9--28sbm-eth0" Feb 9 09:50:11.342540 env[1673]: 2024-02-09 09:50:11.321 [INFO][3894] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 09:50:11.342540 env[1673]: 2024-02-09 09:50:11.321 [INFO][3894] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 09:50:11.342540 env[1673]: 2024-02-09 09:50:11.333 [WARNING][3894] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" HandleID="k8s-pod-network.6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" Workload="172.31.26.157-k8s-nginx--deployment--845c78c8b9--28sbm-eth0" Feb 9 09:50:11.342540 env[1673]: 2024-02-09 09:50:11.333 [INFO][3894] ipam_plugin.go 443: Releasing address using workloadID ContainerID="6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" HandleID="k8s-pod-network.6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" Workload="172.31.26.157-k8s-nginx--deployment--845c78c8b9--28sbm-eth0" Feb 9 09:50:11.342540 env[1673]: 2024-02-09 09:50:11.336 [INFO][3894] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 09:50:11.342540 env[1673]: 2024-02-09 09:50:11.338 [INFO][3888] k8s.go 591: Teardown processing complete. ContainerID="6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99" Feb 9 09:50:11.342540 env[1673]: time="2024-02-09T09:50:11.341281643Z" level=info msg="TearDown network for sandbox \"6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99\" successfully" Feb 9 09:50:11.345478 env[1673]: time="2024-02-09T09:50:11.345414063Z" level=info msg="RemovePodSandbox \"6f66c71316ac215e810327fbfb677c83169db2958d01c3aa614dbe27bb7d9e99\" returns successfully" Feb 9 09:50:11.821388 kubelet[2129]: E0209 09:50:11.821324 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:12.822007 kubelet[2129]: E0209 09:50:12.821966 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:13.823035 kubelet[2129]: E0209 09:50:13.822973 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:14.823196 kubelet[2129]: E0209 09:50:14.823121 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:15.824261 kubelet[2129]: E0209 09:50:15.824211 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:16.825632 kubelet[2129]: E0209 09:50:16.825590 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:17.826935 kubelet[2129]: E0209 09:50:17.826894 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:18.828420 kubelet[2129]: E0209 09:50:18.828379 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:19.829801 kubelet[2129]: E0209 09:50:19.829740 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:20.009989 systemd[1]: run-containerd-runc-k8s.io-dcc0bcb5528f0c8e3839ad8a18009acbf87d7b01926421bd701fba828ab7968c-runc.xTqdgp.mount: Deactivated successfully. Feb 9 09:50:20.830327 kubelet[2129]: E0209 09:50:20.830267 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:21.831365 kubelet[2129]: E0209 09:50:21.831287 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:22.832467 kubelet[2129]: E0209 09:50:22.832397 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:23.832731 kubelet[2129]: E0209 09:50:23.832689 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:24.244000 audit[3939]: NETFILTER_CFG table=filter:87 family=2 entries=9 op=nft_register_rule pid=3939 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 09:50:24.248098 kernel: kauditd_printk_skb: 56 callbacks suppressed Feb 9 09:50:24.248244 kernel: audit: type=1325 audit(1707472224.244:920): table=filter:87 family=2 entries=9 op=nft_register_rule pid=3939 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 09:50:24.244000 audit[3939]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=2844 a0=3 a1=ffffd24eef50 a2=0 a3=ffffb7b8d6c0 items=0 ppid=2352 pid=3939 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:24.266031 kernel: audit: type=1300 audit(1707472224.244:920): arch=c00000b7 syscall=211 success=yes exit=2844 a0=3 a1=ffffd24eef50 a2=0 a3=ffffb7b8d6c0 items=0 ppid=2352 pid=3939 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:24.244000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 09:50:24.271814 kernel: audit: type=1327 audit(1707472224.244:920): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 09:50:24.271908 kernel: audit: type=1325 audit(1707472224.249:921): table=nat:88 family=2 entries=51 op=nft_register_chain pid=3939 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 09:50:24.249000 audit[3939]: NETFILTER_CFG table=nat:88 family=2 entries=51 op=nft_register_chain pid=3939 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 09:50:24.249000 audit[3939]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=17716 a0=3 a1=ffffd24eef50 a2=0 a3=ffffb7b8d6c0 items=0 ppid=2352 pid=3939 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:24.289146 kernel: audit: type=1300 audit(1707472224.249:921): arch=c00000b7 syscall=211 success=yes exit=17716 a0=3 a1=ffffd24eef50 a2=0 a3=ffffb7b8d6c0 items=0 ppid=2352 pid=3939 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:24.249000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 09:50:24.294714 kernel: audit: type=1327 audit(1707472224.249:921): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 09:50:24.834464 kubelet[2129]: E0209 09:50:24.834419 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:24.954356 systemd[1]: run-containerd-runc-k8s.io-f75c166fc48a3b54bd4cd2db6b2ac26f238a2e6c00cf651769cdf5d5f20384de-runc.YEftMW.mount: Deactivated successfully. Feb 9 09:50:25.020103 kubelet[2129]: I0209 09:50:25.020041 2129 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="calico-apiserver/calico-apiserver-66cf7848b7-zmck2" podStartSLOduration=23.702950164 podCreationTimestamp="2024-02-09 09:49:53 +0000 UTC" firstStartedPulling="2024-02-09 09:49:55.439627215 +0000 UTC m=+45.356278588" lastFinishedPulling="2024-02-09 09:50:03.756645123 +0000 UTC m=+53.673296484" observedRunningTime="2024-02-09 09:50:04.21639607 +0000 UTC m=+54.133047431" watchObservedRunningTime="2024-02-09 09:50:25.01996806 +0000 UTC m=+74.936619433" Feb 9 09:50:25.043000 audit[3961]: NETFILTER_CFG table=filter:89 family=2 entries=8 op=nft_register_rule pid=3961 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 09:50:25.043000 audit[3961]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=2844 a0=3 a1=ffffe75f3770 a2=0 a3=ffffaba0c6c0 items=0 ppid=2352 pid=3961 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:25.062754 kernel: audit: type=1325 audit(1707472225.043:922): table=filter:89 family=2 entries=8 op=nft_register_rule pid=3961 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 09:50:25.062876 kernel: audit: type=1300 audit(1707472225.043:922): arch=c00000b7 syscall=211 success=yes exit=2844 a0=3 a1=ffffe75f3770 a2=0 a3=ffffaba0c6c0 items=0 ppid=2352 pid=3961 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:25.043000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 09:50:25.050000 audit[3961]: NETFILTER_CFG table=nat:90 family=2 entries=58 op=nft_register_chain pid=3961 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 09:50:25.074674 kernel: audit: type=1327 audit(1707472225.043:922): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 09:50:25.074740 kernel: audit: type=1325 audit(1707472225.050:923): table=nat:90 family=2 entries=58 op=nft_register_chain pid=3961 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 09:50:25.050000 audit[3961]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=19604 a0=3 a1=ffffe75f3770 a2=0 a3=ffffaba0c6c0 items=0 ppid=2352 pid=3961 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:25.050000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 09:50:25.543629 kubelet[2129]: I0209 09:50:25.543577 2129 topology_manager.go:212] "Topology Admit Handler" Feb 9 09:50:25.553377 systemd[1]: Created slice kubepods-besteffort-poda884a629_0d63_403d_92bf_d67918960be4.slice. Feb 9 09:50:25.620680 kubelet[2129]: I0209 09:50:25.620609 2129 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-xpxw4\" (UniqueName: \"kubernetes.io/projected/a884a629-0d63-403d-92bf-d67918960be4-kube-api-access-xpxw4\") pod \"test-pod-1\" (UID: \"a884a629-0d63-403d-92bf-d67918960be4\") " pod="default/test-pod-1" Feb 9 09:50:25.620838 kubelet[2129]: I0209 09:50:25.620694 2129 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"pvc-ca844d4b-6c86-432a-b09d-1703ceca38cf\" (UniqueName: \"kubernetes.io/nfs/a884a629-0d63-403d-92bf-d67918960be4-pvc-ca844d4b-6c86-432a-b09d-1703ceca38cf\") pod \"test-pod-1\" (UID: \"a884a629-0d63-403d-92bf-d67918960be4\") " pod="default/test-pod-1" Feb 9 09:50:25.740000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.740000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.746965 kernel: Failed to create system directory netfs Feb 9 09:50:25.747072 kernel: Failed to create system directory netfs Feb 9 09:50:25.750911 kernel: Failed to create system directory netfs Feb 9 09:50:25.740000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.740000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.756336 kernel: Failed to create system directory netfs Feb 9 09:50:25.740000 audit[3965]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=aaaafccf55e0 a1=12c14 a2=aaaae40ee028 a3=aaaafcce6010 items=0 ppid=1585 pid=3965 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:25.740000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Feb 9 09:50:25.764000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.773251 kernel: Failed to create system directory fscache Feb 9 09:50:25.773330 kernel: Failed to create system directory fscache Feb 9 09:50:25.764000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.775555 kernel: Failed to create system directory fscache Feb 9 09:50:25.764000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.777583 kernel: Failed to create system directory fscache Feb 9 09:50:25.764000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.779629 kernel: Failed to create system directory fscache Feb 9 09:50:25.764000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.781655 kernel: Failed to create system directory fscache Feb 9 09:50:25.764000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.783672 kernel: Failed to create system directory fscache Feb 9 09:50:25.764000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.785680 kernel: Failed to create system directory fscache Feb 9 09:50:25.764000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.787693 kernel: Failed to create system directory fscache Feb 9 09:50:25.764000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.789704 kernel: Failed to create system directory fscache Feb 9 09:50:25.764000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.791712 kernel: Failed to create system directory fscache Feb 9 09:50:25.764000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.795803 kernel: Failed to create system directory fscache Feb 9 09:50:25.764000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.799384 kernel: Failed to create system directory fscache Feb 9 09:50:25.799609 kernel: Failed to create system directory fscache Feb 9 09:50:25.764000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.764000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.802992 kernel: FS-Cache: Loaded Feb 9 09:50:25.764000 audit[3965]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=aaaafcf08210 a1=4c344 a2=aaaae40ee028 a3=aaaafcce6010 items=0 ppid=1585 pid=3965 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:25.764000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.835317 kubelet[2129]: E0209 09:50:25.835264 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.837168 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.837237 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.837321 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.841005 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.841097 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.844815 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.844912 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.848604 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.850505 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.850579 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.854271 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.854360 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.858011 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.859922 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.860009 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.863679 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.863727 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.867350 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.867411 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.871001 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.871050 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.874648 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.874770 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.878395 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.878480 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.882040 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.882117 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.885691 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.885761 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.889391 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.889460 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.893050 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.893123 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.896715 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.896787 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.900426 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.900502 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.904108 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.904193 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.907765 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.907836 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.911397 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.911533 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.915080 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.915129 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.918755 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.918820 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.922439 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.922520 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.926083 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.926184 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.929781 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.929843 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.933415 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.933465 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.937053 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.937101 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.940697 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.940793 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.944741 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.944905 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.948600 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.948675 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.952354 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.952445 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.956076 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.956182 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.959864 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.959954 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.963707 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.963763 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.967366 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.967454 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.971076 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.971184 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.974837 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.974924 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.982486 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.982595 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.982664 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.982711 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.984336 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.988014 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.988152 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.991865 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.991974 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.993731 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.997405 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.997551 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.001211 kernel: Failed to create system directory sunrpc Feb 9 09:50:26.001386 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.005015 kernel: Failed to create system directory sunrpc Feb 9 09:50:26.005170 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.006984 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.010647 kernel: Failed to create system directory sunrpc Feb 9 09:50:26.010815 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.012688 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.016371 kernel: Failed to create system directory sunrpc Feb 9 09:50:26.016462 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.018222 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.021901 kernel: Failed to create system directory sunrpc Feb 9 09:50:26.021952 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.025692 kernel: Failed to create system directory sunrpc Feb 9 09:50:26.025803 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.027471 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.029337 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.031250 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.033072 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.034852 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.038731 kernel: Failed to create system directory sunrpc Feb 9 09:50:26.038829 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.040493 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.042382 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.044245 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.045988 kernel: Failed to create system directory sunrpc Feb 9 09:50:26.053336 kernel: Failed to create system directory sunrpc Feb 9 09:50:26.053467 kernel: Failed to create system directory sunrpc Feb 9 09:50:26.053518 kernel: Failed to create system directory sunrpc Feb 9 09:50:26.053558 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.055086 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.056839 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.058719 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.060492 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.062376 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.064112 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.065982 kernel: Failed to create system directory sunrpc Feb 9 09:50:25.825000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.078483 kernel: RPC: Registered named UNIX socket transport module. Feb 9 09:50:26.078613 kernel: RPC: Registered udp transport module. Feb 9 09:50:26.078681 kernel: RPC: Registered tcp transport module. Feb 9 09:50:26.080126 kernel: RPC: Registered tcp NFSv4.1 backchannel transport module. Feb 9 09:50:25.825000 audit[3965]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=aaaafcf54560 a1=fbb6c a2=aaaae40ee028 a3=aaaafcce6010 items=6 ppid=1585 pid=3965 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:25.825000 audit: CWD cwd="/" Feb 9 09:50:25.825000 audit: PATH item=0 name=(null) inode=1 dev=00:07 mode=040700 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 09:50:25.825000 audit: PATH item=1 name=(null) inode=20324 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 09:50:25.825000 audit: PATH item=2 name=(null) inode=20324 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 09:50:25.825000 audit: PATH item=3 name=(null) inode=20325 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 09:50:25.825000 audit: PATH item=4 name=(null) inode=20324 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 09:50:25.825000 audit: PATH item=5 name=(null) inode=20326 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 09:50:25.825000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.118381 kernel: Failed to create system directory nfs Feb 9 09:50:26.118472 kernel: Failed to create system directory nfs Feb 9 09:50:26.118520 kernel: Failed to create system directory nfs Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.121820 kernel: Failed to create system directory nfs Feb 9 09:50:26.121875 kernel: Failed to create system directory nfs Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.125277 kernel: Failed to create system directory nfs Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.127243 kernel: Failed to create system directory nfs Feb 9 09:50:26.127294 kernel: Failed to create system directory nfs Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.130726 kernel: Failed to create system directory nfs Feb 9 09:50:26.131317 kernel: Failed to create system directory nfs Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.134238 kernel: Failed to create system directory nfs Feb 9 09:50:26.134369 kernel: Failed to create system directory nfs Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.137783 kernel: Failed to create system directory nfs Feb 9 09:50:26.137930 kernel: Failed to create system directory nfs Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.142261 kernel: Failed to create system directory nfs Feb 9 09:50:26.142321 kernel: Failed to create system directory nfs Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.145886 kernel: Failed to create system directory nfs Feb 9 09:50:26.145936 kernel: Failed to create system directory nfs Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.149356 kernel: Failed to create system directory nfs Feb 9 09:50:26.149406 kernel: Failed to create system directory nfs Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.152846 kernel: Failed to create system directory nfs Feb 9 09:50:26.152897 kernel: Failed to create system directory nfs Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.156367 kernel: Failed to create system directory nfs Feb 9 09:50:26.156528 kernel: Failed to create system directory nfs Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.159934 kernel: Failed to create system directory nfs Feb 9 09:50:26.160062 kernel: Failed to create system directory nfs Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.163524 kernel: Failed to create system directory nfs Feb 9 09:50:26.163650 kernel: Failed to create system directory nfs Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.167070 kernel: Failed to create system directory nfs Feb 9 09:50:26.167211 kernel: Failed to create system directory nfs Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.170736 kernel: Failed to create system directory nfs Feb 9 09:50:26.170787 kernel: Failed to create system directory nfs Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.174224 kernel: Failed to create system directory nfs Feb 9 09:50:26.174379 kernel: Failed to create system directory nfs Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.176067 kernel: Failed to create system directory nfs Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.179649 kernel: Failed to create system directory nfs Feb 9 09:50:26.179766 kernel: Failed to create system directory nfs Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.183181 kernel: Failed to create system directory nfs Feb 9 09:50:26.183284 kernel: Failed to create system directory nfs Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.184965 kernel: Failed to create system directory nfs Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.188532 kernel: Failed to create system directory nfs Feb 9 09:50:26.188582 kernel: Failed to create system directory nfs Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.192075 kernel: Failed to create system directory nfs Feb 9 09:50:26.192126 kernel: Failed to create system directory nfs Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.195654 kernel: Failed to create system directory nfs Feb 9 09:50:26.195744 kernel: Failed to create system directory nfs Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.199195 kernel: Failed to create system directory nfs Feb 9 09:50:26.199294 kernel: Failed to create system directory nfs Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.200989 kernel: Failed to create system directory nfs Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.202670 kernel: Failed to create system directory nfs Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.204471 kernel: Failed to create system directory nfs Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.206237 kernel: Failed to create system directory nfs Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.209732 kernel: Failed to create system directory nfs Feb 9 09:50:26.209781 kernel: Failed to create system directory nfs Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.213345 kernel: Failed to create system directory nfs Feb 9 09:50:26.213397 kernel: Failed to create system directory nfs Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.216851 kernel: Failed to create system directory nfs Feb 9 09:50:26.216940 kernel: Failed to create system directory nfs Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.108000 audit[3965]: AVC avc: denied { confidentiality } for pid=3965 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.220316 kernel: Failed to create system directory nfs Feb 9 09:50:26.240298 kernel: FS-Cache: Netfs 'nfs' registered for caching Feb 9 09:50:26.108000 audit[3965]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=aaaafd080b40 a1=ae35c a2=aaaae40ee028 a3=aaaafcce6010 items=0 ppid=1585 pid=3965 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:26.108000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.286159 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.286247 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.286294 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.287820 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.289653 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.293280 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.293381 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.294959 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.296789 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.298506 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.300332 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.303874 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.303932 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.309199 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.309338 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.309397 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.310942 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.314509 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.314605 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.318003 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.318166 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.319723 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.321594 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.325162 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.325212 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.328920 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.329210 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.332450 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.332605 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.334298 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.337875 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.337924 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.341475 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.341568 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.345033 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.345082 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.348587 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.348638 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.352095 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.352226 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.355785 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.355862 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.359396 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.359445 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.362952 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.363079 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.364849 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.368464 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.368514 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.372046 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.372159 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.375804 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.375857 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.379352 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.379451 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.382965 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.383020 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.386511 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.386562 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.390033 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.390168 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.393582 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.393632 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.397107 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.397188 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.400648 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.400737 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.404199 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.404247 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.407732 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.407781 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.411275 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.411370 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.414944 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.414995 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.418537 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.418714 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.420503 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.424050 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.424100 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.427607 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.427697 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.431232 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.431285 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.434847 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.434899 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.438493 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.438543 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.442112 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.442198 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.445741 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.445790 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.449339 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.273000 audit[3970]: AVC avc: denied { confidentiality } for pid=3970 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.453603 kernel: Failed to create system directory nfs4 Feb 9 09:50:26.665540 kernel: NFS: Registering the id_resolver key type Feb 9 09:50:26.665722 kernel: Key type id_resolver registered Feb 9 09:50:26.665783 kernel: Key type id_legacy registered Feb 9 09:50:26.273000 audit[3970]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=ffffa662b010 a1=167c04 a2=aaaad04ce028 a3=aaaad2eaf010 items=0 ppid=1585 pid=3970 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:26.273000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D006E66737634 Feb 9 09:50:26.680000 audit[3971]: AVC avc: denied { confidentiality } for pid=3971 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.687545 kernel: Failed to create system directory rpcgss Feb 9 09:50:26.687626 kernel: Failed to create system directory rpcgss Feb 9 09:50:26.680000 audit[3971]: AVC avc: denied { confidentiality } for pid=3971 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.689702 kernel: Failed to create system directory rpcgss Feb 9 09:50:26.680000 audit[3971]: AVC avc: denied { confidentiality } for pid=3971 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.691910 kernel: Failed to create system directory rpcgss Feb 9 09:50:26.692015 kernel: Failed to create system directory rpcgss Feb 9 09:50:26.680000 audit[3971]: AVC avc: denied { confidentiality } for pid=3971 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.680000 audit[3971]: AVC avc: denied { confidentiality } for pid=3971 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.680000 audit[3971]: AVC avc: denied { confidentiality } for pid=3971 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.695636 kernel: Failed to create system directory rpcgss Feb 9 09:50:26.695689 kernel: Failed to create system directory rpcgss Feb 9 09:50:26.680000 audit[3971]: AVC avc: denied { confidentiality } for pid=3971 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.680000 audit[3971]: AVC avc: denied { confidentiality } for pid=3971 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.699337 kernel: Failed to create system directory rpcgss Feb 9 09:50:26.699387 kernel: Failed to create system directory rpcgss Feb 9 09:50:26.680000 audit[3971]: AVC avc: denied { confidentiality } for pid=3971 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.701231 kernel: Failed to create system directory rpcgss Feb 9 09:50:26.680000 audit[3971]: AVC avc: denied { confidentiality } for pid=3971 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.680000 audit[3971]: AVC avc: denied { confidentiality } for pid=3971 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.704938 kernel: Failed to create system directory rpcgss Feb 9 09:50:26.704988 kernel: Failed to create system directory rpcgss Feb 9 09:50:26.680000 audit[3971]: AVC avc: denied { confidentiality } for pid=3971 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.680000 audit[3971]: AVC avc: denied { confidentiality } for pid=3971 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.708612 kernel: Failed to create system directory rpcgss Feb 9 09:50:26.708662 kernel: Failed to create system directory rpcgss Feb 9 09:50:26.680000 audit[3971]: AVC avc: denied { confidentiality } for pid=3971 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.680000 audit[3971]: AVC avc: denied { confidentiality } for pid=3971 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.712290 kernel: Failed to create system directory rpcgss Feb 9 09:50:26.712342 kernel: Failed to create system directory rpcgss Feb 9 09:50:26.680000 audit[3971]: AVC avc: denied { confidentiality } for pid=3971 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.680000 audit[3971]: AVC avc: denied { confidentiality } for pid=3971 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.716012 kernel: Failed to create system directory rpcgss Feb 9 09:50:26.716067 kernel: Failed to create system directory rpcgss Feb 9 09:50:26.680000 audit[3971]: AVC avc: denied { confidentiality } for pid=3971 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.717895 kernel: Failed to create system directory rpcgss Feb 9 09:50:26.680000 audit[3971]: AVC avc: denied { confidentiality } for pid=3971 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.719671 kernel: Failed to create system directory rpcgss Feb 9 09:50:26.680000 audit[3971]: AVC avc: denied { confidentiality } for pid=3971 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.721552 kernel: Failed to create system directory rpcgss Feb 9 09:50:26.680000 audit[3971]: AVC avc: denied { confidentiality } for pid=3971 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.723311 kernel: Failed to create system directory rpcgss Feb 9 09:50:26.680000 audit[3971]: AVC avc: denied { confidentiality } for pid=3971 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.725184 kernel: Failed to create system directory rpcgss Feb 9 09:50:26.680000 audit[3971]: AVC avc: denied { confidentiality } for pid=3971 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.680000 audit[3971]: AVC avc: denied { confidentiality } for pid=3971 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.728968 kernel: Failed to create system directory rpcgss Feb 9 09:50:26.729026 kernel: Failed to create system directory rpcgss Feb 9 09:50:26.680000 audit[3971]: AVC avc: denied { confidentiality } for pid=3971 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.680000 audit[3971]: AVC avc: denied { confidentiality } for pid=3971 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 09:50:26.732519 kernel: Failed to create system directory rpcgss Feb 9 09:50:26.680000 audit[3971]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=ffff84b43010 a1=3e09c a2=aaaae4a2e028 a3=aaaaec05e010 items=0 ppid=1585 pid=3971 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:26.680000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D007270632D617574682D36 Feb 9 09:50:26.757589 nfsidmap[3979]: nss_getpwnam: name 'root@nfs-server-provisioner.default.svc.cluster.local' does not map into domain 'us-west-2.compute.internal' Feb 9 09:50:26.763761 nfsidmap[3980]: nss_name_to_gid: name 'root@nfs-server-provisioner.default.svc.cluster.local' does not map into domain 'us-west-2.compute.internal' Feb 9 09:50:26.778000 audit[1]: AVC avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2764 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 9 09:50:26.778000 audit[1]: AVC avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2764 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 9 09:50:26.778000 audit[1]: AVC avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2764 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 9 09:50:26.778000 audit[1856]: AVC avc: denied { watch_reads } for pid=1856 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2764 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 9 09:50:26.778000 audit[1856]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=e a1=aaaadddb09c0 a2=10 a3=0 items=0 ppid=1 pid=1856 auid=4294967295 uid=500 gid=500 euid=500 suid=500 fsuid=500 egid=500 sgid=500 fsgid=500 tty=(none) ses=4294967295 comm="systemd" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:26.778000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D64002D2D75736572 Feb 9 09:50:26.778000 audit[1856]: AVC avc: denied { watch_reads } for pid=1856 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2764 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 9 09:50:26.778000 audit[1856]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=e a1=aaaadddb09c0 a2=10 a3=0 items=0 ppid=1 pid=1856 auid=4294967295 uid=500 gid=500 euid=500 suid=500 fsuid=500 egid=500 sgid=500 fsgid=500 tty=(none) ses=4294967295 comm="systemd" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:26.778000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D64002D2D75736572 Feb 9 09:50:26.778000 audit[1856]: AVC avc: denied { watch_reads } for pid=1856 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2764 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 9 09:50:26.778000 audit[1856]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=e a1=aaaadddb09c0 a2=10 a3=0 items=0 ppid=1 pid=1856 auid=4294967295 uid=500 gid=500 euid=500 suid=500 fsuid=500 egid=500 sgid=500 fsgid=500 tty=(none) ses=4294967295 comm="systemd" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:26.778000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D64002D2D75736572 Feb 9 09:50:26.836453 kubelet[2129]: E0209 09:50:26.836392 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:27.059251 env[1673]: time="2024-02-09T09:50:27.059057029Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:test-pod-1,Uid:a884a629-0d63-403d-92bf-d67918960be4,Namespace:default,Attempt:0,}" Feb 9 09:50:27.294370 (udev-worker)[3972]: Network interface NamePolicy= disabled on kernel command line. Feb 9 09:50:27.297949 systemd-networkd[1460]: cali5ec59c6bf6e: Link UP Feb 9 09:50:27.304964 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 9 09:50:27.305094 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali5ec59c6bf6e: link becomes ready Feb 9 09:50:27.305005 systemd-networkd[1460]: cali5ec59c6bf6e: Gained carrier Feb 9 09:50:27.324636 env[1673]: 2024-02-09 09:50:27.140 [INFO][3981] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.26.157-k8s-test--pod--1-eth0 default a884a629-0d63-403d-92bf-d67918960be4 1206 0 2024-02-09 09:49:53 +0000 UTC map[projectcalico.org/namespace:default projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 172.31.26.157 test-pod-1 eth0 default [] [] [kns.default ksa.default.default] cali5ec59c6bf6e [] []}} ContainerID="590808997c3eaaf856e90fe17296f747df992c97f05f55460b718b0ddee223eb" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.26.157-k8s-test--pod--1-" Feb 9 09:50:27.324636 env[1673]: 2024-02-09 09:50:27.141 [INFO][3981] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="590808997c3eaaf856e90fe17296f747df992c97f05f55460b718b0ddee223eb" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.26.157-k8s-test--pod--1-eth0" Feb 9 09:50:27.324636 env[1673]: 2024-02-09 09:50:27.189 [INFO][3993] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="590808997c3eaaf856e90fe17296f747df992c97f05f55460b718b0ddee223eb" HandleID="k8s-pod-network.590808997c3eaaf856e90fe17296f747df992c97f05f55460b718b0ddee223eb" Workload="172.31.26.157-k8s-test--pod--1-eth0" Feb 9 09:50:27.324636 env[1673]: 2024-02-09 09:50:27.209 [INFO][3993] ipam_plugin.go 268: Auto assigning IP ContainerID="590808997c3eaaf856e90fe17296f747df992c97f05f55460b718b0ddee223eb" HandleID="k8s-pod-network.590808997c3eaaf856e90fe17296f747df992c97f05f55460b718b0ddee223eb" Workload="172.31.26.157-k8s-test--pod--1-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x4000122ef0), Attrs:map[string]string{"namespace":"default", "node":"172.31.26.157", "pod":"test-pod-1", "timestamp":"2024-02-09 09:50:27.189745317 +0000 UTC"}, Hostname:"172.31.26.157", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 9 09:50:27.324636 env[1673]: 2024-02-09 09:50:27.209 [INFO][3993] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 09:50:27.324636 env[1673]: 2024-02-09 09:50:27.209 [INFO][3993] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 09:50:27.324636 env[1673]: 2024-02-09 09:50:27.209 [INFO][3993] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.26.157' Feb 9 09:50:27.324636 env[1673]: 2024-02-09 09:50:27.213 [INFO][3993] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.590808997c3eaaf856e90fe17296f747df992c97f05f55460b718b0ddee223eb" host="172.31.26.157" Feb 9 09:50:27.324636 env[1673]: 2024-02-09 09:50:27.223 [INFO][3993] ipam.go 372: Looking up existing affinities for host host="172.31.26.157" Feb 9 09:50:27.324636 env[1673]: 2024-02-09 09:50:27.233 [INFO][3993] ipam.go 489: Trying affinity for 192.168.26.128/26 host="172.31.26.157" Feb 9 09:50:27.324636 env[1673]: 2024-02-09 09:50:27.236 [INFO][3993] ipam.go 155: Attempting to load block cidr=192.168.26.128/26 host="172.31.26.157" Feb 9 09:50:27.324636 env[1673]: 2024-02-09 09:50:27.243 [INFO][3993] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.26.128/26 host="172.31.26.157" Feb 9 09:50:27.324636 env[1673]: 2024-02-09 09:50:27.243 [INFO][3993] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.26.128/26 handle="k8s-pod-network.590808997c3eaaf856e90fe17296f747df992c97f05f55460b718b0ddee223eb" host="172.31.26.157" Feb 9 09:50:27.324636 env[1673]: 2024-02-09 09:50:27.261 [INFO][3993] ipam.go 1682: Creating new handle: k8s-pod-network.590808997c3eaaf856e90fe17296f747df992c97f05f55460b718b0ddee223eb Feb 9 09:50:27.324636 env[1673]: 2024-02-09 09:50:27.276 [INFO][3993] ipam.go 1203: Writing block in order to claim IPs block=192.168.26.128/26 handle="k8s-pod-network.590808997c3eaaf856e90fe17296f747df992c97f05f55460b718b0ddee223eb" host="172.31.26.157" Feb 9 09:50:27.324636 env[1673]: 2024-02-09 09:50:27.286 [INFO][3993] ipam.go 1216: Successfully claimed IPs: [192.168.26.133/26] block=192.168.26.128/26 handle="k8s-pod-network.590808997c3eaaf856e90fe17296f747df992c97f05f55460b718b0ddee223eb" host="172.31.26.157" Feb 9 09:50:27.324636 env[1673]: 2024-02-09 09:50:27.286 [INFO][3993] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.26.133/26] handle="k8s-pod-network.590808997c3eaaf856e90fe17296f747df992c97f05f55460b718b0ddee223eb" host="172.31.26.157" Feb 9 09:50:27.324636 env[1673]: 2024-02-09 09:50:27.286 [INFO][3993] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 09:50:27.324636 env[1673]: 2024-02-09 09:50:27.287 [INFO][3993] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.26.133/26] IPv6=[] ContainerID="590808997c3eaaf856e90fe17296f747df992c97f05f55460b718b0ddee223eb" HandleID="k8s-pod-network.590808997c3eaaf856e90fe17296f747df992c97f05f55460b718b0ddee223eb" Workload="172.31.26.157-k8s-test--pod--1-eth0" Feb 9 09:50:27.324636 env[1673]: 2024-02-09 09:50:27.290 [INFO][3981] k8s.go 385: Populated endpoint ContainerID="590808997c3eaaf856e90fe17296f747df992c97f05f55460b718b0ddee223eb" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.26.157-k8s-test--pod--1-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.26.157-k8s-test--pod--1-eth0", GenerateName:"", Namespace:"default", SelfLink:"", UID:"a884a629-0d63-403d-92bf-d67918960be4", ResourceVersion:"1206", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 9, 49, 53, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.26.157", ContainerID:"", Pod:"test-pod-1", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.26.133/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali5ec59c6bf6e", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 09:50:27.324636 env[1673]: 2024-02-09 09:50:27.290 [INFO][3981] k8s.go 386: Calico CNI using IPs: [192.168.26.133/32] ContainerID="590808997c3eaaf856e90fe17296f747df992c97f05f55460b718b0ddee223eb" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.26.157-k8s-test--pod--1-eth0" Feb 9 09:50:27.326059 env[1673]: 2024-02-09 09:50:27.290 [INFO][3981] dataplane_linux.go 68: Setting the host side veth name to cali5ec59c6bf6e ContainerID="590808997c3eaaf856e90fe17296f747df992c97f05f55460b718b0ddee223eb" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.26.157-k8s-test--pod--1-eth0" Feb 9 09:50:27.326059 env[1673]: 2024-02-09 09:50:27.306 [INFO][3981] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="590808997c3eaaf856e90fe17296f747df992c97f05f55460b718b0ddee223eb" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.26.157-k8s-test--pod--1-eth0" Feb 9 09:50:27.326059 env[1673]: 2024-02-09 09:50:27.307 [INFO][3981] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="590808997c3eaaf856e90fe17296f747df992c97f05f55460b718b0ddee223eb" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.26.157-k8s-test--pod--1-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.26.157-k8s-test--pod--1-eth0", GenerateName:"", Namespace:"default", SelfLink:"", UID:"a884a629-0d63-403d-92bf-d67918960be4", ResourceVersion:"1206", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 9, 49, 53, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.26.157", ContainerID:"590808997c3eaaf856e90fe17296f747df992c97f05f55460b718b0ddee223eb", Pod:"test-pod-1", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.26.133/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali5ec59c6bf6e", MAC:"2e:89:ab:77:02:8e", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 09:50:27.326059 env[1673]: 2024-02-09 09:50:27.315 [INFO][3981] k8s.go 491: Wrote updated endpoint to datastore ContainerID="590808997c3eaaf856e90fe17296f747df992c97f05f55460b718b0ddee223eb" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.26.157-k8s-test--pod--1-eth0" Feb 9 09:50:27.349272 env[1673]: time="2024-02-09T09:50:27.349119130Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 9 09:50:27.349530 env[1673]: time="2024-02-09T09:50:27.349479694Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 9 09:50:27.349692 env[1673]: time="2024-02-09T09:50:27.349647046Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 9 09:50:27.354000 audit[4026]: NETFILTER_CFG table=filter:91 family=2 entries=38 op=nft_register_chain pid=4026 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 09:50:27.354000 audit[4026]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=19064 a0=3 a1=ffffdc8619d0 a2=0 a3=ffffa9b26fa8 items=0 ppid=2785 pid=4026 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:27.354000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 09:50:27.356717 env[1673]: time="2024-02-09T09:50:27.351411969Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/590808997c3eaaf856e90fe17296f747df992c97f05f55460b718b0ddee223eb pid=4021 runtime=io.containerd.runc.v2 Feb 9 09:50:27.385452 systemd[1]: Started cri-containerd-590808997c3eaaf856e90fe17296f747df992c97f05f55460b718b0ddee223eb.scope. Feb 9 09:50:27.415000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.415000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.415000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.415000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.415000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.415000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.415000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.415000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.415000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.416000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.416000 audit: BPF prog-id=130 op=LOAD Feb 9 09:50:27.417000 audit[4032]: AVC avc: denied { bpf } for pid=4032 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.417000 audit[4032]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=400014db38 a2=10 a3=0 items=0 ppid=4021 pid=4032 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:27.417000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3539303830383939376333656161663835366539306665313732393666 Feb 9 09:50:27.417000 audit[4032]: AVC avc: denied { perfmon } for pid=4032 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.417000 audit[4032]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=400014d5a0 a2=3c a3=0 items=0 ppid=4021 pid=4032 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:27.417000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3539303830383939376333656161663835366539306665313732393666 Feb 9 09:50:27.418000 audit[4032]: AVC avc: denied { bpf } for pid=4032 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.418000 audit[4032]: AVC avc: denied { bpf } for pid=4032 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.418000 audit[4032]: AVC avc: denied { bpf } for pid=4032 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.418000 audit[4032]: AVC avc: denied { perfmon } for pid=4032 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.418000 audit[4032]: AVC avc: denied { perfmon } for pid=4032 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.418000 audit[4032]: AVC avc: denied { perfmon } for pid=4032 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.418000 audit[4032]: AVC avc: denied { perfmon } for pid=4032 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.418000 audit[4032]: AVC avc: denied { perfmon } for pid=4032 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.418000 audit[4032]: AVC avc: denied { bpf } for pid=4032 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.418000 audit[4032]: AVC avc: denied { bpf } for pid=4032 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.418000 audit: BPF prog-id=131 op=LOAD Feb 9 09:50:27.418000 audit[4032]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=400014d8e0 a2=78 a3=0 items=0 ppid=4021 pid=4032 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:27.418000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3539303830383939376333656161663835366539306665313732393666 Feb 9 09:50:27.419000 audit[4032]: AVC avc: denied { bpf } for pid=4032 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.419000 audit[4032]: AVC avc: denied { bpf } for pid=4032 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.419000 audit[4032]: AVC avc: denied { perfmon } for pid=4032 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.419000 audit[4032]: AVC avc: denied { perfmon } for pid=4032 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.419000 audit[4032]: AVC avc: denied { perfmon } for pid=4032 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.419000 audit[4032]: AVC avc: denied { perfmon } for pid=4032 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.419000 audit[4032]: AVC avc: denied { perfmon } for pid=4032 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.419000 audit[4032]: AVC avc: denied { bpf } for pid=4032 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.419000 audit[4032]: AVC avc: denied { bpf } for pid=4032 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.419000 audit: BPF prog-id=132 op=LOAD Feb 9 09:50:27.419000 audit[4032]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=400014d670 a2=78 a3=0 items=0 ppid=4021 pid=4032 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:27.419000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3539303830383939376333656161663835366539306665313732393666 Feb 9 09:50:27.421000 audit: BPF prog-id=132 op=UNLOAD Feb 9 09:50:27.421000 audit: BPF prog-id=131 op=UNLOAD Feb 9 09:50:27.421000 audit[4032]: AVC avc: denied { bpf } for pid=4032 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.421000 audit[4032]: AVC avc: denied { bpf } for pid=4032 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.421000 audit[4032]: AVC avc: denied { bpf } for pid=4032 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.421000 audit[4032]: AVC avc: denied { perfmon } for pid=4032 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.421000 audit[4032]: AVC avc: denied { perfmon } for pid=4032 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.421000 audit[4032]: AVC avc: denied { perfmon } for pid=4032 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.421000 audit[4032]: AVC avc: denied { perfmon } for pid=4032 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.421000 audit[4032]: AVC avc: denied { perfmon } for pid=4032 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.421000 audit[4032]: AVC avc: denied { bpf } for pid=4032 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.421000 audit[4032]: AVC avc: denied { bpf } for pid=4032 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.421000 audit: BPF prog-id=133 op=LOAD Feb 9 09:50:27.421000 audit[4032]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=400014db40 a2=78 a3=0 items=0 ppid=4021 pid=4032 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:27.421000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3539303830383939376333656161663835366539306665313732393666 Feb 9 09:50:27.465580 env[1673]: time="2024-02-09T09:50:27.465517276Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:test-pod-1,Uid:a884a629-0d63-403d-92bf-d67918960be4,Namespace:default,Attempt:0,} returns sandbox id \"590808997c3eaaf856e90fe17296f747df992c97f05f55460b718b0ddee223eb\"" Feb 9 09:50:27.468838 env[1673]: time="2024-02-09T09:50:27.468776054Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\"" Feb 9 09:50:27.837512 kubelet[2129]: E0209 09:50:27.837444 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:27.843115 env[1673]: time="2024-02-09T09:50:27.843052383Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:50:27.845562 env[1673]: time="2024-02-09T09:50:27.845500813Z" level=info msg="ImageUpdate event &ImageUpdate{Name:sha256:01bfff6bfbc6f0e8a890bad9e22c5392e6dbfd67def93467db6231d4be1b719b,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:50:27.848579 env[1673]: time="2024-02-09T09:50:27.848533307Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:50:27.851387 env[1673]: time="2024-02-09T09:50:27.851338930Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx@sha256:e34a272f01984c973b1e034e197c02f77dda18981038e3a54e957554ada4fec6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 09:50:27.852819 env[1673]: time="2024-02-09T09:50:27.852775437Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\" returns image reference \"sha256:01bfff6bfbc6f0e8a890bad9e22c5392e6dbfd67def93467db6231d4be1b719b\"" Feb 9 09:50:27.857371 env[1673]: time="2024-02-09T09:50:27.857317853Z" level=info msg="CreateContainer within sandbox \"590808997c3eaaf856e90fe17296f747df992c97f05f55460b718b0ddee223eb\" for container &ContainerMetadata{Name:test,Attempt:0,}" Feb 9 09:50:27.883275 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3067343881.mount: Deactivated successfully. Feb 9 09:50:27.897199 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1424621376.mount: Deactivated successfully. Feb 9 09:50:27.904184 env[1673]: time="2024-02-09T09:50:27.904045534Z" level=info msg="CreateContainer within sandbox \"590808997c3eaaf856e90fe17296f747df992c97f05f55460b718b0ddee223eb\" for &ContainerMetadata{Name:test,Attempt:0,} returns container id \"5f54c5592053effe3713253fbca5adc4541673431a0dce33209c38fb7d2abfdd\"" Feb 9 09:50:27.905985 env[1673]: time="2024-02-09T09:50:27.905907513Z" level=info msg="StartContainer for \"5f54c5592053effe3713253fbca5adc4541673431a0dce33209c38fb7d2abfdd\"" Feb 9 09:50:27.937601 systemd[1]: Started cri-containerd-5f54c5592053effe3713253fbca5adc4541673431a0dce33209c38fb7d2abfdd.scope. Feb 9 09:50:27.964000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.964000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.964000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.964000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.964000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.964000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.964000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.964000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.964000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.964000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.964000 audit: BPF prog-id=134 op=LOAD Feb 9 09:50:27.966000 audit[4064]: AVC avc: denied { bpf } for pid=4064 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.966000 audit[4064]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=400014db38 a2=10 a3=0 items=0 ppid=4021 pid=4064 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:27.966000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3566353463353539323035336566666533373133323533666263613561 Feb 9 09:50:27.966000 audit[4064]: AVC avc: denied { perfmon } for pid=4064 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.966000 audit[4064]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=400014d5a0 a2=3c a3=0 items=0 ppid=4021 pid=4064 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:27.966000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3566353463353539323035336566666533373133323533666263613561 Feb 9 09:50:27.966000 audit[4064]: AVC avc: denied { bpf } for pid=4064 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.966000 audit[4064]: AVC avc: denied { bpf } for pid=4064 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.966000 audit[4064]: AVC avc: denied { bpf } for pid=4064 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.966000 audit[4064]: AVC avc: denied { perfmon } for pid=4064 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.966000 audit[4064]: AVC avc: denied { perfmon } for pid=4064 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.966000 audit[4064]: AVC avc: denied { perfmon } for pid=4064 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.966000 audit[4064]: AVC avc: denied { perfmon } for pid=4064 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.966000 audit[4064]: AVC avc: denied { perfmon } for pid=4064 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.966000 audit[4064]: AVC avc: denied { bpf } for pid=4064 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.966000 audit[4064]: AVC avc: denied { bpf } for pid=4064 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.966000 audit: BPF prog-id=135 op=LOAD Feb 9 09:50:27.966000 audit[4064]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=400014d8e0 a2=78 a3=0 items=0 ppid=4021 pid=4064 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:27.966000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3566353463353539323035336566666533373133323533666263613561 Feb 9 09:50:27.968000 audit[4064]: AVC avc: denied { bpf } for pid=4064 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.968000 audit[4064]: AVC avc: denied { bpf } for pid=4064 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.968000 audit[4064]: AVC avc: denied { perfmon } for pid=4064 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.968000 audit[4064]: AVC avc: denied { perfmon } for pid=4064 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.968000 audit[4064]: AVC avc: denied { perfmon } for pid=4064 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.968000 audit[4064]: AVC avc: denied { perfmon } for pid=4064 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.968000 audit[4064]: AVC avc: denied { perfmon } for pid=4064 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.968000 audit[4064]: AVC avc: denied { bpf } for pid=4064 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.968000 audit[4064]: AVC avc: denied { bpf } for pid=4064 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.968000 audit: BPF prog-id=136 op=LOAD Feb 9 09:50:27.968000 audit[4064]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=400014d670 a2=78 a3=0 items=0 ppid=4021 pid=4064 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:27.968000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3566353463353539323035336566666533373133323533666263613561 Feb 9 09:50:27.969000 audit: BPF prog-id=136 op=UNLOAD Feb 9 09:50:27.969000 audit: BPF prog-id=135 op=UNLOAD Feb 9 09:50:27.969000 audit[4064]: AVC avc: denied { bpf } for pid=4064 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.969000 audit[4064]: AVC avc: denied { bpf } for pid=4064 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.969000 audit[4064]: AVC avc: denied { bpf } for pid=4064 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.969000 audit[4064]: AVC avc: denied { perfmon } for pid=4064 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.969000 audit[4064]: AVC avc: denied { perfmon } for pid=4064 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.969000 audit[4064]: AVC avc: denied { perfmon } for pid=4064 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.969000 audit[4064]: AVC avc: denied { perfmon } for pid=4064 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.969000 audit[4064]: AVC avc: denied { perfmon } for pid=4064 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.969000 audit[4064]: AVC avc: denied { bpf } for pid=4064 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.969000 audit[4064]: AVC avc: denied { bpf } for pid=4064 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 09:50:27.969000 audit: BPF prog-id=137 op=LOAD Feb 9 09:50:27.969000 audit[4064]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=400014db40 a2=78 a3=0 items=0 ppid=4021 pid=4064 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 09:50:27.969000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3566353463353539323035336566666533373133323533666263613561 Feb 9 09:50:28.002066 env[1673]: time="2024-02-09T09:50:28.001993777Z" level=info msg="StartContainer for \"5f54c5592053effe3713253fbca5adc4541673431a0dce33209c38fb7d2abfdd\" returns successfully" Feb 9 09:50:28.280018 kubelet[2129]: I0209 09:50:28.279963 2129 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="default/test-pod-1" podStartSLOduration=34.894204281 podCreationTimestamp="2024-02-09 09:49:53 +0000 UTC" firstStartedPulling="2024-02-09 09:50:27.467530071 +0000 UTC m=+77.384181432" lastFinishedPulling="2024-02-09 09:50:27.853238312 +0000 UTC m=+77.769889673" observedRunningTime="2024-02-09 09:50:28.279878886 +0000 UTC m=+78.196530283" watchObservedRunningTime="2024-02-09 09:50:28.279912522 +0000 UTC m=+78.196563871" Feb 9 09:50:28.838070 kubelet[2129]: E0209 09:50:28.838030 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:29.095796 systemd-networkd[1460]: cali5ec59c6bf6e: Gained IPv6LL Feb 9 09:50:29.839621 kubelet[2129]: E0209 09:50:29.839578 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:30.776221 kubelet[2129]: E0209 09:50:30.776115 2129 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:30.840495 kubelet[2129]: E0209 09:50:30.840435 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:31.841605 kubelet[2129]: E0209 09:50:31.841540 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:32.842382 kubelet[2129]: E0209 09:50:32.842318 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:33.842726 kubelet[2129]: E0209 09:50:33.842681 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:34.843993 kubelet[2129]: E0209 09:50:34.843949 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:35.845077 kubelet[2129]: E0209 09:50:35.845014 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:36.845889 kubelet[2129]: E0209 09:50:36.845848 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:37.847025 kubelet[2129]: E0209 09:50:37.846962 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:38.847990 kubelet[2129]: E0209 09:50:38.847923 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:39.849121 kubelet[2129]: E0209 09:50:39.849080 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:40.849995 kubelet[2129]: E0209 09:50:40.849942 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:41.851014 kubelet[2129]: E0209 09:50:41.850944 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:42.851804 kubelet[2129]: E0209 09:50:42.851739 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:43.852551 kubelet[2129]: E0209 09:50:43.852489 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:44.852741 kubelet[2129]: E0209 09:50:44.852679 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:45.853913 kubelet[2129]: E0209 09:50:45.853874 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:46.855257 kubelet[2129]: E0209 09:50:46.855214 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:47.856780 kubelet[2129]: E0209 09:50:47.856713 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:48.857869 kubelet[2129]: E0209 09:50:48.857814 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:49.858951 kubelet[2129]: E0209 09:50:49.858911 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:50.007694 systemd[1]: run-containerd-runc-k8s.io-dcc0bcb5528f0c8e3839ad8a18009acbf87d7b01926421bd701fba828ab7968c-runc.IJsYHL.mount: Deactivated successfully. Feb 9 09:50:50.775619 kubelet[2129]: E0209 09:50:50.775576 2129 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:50.859779 kubelet[2129]: E0209 09:50:50.859719 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:51.860688 kubelet[2129]: E0209 09:50:51.860618 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:52.861331 kubelet[2129]: E0209 09:50:52.861266 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:53.589830 kubelet[2129]: E0209 09:50:53.589712 2129 controller.go:193] "Failed to update lease" err="Put \"https://172.31.21.69:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.26.157?timeout=10s\": net/http: request canceled (Client.Timeout exceeded while awaiting headers)" Feb 9 09:50:53.862044 kubelet[2129]: E0209 09:50:53.861922 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:54.863784 kubelet[2129]: E0209 09:50:54.863743 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:54.956246 systemd[1]: run-containerd-runc-k8s.io-f75c166fc48a3b54bd4cd2db6b2ac26f238a2e6c00cf651769cdf5d5f20384de-runc.LCH0Hh.mount: Deactivated successfully. Feb 9 09:50:55.864760 kubelet[2129]: E0209 09:50:55.864722 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:56.866616 kubelet[2129]: E0209 09:50:56.866546 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:57.866779 kubelet[2129]: E0209 09:50:57.866737 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:58.867618 kubelet[2129]: E0209 09:50:58.867550 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:50:59.868369 kubelet[2129]: E0209 09:50:59.868307 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:51:00.868945 kubelet[2129]: E0209 09:51:00.868904 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:51:01.870759 kubelet[2129]: E0209 09:51:01.870716 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:51:02.871995 kubelet[2129]: E0209 09:51:02.871954 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:51:03.590198 kubelet[2129]: E0209 09:51:03.590122 2129 controller.go:193] "Failed to update lease" err="Put \"https://172.31.21.69:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.26.157?timeout=10s\": net/http: request canceled (Client.Timeout exceeded while awaiting headers)" Feb 9 09:51:03.873205 kubelet[2129]: E0209 09:51:03.873040 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:51:04.259435 kubelet[2129]: E0209 09:51:04.259365 2129 controller.go:193] "Failed to update lease" err="Put \"https://172.31.21.69:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.26.157?timeout=10s\": unexpected EOF" Feb 9 09:51:04.260827 kubelet[2129]: E0209 09:51:04.260753 2129 controller.go:193] "Failed to update lease" err="Put \"https://172.31.21.69:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.26.157?timeout=10s\": dial tcp 172.31.21.69:6443: connect: connection refused" Feb 9 09:51:04.261541 kubelet[2129]: E0209 09:51:04.261477 2129 controller.go:193] "Failed to update lease" err="Put \"https://172.31.21.69:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.26.157?timeout=10s\": dial tcp 172.31.21.69:6443: connect: connection refused" Feb 9 09:51:04.261678 kubelet[2129]: I0209 09:51:04.261546 2129 controller.go:116] "failed to update lease using latest lease, fallback to ensure lease" err="failed 5 attempts to update lease" Feb 9 09:51:04.262167 kubelet[2129]: E0209 09:51:04.262105 2129 controller.go:146] "Failed to ensure lease exists, will retry" err="Get \"https://172.31.21.69:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.26.157?timeout=10s\": dial tcp 172.31.21.69:6443: connect: connection refused" interval="200ms" Feb 9 09:51:04.464046 kubelet[2129]: E0209 09:51:04.463983 2129 controller.go:146] "Failed to ensure lease exists, will retry" err="Get \"https://172.31.21.69:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.26.157?timeout=10s\": dial tcp 172.31.21.69:6443: connect: connection refused" interval="400ms" Feb 9 09:51:04.517495 kubelet[2129]: E0209 09:51:04.516699 2129 kubelet_node_status.go:540] "Error updating node status, will retry" err="error getting node \"172.31.26.157\": Get \"https://172.31.21.69:6443/api/v1/nodes/172.31.26.157?resourceVersion=0&timeout=10s\": dial tcp 172.31.21.69:6443: connect: connection refused" Feb 9 09:51:04.518254 kubelet[2129]: E0209 09:51:04.518204 2129 kubelet_node_status.go:540] "Error updating node status, will retry" err="error getting node \"172.31.26.157\": Get \"https://172.31.21.69:6443/api/v1/nodes/172.31.26.157?timeout=10s\": dial tcp 172.31.21.69:6443: connect: connection refused" Feb 9 09:51:04.518719 kubelet[2129]: E0209 09:51:04.518693 2129 kubelet_node_status.go:540] "Error updating node status, will retry" err="error getting node \"172.31.26.157\": Get \"https://172.31.21.69:6443/api/v1/nodes/172.31.26.157?timeout=10s\": dial tcp 172.31.21.69:6443: connect: connection refused" Feb 9 09:51:04.519336 kubelet[2129]: E0209 09:51:04.519311 2129 kubelet_node_status.go:540] "Error updating node status, will retry" err="error getting node \"172.31.26.157\": Get \"https://172.31.21.69:6443/api/v1/nodes/172.31.26.157?timeout=10s\": dial tcp 172.31.21.69:6443: connect: connection refused" Feb 9 09:51:04.519949 kubelet[2129]: E0209 09:51:04.519914 2129 kubelet_node_status.go:540] "Error updating node status, will retry" err="error getting node \"172.31.26.157\": Get \"https://172.31.21.69:6443/api/v1/nodes/172.31.26.157?timeout=10s\": dial tcp 172.31.21.69:6443: connect: connection refused" Feb 9 09:51:04.520048 kubelet[2129]: E0209 09:51:04.519953 2129 kubelet_node_status.go:527] "Unable to update node status" err="update node status exceeds retry count" Feb 9 09:51:04.866222 kubelet[2129]: E0209 09:51:04.865405 2129 controller.go:146] "Failed to ensure lease exists, will retry" err="Get \"https://172.31.21.69:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.26.157?timeout=10s\": dial tcp 172.31.21.69:6443: connect: connection refused" interval="800ms" Feb 9 09:51:04.873542 kubelet[2129]: E0209 09:51:04.873493 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:51:05.536000 audit[3759]: AVC avc: denied { watch } for pid=3759 comm="apiserver" path="/calico-apiserver-certs/..2024_02_09_09_49_54.2974875980/tls.crt" dev="tmpfs" ino=4 scontext=system_u:system_r:svirt_lxc_net_t:s0:c40,c614 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c40,c614 tclass=file permissive=0 Feb 9 09:51:05.538851 kernel: kauditd_printk_skb: 473 callbacks suppressed Feb 9 09:51:05.538984 kernel: audit: type=1400 audit(1707472265.536:973): avc: denied { watch } for pid=3759 comm="apiserver" path="/calico-apiserver-certs/..2024_02_09_09_49_54.2974875980/tls.crt" dev="tmpfs" ino=4 scontext=system_u:system_r:svirt_lxc_net_t:s0:c40,c614 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c40,c614 tclass=file permissive=0 Feb 9 09:51:05.536000 audit[3759]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=8 a1=4001a34720 a2=fc6 a3=0 items=0 ppid=3643 pid=3759 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="apiserver" exe="/code/apiserver" subj=system_u:system_r:svirt_lxc_net_t:s0:c40,c614 key=(null) Feb 9 09:51:05.566559 kernel: audit: type=1300 audit(1707472265.536:973): arch=c00000b7 syscall=27 success=no exit=-13 a0=8 a1=4001a34720 a2=fc6 a3=0 items=0 ppid=3643 pid=3759 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="apiserver" exe="/code/apiserver" subj=system_u:system_r:svirt_lxc_net_t:s0:c40,c614 key=(null) Feb 9 09:51:05.536000 audit: PROCTITLE proctitle=2E2F617069736572766572002D2D7365637572652D706F72743D35343433002D2D746C732D707269766174652D6B65792D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C732E6B6579002D2D746C732D636572742D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C Feb 9 09:51:05.578204 kernel: audit: type=1327 audit(1707472265.536:973): proctitle=2E2F617069736572766572002D2D7365637572652D706F72743D35343433002D2D746C732D707269766174652D6B65792D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C732E6B6579002D2D746C732D636572742D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C Feb 9 09:51:05.874652 kubelet[2129]: E0209 09:51:05.874505 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:51:06.875501 kubelet[2129]: E0209 09:51:06.875432 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:51:07.876018 kubelet[2129]: E0209 09:51:07.875955 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:51:08.877191 kubelet[2129]: E0209 09:51:08.877104 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:51:09.877408 kubelet[2129]: E0209 09:51:09.877344 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:51:10.776061 kubelet[2129]: E0209 09:51:10.775994 2129 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:51:10.878433 kubelet[2129]: E0209 09:51:10.878391 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:51:11.879418 kubelet[2129]: E0209 09:51:11.879376 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:51:12.880173 kubelet[2129]: E0209 09:51:12.880089 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:51:13.880440 kubelet[2129]: E0209 09:51:13.880373 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:51:14.881507 kubelet[2129]: E0209 09:51:14.881439 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:51:15.667289 kubelet[2129]: E0209 09:51:15.667225 2129 controller.go:146] "Failed to ensure lease exists, will retry" err="Get \"https://172.31.21.69:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.26.157?timeout=10s\": net/http: request canceled while waiting for connection (Client.Timeout exceeded while awaiting headers)" interval="1.6s" Feb 9 09:51:15.882470 kubelet[2129]: E0209 09:51:15.882432 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:51:16.884082 kubelet[2129]: E0209 09:51:16.884012 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:51:17.885271 kubelet[2129]: E0209 09:51:17.885208 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:51:18.885718 kubelet[2129]: E0209 09:51:18.885649 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:51:19.886088 kubelet[2129]: E0209 09:51:19.886047 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:51:20.012303 systemd[1]: run-containerd-runc-k8s.io-dcc0bcb5528f0c8e3839ad8a18009acbf87d7b01926421bd701fba828ab7968c-runc.zWBCgw.mount: Deactivated successfully. Feb 9 09:51:20.887695 kubelet[2129]: E0209 09:51:20.887635 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:51:21.887836 kubelet[2129]: E0209 09:51:21.887759 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:51:22.888803 kubelet[2129]: E0209 09:51:22.888741 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:51:23.889258 kubelet[2129]: E0209 09:51:23.889218 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:51:24.677384 kubelet[2129]: E0209 09:51:24.677321 2129 kubelet_node_status.go:540] "Error updating node status, will retry" err="error getting node \"172.31.26.157\": Get \"https://172.31.21.69:6443/api/v1/nodes/172.31.26.157?resourceVersion=0&timeout=10s\": net/http: request canceled while waiting for connection (Client.Timeout exceeded while awaiting headers)" Feb 9 09:51:24.890630 kubelet[2129]: E0209 09:51:24.890593 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:51:24.961712 systemd[1]: run-containerd-runc-k8s.io-f75c166fc48a3b54bd4cd2db6b2ac26f238a2e6c00cf651769cdf5d5f20384de-runc.MJqTwE.mount: Deactivated successfully. Feb 9 09:51:25.892345 kubelet[2129]: E0209 09:51:25.892291 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:51:26.893257 kubelet[2129]: E0209 09:51:26.893187 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:51:27.267600 kubelet[2129]: E0209 09:51:27.267546 2129 controller.go:146] "Failed to ensure lease exists, will retry" err="Get \"https://172.31.21.69:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.26.157?timeout=10s\": net/http: request canceled while waiting for connection (Client.Timeout exceeded while awaiting headers)" interval="3.2s" Feb 9 09:51:27.893668 kubelet[2129]: E0209 09:51:27.893608 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 09:51:28.894589 kubelet[2129]: E0209 09:51:28.894543 2129 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests"