Feb 9 10:11:38.950626 kernel: Booting Linux on physical CPU 0x0000000000 [0x410fd083] Feb 9 10:11:38.950664 kernel: Linux version 5.15.148-flatcar (build@pony-truck.infra.kinvolk.io) (aarch64-cros-linux-gnu-gcc (Gentoo Hardened 11.3.1_p20221209 p3) 11.3.1 20221209, GNU ld (Gentoo 2.39 p5) 2.39.0) #1 SMP PREEMPT Fri Feb 9 08:56:26 -00 2024 Feb 9 10:11:38.950686 kernel: efi: EFI v2.70 by EDK II Feb 9 10:11:38.950702 kernel: efi: SMBIOS=0x7bed0000 SMBIOS 3.0=0x7beb0000 ACPI=0x786e0000 ACPI 2.0=0x786e0014 MEMATTR=0x7ac1aa98 MEMRESERVE=0x71a8cf98 Feb 9 10:11:38.950715 kernel: ACPI: Early table checksum verification disabled Feb 9 10:11:38.950729 kernel: ACPI: RSDP 0x00000000786E0014 000024 (v02 AMAZON) Feb 9 10:11:38.950745 kernel: ACPI: XSDT 0x00000000786D00E8 000064 (v01 AMAZON AMZNFACP 00000001 01000013) Feb 9 10:11:38.950759 kernel: ACPI: FACP 0x00000000786B0000 000114 (v06 AMAZON AMZNFACP 00000001 AMZN 00000001) Feb 9 10:11:38.950773 kernel: ACPI: DSDT 0x0000000078640000 00154F (v02 AMAZON AMZNDSDT 00000001 INTL 20160527) Feb 9 10:11:38.950786 kernel: ACPI: APIC 0x00000000786C0000 000108 (v04 AMAZON AMZNAPIC 00000001 AMZN 00000001) Feb 9 10:11:38.950805 kernel: ACPI: SPCR 0x00000000786A0000 000050 (v02 AMAZON AMZNSPCR 00000001 AMZN 00000001) Feb 9 10:11:38.950818 kernel: ACPI: GTDT 0x0000000078690000 000060 (v02 AMAZON AMZNGTDT 00000001 AMZN 00000001) Feb 9 10:11:38.950832 kernel: ACPI: MCFG 0x0000000078680000 00003C (v02 AMAZON AMZNMCFG 00000001 AMZN 00000001) Feb 9 10:11:38.950846 kernel: ACPI: SLIT 0x0000000078670000 00002D (v01 AMAZON AMZNSLIT 00000001 AMZN 00000001) Feb 9 10:11:38.950862 kernel: ACPI: IORT 0x0000000078660000 000078 (v01 AMAZON AMZNIORT 00000001 AMZN 00000001) Feb 9 10:11:38.950882 kernel: ACPI: PPTT 0x0000000078650000 0000EC (v01 AMAZON AMZNPPTT 00000001 AMZN 00000001) Feb 9 10:11:38.950896 kernel: ACPI: SPCR: console: uart,mmio,0x90a0000,115200 Feb 9 10:11:38.950910 kernel: earlycon: uart0 at MMIO 0x00000000090a0000 (options '115200') Feb 9 10:11:38.950925 kernel: printk: bootconsole [uart0] enabled Feb 9 10:11:38.950939 kernel: NUMA: Failed to initialise from firmware Feb 9 10:11:38.950954 kernel: NUMA: Faking a node at [mem 0x0000000040000000-0x00000004b5ffffff] Feb 9 10:11:38.950969 kernel: NUMA: NODE_DATA [mem 0x4b5841900-0x4b5846fff] Feb 9 10:11:38.950983 kernel: Zone ranges: Feb 9 10:11:38.950998 kernel: DMA [mem 0x0000000040000000-0x00000000ffffffff] Feb 9 10:11:38.951012 kernel: DMA32 empty Feb 9 10:11:38.951026 kernel: Normal [mem 0x0000000100000000-0x00000004b5ffffff] Feb 9 10:11:38.951044 kernel: Movable zone start for each node Feb 9 10:11:38.951059 kernel: Early memory node ranges Feb 9 10:11:38.951074 kernel: node 0: [mem 0x0000000040000000-0x00000000786effff] Feb 9 10:11:38.951088 kernel: node 0: [mem 0x00000000786f0000-0x000000007872ffff] Feb 9 10:11:38.951102 kernel: node 0: [mem 0x0000000078730000-0x000000007bbfffff] Feb 9 10:11:38.951117 kernel: node 0: [mem 0x000000007bc00000-0x000000007bfdffff] Feb 9 10:11:38.951131 kernel: node 0: [mem 0x000000007bfe0000-0x000000007fffffff] Feb 9 10:11:38.951145 kernel: node 0: [mem 0x0000000400000000-0x00000004b5ffffff] Feb 9 10:11:38.951160 kernel: Initmem setup node 0 [mem 0x0000000040000000-0x00000004b5ffffff] Feb 9 10:11:38.951174 kernel: On node 0, zone Normal: 8192 pages in unavailable ranges Feb 9 10:11:38.951188 kernel: psci: probing for conduit method from ACPI. Feb 9 10:11:38.951203 kernel: psci: PSCIv1.0 detected in firmware. Feb 9 10:11:38.951221 kernel: psci: Using standard PSCI v0.2 function IDs Feb 9 10:11:38.951236 kernel: psci: Trusted OS migration not required Feb 9 10:11:38.951257 kernel: psci: SMC Calling Convention v1.1 Feb 9 10:11:38.951273 kernel: ACPI: SRAT not present Feb 9 10:11:38.951289 kernel: percpu: Embedded 29 pages/cpu s79960 r8192 d30632 u118784 Feb 9 10:11:38.951308 kernel: pcpu-alloc: s79960 r8192 d30632 u118784 alloc=29*4096 Feb 9 10:11:38.951324 kernel: pcpu-alloc: [0] 0 [0] 1 Feb 9 10:11:38.951339 kernel: Detected PIPT I-cache on CPU0 Feb 9 10:11:38.951354 kernel: CPU features: detected: GIC system register CPU interface Feb 9 10:11:38.951369 kernel: CPU features: detected: Spectre-v2 Feb 9 10:11:38.955680 kernel: CPU features: detected: Spectre-v3a Feb 9 10:11:38.955716 kernel: CPU features: detected: Spectre-BHB Feb 9 10:11:38.955733 kernel: CPU features: kernel page table isolation forced ON by KASLR Feb 9 10:11:38.955749 kernel: CPU features: detected: Kernel page table isolation (KPTI) Feb 9 10:11:38.955765 kernel: CPU features: detected: ARM erratum 1742098 Feb 9 10:11:38.955780 kernel: CPU features: detected: ARM errata 1165522, 1319367, or 1530923 Feb 9 10:11:38.955804 kernel: Built 1 zonelists, mobility grouping on. Total pages: 991872 Feb 9 10:11:38.955819 kernel: Policy zone: Normal Feb 9 10:11:38.955837 kernel: Kernel command line: BOOT_IMAGE=/flatcar/vmlinuz-a mount.usr=/dev/mapper/usr verity.usr=PARTUUID=7130c94a-213a-4e5a-8e26-6cce9662f132 rootflags=rw mount.usrflags=ro consoleblank=0 root=LABEL=ROOT console=tty1 console=ttyS0,115200n8 earlycon flatcar.first_boot=detected acpi=force flatcar.oem.id=ec2 modprobe.blacklist=xen_fbfront net.ifnames=0 nvme_core.io_timeout=4294967295 verity.usrhash=14ffd9340f674a8d04c9d43eed85484d8b2b7e2bcd8b36a975c9ac66063d537d Feb 9 10:11:38.955854 kernel: Unknown kernel command line parameters "BOOT_IMAGE=/flatcar/vmlinuz-a", will be passed to user space. Feb 9 10:11:38.955870 kernel: Dentry cache hash table entries: 524288 (order: 10, 4194304 bytes, linear) Feb 9 10:11:38.955885 kernel: Inode-cache hash table entries: 262144 (order: 9, 2097152 bytes, linear) Feb 9 10:11:38.955901 kernel: mem auto-init: stack:off, heap alloc:off, heap free:off Feb 9 10:11:38.955916 kernel: software IO TLB: mapped [mem 0x000000007c000000-0x0000000080000000] (64MB) Feb 9 10:11:38.955932 kernel: Memory: 3826316K/4030464K available (9792K kernel code, 2092K rwdata, 7556K rodata, 34688K init, 778K bss, 204148K reserved, 0K cma-reserved) Feb 9 10:11:38.955948 kernel: SLUB: HWalign=64, Order=0-3, MinObjects=0, CPUs=2, Nodes=1 Feb 9 10:11:38.955967 kernel: trace event string verifier disabled Feb 9 10:11:38.955983 kernel: rcu: Preemptible hierarchical RCU implementation. Feb 9 10:11:38.955998 kernel: rcu: RCU event tracing is enabled. Feb 9 10:11:38.956014 kernel: rcu: RCU restricting CPUs from NR_CPUS=512 to nr_cpu_ids=2. Feb 9 10:11:38.956030 kernel: Trampoline variant of Tasks RCU enabled. Feb 9 10:11:38.956045 kernel: Tracing variant of Tasks RCU enabled. Feb 9 10:11:38.956060 kernel: rcu: RCU calculated value of scheduler-enlistment delay is 100 jiffies. Feb 9 10:11:38.956076 kernel: rcu: Adjusting geometry for rcu_fanout_leaf=16, nr_cpu_ids=2 Feb 9 10:11:38.956091 kernel: NR_IRQS: 64, nr_irqs: 64, preallocated irqs: 0 Feb 9 10:11:38.956106 kernel: GICv3: 96 SPIs implemented Feb 9 10:11:38.956121 kernel: GICv3: 0 Extended SPIs implemented Feb 9 10:11:38.956136 kernel: GICv3: Distributor has no Range Selector support Feb 9 10:11:38.956155 kernel: Root IRQ handler: gic_handle_irq Feb 9 10:11:38.956170 kernel: GICv3: 16 PPIs implemented Feb 9 10:11:38.956184 kernel: GICv3: CPU0: found redistributor 0 region 0:0x0000000010200000 Feb 9 10:11:38.956199 kernel: ACPI: SRAT not present Feb 9 10:11:38.956214 kernel: ITS [mem 0x10080000-0x1009ffff] Feb 9 10:11:38.956230 kernel: ITS@0x0000000010080000: allocated 8192 Devices @4000a0000 (indirect, esz 8, psz 64K, shr 1) Feb 9 10:11:38.956245 kernel: ITS@0x0000000010080000: allocated 8192 Interrupt Collections @4000b0000 (flat, esz 8, psz 64K, shr 1) Feb 9 10:11:38.956261 kernel: GICv3: using LPI property table @0x00000004000c0000 Feb 9 10:11:38.956276 kernel: ITS: Using hypervisor restricted LPI range [128] Feb 9 10:11:38.956292 kernel: GICv3: CPU0: using allocated LPI pending table @0x00000004000d0000 Feb 9 10:11:38.956307 kernel: arch_timer: cp15 timer(s) running at 83.33MHz (virt). Feb 9 10:11:38.956326 kernel: clocksource: arch_sys_counter: mask: 0xffffffffffffff max_cycles: 0x13381ebeec, max_idle_ns: 440795203145 ns Feb 9 10:11:38.956342 kernel: sched_clock: 56 bits at 83MHz, resolution 12ns, wraps every 4398046511100ns Feb 9 10:11:38.956357 kernel: Console: colour dummy device 80x25 Feb 9 10:11:38.956373 kernel: printk: console [tty1] enabled Feb 9 10:11:38.956435 kernel: ACPI: Core revision 20210730 Feb 9 10:11:38.956454 kernel: Calibrating delay loop (skipped), value calculated using timer frequency.. 166.66 BogoMIPS (lpj=83333) Feb 9 10:11:38.956471 kernel: pid_max: default: 32768 minimum: 301 Feb 9 10:11:38.956487 kernel: LSM: Security Framework initializing Feb 9 10:11:38.956502 kernel: SELinux: Initializing. Feb 9 10:11:38.956519 kernel: Mount-cache hash table entries: 8192 (order: 4, 65536 bytes, linear) Feb 9 10:11:38.956543 kernel: Mountpoint-cache hash table entries: 8192 (order: 4, 65536 bytes, linear) Feb 9 10:11:38.956558 kernel: rcu: Hierarchical SRCU implementation. Feb 9 10:11:38.956574 kernel: Platform MSI: ITS@0x10080000 domain created Feb 9 10:11:38.956590 kernel: PCI/MSI: ITS@0x10080000 domain created Feb 9 10:11:38.956605 kernel: Remapping and enabling EFI services. Feb 9 10:11:38.956621 kernel: smp: Bringing up secondary CPUs ... Feb 9 10:11:38.956636 kernel: Detected PIPT I-cache on CPU1 Feb 9 10:11:38.956652 kernel: GICv3: CPU1: found redistributor 1 region 0:0x0000000010220000 Feb 9 10:11:38.956668 kernel: GICv3: CPU1: using allocated LPI pending table @0x00000004000e0000 Feb 9 10:11:38.956688 kernel: CPU1: Booted secondary processor 0x0000000001 [0x410fd083] Feb 9 10:11:38.956703 kernel: smp: Brought up 1 node, 2 CPUs Feb 9 10:11:38.956719 kernel: SMP: Total of 2 processors activated. Feb 9 10:11:38.956734 kernel: CPU features: detected: 32-bit EL0 Support Feb 9 10:11:38.956750 kernel: CPU features: detected: 32-bit EL1 Support Feb 9 10:11:38.956765 kernel: CPU features: detected: CRC32 instructions Feb 9 10:11:38.956781 kernel: CPU: All CPU(s) started at EL1 Feb 9 10:11:38.956796 kernel: alternatives: patching kernel code Feb 9 10:11:38.956811 kernel: devtmpfs: initialized Feb 9 10:11:38.956831 kernel: KASLR disabled due to lack of seed Feb 9 10:11:38.956847 kernel: clocksource: jiffies: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 1911260446275000 ns Feb 9 10:11:38.956863 kernel: futex hash table entries: 512 (order: 3, 32768 bytes, linear) Feb 9 10:11:38.956890 kernel: pinctrl core: initialized pinctrl subsystem Feb 9 10:11:38.956910 kernel: SMBIOS 3.0.0 present. Feb 9 10:11:38.956926 kernel: DMI: Amazon EC2 a1.large/, BIOS 1.0 11/1/2018 Feb 9 10:11:38.956943 kernel: NET: Registered PF_NETLINK/PF_ROUTE protocol family Feb 9 10:11:38.956959 kernel: DMA: preallocated 512 KiB GFP_KERNEL pool for atomic allocations Feb 9 10:11:38.956975 kernel: DMA: preallocated 512 KiB GFP_KERNEL|GFP_DMA pool for atomic allocations Feb 9 10:11:38.956992 kernel: DMA: preallocated 512 KiB GFP_KERNEL|GFP_DMA32 pool for atomic allocations Feb 9 10:11:38.957008 kernel: audit: initializing netlink subsys (disabled) Feb 9 10:11:38.957024 kernel: audit: type=2000 audit(0.248:1): state=initialized audit_enabled=0 res=1 Feb 9 10:11:38.957045 kernel: thermal_sys: Registered thermal governor 'step_wise' Feb 9 10:11:38.957061 kernel: cpuidle: using governor menu Feb 9 10:11:38.957077 kernel: hw-breakpoint: found 6 breakpoint and 4 watchpoint registers. Feb 9 10:11:38.957093 kernel: ASID allocator initialised with 32768 entries Feb 9 10:11:38.957109 kernel: ACPI: bus type PCI registered Feb 9 10:11:38.957130 kernel: acpiphp: ACPI Hot Plug PCI Controller Driver version: 0.5 Feb 9 10:11:38.957146 kernel: Serial: AMBA PL011 UART driver Feb 9 10:11:38.957162 kernel: HugeTLB registered 1.00 GiB page size, pre-allocated 0 pages Feb 9 10:11:38.957179 kernel: HugeTLB registered 32.0 MiB page size, pre-allocated 0 pages Feb 9 10:11:38.957195 kernel: HugeTLB registered 2.00 MiB page size, pre-allocated 0 pages Feb 9 10:11:38.957211 kernel: HugeTLB registered 64.0 KiB page size, pre-allocated 0 pages Feb 9 10:11:38.957227 kernel: cryptd: max_cpu_qlen set to 1000 Feb 9 10:11:38.957243 kernel: alg: No test for fips(ansi_cprng) (fips_ansi_cprng) Feb 9 10:11:38.957259 kernel: ACPI: Added _OSI(Module Device) Feb 9 10:11:38.957279 kernel: ACPI: Added _OSI(Processor Device) Feb 9 10:11:38.957295 kernel: ACPI: Added _OSI(3.0 _SCP Extensions) Feb 9 10:11:38.957311 kernel: ACPI: Added _OSI(Processor Aggregator Device) Feb 9 10:11:38.957327 kernel: ACPI: Added _OSI(Linux-Dell-Video) Feb 9 10:11:38.957344 kernel: ACPI: Added _OSI(Linux-Lenovo-NV-HDMI-Audio) Feb 9 10:11:38.957360 kernel: ACPI: Added _OSI(Linux-HPI-Hybrid-Graphics) Feb 9 10:11:38.957376 kernel: ACPI: 1 ACPI AML tables successfully acquired and loaded Feb 9 10:11:38.957429 kernel: ACPI: Interpreter enabled Feb 9 10:11:38.957448 kernel: ACPI: Using GIC for interrupt routing Feb 9 10:11:38.957470 kernel: ACPI: MCFG table detected, 1 entries Feb 9 10:11:38.957487 kernel: ACPI: PCI Root Bridge [PCI0] (domain 0000 [bus 00-0f]) Feb 9 10:11:38.957794 kernel: acpi PNP0A08:00: _OSC: OS supports [ExtendedConfig ASPM ClockPM Segments MSI HPX-Type3] Feb 9 10:11:38.957998 kernel: acpi PNP0A08:00: _OSC: platform does not support [LTR] Feb 9 10:11:38.958195 kernel: acpi PNP0A08:00: _OSC: OS now controls [PCIeHotplug PME AER PCIeCapability] Feb 9 10:11:38.958410 kernel: acpi PNP0A08:00: ECAM area [mem 0x20000000-0x20ffffff] reserved by PNP0C02:00 Feb 9 10:11:38.958616 kernel: acpi PNP0A08:00: ECAM at [mem 0x20000000-0x20ffffff] for [bus 00-0f] Feb 9 10:11:38.958645 kernel: ACPI: Remapped I/O 0x000000001fff0000 to [io 0x0000-0xffff window] Feb 9 10:11:38.958662 kernel: acpiphp: Slot [1] registered Feb 9 10:11:38.958678 kernel: acpiphp: Slot [2] registered Feb 9 10:11:38.958695 kernel: acpiphp: Slot [3] registered Feb 9 10:11:38.958711 kernel: acpiphp: Slot [4] registered Feb 9 10:11:38.958727 kernel: acpiphp: Slot [5] registered Feb 9 10:11:38.958743 kernel: acpiphp: Slot [6] registered Feb 9 10:11:38.958759 kernel: acpiphp: Slot [7] registered Feb 9 10:11:38.958775 kernel: acpiphp: Slot [8] registered Feb 9 10:11:38.958795 kernel: acpiphp: Slot [9] registered Feb 9 10:11:38.958811 kernel: acpiphp: Slot [10] registered Feb 9 10:11:38.958827 kernel: acpiphp: Slot [11] registered Feb 9 10:11:38.958843 kernel: acpiphp: Slot [12] registered Feb 9 10:11:38.958859 kernel: acpiphp: Slot [13] registered Feb 9 10:11:38.958875 kernel: acpiphp: Slot [14] registered Feb 9 10:11:38.958891 kernel: acpiphp: Slot [15] registered Feb 9 10:11:38.958907 kernel: acpiphp: Slot [16] registered Feb 9 10:11:38.958923 kernel: acpiphp: Slot [17] registered Feb 9 10:11:38.958939 kernel: acpiphp: Slot [18] registered Feb 9 10:11:38.958959 kernel: acpiphp: Slot [19] registered Feb 9 10:11:38.958975 kernel: acpiphp: Slot [20] registered Feb 9 10:11:38.958991 kernel: acpiphp: Slot [21] registered Feb 9 10:11:38.959007 kernel: acpiphp: Slot [22] registered Feb 9 10:11:38.959022 kernel: acpiphp: Slot [23] registered Feb 9 10:11:38.959038 kernel: acpiphp: Slot [24] registered Feb 9 10:11:38.959054 kernel: acpiphp: Slot [25] registered Feb 9 10:11:38.959071 kernel: acpiphp: Slot [26] registered Feb 9 10:11:38.959087 kernel: acpiphp: Slot [27] registered Feb 9 10:11:38.959107 kernel: acpiphp: Slot [28] registered Feb 9 10:11:38.959123 kernel: acpiphp: Slot [29] registered Feb 9 10:11:38.959139 kernel: acpiphp: Slot [30] registered Feb 9 10:11:38.959155 kernel: acpiphp: Slot [31] registered Feb 9 10:11:38.959171 kernel: PCI host bridge to bus 0000:00 Feb 9 10:11:38.959374 kernel: pci_bus 0000:00: root bus resource [mem 0x80000000-0xffffffff window] Feb 9 10:11:38.975648 kernel: pci_bus 0000:00: root bus resource [io 0x0000-0xffff window] Feb 9 10:11:38.975852 kernel: pci_bus 0000:00: root bus resource [mem 0x400000000000-0x407fffffffff window] Feb 9 10:11:38.976040 kernel: pci_bus 0000:00: root bus resource [bus 00-0f] Feb 9 10:11:38.976274 kernel: pci 0000:00:00.0: [1d0f:0200] type 00 class 0x060000 Feb 9 10:11:38.976518 kernel: pci 0000:00:01.0: [1d0f:8250] type 00 class 0x070003 Feb 9 10:11:38.976733 kernel: pci 0000:00:01.0: reg 0x10: [mem 0x80118000-0x80118fff] Feb 9 10:11:38.976949 kernel: pci 0000:00:04.0: [1d0f:8061] type 00 class 0x010802 Feb 9 10:11:38.977147 kernel: pci 0000:00:04.0: reg 0x10: [mem 0x80114000-0x80117fff] Feb 9 10:11:38.977360 kernel: pci 0000:00:04.0: PME# supported from D0 D1 D2 D3hot D3cold Feb 9 10:11:38.977628 kernel: pci 0000:00:05.0: [1d0f:ec20] type 00 class 0x020000 Feb 9 10:11:38.977843 kernel: pci 0000:00:05.0: reg 0x10: [mem 0x80110000-0x80113fff] Feb 9 10:11:38.978047 kernel: pci 0000:00:05.0: reg 0x18: [mem 0x80000000-0x800fffff pref] Feb 9 10:11:38.978249 kernel: pci 0000:00:05.0: reg 0x20: [mem 0x80100000-0x8010ffff] Feb 9 10:11:38.983101 kernel: pci 0000:00:05.0: PME# supported from D0 D1 D2 D3hot D3cold Feb 9 10:11:38.983343 kernel: pci 0000:00:05.0: BAR 2: assigned [mem 0x80000000-0x800fffff pref] Feb 9 10:11:38.983583 kernel: pci 0000:00:05.0: BAR 4: assigned [mem 0x80100000-0x8010ffff] Feb 9 10:11:38.983797 kernel: pci 0000:00:04.0: BAR 0: assigned [mem 0x80110000-0x80113fff] Feb 9 10:11:38.984001 kernel: pci 0000:00:05.0: BAR 0: assigned [mem 0x80114000-0x80117fff] Feb 9 10:11:38.984210 kernel: pci 0000:00:01.0: BAR 0: assigned [mem 0x80118000-0x80118fff] Feb 9 10:11:38.984420 kernel: pci_bus 0000:00: resource 4 [mem 0x80000000-0xffffffff window] Feb 9 10:11:38.984611 kernel: pci_bus 0000:00: resource 5 [io 0x0000-0xffff window] Feb 9 10:11:38.984789 kernel: pci_bus 0000:00: resource 6 [mem 0x400000000000-0x407fffffffff window] Feb 9 10:11:38.984818 kernel: ACPI: PCI: Interrupt link GSI0 configured for IRQ 35 Feb 9 10:11:38.984836 kernel: ACPI: PCI: Interrupt link GSI1 configured for IRQ 36 Feb 9 10:11:38.984853 kernel: ACPI: PCI: Interrupt link GSI2 configured for IRQ 37 Feb 9 10:11:38.984870 kernel: ACPI: PCI: Interrupt link GSI3 configured for IRQ 38 Feb 9 10:11:38.984886 kernel: iommu: Default domain type: Translated Feb 9 10:11:38.984902 kernel: iommu: DMA domain TLB invalidation policy: strict mode Feb 9 10:11:38.984919 kernel: vgaarb: loaded Feb 9 10:11:38.984935 kernel: pps_core: LinuxPPS API ver. 1 registered Feb 9 10:11:38.984951 kernel: pps_core: Software ver. 5.3.6 - Copyright 2005-2007 Rodolfo Giometti Feb 9 10:11:38.984972 kernel: PTP clock support registered Feb 9 10:11:38.984988 kernel: Registered efivars operations Feb 9 10:11:38.985005 kernel: clocksource: Switched to clocksource arch_sys_counter Feb 9 10:11:38.985021 kernel: VFS: Disk quotas dquot_6.6.0 Feb 9 10:11:38.985037 kernel: VFS: Dquot-cache hash table entries: 512 (order 0, 4096 bytes) Feb 9 10:11:38.985054 kernel: pnp: PnP ACPI init Feb 9 10:11:38.985260 kernel: system 00:00: [mem 0x20000000-0x2fffffff] could not be reserved Feb 9 10:11:38.985286 kernel: pnp: PnP ACPI: found 1 devices Feb 9 10:11:38.985302 kernel: NET: Registered PF_INET protocol family Feb 9 10:11:38.985324 kernel: IP idents hash table entries: 65536 (order: 7, 524288 bytes, linear) Feb 9 10:11:38.985342 kernel: tcp_listen_portaddr_hash hash table entries: 2048 (order: 3, 32768 bytes, linear) Feb 9 10:11:38.985359 kernel: Table-perturb hash table entries: 65536 (order: 6, 262144 bytes, linear) Feb 9 10:11:38.985375 kernel: TCP established hash table entries: 32768 (order: 6, 262144 bytes, linear) Feb 9 10:11:38.985410 kernel: TCP bind hash table entries: 32768 (order: 7, 524288 bytes, linear) Feb 9 10:11:38.985429 kernel: TCP: Hash tables configured (established 32768 bind 32768) Feb 9 10:11:38.985447 kernel: UDP hash table entries: 2048 (order: 4, 65536 bytes, linear) Feb 9 10:11:38.985463 kernel: UDP-Lite hash table entries: 2048 (order: 4, 65536 bytes, linear) Feb 9 10:11:38.985480 kernel: NET: Registered PF_UNIX/PF_LOCAL protocol family Feb 9 10:11:38.985501 kernel: PCI: CLS 0 bytes, default 64 Feb 9 10:11:38.985518 kernel: hw perfevents: enabled with armv8_pmuv3_0 PMU driver, 3 counters available Feb 9 10:11:38.985534 kernel: kvm [1]: HYP mode not available Feb 9 10:11:38.985550 kernel: Initialise system trusted keyrings Feb 9 10:11:38.985567 kernel: workingset: timestamp_bits=39 max_order=20 bucket_order=0 Feb 9 10:11:38.985597 kernel: Key type asymmetric registered Feb 9 10:11:38.985619 kernel: Asymmetric key parser 'x509' registered Feb 9 10:11:38.985636 kernel: Block layer SCSI generic (bsg) driver version 0.4 loaded (major 249) Feb 9 10:11:38.985653 kernel: io scheduler mq-deadline registered Feb 9 10:11:38.985675 kernel: io scheduler kyber registered Feb 9 10:11:38.985691 kernel: io scheduler bfq registered Feb 9 10:11:38.985919 kernel: pl061_gpio ARMH0061:00: PL061 GPIO chip registered Feb 9 10:11:38.985944 kernel: input: Power Button as /devices/LNXSYSTM:00/LNXSYBUS:00/PNP0C0C:00/input/input0 Feb 9 10:11:38.985961 kernel: ACPI: button: Power Button [PWRB] Feb 9 10:11:38.985978 kernel: Serial: 8250/16550 driver, 4 ports, IRQ sharing enabled Feb 9 10:11:38.985995 kernel: ACPI: \_SB_.PCI0.GSI2: Enabled at IRQ 37 Feb 9 10:11:38.986199 kernel: serial 0000:00:01.0: enabling device (0010 -> 0012) Feb 9 10:11:38.986228 kernel: printk: console [ttyS0] disabled Feb 9 10:11:38.986246 kernel: 0000:00:01.0: ttyS0 at MMIO 0x80118000 (irq = 14, base_baud = 115200) is a 16550A Feb 9 10:11:38.986262 kernel: printk: console [ttyS0] enabled Feb 9 10:11:38.986278 kernel: printk: bootconsole [uart0] disabled Feb 9 10:11:38.986295 kernel: thunder_xcv, ver 1.0 Feb 9 10:11:38.986311 kernel: thunder_bgx, ver 1.0 Feb 9 10:11:38.986327 kernel: nicpf, ver 1.0 Feb 9 10:11:38.986343 kernel: nicvf, ver 1.0 Feb 9 10:11:38.997648 kernel: rtc-efi rtc-efi.0: registered as rtc0 Feb 9 10:11:38.997867 kernel: rtc-efi rtc-efi.0: setting system clock to 2024-02-09T10:11:38 UTC (1707473498) Feb 9 10:11:38.997892 kernel: hid: raw HID events driver (C) Jiri Kosina Feb 9 10:11:38.997910 kernel: NET: Registered PF_INET6 protocol family Feb 9 10:11:38.997927 kernel: Segment Routing with IPv6 Feb 9 10:11:38.997943 kernel: In-situ OAM (IOAM) with IPv6 Feb 9 10:11:38.997960 kernel: NET: Registered PF_PACKET protocol family Feb 9 10:11:38.997976 kernel: Key type dns_resolver registered Feb 9 10:11:38.997992 kernel: registered taskstats version 1 Feb 9 10:11:38.998013 kernel: Loading compiled-in X.509 certificates Feb 9 10:11:38.998030 kernel: Loaded X.509 cert 'Kinvolk GmbH: Module signing key for 5.15.148-flatcar: ca91574208414224935c9cea513398977daf917d' Feb 9 10:11:38.998046 kernel: Key type .fscrypt registered Feb 9 10:11:38.998062 kernel: Key type fscrypt-provisioning registered Feb 9 10:11:38.998078 kernel: ima: No TPM chip found, activating TPM-bypass! Feb 9 10:11:38.998094 kernel: ima: Allocated hash algorithm: sha1 Feb 9 10:11:38.998111 kernel: ima: No architecture policies found Feb 9 10:11:38.998127 kernel: Freeing unused kernel memory: 34688K Feb 9 10:11:38.998143 kernel: Run /init as init process Feb 9 10:11:38.998163 kernel: with arguments: Feb 9 10:11:38.998180 kernel: /init Feb 9 10:11:38.998196 kernel: with environment: Feb 9 10:11:38.998212 kernel: HOME=/ Feb 9 10:11:38.998227 kernel: TERM=linux Feb 9 10:11:38.998243 kernel: BOOT_IMAGE=/flatcar/vmlinuz-a Feb 9 10:11:38.998264 systemd[1]: systemd 252 running in system mode (+PAM +AUDIT +SELINUX -APPARMOR +IMA +SMACK +SECCOMP +GCRYPT -GNUTLS +OPENSSL -ACL +BLKID +CURL -ELFUTILS -FIDO2 +IDN2 -IDN +IPTC +KMOD +LIBCRYPTSETUP +LIBFDISK +PCRE2 -PWQUALITY -P11KIT -QRENCODE -TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD -BPF_FRAMEWORK -XKBCOMMON +UTMP +SYSVINIT default-hierarchy=unified) Feb 9 10:11:38.998285 systemd[1]: Detected virtualization amazon. Feb 9 10:11:38.998308 systemd[1]: Detected architecture arm64. Feb 9 10:11:38.998325 systemd[1]: Running in initrd. Feb 9 10:11:38.998343 systemd[1]: No hostname configured, using default hostname. Feb 9 10:11:38.998360 systemd[1]: Hostname set to . Feb 9 10:11:38.998378 systemd[1]: Initializing machine ID from VM UUID. Feb 9 10:11:38.998418 systemd[1]: Queued start job for default target initrd.target. Feb 9 10:11:38.998437 systemd[1]: Started systemd-ask-password-console.path. Feb 9 10:11:38.998455 systemd[1]: Reached target cryptsetup.target. Feb 9 10:11:38.998478 systemd[1]: Reached target paths.target. Feb 9 10:11:38.998496 systemd[1]: Reached target slices.target. Feb 9 10:11:38.998513 systemd[1]: Reached target swap.target. Feb 9 10:11:38.998531 systemd[1]: Reached target timers.target. Feb 9 10:11:38.998549 systemd[1]: Listening on iscsid.socket. Feb 9 10:11:38.998567 systemd[1]: Listening on iscsiuio.socket. Feb 9 10:11:38.998584 systemd[1]: Listening on systemd-journald-audit.socket. Feb 9 10:11:38.998602 systemd[1]: Listening on systemd-journald-dev-log.socket. Feb 9 10:11:38.998624 systemd[1]: Listening on systemd-journald.socket. Feb 9 10:11:38.998642 systemd[1]: Listening on systemd-networkd.socket. Feb 9 10:11:38.998659 systemd[1]: Listening on systemd-udevd-control.socket. Feb 9 10:11:38.998677 systemd[1]: Listening on systemd-udevd-kernel.socket. Feb 9 10:11:38.998694 systemd[1]: Reached target sockets.target. Feb 9 10:11:38.998712 systemd[1]: Starting kmod-static-nodes.service... Feb 9 10:11:38.998729 systemd[1]: Finished network-cleanup.service. Feb 9 10:11:38.998747 systemd[1]: Starting systemd-fsck-usr.service... Feb 9 10:11:38.998764 systemd[1]: Starting systemd-journald.service... Feb 9 10:11:38.998786 systemd[1]: Starting systemd-modules-load.service... Feb 9 10:11:38.998804 systemd[1]: Starting systemd-resolved.service... Feb 9 10:11:38.998821 systemd[1]: Starting systemd-vconsole-setup.service... Feb 9 10:11:38.998839 systemd[1]: Finished kmod-static-nodes.service. Feb 9 10:11:38.998857 kernel: audit: type=1130 audit(1707473498.962:2): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:38.998875 systemd[1]: Finished systemd-fsck-usr.service. Feb 9 10:11:38.998893 kernel: audit: type=1130 audit(1707473498.985:3): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-usr comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:38.998910 systemd[1]: Finished systemd-vconsole-setup.service. Feb 9 10:11:38.998935 systemd-journald[308]: Journal started Feb 9 10:11:38.999019 systemd-journald[308]: Runtime Journal (/run/log/journal/ec235960c2fe84922709503ad1abcf96) is 8.0M, max 75.4M, 67.4M free. Feb 9 10:11:38.962000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:38.985000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-usr comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:38.952411 systemd-modules-load[309]: Inserted module 'overlay' Feb 9 10:11:39.015413 kernel: bridge: filtering via arp/ip/ip6tables is no longer available by default. Update your scripts to load br_netfilter if you need this. Feb 9 10:11:39.020101 systemd-modules-load[309]: Inserted module 'br_netfilter' Feb 9 10:11:39.024072 kernel: Bridge firewalling registered Feb 9 10:11:39.022000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:39.033336 kernel: audit: type=1130 audit(1707473499.022:4): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:39.033379 systemd[1]: Started systemd-journald.service. Feb 9 10:11:39.042000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:39.051941 systemd[1]: Starting dracut-cmdline-ask.service... Feb 9 10:11:39.056419 kernel: audit: type=1130 audit(1707473499.042:5): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:39.060361 systemd[1]: Starting systemd-tmpfiles-setup-dev.service... Feb 9 10:11:39.068410 kernel: SCSI subsystem initialized Feb 9 10:11:39.088983 systemd-resolved[310]: Positive Trust Anchors: Feb 9 10:11:39.089012 systemd-resolved[310]: . IN DS 20326 8 2 e06d44b80b8f1d39a95c0b0d7c65d08458e880409bbc683457104237c7f8ec8d Feb 9 10:11:39.089069 systemd-resolved[310]: Negative trust anchors: home.arpa 10.in-addr.arpa 16.172.in-addr.arpa 17.172.in-addr.arpa 18.172.in-addr.arpa 19.172.in-addr.arpa 20.172.in-addr.arpa 21.172.in-addr.arpa 22.172.in-addr.arpa 23.172.in-addr.arpa 24.172.in-addr.arpa 25.172.in-addr.arpa 26.172.in-addr.arpa 27.172.in-addr.arpa 28.172.in-addr.arpa 29.172.in-addr.arpa 30.172.in-addr.arpa 31.172.in-addr.arpa 168.192.in-addr.arpa d.f.ip6.arpa corp home internal intranet lan local private test Feb 9 10:11:39.126786 systemd[1]: Finished dracut-cmdline-ask.service. Feb 9 10:11:39.143171 kernel: device-mapper: core: CONFIG_IMA_DISABLE_HTABLE is disabled. Duplicate IMA measurements will not be recorded in the IMA log. Feb 9 10:11:39.143207 kernel: device-mapper: uevent: version 1.0.3 Feb 9 10:11:39.143240 kernel: device-mapper: ioctl: 4.45.0-ioctl (2021-03-22) initialised: dm-devel@redhat.com Feb 9 10:11:39.142000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:39.143583 systemd[1]: Finished systemd-tmpfiles-setup-dev.service. Feb 9 10:11:39.158529 kernel: audit: type=1130 audit(1707473499.142:6): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:39.154856 systemd-modules-load[309]: Inserted module 'dm_multipath' Feb 9 10:11:39.157000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:39.170038 systemd[1]: Finished systemd-modules-load.service. Feb 9 10:11:39.177686 kernel: audit: type=1130 audit(1707473499.157:7): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:39.176000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:39.179147 systemd[1]: Starting dracut-cmdline.service... Feb 9 10:11:39.193000 systemd[1]: Starting systemd-sysctl.service... Feb 9 10:11:39.194402 kernel: audit: type=1130 audit(1707473499.176:8): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:39.216314 dracut-cmdline[327]: dracut-dracut-053 Feb 9 10:11:39.222671 systemd[1]: Finished systemd-sysctl.service. Feb 9 10:11:39.235271 kernel: audit: type=1130 audit(1707473499.225:9): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:39.225000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:39.236792 dracut-cmdline[327]: Using kernel command line parameters: rd.driver.pre=btrfs BOOT_IMAGE=/flatcar/vmlinuz-a mount.usr=/dev/mapper/usr verity.usr=PARTUUID=7130c94a-213a-4e5a-8e26-6cce9662f132 rootflags=rw mount.usrflags=ro consoleblank=0 root=LABEL=ROOT console=tty1 console=ttyS0,115200n8 earlycon flatcar.first_boot=detected acpi=force flatcar.oem.id=ec2 modprobe.blacklist=xen_fbfront net.ifnames=0 nvme_core.io_timeout=4294967295 verity.usrhash=14ffd9340f674a8d04c9d43eed85484d8b2b7e2bcd8b36a975c9ac66063d537d Feb 9 10:11:39.360420 kernel: Loading iSCSI transport class v2.0-870. Feb 9 10:11:39.374461 kernel: iscsi: registered transport (tcp) Feb 9 10:11:39.398587 kernel: iscsi: registered transport (qla4xxx) Feb 9 10:11:39.398658 kernel: QLogic iSCSI HBA Driver Feb 9 10:11:39.621968 systemd-resolved[310]: Defaulting to hostname 'linux'. Feb 9 10:11:39.624669 kernel: random: crng init done Feb 9 10:11:39.625144 systemd[1]: Started systemd-resolved.service. Feb 9 10:11:39.637163 kernel: audit: type=1130 audit(1707473499.625:10): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:39.625000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:39.626985 systemd[1]: Reached target nss-lookup.target. Feb 9 10:11:39.650229 systemd[1]: Finished dracut-cmdline.service. Feb 9 10:11:39.652000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:39.654877 systemd[1]: Starting dracut-pre-udev.service... Feb 9 10:11:39.718429 kernel: raid6: neonx8 gen() 6396 MB/s Feb 9 10:11:39.736415 kernel: raid6: neonx8 xor() 4689 MB/s Feb 9 10:11:39.754416 kernel: raid6: neonx4 gen() 6470 MB/s Feb 9 10:11:39.772415 kernel: raid6: neonx4 xor() 4889 MB/s Feb 9 10:11:39.790415 kernel: raid6: neonx2 gen() 5759 MB/s Feb 9 10:11:39.808415 kernel: raid6: neonx2 xor() 4495 MB/s Feb 9 10:11:39.826415 kernel: raid6: neonx1 gen() 4475 MB/s Feb 9 10:11:39.844414 kernel: raid6: neonx1 xor() 3668 MB/s Feb 9 10:11:39.862415 kernel: raid6: int64x8 gen() 3405 MB/s Feb 9 10:11:39.880415 kernel: raid6: int64x8 xor() 2085 MB/s Feb 9 10:11:39.898415 kernel: raid6: int64x4 gen() 3789 MB/s Feb 9 10:11:39.916416 kernel: raid6: int64x4 xor() 2191 MB/s Feb 9 10:11:39.934419 kernel: raid6: int64x2 gen() 3603 MB/s Feb 9 10:11:39.952416 kernel: raid6: int64x2 xor() 1947 MB/s Feb 9 10:11:39.970416 kernel: raid6: int64x1 gen() 2775 MB/s Feb 9 10:11:39.989885 kernel: raid6: int64x1 xor() 1447 MB/s Feb 9 10:11:39.989923 kernel: raid6: using algorithm neonx4 gen() 6470 MB/s Feb 9 10:11:39.989948 kernel: raid6: .... xor() 4889 MB/s, rmw enabled Feb 9 10:11:39.991692 kernel: raid6: using neon recovery algorithm Feb 9 10:11:40.010423 kernel: xor: measuring software checksum speed Feb 9 10:11:40.014958 kernel: 8regs : 9333 MB/sec Feb 9 10:11:40.014989 kernel: 32regs : 11107 MB/sec Feb 9 10:11:40.019481 kernel: arm64_neon : 9336 MB/sec Feb 9 10:11:40.019514 kernel: xor: using function: 32regs (11107 MB/sec) Feb 9 10:11:40.109438 kernel: Btrfs loaded, crc32c=crc32c-generic, zoned=no, fsverity=no Feb 9 10:11:40.127010 systemd[1]: Finished dracut-pre-udev.service. Feb 9 10:11:40.127000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-udev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:40.128000 audit: BPF prog-id=7 op=LOAD Feb 9 10:11:40.128000 audit: BPF prog-id=8 op=LOAD Feb 9 10:11:40.130562 systemd[1]: Starting systemd-udevd.service... Feb 9 10:11:40.159377 systemd-udevd[506]: Using default interface naming scheme 'v252'. Feb 9 10:11:40.169272 systemd[1]: Started systemd-udevd.service. Feb 9 10:11:40.172000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:40.175809 systemd[1]: Starting dracut-pre-trigger.service... Feb 9 10:11:40.208261 dracut-pre-trigger[521]: rd.md=0: removing MD RAID activation Feb 9 10:11:40.269660 systemd[1]: Finished dracut-pre-trigger.service. Feb 9 10:11:40.271000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:40.274353 systemd[1]: Starting systemd-udev-trigger.service... Feb 9 10:11:40.378966 systemd[1]: Finished systemd-udev-trigger.service. Feb 9 10:11:40.380000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:40.501333 kernel: ACPI: \_SB_.PCI0.GSI1: Enabled at IRQ 36 Feb 9 10:11:40.501433 kernel: ena 0000:00:05.0: enabling device (0010 -> 0012) Feb 9 10:11:40.510168 kernel: ena 0000:00:05.0: ENA device version: 0.10 Feb 9 10:11:40.510512 kernel: ena 0000:00:05.0: ENA controller version: 0.0.1 implementation version 1 Feb 9 10:11:40.513417 kernel: ACPI: \_SB_.PCI0.GSI0: Enabled at IRQ 35 Feb 9 10:11:40.516114 kernel: nvme nvme0: pci function 0000:00:04.0 Feb 9 10:11:40.516437 kernel: ena 0000:00:05.0: Elastic Network Adapter (ENA) found at mem 80114000, mac addr 06:b0:20:20:81:15 Feb 9 10:11:40.524428 kernel: nvme nvme0: 2/0/0 default/read/poll queues Feb 9 10:11:40.531018 kernel: GPT:Primary header thinks Alt. header is not at the end of the disk. Feb 9 10:11:40.531071 kernel: GPT:9289727 != 16777215 Feb 9 10:11:40.531095 kernel: GPT:Alternate GPT header not at the end of the disk. Feb 9 10:11:40.533186 kernel: GPT:9289727 != 16777215 Feb 9 10:11:40.534479 kernel: GPT: Use GNU Parted to correct GPT errors. Feb 9 10:11:40.537828 kernel: nvme0n1: p1 p2 p3 p4 p6 p7 p9 Feb 9 10:11:40.542218 (udev-worker)[572]: Network interface NamePolicy= disabled on kernel command line. Feb 9 10:11:40.623812 systemd[1]: Found device dev-disk-by\x2dlabel-EFI\x2dSYSTEM.device. Feb 9 10:11:40.656437 kernel: BTRFS: device label OEM devid 1 transid 12 /dev/nvme0n1p6 scanned by (udev-worker) (575) Feb 9 10:11:40.699381 systemd[1]: Found device dev-disk-by\x2dlabel-OEM.device. Feb 9 10:11:40.735380 systemd[1]: Found device dev-disk-by\x2dpartlabel-USR\x2dA.device. Feb 9 10:11:40.739714 systemd[1]: Found device dev-disk-by\x2dpartuuid-7130c94a\x2d213a\x2d4e5a\x2d8e26\x2d6cce9662f132.device. Feb 9 10:11:40.758114 systemd[1]: Starting disk-uuid.service... Feb 9 10:11:40.773458 disk-uuid[650]: Primary Header is updated. Feb 9 10:11:40.773458 disk-uuid[650]: Secondary Entries is updated. Feb 9 10:11:40.773458 disk-uuid[650]: Secondary Header is updated. Feb 9 10:11:40.830546 systemd[1]: Found device dev-disk-by\x2dlabel-ROOT.device. Feb 9 10:11:41.797164 disk-uuid[655]: The operation has completed successfully. Feb 9 10:11:41.799361 kernel: nvme0n1: p1 p2 p3 p4 p6 p7 p9 Feb 9 10:11:41.963504 systemd[1]: disk-uuid.service: Deactivated successfully. Feb 9 10:11:41.964068 systemd[1]: Finished disk-uuid.service. Feb 9 10:11:41.967000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=disk-uuid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:41.967000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=disk-uuid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:41.988942 systemd[1]: Starting verity-setup.service... Feb 9 10:11:42.105760 kernel: device-mapper: verity: sha256 using implementation "sha256-ce" Feb 9 10:11:42.303228 systemd[1]: Found device dev-mapper-usr.device. Feb 9 10:11:42.309045 systemd[1]: Mounting sysusr-usr.mount... Feb 9 10:11:42.316125 systemd[1]: Finished verity-setup.service. Feb 9 10:11:42.318000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=verity-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:42.398414 kernel: EXT4-fs (dm-0): mounted filesystem without journal. Opts: norecovery. Quota mode: none. Feb 9 10:11:42.399538 systemd[1]: Mounted sysusr-usr.mount. Feb 9 10:11:42.402601 systemd[1]: afterburn-network-kargs.service was skipped because no trigger condition checks were met. Feb 9 10:11:42.406552 systemd[1]: Starting ignition-setup.service... Feb 9 10:11:42.413132 systemd[1]: Starting parse-ip-for-networkd.service... Feb 9 10:11:42.439065 kernel: BTRFS info (device nvme0n1p6): using crc32c (crc32c-generic) checksum algorithm Feb 9 10:11:42.439139 kernel: BTRFS info (device nvme0n1p6): using free space tree Feb 9 10:11:42.439165 kernel: BTRFS info (device nvme0n1p6): has skinny extents Feb 9 10:11:42.448437 kernel: BTRFS info (device nvme0n1p6): enabling ssd optimizations Feb 9 10:11:42.465038 systemd[1]: mnt-oem.mount: Deactivated successfully. Feb 9 10:11:42.544894 systemd[1]: Finished parse-ip-for-networkd.service. Feb 9 10:11:42.547000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=parse-ip-for-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:42.548000 audit: BPF prog-id=9 op=LOAD Feb 9 10:11:42.550971 systemd[1]: Starting systemd-networkd.service... Feb 9 10:11:42.559815 systemd[1]: Finished ignition-setup.service. Feb 9 10:11:42.560000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:42.564061 systemd[1]: Starting ignition-fetch-offline.service... Feb 9 10:11:42.602952 systemd-networkd[1183]: lo: Link UP Feb 9 10:11:42.602982 systemd-networkd[1183]: lo: Gained carrier Feb 9 10:11:42.606505 systemd-networkd[1183]: Enumeration completed Feb 9 10:11:42.607000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:42.606972 systemd-networkd[1183]: eth0: Configuring with /usr/lib/systemd/network/zz-default.network. Feb 9 10:11:42.607154 systemd[1]: Started systemd-networkd.service. Feb 9 10:11:42.609026 systemd[1]: Reached target network.target. Feb 9 10:11:42.618053 systemd[1]: Starting iscsiuio.service... Feb 9 10:11:42.623680 systemd-networkd[1183]: eth0: Link UP Feb 9 10:11:42.623701 systemd-networkd[1183]: eth0: Gained carrier Feb 9 10:11:42.631600 systemd[1]: Started iscsiuio.service. Feb 9 10:11:42.632000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsiuio comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:42.635732 systemd[1]: Starting iscsid.service... Feb 9 10:11:42.644258 iscsid[1190]: iscsid: can't open InitiatorName configuration file /etc/iscsi/initiatorname.iscsi Feb 9 10:11:42.644258 iscsid[1190]: iscsid: Warning: InitiatorName file /etc/iscsi/initiatorname.iscsi does not exist or does not contain a properly formatted InitiatorName. If using software iscsi (iscsi_tcp or ib_iser) or partial offload (bnx2i or cxgbi iscsi), you may not be able to log into or discover targets. Please create a file /etc/iscsi/initiatorname.iscsi that contains a sting with the format: InitiatorName=iqn.yyyy-mm.[:identifier]. Feb 9 10:11:42.644258 iscsid[1190]: Example: InitiatorName=iqn.2001-04.com.redhat:fc6. Feb 9 10:11:42.644258 iscsid[1190]: If using hardware iscsi like qla4xxx this message can be ignored. Feb 9 10:11:42.644258 iscsid[1190]: iscsid: can't open InitiatorAlias configuration file /etc/iscsi/initiatorname.iscsi Feb 9 10:11:42.664116 iscsid[1190]: iscsid: can't open iscsid.safe_logout configuration file /etc/iscsi/iscsid.conf Feb 9 10:11:42.659267 systemd[1]: Started iscsid.service. Feb 9 10:11:42.666000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:42.670790 systemd[1]: Starting dracut-initqueue.service... Feb 9 10:11:42.671035 systemd-networkd[1183]: eth0: DHCPv4 address 172.31.28.77/20, gateway 172.31.16.1 acquired from 172.31.16.1 Feb 9 10:11:42.697480 systemd[1]: Finished dracut-initqueue.service. Feb 9 10:11:42.698000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:42.699414 systemd[1]: Reached target remote-fs-pre.target. Feb 9 10:11:42.701135 systemd[1]: Reached target remote-cryptsetup.target. Feb 9 10:11:42.705538 systemd[1]: Reached target remote-fs.target. Feb 9 10:11:42.716005 systemd[1]: Starting dracut-pre-mount.service... Feb 9 10:11:42.733758 systemd[1]: Finished dracut-pre-mount.service. Feb 9 10:11:42.745863 kernel: kauditd_printk_skb: 17 callbacks suppressed Feb 9 10:11:42.745897 kernel: audit: type=1130 audit(1707473502.734:28): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:42.734000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:44.339697 systemd-networkd[1183]: eth0: Gained IPv6LL Feb 9 10:11:45.175412 ignition[1185]: Ignition 2.14.0 Feb 9 10:11:45.175892 ignition[1185]: Stage: fetch-offline Feb 9 10:11:45.176202 ignition[1185]: reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 9 10:11:45.176262 ignition[1185]: parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 9 10:11:45.195983 ignition[1185]: no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 9 10:11:45.196670 ignition[1185]: Ignition finished successfully Feb 9 10:11:45.202165 systemd[1]: Finished ignition-fetch-offline.service. Feb 9 10:11:45.202000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:45.207054 systemd[1]: Starting ignition-fetch.service... Feb 9 10:11:45.216693 kernel: audit: type=1130 audit(1707473505.202:29): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:45.221912 ignition[1209]: Ignition 2.14.0 Feb 9 10:11:45.221938 ignition[1209]: Stage: fetch Feb 9 10:11:45.222233 ignition[1209]: reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 9 10:11:45.222291 ignition[1209]: parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 9 10:11:45.234497 ignition[1209]: no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 9 10:11:45.237021 ignition[1209]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 9 10:11:45.246776 ignition[1209]: INFO : PUT result: OK Feb 9 10:11:45.250910 ignition[1209]: DEBUG : parsed url from cmdline: "" Feb 9 10:11:45.250910 ignition[1209]: INFO : no config URL provided Feb 9 10:11:45.254353 ignition[1209]: INFO : reading system config file "/usr/lib/ignition/user.ign" Feb 9 10:11:45.254353 ignition[1209]: INFO : no config at "/usr/lib/ignition/user.ign" Feb 9 10:11:45.254353 ignition[1209]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 9 10:11:45.261494 ignition[1209]: INFO : PUT result: OK Feb 9 10:11:45.263235 ignition[1209]: INFO : GET http://169.254.169.254/2019-10-01/user-data: attempt #1 Feb 9 10:11:45.266368 ignition[1209]: INFO : GET result: OK Feb 9 10:11:45.267976 ignition[1209]: DEBUG : parsing config with SHA512: f543704b23b41ff4f60920b29b22db29ac73b913cd36d1f4d9ad0846d1a2d71f16ed96ac4ddfc978179af0f74bc5b2370e16fa8c5efaaa252afa4c41e222820c Feb 9 10:11:45.329160 unknown[1209]: fetched base config from "system" Feb 9 10:11:45.329193 unknown[1209]: fetched base config from "system" Feb 9 10:11:45.329208 unknown[1209]: fetched user config from "aws" Feb 9 10:11:45.335090 ignition[1209]: fetch: fetch complete Feb 9 10:11:45.335118 ignition[1209]: fetch: fetch passed Feb 9 10:11:45.335213 ignition[1209]: Ignition finished successfully Feb 9 10:11:45.341649 systemd[1]: Finished ignition-fetch.service. Feb 9 10:11:45.343000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:45.346076 systemd[1]: Starting ignition-kargs.service... Feb 9 10:11:45.356558 kernel: audit: type=1130 audit(1707473505.343:30): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:45.366839 ignition[1215]: Ignition 2.14.0 Feb 9 10:11:45.366867 ignition[1215]: Stage: kargs Feb 9 10:11:45.367163 ignition[1215]: reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 9 10:11:45.367222 ignition[1215]: parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 9 10:11:45.380003 ignition[1215]: no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 9 10:11:45.382618 ignition[1215]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 9 10:11:45.385883 ignition[1215]: INFO : PUT result: OK Feb 9 10:11:45.391539 ignition[1215]: kargs: kargs passed Feb 9 10:11:45.391649 ignition[1215]: Ignition finished successfully Feb 9 10:11:45.396273 systemd[1]: Finished ignition-kargs.service. Feb 9 10:11:45.398000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:45.400755 systemd[1]: Starting ignition-disks.service... Feb 9 10:11:45.410463 kernel: audit: type=1130 audit(1707473505.398:31): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:45.416301 ignition[1221]: Ignition 2.14.0 Feb 9 10:11:45.416329 ignition[1221]: Stage: disks Feb 9 10:11:45.416671 ignition[1221]: reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 9 10:11:45.416731 ignition[1221]: parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 9 10:11:45.436495 ignition[1221]: no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 9 10:11:45.439141 ignition[1221]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 9 10:11:45.441906 ignition[1221]: INFO : PUT result: OK Feb 9 10:11:45.447364 ignition[1221]: disks: disks passed Feb 9 10:11:45.447493 ignition[1221]: Ignition finished successfully Feb 9 10:11:45.451684 systemd[1]: Finished ignition-disks.service. Feb 9 10:11:45.453000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:45.454930 systemd[1]: Reached target initrd-root-device.target. Feb 9 10:11:45.485712 kernel: audit: type=1130 audit(1707473505.453:32): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:45.463625 systemd[1]: Reached target local-fs-pre.target. Feb 9 10:11:45.465307 systemd[1]: Reached target local-fs.target. Feb 9 10:11:45.466968 systemd[1]: Reached target sysinit.target. Feb 9 10:11:45.469996 systemd[1]: Reached target basic.target. Feb 9 10:11:45.472904 systemd[1]: Starting systemd-fsck-root.service... Feb 9 10:11:45.609068 systemd-fsck[1229]: ROOT: clean, 602/553520 files, 56013/553472 blocks Feb 9 10:11:45.623859 systemd[1]: Finished systemd-fsck-root.service. Feb 9 10:11:45.624000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:45.635489 systemd[1]: Mounting sysroot.mount... Feb 9 10:11:45.640441 kernel: audit: type=1130 audit(1707473505.624:33): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:45.658437 kernel: EXT4-fs (nvme0n1p9): mounted filesystem with ordered data mode. Opts: (null). Quota mode: none. Feb 9 10:11:45.659623 systemd[1]: Mounted sysroot.mount. Feb 9 10:11:45.661180 systemd[1]: Reached target initrd-root-fs.target. Feb 9 10:11:45.721605 systemd[1]: Mounting sysroot-usr.mount... Feb 9 10:11:45.728268 systemd[1]: flatcar-metadata-hostname.service was skipped because no trigger condition checks were met. Feb 9 10:11:45.728347 systemd[1]: ignition-remount-sysroot.service was skipped because of an unmet condition check (ConditionPathIsReadWrite=!/sysroot). Feb 9 10:11:45.728438 systemd[1]: Reached target ignition-diskful.target. Feb 9 10:11:45.734512 systemd[1]: Mounted sysroot-usr.mount. Feb 9 10:11:45.754327 systemd[1]: Mounting sysroot-usr-share-oem.mount... Feb 9 10:11:45.762727 systemd[1]: Starting initrd-setup-root.service... Feb 9 10:11:45.779459 kernel: BTRFS: device label OEM devid 1 transid 14 /dev/nvme0n1p6 scanned by mount (1247) Feb 9 10:11:45.785058 kernel: BTRFS info (device nvme0n1p6): using crc32c (crc32c-generic) checksum algorithm Feb 9 10:11:45.785095 kernel: BTRFS info (device nvme0n1p6): using free space tree Feb 9 10:11:45.787247 kernel: BTRFS info (device nvme0n1p6): has skinny extents Feb 9 10:11:45.793415 kernel: BTRFS info (device nvme0n1p6): enabling ssd optimizations Feb 9 10:11:45.798227 systemd[1]: Mounted sysroot-usr-share-oem.mount. Feb 9 10:11:45.850744 initrd-setup-root[1252]: cut: /sysroot/etc/passwd: No such file or directory Feb 9 10:11:45.926791 initrd-setup-root[1278]: cut: /sysroot/etc/group: No such file or directory Feb 9 10:11:45.934515 initrd-setup-root[1286]: cut: /sysroot/etc/shadow: No such file or directory Feb 9 10:11:45.942911 initrd-setup-root[1294]: cut: /sysroot/etc/gshadow: No such file or directory Feb 9 10:11:46.795561 systemd[1]: Finished initrd-setup-root.service. Feb 9 10:11:46.796000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:46.798941 systemd[1]: Starting ignition-mount.service... Feb 9 10:11:46.815494 kernel: audit: type=1130 audit(1707473506.796:34): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:46.817381 systemd[1]: Starting sysroot-boot.service... Feb 9 10:11:46.823977 systemd[1]: sysusr-usr-share-oem.mount: Deactivated successfully. Feb 9 10:11:46.824142 systemd[1]: sysroot-usr-share-oem.mount: Deactivated successfully. Feb 9 10:11:46.860044 systemd[1]: Finished sysroot-boot.service. Feb 9 10:11:46.860000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:46.870438 kernel: audit: type=1130 audit(1707473506.860:35): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:46.932435 ignition[1315]: INFO : Ignition 2.14.0 Feb 9 10:11:46.932435 ignition[1315]: INFO : Stage: mount Feb 9 10:11:46.935788 ignition[1315]: INFO : reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 9 10:11:46.935788 ignition[1315]: DEBUG : parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 9 10:11:46.952486 ignition[1315]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 9 10:11:46.954971 ignition[1315]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 9 10:11:46.958379 ignition[1315]: INFO : PUT result: OK Feb 9 10:11:46.963653 ignition[1315]: INFO : mount: mount passed Feb 9 10:11:46.963653 ignition[1315]: INFO : Ignition finished successfully Feb 9 10:11:46.967012 systemd[1]: Finished ignition-mount.service. Feb 9 10:11:46.967000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:46.980454 kernel: audit: type=1130 audit(1707473506.967:36): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:46.978690 systemd[1]: Starting ignition-files.service... Feb 9 10:11:46.994492 systemd[1]: Mounting sysroot-usr-share-oem.mount... Feb 9 10:11:47.011421 kernel: BTRFS: device label OEM devid 1 transid 15 /dev/nvme0n1p6 scanned by mount (1322) Feb 9 10:11:47.017138 kernel: BTRFS info (device nvme0n1p6): using crc32c (crc32c-generic) checksum algorithm Feb 9 10:11:47.017180 kernel: BTRFS info (device nvme0n1p6): using free space tree Feb 9 10:11:47.019310 kernel: BTRFS info (device nvme0n1p6): has skinny extents Feb 9 10:11:47.026407 kernel: BTRFS info (device nvme0n1p6): enabling ssd optimizations Feb 9 10:11:47.031937 systemd[1]: Mounted sysroot-usr-share-oem.mount. Feb 9 10:11:47.050938 ignition[1341]: INFO : Ignition 2.14.0 Feb 9 10:11:47.050938 ignition[1341]: INFO : Stage: files Feb 9 10:11:47.054255 ignition[1341]: INFO : reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 9 10:11:47.054255 ignition[1341]: DEBUG : parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 9 10:11:47.071345 ignition[1341]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 9 10:11:47.074210 ignition[1341]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 9 10:11:47.076692 ignition[1341]: INFO : PUT result: OK Feb 9 10:11:47.082191 ignition[1341]: DEBUG : files: compiled without relabeling support, skipping Feb 9 10:11:47.086111 ignition[1341]: INFO : files: ensureUsers: op(1): [started] creating or modifying user "core" Feb 9 10:11:47.086111 ignition[1341]: DEBUG : files: ensureUsers: op(1): executing: "usermod" "--root" "/sysroot" "core" Feb 9 10:11:47.262314 ignition[1341]: INFO : files: ensureUsers: op(1): [finished] creating or modifying user "core" Feb 9 10:11:47.265243 ignition[1341]: INFO : files: ensureUsers: op(2): [started] adding ssh keys to user "core" Feb 9 10:11:47.270582 unknown[1341]: wrote ssh authorized keys file for user: core Feb 9 10:11:47.272814 ignition[1341]: INFO : files: ensureUsers: op(2): [finished] adding ssh keys to user "core" Feb 9 10:11:47.277847 ignition[1341]: INFO : files: createFilesystemsFiles: createFiles: op(3): [started] writing file "/sysroot/opt/cni-plugins-linux-arm64-v1.1.1.tgz" Feb 9 10:11:47.277847 ignition[1341]: INFO : GET https://github.com/containernetworking/plugins/releases/download/v1.1.1/cni-plugins-linux-arm64-v1.1.1.tgz: attempt #1 Feb 9 10:11:47.739287 ignition[1341]: INFO : GET result: OK Feb 9 10:11:48.199206 ignition[1341]: DEBUG : file matches expected sum of: 6b5df61a53601926e4b5a9174828123d555f592165439f541bc117c68781f41c8bd30dccd52367e406d104df849bcbcfb72d9c4bafda4b045c59ce95d0ca0742 Feb 9 10:11:48.203911 ignition[1341]: INFO : files: createFilesystemsFiles: createFiles: op(3): [finished] writing file "/sysroot/opt/cni-plugins-linux-arm64-v1.1.1.tgz" Feb 9 10:11:48.203911 ignition[1341]: INFO : files: createFilesystemsFiles: createFiles: op(4): [started] writing file "/sysroot/opt/helm-v3.13.2-linux-arm64.tar.gz" Feb 9 10:11:48.203911 ignition[1341]: INFO : GET https://get.helm.sh/helm-v3.13.2-linux-arm64.tar.gz: attempt #1 Feb 9 10:11:48.291437 ignition[1341]: INFO : GET result: OK Feb 9 10:11:48.404984 ignition[1341]: INFO : files: createFilesystemsFiles: createFiles: op(4): [finished] writing file "/sysroot/opt/helm-v3.13.2-linux-arm64.tar.gz" Feb 9 10:11:48.408826 ignition[1341]: INFO : files: createFilesystemsFiles: createFiles: op(5): [started] writing file "/sysroot/opt/crictl-v1.26.0-linux-arm64.tar.gz" Feb 9 10:11:48.408826 ignition[1341]: INFO : GET https://github.com/kubernetes-sigs/cri-tools/releases/download/v1.26.0/crictl-v1.26.0-linux-arm64.tar.gz: attempt #1 Feb 9 10:11:48.804987 ignition[1341]: INFO : GET result: OK Feb 9 10:11:49.062665 ignition[1341]: DEBUG : file matches expected sum of: 4c7e4541123cbd6f1d6fec1f827395cd58d65716c0998de790f965485738b6d6257c0dc46fd7f66403166c299f6d5bf9ff30b6e1ff9afbb071f17005e834518c Feb 9 10:11:49.067349 ignition[1341]: INFO : files: createFilesystemsFiles: createFiles: op(5): [finished] writing file "/sysroot/opt/crictl-v1.26.0-linux-arm64.tar.gz" Feb 9 10:11:49.067349 ignition[1341]: INFO : files: createFilesystemsFiles: createFiles: op(6): [started] writing file "/sysroot/opt/bin/kubectl" Feb 9 10:11:49.067349 ignition[1341]: INFO : GET https://dl.k8s.io/release/v1.26.5/bin/linux/arm64/kubectl: attempt #1 Feb 9 10:11:49.194403 ignition[1341]: INFO : GET result: OK Feb 9 10:11:49.764162 ignition[1341]: DEBUG : file matches expected sum of: 3672fda0beebbbd636a2088f427463cbad32683ea4fbb1df61650552e63846b6a47db803ccb70c3db0a8f24746a23a5632bdc15a3fb78f4f7d833e7f86763c2a Feb 9 10:11:49.771539 ignition[1341]: INFO : files: createFilesystemsFiles: createFiles: op(6): [finished] writing file "/sysroot/opt/bin/kubectl" Feb 9 10:11:49.771539 ignition[1341]: INFO : files: createFilesystemsFiles: createFiles: op(7): [started] writing file "/sysroot/etc/eks/bootstrap.sh" Feb 9 10:11:49.771539 ignition[1341]: INFO : oem config not found in "/usr/share/oem", looking on oem partition Feb 9 10:11:49.792116 ignition[1341]: INFO : op(1): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1278982789" Feb 9 10:11:49.792116 ignition[1341]: CRITICAL : op(1): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1278982789": device or resource busy Feb 9 10:11:49.792116 ignition[1341]: ERROR : failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem1278982789", trying btrfs: device or resource busy Feb 9 10:11:49.792116 ignition[1341]: INFO : op(2): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1278982789" Feb 9 10:11:49.805063 kernel: BTRFS info: devid 1 device path /dev/nvme0n1p6 changed to /dev/disk/by-label/OEM scanned by ignition (1344) Feb 9 10:11:49.805098 ignition[1341]: INFO : op(2): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1278982789" Feb 9 10:11:49.869491 ignition[1341]: INFO : op(3): [started] unmounting "/mnt/oem1278982789" Feb 9 10:11:49.872400 ignition[1341]: INFO : op(3): [finished] unmounting "/mnt/oem1278982789" Feb 9 10:11:49.872400 ignition[1341]: INFO : files: createFilesystemsFiles: createFiles: op(7): [finished] writing file "/sysroot/etc/eks/bootstrap.sh" Feb 9 10:11:49.872400 ignition[1341]: INFO : files: createFilesystemsFiles: createFiles: op(8): [started] writing file "/sysroot/opt/bin/kubeadm" Feb 9 10:11:49.881480 ignition[1341]: INFO : GET https://dl.k8s.io/release/v1.26.5/bin/linux/arm64/kubeadm: attempt #1 Feb 9 10:11:49.885369 systemd[1]: mnt-oem1278982789.mount: Deactivated successfully. Feb 9 10:11:49.952746 ignition[1341]: INFO : GET result: OK Feb 9 10:11:50.528182 ignition[1341]: DEBUG : file matches expected sum of: 46c9f489062bdb84574703f7339d140d7e42c9c71b367cd860071108a3c1d38fabda2ef69f9c0ff88f7c80e88d38f96ab2248d4c9a6c9c60b0a4c20fd640d0db Feb 9 10:11:50.533145 ignition[1341]: INFO : files: createFilesystemsFiles: createFiles: op(8): [finished] writing file "/sysroot/opt/bin/kubeadm" Feb 9 10:11:50.533145 ignition[1341]: INFO : files: createFilesystemsFiles: createFiles: op(9): [started] writing file "/sysroot/opt/bin/kubelet" Feb 9 10:11:50.533145 ignition[1341]: INFO : GET https://dl.k8s.io/release/v1.26.5/bin/linux/arm64/kubelet: attempt #1 Feb 9 10:11:50.595538 ignition[1341]: INFO : GET result: OK Feb 9 10:11:51.951377 ignition[1341]: DEBUG : file matches expected sum of: 0e4ee1f23bf768c49d09beb13a6b5fad6efc8e3e685e7c5610188763e3af55923fb46158b5e76973a0f9a055f9b30d525b467c53415f965536adc2f04d9cf18d Feb 9 10:11:51.957559 ignition[1341]: INFO : files: createFilesystemsFiles: createFiles: op(9): [finished] writing file "/sysroot/opt/bin/kubelet" Feb 9 10:11:51.957559 ignition[1341]: INFO : files: createFilesystemsFiles: createFiles: op(a): [started] writing file "/sysroot/etc/docker/daemon.json" Feb 9 10:11:51.957559 ignition[1341]: INFO : files: createFilesystemsFiles: createFiles: op(a): [finished] writing file "/sysroot/etc/docker/daemon.json" Feb 9 10:11:51.957559 ignition[1341]: INFO : files: createFilesystemsFiles: createFiles: op(b): [started] writing file "/sysroot/home/core/install.sh" Feb 9 10:11:51.957559 ignition[1341]: INFO : files: createFilesystemsFiles: createFiles: op(b): [finished] writing file "/sysroot/home/core/install.sh" Feb 9 10:11:51.957559 ignition[1341]: INFO : files: createFilesystemsFiles: createFiles: op(c): [started] writing file "/sysroot/home/core/nginx.yaml" Feb 9 10:11:51.957559 ignition[1341]: INFO : files: createFilesystemsFiles: createFiles: op(c): [finished] writing file "/sysroot/home/core/nginx.yaml" Feb 9 10:11:51.957559 ignition[1341]: INFO : files: createFilesystemsFiles: createFiles: op(d): [started] writing file "/sysroot/home/core/nfs-pod.yaml" Feb 9 10:11:51.957559 ignition[1341]: INFO : files: createFilesystemsFiles: createFiles: op(d): [finished] writing file "/sysroot/home/core/nfs-pod.yaml" Feb 9 10:11:51.957559 ignition[1341]: INFO : files: createFilesystemsFiles: createFiles: op(e): [started] writing file "/sysroot/home/core/nfs-pvc.yaml" Feb 9 10:11:51.957559 ignition[1341]: INFO : files: createFilesystemsFiles: createFiles: op(e): [finished] writing file "/sysroot/home/core/nfs-pvc.yaml" Feb 9 10:11:51.957559 ignition[1341]: INFO : files: createFilesystemsFiles: createFiles: op(f): [started] writing file "/sysroot/etc/flatcar/update.conf" Feb 9 10:11:51.957559 ignition[1341]: INFO : files: createFilesystemsFiles: createFiles: op(f): [finished] writing file "/sysroot/etc/flatcar/update.conf" Feb 9 10:11:51.957559 ignition[1341]: INFO : files: createFilesystemsFiles: createFiles: op(10): [started] writing file "/sysroot/etc/systemd/system/nvidia.service" Feb 9 10:11:51.957559 ignition[1341]: INFO : oem config not found in "/usr/share/oem", looking on oem partition Feb 9 10:11:52.017919 ignition[1341]: INFO : op(4): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1446376268" Feb 9 10:11:52.017919 ignition[1341]: CRITICAL : op(4): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1446376268": device or resource busy Feb 9 10:11:52.017919 ignition[1341]: ERROR : failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem1446376268", trying btrfs: device or resource busy Feb 9 10:11:52.017919 ignition[1341]: INFO : op(5): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1446376268" Feb 9 10:11:52.017919 ignition[1341]: INFO : op(5): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1446376268" Feb 9 10:11:52.017919 ignition[1341]: INFO : op(6): [started] unmounting "/mnt/oem1446376268" Feb 9 10:11:52.017919 ignition[1341]: INFO : op(6): [finished] unmounting "/mnt/oem1446376268" Feb 9 10:11:52.017919 ignition[1341]: INFO : files: createFilesystemsFiles: createFiles: op(10): [finished] writing file "/sysroot/etc/systemd/system/nvidia.service" Feb 9 10:11:52.017919 ignition[1341]: INFO : files: createFilesystemsFiles: createFiles: op(11): [started] writing file "/sysroot/etc/amazon/ssm/amazon-ssm-agent.json" Feb 9 10:11:52.017919 ignition[1341]: INFO : oem config not found in "/usr/share/oem", looking on oem partition Feb 9 10:11:52.053285 systemd[1]: mnt-oem1446376268.mount: Deactivated successfully. Feb 9 10:11:52.070682 ignition[1341]: INFO : op(7): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3457890793" Feb 9 10:11:52.073622 ignition[1341]: CRITICAL : op(7): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3457890793": device or resource busy Feb 9 10:11:52.073622 ignition[1341]: ERROR : failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem3457890793", trying btrfs: device or resource busy Feb 9 10:11:52.073622 ignition[1341]: INFO : op(8): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3457890793" Feb 9 10:11:52.083196 ignition[1341]: INFO : op(8): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3457890793" Feb 9 10:11:52.083196 ignition[1341]: INFO : op(9): [started] unmounting "/mnt/oem3457890793" Feb 9 10:11:52.083196 ignition[1341]: INFO : op(9): [finished] unmounting "/mnt/oem3457890793" Feb 9 10:11:52.083196 ignition[1341]: INFO : files: createFilesystemsFiles: createFiles: op(11): [finished] writing file "/sysroot/etc/amazon/ssm/amazon-ssm-agent.json" Feb 9 10:11:52.083196 ignition[1341]: INFO : files: createFilesystemsFiles: createFiles: op(12): [started] writing file "/sysroot/etc/amazon/ssm/seelog.xml" Feb 9 10:11:52.083196 ignition[1341]: INFO : oem config not found in "/usr/share/oem", looking on oem partition Feb 9 10:11:52.120075 ignition[1341]: INFO : op(a): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3800705659" Feb 9 10:11:52.122971 ignition[1341]: CRITICAL : op(a): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3800705659": device or resource busy Feb 9 10:11:52.122971 ignition[1341]: ERROR : failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem3800705659", trying btrfs: device or resource busy Feb 9 10:11:52.122971 ignition[1341]: INFO : op(b): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3800705659" Feb 9 10:11:52.132554 ignition[1341]: INFO : op(b): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3800705659" Feb 9 10:11:52.137273 ignition[1341]: INFO : op(c): [started] unmounting "/mnt/oem3800705659" Feb 9 10:11:52.137273 ignition[1341]: INFO : op(c): [finished] unmounting "/mnt/oem3800705659" Feb 9 10:11:52.137273 ignition[1341]: INFO : files: createFilesystemsFiles: createFiles: op(12): [finished] writing file "/sysroot/etc/amazon/ssm/seelog.xml" Feb 9 10:11:52.137273 ignition[1341]: INFO : files: op(13): [started] processing unit "coreos-metadata-sshkeys@.service" Feb 9 10:11:52.137273 ignition[1341]: INFO : files: op(13): [finished] processing unit "coreos-metadata-sshkeys@.service" Feb 9 10:11:52.137273 ignition[1341]: INFO : files: op(14): [started] processing unit "amazon-ssm-agent.service" Feb 9 10:11:52.137273 ignition[1341]: INFO : files: op(14): op(15): [started] writing unit "amazon-ssm-agent.service" at "/sysroot/etc/systemd/system/amazon-ssm-agent.service" Feb 9 10:11:52.137273 ignition[1341]: INFO : files: op(14): op(15): [finished] writing unit "amazon-ssm-agent.service" at "/sysroot/etc/systemd/system/amazon-ssm-agent.service" Feb 9 10:11:52.137273 ignition[1341]: INFO : files: op(14): [finished] processing unit "amazon-ssm-agent.service" Feb 9 10:11:52.137273 ignition[1341]: INFO : files: op(16): [started] processing unit "nvidia.service" Feb 9 10:11:52.137273 ignition[1341]: INFO : files: op(16): [finished] processing unit "nvidia.service" Feb 9 10:11:52.137273 ignition[1341]: INFO : files: op(17): [started] processing unit "prepare-critools.service" Feb 9 10:11:52.137273 ignition[1341]: INFO : files: op(17): op(18): [started] writing unit "prepare-critools.service" at "/sysroot/etc/systemd/system/prepare-critools.service" Feb 9 10:11:52.137273 ignition[1341]: INFO : files: op(17): op(18): [finished] writing unit "prepare-critools.service" at "/sysroot/etc/systemd/system/prepare-critools.service" Feb 9 10:11:52.137273 ignition[1341]: INFO : files: op(17): [finished] processing unit "prepare-critools.service" Feb 9 10:11:52.137273 ignition[1341]: INFO : files: op(19): [started] processing unit "prepare-helm.service" Feb 9 10:11:52.137273 ignition[1341]: INFO : files: op(19): op(1a): [started] writing unit "prepare-helm.service" at "/sysroot/etc/systemd/system/prepare-helm.service" Feb 9 10:11:52.137273 ignition[1341]: INFO : files: op(19): op(1a): [finished] writing unit "prepare-helm.service" at "/sysroot/etc/systemd/system/prepare-helm.service" Feb 9 10:11:52.137273 ignition[1341]: INFO : files: op(19): [finished] processing unit "prepare-helm.service" Feb 9 10:11:52.137273 ignition[1341]: INFO : files: op(1b): [started] processing unit "prepare-cni-plugins.service" Feb 9 10:11:52.221202 kernel: audit: type=1130 audit(1707473512.195:37): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.195000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.194111 systemd[1]: Finished ignition-files.service. Feb 9 10:11:52.223613 ignition[1341]: INFO : files: op(1b): op(1c): [started] writing unit "prepare-cni-plugins.service" at "/sysroot/etc/systemd/system/prepare-cni-plugins.service" Feb 9 10:11:52.223613 ignition[1341]: INFO : files: op(1b): op(1c): [finished] writing unit "prepare-cni-plugins.service" at "/sysroot/etc/systemd/system/prepare-cni-plugins.service" Feb 9 10:11:52.223613 ignition[1341]: INFO : files: op(1b): [finished] processing unit "prepare-cni-plugins.service" Feb 9 10:11:52.223613 ignition[1341]: INFO : files: op(1d): [started] setting preset to enabled for "coreos-metadata-sshkeys@.service " Feb 9 10:11:52.223613 ignition[1341]: INFO : files: op(1d): [finished] setting preset to enabled for "coreos-metadata-sshkeys@.service " Feb 9 10:11:52.223613 ignition[1341]: INFO : files: op(1e): [started] setting preset to enabled for "amazon-ssm-agent.service" Feb 9 10:11:52.223613 ignition[1341]: INFO : files: op(1e): [finished] setting preset to enabled for "amazon-ssm-agent.service" Feb 9 10:11:52.223613 ignition[1341]: INFO : files: op(1f): [started] setting preset to enabled for "nvidia.service" Feb 9 10:11:52.223613 ignition[1341]: INFO : files: op(1f): [finished] setting preset to enabled for "nvidia.service" Feb 9 10:11:52.223613 ignition[1341]: INFO : files: op(20): [started] setting preset to enabled for "prepare-critools.service" Feb 9 10:11:52.223613 ignition[1341]: INFO : files: op(20): [finished] setting preset to enabled for "prepare-critools.service" Feb 9 10:11:52.223613 ignition[1341]: INFO : files: op(21): [started] setting preset to enabled for "prepare-helm.service" Feb 9 10:11:52.223613 ignition[1341]: INFO : files: op(21): [finished] setting preset to enabled for "prepare-helm.service" Feb 9 10:11:52.223613 ignition[1341]: INFO : files: op(22): [started] setting preset to enabled for "prepare-cni-plugins.service" Feb 9 10:11:52.223613 ignition[1341]: INFO : files: op(22): [finished] setting preset to enabled for "prepare-cni-plugins.service" Feb 9 10:11:52.223613 ignition[1341]: INFO : files: createResultFile: createFiles: op(23): [started] writing file "/sysroot/etc/.ignition-result.json" Feb 9 10:11:52.223613 ignition[1341]: INFO : files: createResultFile: createFiles: op(23): [finished] writing file "/sysroot/etc/.ignition-result.json" Feb 9 10:11:52.223613 ignition[1341]: INFO : files: files passed Feb 9 10:11:52.223613 ignition[1341]: INFO : Ignition finished successfully Feb 9 10:11:52.319529 kernel: audit: type=1130 audit(1707473512.278:38): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.278000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.215898 systemd[1]: Starting initrd-setup-root-after-ignition.service... Feb 9 10:11:52.303000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.250174 systemd[1]: torcx-profile-populate.service was skipped because of an unmet condition check (ConditionPathExists=/sysroot/etc/torcx/next-profile). Feb 9 10:11:52.333895 initrd-setup-root-after-ignition[1364]: grep: /sysroot/etc/flatcar/enabled-sysext.conf: No such file or directory Feb 9 10:11:52.338594 kernel: audit: type=1130 audit(1707473512.303:39): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.338638 kernel: audit: type=1131 audit(1707473512.303:40): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.303000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.253309 systemd[1]: Starting ignition-quench.service... Feb 9 10:11:52.369577 kernel: audit: type=1130 audit(1707473512.334:41): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.369617 kernel: audit: type=1131 audit(1707473512.334:42): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.334000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.334000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.256198 systemd[1]: Finished initrd-setup-root-after-ignition.service. Feb 9 10:11:52.281439 systemd[1]: Reached target ignition-complete.target. Feb 9 10:11:52.283825 systemd[1]: Starting initrd-parse-etc.service... Feb 9 10:11:52.302588 systemd[1]: ignition-quench.service: Deactivated successfully. Feb 9 10:11:52.302793 systemd[1]: Finished ignition-quench.service. Feb 9 10:11:52.326120 systemd[1]: initrd-parse-etc.service: Deactivated successfully. Feb 9 10:11:52.326338 systemd[1]: Finished initrd-parse-etc.service. Feb 9 10:11:52.336007 systemd[1]: Reached target initrd-fs.target. Feb 9 10:11:52.359914 systemd[1]: Reached target initrd.target. Feb 9 10:11:52.360762 systemd[1]: dracut-mount.service was skipped because no trigger condition checks were met. Feb 9 10:11:52.370335 systemd[1]: Starting dracut-pre-pivot.service... Feb 9 10:11:52.415216 systemd[1]: Finished dracut-pre-pivot.service. Feb 9 10:11:52.416000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.419809 systemd[1]: Starting initrd-cleanup.service... Feb 9 10:11:52.433429 kernel: audit: type=1130 audit(1707473512.416:43): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.440834 systemd[1]: Stopped target nss-lookup.target. Feb 9 10:11:52.444165 systemd[1]: Stopped target remote-cryptsetup.target. Feb 9 10:11:52.447699 systemd[1]: Stopped target timers.target. Feb 9 10:11:52.450723 systemd[1]: dracut-pre-pivot.service: Deactivated successfully. Feb 9 10:11:52.452811 systemd[1]: Stopped dracut-pre-pivot.service. Feb 9 10:11:52.454000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.463430 systemd[1]: Stopped target initrd.target. Feb 9 10:11:52.467027 systemd[1]: Stopped target basic.target. Feb 9 10:11:52.474130 systemd[1]: Stopped target ignition-complete.target. Feb 9 10:11:52.477705 systemd[1]: Stopped target ignition-diskful.target. Feb 9 10:11:52.485314 systemd[1]: Stopped target initrd-root-device.target. Feb 9 10:11:52.489233 systemd[1]: Stopped target remote-fs.target. Feb 9 10:11:52.493108 systemd[1]: Stopped target remote-fs-pre.target. Feb 9 10:11:52.500293 systemd[1]: Stopped target sysinit.target. Feb 9 10:11:52.503916 kernel: audit: type=1131 audit(1707473512.454:44): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.503984 systemd[1]: Stopped target local-fs.target. Feb 9 10:11:52.511074 systemd[1]: Stopped target local-fs-pre.target. Feb 9 10:11:52.514410 systemd[1]: Stopped target swap.target. Feb 9 10:11:52.521014 systemd[1]: dracut-pre-mount.service: Deactivated successfully. Feb 9 10:11:52.523014 systemd[1]: Stopped dracut-pre-mount.service. Feb 9 10:11:52.525000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.533488 systemd[1]: Stopped target cryptsetup.target. Feb 9 10:11:52.536636 systemd[1]: dracut-initqueue.service: Deactivated successfully. Feb 9 10:11:52.538714 systemd[1]: Stopped dracut-initqueue.service. Feb 9 10:11:52.541941 systemd[1]: initrd-setup-root-after-ignition.service: Deactivated successfully. Feb 9 10:11:52.544255 systemd[1]: Stopped initrd-setup-root-after-ignition.service. Feb 9 10:11:52.551586 systemd[1]: ignition-files.service: Deactivated successfully. Feb 9 10:11:52.553510 systemd[1]: Stopped ignition-files.service. Feb 9 10:11:52.540000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.560642 kernel: audit: type=1131 audit(1707473512.525:45): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.561076 kernel: audit: type=1131 audit(1707473512.540:46): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.550000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.562000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.565018 systemd[1]: Stopping ignition-mount.service... Feb 9 10:11:52.594431 ignition[1380]: INFO : Ignition 2.14.0 Feb 9 10:11:52.594431 ignition[1380]: INFO : Stage: umount Feb 9 10:11:52.594431 ignition[1380]: INFO : reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 9 10:11:52.594431 ignition[1380]: DEBUG : parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 9 10:11:52.588000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.625837 iscsid[1190]: iscsid shutting down. Feb 9 10:11:52.630000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.632000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.638000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.582201 systemd[1]: Stopping iscsid.service... Feb 9 10:11:52.643000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.646539 ignition[1380]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 9 10:11:52.646539 ignition[1380]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 9 10:11:52.646539 ignition[1380]: INFO : PUT result: OK Feb 9 10:11:52.646539 ignition[1380]: INFO : umount: umount passed Feb 9 10:11:52.646539 ignition[1380]: INFO : Ignition finished successfully Feb 9 10:11:52.652000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.656000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.661000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.663000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.665000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.585240 systemd[1]: kmod-static-nodes.service: Deactivated successfully. Feb 9 10:11:52.585542 systemd[1]: Stopped kmod-static-nodes.service. Feb 9 10:11:52.596361 systemd[1]: Stopping sysroot-boot.service... Feb 9 10:11:52.605192 systemd[1]: systemd-udev-trigger.service: Deactivated successfully. Feb 9 10:11:52.605559 systemd[1]: Stopped systemd-udev-trigger.service. Feb 9 10:11:52.682000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.686000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.690000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.690000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.631738 systemd[1]: dracut-pre-trigger.service: Deactivated successfully. Feb 9 10:11:52.631952 systemd[1]: Stopped dracut-pre-trigger.service. Feb 9 10:11:52.636994 systemd[1]: iscsid.service: Deactivated successfully. Feb 9 10:11:52.701000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsiuio comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.637201 systemd[1]: Stopped iscsid.service. Feb 9 10:11:52.640435 systemd[1]: ignition-mount.service: Deactivated successfully. Feb 9 10:11:52.640637 systemd[1]: Stopped ignition-mount.service. Feb 9 10:11:52.653057 systemd[1]: sysroot-boot.service: Deactivated successfully. Feb 9 10:11:52.653240 systemd[1]: Stopped sysroot-boot.service. Feb 9 10:11:52.654240 systemd[1]: ignition-disks.service: Deactivated successfully. Feb 9 10:11:52.654466 systemd[1]: Stopped ignition-disks.service. Feb 9 10:11:52.658495 systemd[1]: ignition-kargs.service: Deactivated successfully. Feb 9 10:11:52.658592 systemd[1]: Stopped ignition-kargs.service. Feb 9 10:11:52.663338 systemd[1]: ignition-fetch.service: Deactivated successfully. Feb 9 10:11:52.663442 systemd[1]: Stopped ignition-fetch.service. Feb 9 10:11:52.665123 systemd[1]: ignition-fetch-offline.service: Deactivated successfully. Feb 9 10:11:52.665203 systemd[1]: Stopped ignition-fetch-offline.service. Feb 9 10:11:52.667018 systemd[1]: Stopped target paths.target. Feb 9 10:11:52.668488 systemd[1]: systemd-ask-password-console.path: Deactivated successfully. Feb 9 10:11:52.672449 systemd[1]: Stopped systemd-ask-password-console.path. Feb 9 10:11:52.674461 systemd[1]: Stopped target slices.target. Feb 9 10:11:52.675956 systemd[1]: Stopped target sockets.target. Feb 9 10:11:52.677612 systemd[1]: iscsid.socket: Deactivated successfully. Feb 9 10:11:52.677686 systemd[1]: Closed iscsid.socket. Feb 9 10:11:52.680534 systemd[1]: ignition-setup.service: Deactivated successfully. Feb 9 10:11:52.680622 systemd[1]: Stopped ignition-setup.service. Feb 9 10:11:52.684240 systemd[1]: initrd-setup-root.service: Deactivated successfully. Feb 9 10:11:52.684320 systemd[1]: Stopped initrd-setup-root.service. Feb 9 10:11:52.687778 systemd[1]: Stopping iscsiuio.service... Feb 9 10:11:52.689713 systemd[1]: initrd-cleanup.service: Deactivated successfully. Feb 9 10:11:52.689903 systemd[1]: Finished initrd-cleanup.service. Feb 9 10:11:52.698892 systemd[1]: iscsiuio.service: Deactivated successfully. Feb 9 10:11:52.699103 systemd[1]: Stopped iscsiuio.service. Feb 9 10:11:52.703326 systemd[1]: Stopped target network.target. Feb 9 10:11:52.704920 systemd[1]: iscsiuio.socket: Deactivated successfully. Feb 9 10:11:52.704993 systemd[1]: Closed iscsiuio.socket. Feb 9 10:11:52.706628 systemd[1]: Stopping systemd-networkd.service... Feb 9 10:11:52.764000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.708797 systemd[1]: Stopping systemd-resolved.service... Feb 9 10:11:52.750211 systemd-networkd[1183]: eth0: DHCPv6 lease lost Feb 9 10:11:52.769000 audit: BPF prog-id=6 op=UNLOAD Feb 9 10:11:52.764107 systemd[1]: systemd-resolved.service: Deactivated successfully. Feb 9 10:11:52.764305 systemd[1]: Stopped systemd-resolved.service. Feb 9 10:11:52.784000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.791000 audit: BPF prog-id=9 op=UNLOAD Feb 9 10:11:52.771955 systemd[1]: systemd-networkd.service: Deactivated successfully. Feb 9 10:11:52.772187 systemd[1]: Stopped systemd-networkd.service. Feb 9 10:11:52.785931 systemd[1]: systemd-networkd.socket: Deactivated successfully. Feb 9 10:11:52.786001 systemd[1]: Closed systemd-networkd.socket. Feb 9 10:11:52.792626 systemd[1]: Stopping network-cleanup.service... Feb 9 10:11:52.804981 systemd[1]: parse-ip-for-networkd.service: Deactivated successfully. Feb 9 10:11:52.805000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=parse-ip-for-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.805105 systemd[1]: Stopped parse-ip-for-networkd.service. Feb 9 10:11:52.807721 systemd[1]: systemd-sysctl.service: Deactivated successfully. Feb 9 10:11:52.807814 systemd[1]: Stopped systemd-sysctl.service. Feb 9 10:11:52.816000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.818225 systemd[1]: systemd-modules-load.service: Deactivated successfully. Feb 9 10:11:52.818000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.818325 systemd[1]: Stopped systemd-modules-load.service. Feb 9 10:11:52.821303 systemd[1]: Stopping systemd-udevd.service... Feb 9 10:11:52.832172 systemd[1]: systemd-udevd.service: Deactivated successfully. Feb 9 10:11:52.834787 systemd[1]: Stopped systemd-udevd.service. Feb 9 10:11:52.836000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.838675 systemd[1]: network-cleanup.service: Deactivated successfully. Feb 9 10:11:52.840742 systemd[1]: Stopped network-cleanup.service. Feb 9 10:11:52.842000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=network-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.844467 systemd[1]: systemd-udevd-control.socket: Deactivated successfully. Feb 9 10:11:52.844562 systemd[1]: Closed systemd-udevd-control.socket. Feb 9 10:11:52.849811 systemd[1]: systemd-udevd-kernel.socket: Deactivated successfully. Feb 9 10:11:52.849898 systemd[1]: Closed systemd-udevd-kernel.socket. Feb 9 10:11:52.853324 systemd[1]: dracut-pre-udev.service: Deactivated successfully. Feb 9 10:11:52.856740 systemd[1]: Stopped dracut-pre-udev.service. Feb 9 10:11:52.858000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-udev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.859789 systemd[1]: dracut-cmdline.service: Deactivated successfully. Feb 9 10:11:52.859875 systemd[1]: Stopped dracut-cmdline.service. Feb 9 10:11:52.863000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.864849 systemd[1]: dracut-cmdline-ask.service: Deactivated successfully. Feb 9 10:11:52.864930 systemd[1]: Stopped dracut-cmdline-ask.service. Feb 9 10:11:52.866000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.871184 systemd[1]: Starting initrd-udevadm-cleanup-db.service... Feb 9 10:11:52.874000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.873550 systemd[1]: systemd-vconsole-setup.service: Deactivated successfully. Feb 9 10:11:52.873675 systemd[1]: Stopped systemd-vconsole-setup.service. Feb 9 10:11:52.892884 systemd[1]: initrd-udevadm-cleanup-db.service: Deactivated successfully. Feb 9 10:11:52.893102 systemd[1]: Finished initrd-udevadm-cleanup-db.service. Feb 9 10:11:52.894000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-udevadm-cleanup-db comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.894000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-udevadm-cleanup-db comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:52.897206 systemd[1]: Reached target initrd-switch-root.target. Feb 9 10:11:52.900238 systemd[1]: Starting initrd-switch-root.service... Feb 9 10:11:52.915295 systemd[1]: Switching root. Feb 9 10:11:52.945473 systemd-journald[308]: Journal stopped Feb 9 10:12:09.703577 systemd-journald[308]: Received SIGTERM from PID 1 (systemd). Feb 9 10:12:09.703694 kernel: SELinux: Class mctp_socket not defined in policy. Feb 9 10:12:09.703736 kernel: SELinux: Class anon_inode not defined in policy. Feb 9 10:12:09.703774 kernel: SELinux: the above unknown classes and permissions will be allowed Feb 9 10:12:09.703813 kernel: SELinux: policy capability network_peer_controls=1 Feb 9 10:12:09.703844 kernel: SELinux: policy capability open_perms=1 Feb 9 10:12:09.703874 kernel: SELinux: policy capability extended_socket_class=1 Feb 9 10:12:09.703905 kernel: SELinux: policy capability always_check_network=0 Feb 9 10:12:09.703936 kernel: SELinux: policy capability cgroup_seclabel=1 Feb 9 10:12:09.703966 kernel: SELinux: policy capability nnp_nosuid_transition=1 Feb 9 10:12:09.703997 kernel: SELinux: policy capability genfs_seclabel_symlinks=0 Feb 9 10:12:09.704030 kernel: SELinux: policy capability ioctl_skip_cloexec=0 Feb 9 10:12:09.707760 systemd[1]: Successfully loaded SELinux policy in 307.683ms. Feb 9 10:12:09.707859 systemd[1]: Relabelled /dev, /dev/shm, /run, /sys/fs/cgroup in 21.217ms. Feb 9 10:12:09.707901 systemd[1]: systemd 252 running in system mode (+PAM +AUDIT +SELINUX -APPARMOR +IMA +SMACK +SECCOMP +GCRYPT -GNUTLS +OPENSSL -ACL +BLKID +CURL -ELFUTILS -FIDO2 +IDN2 -IDN +IPTC +KMOD +LIBCRYPTSETUP +LIBFDISK +PCRE2 -PWQUALITY -P11KIT -QRENCODE -TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD -BPF_FRAMEWORK -XKBCOMMON +UTMP +SYSVINIT default-hierarchy=unified) Feb 9 10:12:09.707939 systemd[1]: Detected virtualization amazon. Feb 9 10:12:09.707972 systemd[1]: Detected architecture arm64. Feb 9 10:12:09.708004 systemd[1]: Detected first boot. Feb 9 10:12:09.708036 systemd[1]: Initializing machine ID from VM UUID. Feb 9 10:12:09.708073 kernel: kauditd_printk_skb: 33 callbacks suppressed Feb 9 10:12:09.708111 kernel: audit: type=1400 audit(1707473517.579:80): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=1 Feb 9 10:12:09.708154 kernel: audit: type=1400 audit(1707473517.583:81): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=1 Feb 9 10:12:09.708186 kernel: audit: type=1334 audit(1707473517.588:82): prog-id=10 op=LOAD Feb 9 10:12:09.708217 kernel: audit: type=1334 audit(1707473517.588:83): prog-id=10 op=UNLOAD Feb 9 10:12:09.708249 kernel: audit: type=1334 audit(1707473517.596:84): prog-id=11 op=LOAD Feb 9 10:12:09.708281 kernel: audit: type=1334 audit(1707473517.596:85): prog-id=11 op=UNLOAD Feb 9 10:12:09.708312 kernel: SELinux: Context system_u:object_r:container_file_t:s0:c1022,c1023 is not valid (left unmapped). Feb 9 10:12:09.708348 kernel: audit: type=1400 audit(1707473518.424:86): avc: denied { associate } for pid=1413 comm="torcx-generator" name="docker" dev="tmpfs" ino=2 scontext=system_u:object_r:unlabeled_t:s0 tcontext=system_u:object_r:tmpfs_t:s0 tclass=filesystem permissive=1 srawcon="system_u:object_r:container_file_t:s0:c1022,c1023" Feb 9 10:12:09.708417 kernel: audit: type=1300 audit(1707473518.424:86): arch=c00000b7 syscall=5 success=yes exit=0 a0=40001458b2 a1=40000c6de0 a2=40000cd0c0 a3=32 items=0 ppid=1396 pid=1413 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="torcx-generator" exe="/usr/lib/systemd/system-generators/torcx-generator" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:12:09.708459 kernel: audit: type=1327 audit(1707473518.424:86): proctitle=2F7573722F6C69622F73797374656D642F73797374656D2D67656E657261746F72732F746F7263782D67656E657261746F72002F72756E2F73797374656D642F67656E657261746F72002F72756E2F73797374656D642F67656E657261746F722E6561726C79002F72756E2F73797374656D642F67656E657261746F722E6C61 Feb 9 10:12:09.708493 kernel: audit: type=1400 audit(1707473518.428:87): avc: denied { associate } for pid=1413 comm="torcx-generator" name="usr" scontext=system_u:object_r:unlabeled_t:s0 tcontext=system_u:object_r:tmpfs_t:s0 tclass=filesystem permissive=1 Feb 9 10:12:09.708528 systemd[1]: Populated /etc with preset unit settings. Feb 9 10:12:09.708562 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Feb 9 10:12:09.708598 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Feb 9 10:12:09.708635 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Feb 9 10:12:09.708665 kernel: kauditd_printk_skb: 5 callbacks suppressed Feb 9 10:12:09.708693 kernel: audit: type=1334 audit(1707473529.272:88): prog-id=12 op=LOAD Feb 9 10:12:09.708721 kernel: audit: type=1334 audit(1707473529.272:89): prog-id=3 op=UNLOAD Feb 9 10:12:09.708750 kernel: audit: type=1334 audit(1707473529.274:90): prog-id=13 op=LOAD Feb 9 10:12:09.708787 kernel: audit: type=1334 audit(1707473529.277:91): prog-id=14 op=LOAD Feb 9 10:12:09.708816 kernel: audit: type=1334 audit(1707473529.277:92): prog-id=4 op=UNLOAD Feb 9 10:12:09.708848 kernel: audit: type=1334 audit(1707473529.277:93): prog-id=5 op=UNLOAD Feb 9 10:12:09.708878 kernel: audit: type=1334 audit(1707473529.279:94): prog-id=15 op=LOAD Feb 9 10:12:09.708906 kernel: audit: type=1334 audit(1707473529.279:95): prog-id=12 op=UNLOAD Feb 9 10:12:09.708937 systemd[1]: initrd-switch-root.service: Deactivated successfully. Feb 9 10:12:09.708967 kernel: audit: type=1334 audit(1707473529.282:96): prog-id=16 op=LOAD Feb 9 10:12:09.709014 systemd[1]: Stopped initrd-switch-root.service. Feb 9 10:12:09.709048 kernel: audit: type=1334 audit(1707473529.284:97): prog-id=17 op=LOAD Feb 9 10:12:09.709078 systemd[1]: systemd-journald.service: Scheduled restart job, restart counter is at 1. Feb 9 10:12:09.709115 systemd[1]: Created slice system-addon\x2dconfig.slice. Feb 9 10:12:09.709147 systemd[1]: Created slice system-addon\x2drun.slice. Feb 9 10:12:09.709178 systemd[1]: Created slice system-coreos\x2dmetadata\x2dsshkeys.slice. Feb 9 10:12:09.709210 systemd[1]: Created slice system-getty.slice. Feb 9 10:12:09.709241 systemd[1]: Created slice system-modprobe.slice. Feb 9 10:12:09.709275 systemd[1]: Created slice system-serial\x2dgetty.slice. Feb 9 10:12:09.709305 systemd[1]: Created slice system-system\x2dcloudinit.slice. Feb 9 10:12:09.709336 systemd[1]: Created slice system-systemd\x2dfsck.slice. Feb 9 10:12:09.709368 systemd[1]: Created slice user.slice. Feb 9 10:12:09.709423 systemd[1]: Started systemd-ask-password-console.path. Feb 9 10:12:09.709457 systemd[1]: Started systemd-ask-password-wall.path. Feb 9 10:12:09.709512 systemd[1]: Set up automount boot.automount. Feb 9 10:12:09.709545 systemd[1]: Set up automount proc-sys-fs-binfmt_misc.automount. Feb 9 10:12:09.709585 systemd[1]: Stopped target initrd-switch-root.target. Feb 9 10:12:09.709618 systemd[1]: Stopped target initrd-fs.target. Feb 9 10:12:09.709649 systemd[1]: Stopped target initrd-root-fs.target. Feb 9 10:12:09.709679 systemd[1]: Reached target integritysetup.target. Feb 9 10:12:09.709708 systemd[1]: Reached target remote-cryptsetup.target. Feb 9 10:12:09.709744 systemd[1]: Reached target remote-fs.target. Feb 9 10:12:09.709774 systemd[1]: Reached target slices.target. Feb 9 10:12:09.709803 systemd[1]: Reached target swap.target. Feb 9 10:12:09.709832 systemd[1]: Reached target torcx.target. Feb 9 10:12:09.709861 systemd[1]: Reached target veritysetup.target. Feb 9 10:12:09.709893 systemd[1]: Listening on systemd-coredump.socket. Feb 9 10:12:09.709925 systemd[1]: Listening on systemd-initctl.socket. Feb 9 10:12:09.709958 systemd[1]: Listening on systemd-networkd.socket. Feb 9 10:12:09.709991 systemd[1]: Listening on systemd-udevd-control.socket. Feb 9 10:12:09.710024 systemd[1]: Listening on systemd-udevd-kernel.socket. Feb 9 10:12:09.710054 systemd[1]: Listening on systemd-userdbd.socket. Feb 9 10:12:09.710083 systemd[1]: Mounting dev-hugepages.mount... Feb 9 10:12:09.710112 systemd[1]: Mounting dev-mqueue.mount... Feb 9 10:12:09.710143 systemd[1]: Mounting media.mount... Feb 9 10:12:09.710172 systemd[1]: Mounting sys-kernel-debug.mount... Feb 9 10:12:09.710202 systemd[1]: Mounting sys-kernel-tracing.mount... Feb 9 10:12:09.710232 systemd[1]: Mounting tmp.mount... Feb 9 10:12:09.710263 systemd[1]: Starting flatcar-tmpfiles.service... Feb 9 10:12:09.710293 systemd[1]: ignition-delete-config.service was skipped because no trigger condition checks were met. Feb 9 10:12:09.710327 systemd[1]: Starting kmod-static-nodes.service... Feb 9 10:12:09.710357 systemd[1]: Starting modprobe@configfs.service... Feb 9 10:12:09.710629 systemd[1]: Starting modprobe@dm_mod.service... Feb 9 10:12:09.720330 systemd[1]: Starting modprobe@drm.service... Feb 9 10:12:09.720365 systemd[1]: Starting modprobe@efi_pstore.service... Feb 9 10:12:09.720418 systemd[1]: Starting modprobe@fuse.service... Feb 9 10:12:09.720458 systemd[1]: Starting modprobe@loop.service... Feb 9 10:12:09.720492 systemd[1]: setup-nsswitch.service was skipped because of an unmet condition check (ConditionPathExists=!/etc/nsswitch.conf). Feb 9 10:12:09.720531 systemd[1]: systemd-fsck-root.service: Deactivated successfully. Feb 9 10:12:09.720561 systemd[1]: Stopped systemd-fsck-root.service. Feb 9 10:12:09.720591 kernel: loop: module loaded Feb 9 10:12:09.720621 systemd[1]: systemd-fsck-usr.service: Deactivated successfully. Feb 9 10:12:09.720652 systemd[1]: Stopped systemd-fsck-usr.service. Feb 9 10:12:09.720685 systemd[1]: Stopped systemd-journald.service. Feb 9 10:12:09.720715 systemd[1]: Starting systemd-journald.service... Feb 9 10:12:09.720744 systemd[1]: Starting systemd-modules-load.service... Feb 9 10:12:09.720776 systemd[1]: Starting systemd-network-generator.service... Feb 9 10:12:09.720808 systemd[1]: Starting systemd-remount-fs.service... Feb 9 10:12:09.720844 systemd[1]: Starting systemd-udev-trigger.service... Feb 9 10:12:09.720876 systemd[1]: verity-setup.service: Deactivated successfully. Feb 9 10:12:09.720908 systemd[1]: Stopped verity-setup.service. Feb 9 10:12:09.720947 systemd[1]: Mounted dev-hugepages.mount. Feb 9 10:12:09.720983 kernel: fuse: init (API version 7.34) Feb 9 10:12:09.721013 systemd[1]: Mounted dev-mqueue.mount. Feb 9 10:12:09.721042 systemd[1]: Mounted media.mount. Feb 9 10:12:09.721072 systemd[1]: Mounted sys-kernel-debug.mount. Feb 9 10:12:09.721102 systemd[1]: Mounted sys-kernel-tracing.mount. Feb 9 10:12:09.721133 systemd[1]: Mounted tmp.mount. Feb 9 10:12:09.721163 systemd[1]: Finished kmod-static-nodes.service. Feb 9 10:12:09.721196 systemd[1]: modprobe@configfs.service: Deactivated successfully. Feb 9 10:12:09.721226 systemd[1]: Finished modprobe@configfs.service. Feb 9 10:12:09.721256 systemd[1]: modprobe@dm_mod.service: Deactivated successfully. Feb 9 10:12:09.721292 systemd[1]: Finished modprobe@dm_mod.service. Feb 9 10:12:09.721324 systemd[1]: modprobe@drm.service: Deactivated successfully. Feb 9 10:12:09.721354 systemd[1]: Finished modprobe@drm.service. Feb 9 10:12:09.721408 systemd[1]: modprobe@efi_pstore.service: Deactivated successfully. Feb 9 10:12:09.721449 systemd[1]: Finished modprobe@efi_pstore.service. Feb 9 10:12:09.721500 systemd[1]: modprobe@fuse.service: Deactivated successfully. Feb 9 10:12:09.721532 systemd[1]: Finished modprobe@fuse.service. Feb 9 10:12:09.721563 systemd[1]: modprobe@loop.service: Deactivated successfully. Feb 9 10:12:09.721593 systemd[1]: Finished modprobe@loop.service. Feb 9 10:12:09.721627 systemd[1]: Finished systemd-network-generator.service. Feb 9 10:12:09.721657 systemd[1]: Reached target network-pre.target. Feb 9 10:12:09.721687 systemd[1]: Mounting sys-fs-fuse-connections.mount... Feb 9 10:12:09.721717 systemd[1]: Mounting sys-kernel-config.mount... Feb 9 10:12:09.721747 systemd[1]: systemd-repart.service was skipped because no trigger condition checks were met. Feb 9 10:12:09.721778 systemd[1]: Mounted sys-fs-fuse-connections.mount. Feb 9 10:12:09.721811 systemd-journald[1483]: Journal started Feb 9 10:12:09.721909 systemd-journald[1483]: Runtime Journal (/run/log/journal/ec235960c2fe84922709503ad1abcf96) is 8.0M, max 75.4M, 67.4M free. Feb 9 10:11:57.017000 audit: MAC_POLICY_LOAD auid=4294967295 ses=4294967295 lsm=selinux res=1 Feb 9 10:11:57.579000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=1 Feb 9 10:11:57.583000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=1 Feb 9 10:11:57.588000 audit: BPF prog-id=10 op=LOAD Feb 9 10:12:09.730912 systemd[1]: Started systemd-journald.service. Feb 9 10:11:57.588000 audit: BPF prog-id=10 op=UNLOAD Feb 9 10:11:57.596000 audit: BPF prog-id=11 op=LOAD Feb 9 10:11:57.596000 audit: BPF prog-id=11 op=UNLOAD Feb 9 10:11:58.424000 audit[1413]: AVC avc: denied { associate } for pid=1413 comm="torcx-generator" name="docker" dev="tmpfs" ino=2 scontext=system_u:object_r:unlabeled_t:s0 tcontext=system_u:object_r:tmpfs_t:s0 tclass=filesystem permissive=1 srawcon="system_u:object_r:container_file_t:s0:c1022,c1023" Feb 9 10:11:58.424000 audit[1413]: SYSCALL arch=c00000b7 syscall=5 success=yes exit=0 a0=40001458b2 a1=40000c6de0 a2=40000cd0c0 a3=32 items=0 ppid=1396 pid=1413 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="torcx-generator" exe="/usr/lib/systemd/system-generators/torcx-generator" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:11:58.424000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D2D67656E657261746F72732F746F7263782D67656E657261746F72002F72756E2F73797374656D642F67656E657261746F72002F72756E2F73797374656D642F67656E657261746F722E6561726C79002F72756E2F73797374656D642F67656E657261746F722E6C61 Feb 9 10:11:58.428000 audit[1413]: AVC avc: denied { associate } for pid=1413 comm="torcx-generator" name="usr" scontext=system_u:object_r:unlabeled_t:s0 tcontext=system_u:object_r:tmpfs_t:s0 tclass=filesystem permissive=1 Feb 9 10:11:58.428000 audit[1413]: SYSCALL arch=c00000b7 syscall=34 success=yes exit=0 a0=ffffffffffffff9c a1=4000145989 a2=1ed a3=0 items=2 ppid=1396 pid=1413 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="torcx-generator" exe="/usr/lib/systemd/system-generators/torcx-generator" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:11:58.428000 audit: CWD cwd="/" Feb 9 10:11:58.428000 audit: PATH item=0 name=(null) inode=2 dev=00:1c mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:unlabeled_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 10:11:58.428000 audit: PATH item=1 name=(null) inode=3 dev=00:1c mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:unlabeled_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 10:11:58.428000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D2D67656E657261746F72732F746F7263782D67656E657261746F72002F72756E2F73797374656D642F67656E657261746F72002F72756E2F73797374656D642F67656E657261746F722E6561726C79002F72756E2F73797374656D642F67656E657261746F722E6C61 Feb 9 10:12:09.272000 audit: BPF prog-id=12 op=LOAD Feb 9 10:12:09.272000 audit: BPF prog-id=3 op=UNLOAD Feb 9 10:12:09.274000 audit: BPF prog-id=13 op=LOAD Feb 9 10:12:09.277000 audit: BPF prog-id=14 op=LOAD Feb 9 10:12:09.277000 audit: BPF prog-id=4 op=UNLOAD Feb 9 10:12:09.277000 audit: BPF prog-id=5 op=UNLOAD Feb 9 10:12:09.279000 audit: BPF prog-id=15 op=LOAD Feb 9 10:12:09.279000 audit: BPF prog-id=12 op=UNLOAD Feb 9 10:12:09.282000 audit: BPF prog-id=16 op=LOAD Feb 9 10:12:09.284000 audit: BPF prog-id=17 op=LOAD Feb 9 10:12:09.284000 audit: BPF prog-id=13 op=UNLOAD Feb 9 10:12:09.284000 audit: BPF prog-id=14 op=UNLOAD Feb 9 10:12:09.287000 audit: BPF prog-id=18 op=LOAD Feb 9 10:12:09.287000 audit: BPF prog-id=15 op=UNLOAD Feb 9 10:12:09.289000 audit: BPF prog-id=19 op=LOAD Feb 9 10:12:09.292000 audit: BPF prog-id=20 op=LOAD Feb 9 10:12:09.292000 audit: BPF prog-id=16 op=UNLOAD Feb 9 10:12:09.292000 audit: BPF prog-id=17 op=UNLOAD Feb 9 10:12:09.293000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:09.305000 audit: BPF prog-id=18 op=UNLOAD Feb 9 10:12:09.305000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=initrd-switch-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:09.306000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=initrd-switch-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:09.537000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:09.553000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck-usr comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:09.557000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:09.557000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:09.559000 audit: BPF prog-id=21 op=LOAD Feb 9 10:12:09.559000 audit: BPF prog-id=22 op=LOAD Feb 9 10:12:09.559000 audit: BPF prog-id=23 op=LOAD Feb 9 10:12:09.559000 audit: BPF prog-id=19 op=UNLOAD Feb 9 10:12:09.559000 audit: BPF prog-id=20 op=UNLOAD Feb 9 10:12:09.602000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=verity-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:09.635000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:09.642000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@configfs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:09.642000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@configfs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:09.649000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:09.649000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:09.656000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@drm comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:09.656000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@drm comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:09.663000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:09.663000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:09.671000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@fuse comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:09.671000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@fuse comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:09.678000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:09.678000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:09.683000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-network-generator comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:09.698000 audit: CONFIG_CHANGE op=set audit_enabled=1 old=1 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 res=1 Feb 9 10:12:09.698000 audit[1483]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=60 a0=5 a1=ffffd9c0a4b0 a2=4000 a3=1 items=0 ppid=1 pid=1483 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="systemd-journal" exe="/usr/lib/systemd/systemd-journald" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:12:09.698000 audit: PROCTITLE proctitle="/usr/lib/systemd/systemd-journald" Feb 9 10:12:09.727000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:58.364377 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-09T10:11:58Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.2 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.2 /var/lib/torcx/store]" Feb 9 10:12:09.271663 systemd[1]: Queued start job for default target multi-user.target. Feb 9 10:11:58.422493 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-09T10:11:58Z" level=debug msg="profile found" name=docker-1.12-no path=/usr/share/torcx/profiles/docker-1.12-no.json Feb 9 10:12:09.294313 systemd[1]: systemd-journald.service: Deactivated successfully. Feb 9 10:11:58.422548 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-09T10:11:58Z" level=debug msg="profile found" name=vendor path=/usr/share/torcx/profiles/vendor.json Feb 9 10:12:09.728965 systemd[1]: Mounted sys-kernel-config.mount. Feb 9 10:11:58.422621 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-09T10:11:58Z" level=info msg="no vendor profile selected by /etc/flatcar/docker-1.12" Feb 9 10:11:58.422647 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-09T10:11:58Z" level=debug msg="skipped missing lower profile" missing profile=oem Feb 9 10:11:58.422717 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-09T10:11:58Z" level=warning msg="no next profile: unable to read profile file: open /etc/torcx/next-profile: no such file or directory" Feb 9 10:11:58.422749 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-09T10:11:58Z" level=debug msg="apply configuration parsed" lower profiles (vendor/oem)="[vendor]" upper profile (user)= Feb 9 10:11:58.423188 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-09T10:11:58Z" level=debug msg="mounted tmpfs" target=/run/torcx/unpack Feb 9 10:12:09.739000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-remount-fs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:11:58.423279 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-09T10:11:58Z" level=debug msg="profile found" name=docker-1.12-no path=/usr/share/torcx/profiles/docker-1.12-no.json Feb 9 10:12:09.738809 systemd[1]: Finished systemd-remount-fs.service. Feb 9 10:11:58.423316 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-09T10:11:58Z" level=debug msg="profile found" name=vendor path=/usr/share/torcx/profiles/vendor.json Feb 9 10:12:09.740803 systemd[1]: remount-root.service was skipped because of an unmet condition check (ConditionPathIsReadWrite=!/). Feb 9 10:11:58.424278 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-09T10:11:58Z" level=debug msg="new archive/reference added to cache" format=tgz name=docker path="/usr/share/torcx/store/docker:20.10.torcx.tgz" reference=20.10 Feb 9 10:12:09.743895 systemd[1]: Starting systemd-hwdb-update.service... Feb 9 10:11:58.424365 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-09T10:11:58Z" level=debug msg="new archive/reference added to cache" format=tgz name=docker path="/usr/share/torcx/store/docker:com.coreos.cl.torcx.tgz" reference=com.coreos.cl Feb 9 10:12:09.748035 systemd[1]: Starting systemd-journal-flush.service... Feb 9 10:11:58.424438 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-09T10:11:58Z" level=info msg="store skipped" err="open /usr/share/oem/torcx/store/3510.3.2: no such file or directory" path=/usr/share/oem/torcx/store/3510.3.2 Feb 9 10:12:09.749984 systemd[1]: systemd-pstore.service was skipped because of an unmet condition check (ConditionDirectoryNotEmpty=/sys/fs/pstore). Feb 9 10:11:58.424479 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-09T10:11:58Z" level=info msg="store skipped" err="open /usr/share/oem/torcx/store: no such file or directory" path=/usr/share/oem/torcx/store Feb 9 10:12:09.752551 systemd[1]: Starting systemd-random-seed.service... Feb 9 10:11:58.424529 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-09T10:11:58Z" level=info msg="store skipped" err="open /var/lib/torcx/store/3510.3.2: no such file or directory" path=/var/lib/torcx/store/3510.3.2 Feb 9 10:11:58.424569 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-09T10:11:58Z" level=info msg="store skipped" err="open /var/lib/torcx/store: no such file or directory" path=/var/lib/torcx/store Feb 9 10:12:07.614572 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-09T10:12:07Z" level=debug msg="image unpacked" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Feb 9 10:12:07.615101 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-09T10:12:07Z" level=debug msg="binaries propagated" assets="[/bin/containerd /bin/containerd-shim /bin/ctr /bin/docker /bin/docker-containerd /bin/docker-containerd-shim /bin/docker-init /bin/docker-proxy /bin/docker-runc /bin/dockerd /bin/runc /bin/tini]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Feb 9 10:12:07.615354 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-09T10:12:07Z" level=debug msg="networkd units propagated" assets="[/lib/systemd/network/50-docker.network /lib/systemd/network/90-docker-veth.network]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Feb 9 10:12:07.615827 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-09T10:12:07Z" level=debug msg="systemd units propagated" assets="[/lib/systemd/system/containerd.service /lib/systemd/system/docker.service /lib/systemd/system/docker.socket /lib/systemd/system/sockets.target.wants /lib/systemd/system/multi-user.target.wants]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Feb 9 10:12:07.615932 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-09T10:12:07Z" level=debug msg="profile applied" sealed profile=/run/torcx/profile.json upper profile= Feb 9 10:12:07.616068 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-09T10:12:07Z" level=debug msg="system state sealed" content="[TORCX_LOWER_PROFILES=\"vendor\" TORCX_UPPER_PROFILE=\"\" TORCX_PROFILE_PATH=\"/run/torcx/profile.json\" TORCX_BINDIR=\"/run/torcx/bin\" TORCX_UNPACKDIR=\"/run/torcx/unpack\"]" path=/run/metadata/torcx Feb 9 10:12:09.823165 systemd-journald[1483]: Time spent on flushing to /var/log/journal/ec235960c2fe84922709503ad1abcf96 is 29.342ms for 1181 entries. Feb 9 10:12:09.823165 systemd-journald[1483]: System Journal (/var/log/journal/ec235960c2fe84922709503ad1abcf96) is 8.0M, max 195.6M, 187.6M free. Feb 9 10:12:10.040559 systemd-journald[1483]: Received client request to flush runtime journal. Feb 9 10:12:09.831000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:09.852000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=flatcar-tmpfiles comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:09.903000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:09.933000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:09.936000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-random-seed comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:09.830557 systemd[1]: Finished systemd-modules-load.service. Feb 9 10:12:10.042000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journal-flush comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:09.834875 systemd[1]: Starting systemd-sysctl.service... Feb 9 10:12:09.851522 systemd[1]: Finished flatcar-tmpfiles.service. Feb 9 10:12:10.045302 udevadm[1532]: systemd-udev-settle.service is deprecated. Please fix lvm2-activation-early.service, lvm2-activation.service not to pull it in. Feb 9 10:12:09.855600 systemd[1]: Starting systemd-sysusers.service... Feb 9 10:12:09.902674 systemd[1]: Finished systemd-udev-trigger.service. Feb 9 10:12:09.907086 systemd[1]: Starting systemd-udev-settle.service... Feb 9 10:12:09.933263 systemd[1]: Finished systemd-sysctl.service. Feb 9 10:12:09.935649 systemd[1]: Finished systemd-random-seed.service. Feb 9 10:12:09.937861 systemd[1]: Reached target first-boot-complete.target. Feb 9 10:12:10.042130 systemd[1]: Finished systemd-journal-flush.service. Feb 9 10:12:10.648498 systemd[1]: Finished systemd-sysusers.service. Feb 9 10:12:10.648000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysusers comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:11.641155 systemd[1]: Finished systemd-hwdb-update.service. Feb 9 10:12:11.641000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-hwdb-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:11.642000 audit: BPF prog-id=24 op=LOAD Feb 9 10:12:11.642000 audit: BPF prog-id=25 op=LOAD Feb 9 10:12:11.642000 audit: BPF prog-id=7 op=UNLOAD Feb 9 10:12:11.642000 audit: BPF prog-id=8 op=UNLOAD Feb 9 10:12:11.645493 systemd[1]: Starting systemd-udevd.service... Feb 9 10:12:11.681310 systemd-udevd[1534]: Using default interface naming scheme 'v252'. Feb 9 10:12:11.722140 systemd[1]: Started systemd-udevd.service. Feb 9 10:12:11.722000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:11.724000 audit: BPF prog-id=26 op=LOAD Feb 9 10:12:11.727019 systemd[1]: Starting systemd-networkd.service... Feb 9 10:12:11.742000 audit: BPF prog-id=27 op=LOAD Feb 9 10:12:11.742000 audit: BPF prog-id=28 op=LOAD Feb 9 10:12:11.742000 audit: BPF prog-id=29 op=LOAD Feb 9 10:12:11.745601 systemd[1]: Starting systemd-userdbd.service... Feb 9 10:12:11.796361 systemd[1]: Condition check resulted in dev-ttyS0.device being skipped. Feb 9 10:12:11.856952 (udev-worker)[1537]: Network interface NamePolicy= disabled on kernel command line. Feb 9 10:12:11.883461 systemd[1]: Started systemd-userdbd.service. Feb 9 10:12:11.884000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-userdbd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:12.019061 systemd-networkd[1540]: lo: Link UP Feb 9 10:12:12.019087 systemd-networkd[1540]: lo: Gained carrier Feb 9 10:12:12.020125 systemd-networkd[1540]: Enumeration completed Feb 9 10:12:12.020341 systemd[1]: Started systemd-networkd.service. Feb 9 10:12:12.021000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:12.022184 systemd-networkd[1540]: eth0: Configuring with /usr/lib/systemd/network/zz-default.network. Feb 9 10:12:12.024319 systemd[1]: Starting systemd-networkd-wait-online.service... Feb 9 10:12:12.062227 systemd-networkd[1540]: eth0: Link UP Feb 9 10:12:12.062443 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 9 10:12:12.062627 systemd-networkd[1540]: eth0: Gained carrier Feb 9 10:12:12.078570 systemd-networkd[1540]: eth0: DHCPv4 address 172.31.28.77/20, gateway 172.31.16.1 acquired from 172.31.16.1 Feb 9 10:12:12.490422 kernel: BTRFS info: devid 1 device path /dev/disk/by-label/OEM changed to /dev/nvme0n1p6 scanned by (udev-worker) (1543) Feb 9 10:12:12.598057 systemd[1]: Found device dev-disk-by\x2dlabel-OEM.device. Feb 9 10:12:12.612119 systemd[1]: Finished systemd-udev-settle.service. Feb 9 10:12:12.612000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udev-settle comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:12.616222 systemd[1]: Starting lvm2-activation-early.service... Feb 9 10:12:12.810092 lvm[1653]: WARNING: Failed to connect to lvmetad. Falling back to device scanning. Feb 9 10:12:12.846990 systemd[1]: Finished lvm2-activation-early.service. Feb 9 10:12:12.847000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=lvm2-activation-early comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:12.849124 systemd[1]: Reached target cryptsetup.target. Feb 9 10:12:12.853116 systemd[1]: Starting lvm2-activation.service... Feb 9 10:12:12.861602 lvm[1654]: WARNING: Failed to connect to lvmetad. Falling back to device scanning. Feb 9 10:12:12.898081 systemd[1]: Finished lvm2-activation.service. Feb 9 10:12:12.898000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=lvm2-activation comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:12.900091 systemd[1]: Reached target local-fs-pre.target. Feb 9 10:12:12.901890 systemd[1]: var-lib-machines.mount was skipped because of an unmet condition check (ConditionPathExists=/var/lib/machines.raw). Feb 9 10:12:12.901943 systemd[1]: Reached target local-fs.target. Feb 9 10:12:12.903572 systemd[1]: Reached target machines.target. Feb 9 10:12:12.907263 systemd[1]: Starting ldconfig.service... Feb 9 10:12:12.909347 systemd[1]: systemd-binfmt.service was skipped because no trigger condition checks were met. Feb 9 10:12:12.909585 systemd[1]: systemd-boot-system-token.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/LoaderFeatures-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Feb 9 10:12:12.911872 systemd[1]: Starting systemd-boot-update.service... Feb 9 10:12:12.915639 systemd[1]: Starting systemd-fsck@dev-disk-by\x2dlabel-OEM.service... Feb 9 10:12:12.920078 systemd[1]: Starting systemd-machine-id-commit.service... Feb 9 10:12:12.922858 systemd[1]: systemd-sysext.service was skipped because no trigger condition checks were met. Feb 9 10:12:12.922988 systemd[1]: ensure-sysext.service was skipped because no trigger condition checks were met. Feb 9 10:12:12.925505 systemd[1]: Starting systemd-tmpfiles-setup.service... Feb 9 10:12:12.979089 systemd[1]: boot.automount: Got automount request for /boot, triggered by 1656 (bootctl) Feb 9 10:12:12.981408 systemd[1]: Starting systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM.service... Feb 9 10:12:13.078719 systemd-tmpfiles[1659]: /usr/lib/tmpfiles.d/legacy.conf:13: Duplicate line for path "/run/lock", ignoring. Feb 9 10:12:13.119375 systemd[1]: Finished systemd-fsck@dev-disk-by\x2dlabel-OEM.service. Feb 9 10:12:13.118000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck@dev-disk-by\x2dlabel-OEM comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:13.187372 systemd-tmpfiles[1659]: /usr/lib/tmpfiles.d/provision.conf:20: Duplicate line for path "/root", ignoring. Feb 9 10:12:13.312623 systemd-tmpfiles[1659]: /usr/lib/tmpfiles.d/systemd.conf:29: Duplicate line for path "/var/lib/systemd", ignoring. Feb 9 10:12:13.345665 systemd-fsck[1664]: fsck.fat 4.2 (2021-01-31) Feb 9 10:12:13.345665 systemd-fsck[1664]: /dev/nvme0n1p1: 236 files, 113719/258078 clusters Feb 9 10:12:13.346717 systemd[1]: Finished systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM.service. Feb 9 10:12:13.347000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:13.351680 systemd[1]: Mounting boot.mount... Feb 9 10:12:13.385506 systemd[1]: Mounted boot.mount. Feb 9 10:12:13.395519 systemd-networkd[1540]: eth0: Gained IPv6LL Feb 9 10:12:13.399864 systemd[1]: Finished systemd-networkd-wait-online.service. Feb 9 10:12:13.400000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-networkd-wait-online comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:13.407000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-boot-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:13.406795 systemd[1]: Finished systemd-boot-update.service. Feb 9 10:12:13.898602 systemd[1]: Finished systemd-tmpfiles-setup.service. Feb 9 10:12:13.899000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-tmpfiles-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:13.902965 systemd[1]: Starting audit-rules.service... Feb 9 10:12:13.906923 systemd[1]: Starting clean-ca-certificates.service... Feb 9 10:12:13.911177 systemd[1]: Starting systemd-journal-catalog-update.service... Feb 9 10:12:13.913000 audit: BPF prog-id=30 op=LOAD Feb 9 10:12:13.917363 systemd[1]: Starting systemd-resolved.service... Feb 9 10:12:13.919000 audit: BPF prog-id=31 op=LOAD Feb 9 10:12:13.923211 systemd[1]: Starting systemd-timesyncd.service... Feb 9 10:12:13.927516 systemd[1]: Starting systemd-update-utmp.service... Feb 9 10:12:13.940000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=clean-ca-certificates comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:13.939757 systemd[1]: Finished clean-ca-certificates.service. Feb 9 10:12:13.941864 systemd[1]: update-ca-certificates.service was skipped because of an unmet condition check (ConditionPathIsSymbolicLink=!/etc/ssl/certs/ca-certificates.crt). Feb 9 10:12:13.946000 audit[1684]: SYSTEM_BOOT pid=1684 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg=' comm="systemd-update-utmp" exe="/usr/lib/systemd/systemd-update-utmp" hostname=? addr=? terminal=? res=success' Feb 9 10:12:13.955000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-update-utmp comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:13.954958 systemd[1]: Finished systemd-update-utmp.service. Feb 9 10:12:14.048185 systemd[1]: Started systemd-timesyncd.service. Feb 9 10:12:14.048000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-timesyncd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:14.050093 systemd[1]: Reached target time-set.target. Feb 9 10:12:14.107920 systemd[1]: Finished systemd-journal-catalog-update.service. Feb 9 10:12:14.109000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journal-catalog-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:14.111000 audit: CONFIG_CHANGE auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=add_rule key=(null) list=5 res=1 Feb 9 10:12:14.111000 audit[1699]: SYSCALL arch=c00000b7 syscall=206 success=yes exit=1056 a0=3 a1=ffffe8cb31e0 a2=420 a3=0 items=0 ppid=1678 pid=1699 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:12:14.111000 audit: PROCTITLE proctitle=2F7362696E2F617564697463746C002D52002F6574632F61756469742F61756469742E72756C6573 Feb 9 10:12:14.113767 augenrules[1699]: No rules Feb 9 10:12:14.115363 systemd[1]: Finished audit-rules.service. Feb 9 10:12:14.121809 systemd-resolved[1682]: Positive Trust Anchors: Feb 9 10:12:14.122297 systemd-resolved[1682]: . IN DS 20326 8 2 e06d44b80b8f1d39a95c0b0d7c65d08458e880409bbc683457104237c7f8ec8d Feb 9 10:12:14.122506 systemd-resolved[1682]: Negative trust anchors: home.arpa 10.in-addr.arpa 16.172.in-addr.arpa 17.172.in-addr.arpa 18.172.in-addr.arpa 19.172.in-addr.arpa 20.172.in-addr.arpa 21.172.in-addr.arpa 22.172.in-addr.arpa 23.172.in-addr.arpa 24.172.in-addr.arpa 25.172.in-addr.arpa 26.172.in-addr.arpa 27.172.in-addr.arpa 28.172.in-addr.arpa 29.172.in-addr.arpa 30.172.in-addr.arpa 31.172.in-addr.arpa 168.192.in-addr.arpa d.f.ip6.arpa corp home internal intranet lan local private test Feb 9 10:12:14.165048 systemd-timesyncd[1683]: Contacted time server 108.61.73.244:123 (0.flatcar.pool.ntp.org). Feb 9 10:12:14.165169 systemd-timesyncd[1683]: Initial clock synchronization to Fri 2024-02-09 10:12:14.198095 UTC. Feb 9 10:12:14.327967 systemd-resolved[1682]: Defaulting to hostname 'linux'. Feb 9 10:12:14.331330 systemd[1]: Started systemd-resolved.service. Feb 9 10:12:14.333204 systemd[1]: Reached target network.target. Feb 9 10:12:14.334853 systemd[1]: Reached target network-online.target. Feb 9 10:12:14.336691 systemd[1]: Reached target nss-lookup.target. Feb 9 10:12:20.427658 ldconfig[1655]: /sbin/ldconfig: /lib/ld.so.conf is not an ELF file - it has the wrong magic bytes at the start. Feb 9 10:12:20.959932 systemd[1]: Finished ldconfig.service. Feb 9 10:12:20.964078 systemd[1]: Starting systemd-update-done.service... Feb 9 10:12:21.061681 systemd[1]: Finished systemd-update-done.service. Feb 9 10:12:21.063837 systemd[1]: Reached target sysinit.target. Feb 9 10:12:21.065666 systemd[1]: Started motdgen.path. Feb 9 10:12:21.067172 systemd[1]: Started user-cloudinit@var-lib-flatcar\x2dinstall-user_data.path. Feb 9 10:12:21.069685 systemd[1]: Started logrotate.timer. Feb 9 10:12:21.071318 systemd[1]: Started mdadm.timer. Feb 9 10:12:21.072719 systemd[1]: Started systemd-tmpfiles-clean.timer. Feb 9 10:12:21.074610 systemd[1]: update-engine-stub.timer was skipped because of an unmet condition check (ConditionPathExists=/usr/.noupdate). Feb 9 10:12:21.074801 systemd[1]: Reached target paths.target. Feb 9 10:12:21.076508 systemd[1]: Reached target timers.target. Feb 9 10:12:21.079143 systemd[1]: Listening on dbus.socket. Feb 9 10:12:21.082720 systemd[1]: Starting docker.socket... Feb 9 10:12:21.089225 systemd[1]: Listening on sshd.socket. Feb 9 10:12:21.091572 systemd[1]: systemd-pcrphase-sysinit.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/StubPcrKernelImage-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Feb 9 10:12:21.092623 systemd[1]: Listening on docker.socket. Feb 9 10:12:21.094596 systemd[1]: Reached target sockets.target. Feb 9 10:12:21.096404 systemd[1]: Reached target basic.target. Feb 9 10:12:21.098133 systemd[1]: addon-config@usr-share-oem.service was skipped because no trigger condition checks were met. Feb 9 10:12:21.098371 systemd[1]: addon-run@usr-share-oem.service was skipped because no trigger condition checks were met. Feb 9 10:12:21.100685 systemd[1]: Started amazon-ssm-agent.service. Feb 9 10:12:21.105677 systemd[1]: Starting containerd.service... Feb 9 10:12:21.111128 systemd[1]: Starting coreos-metadata-sshkeys@core.service... Feb 9 10:12:21.117274 systemd[1]: Starting dbus.service... Feb 9 10:12:21.122329 systemd[1]: Starting enable-oem-cloudinit.service... Feb 9 10:12:21.131174 systemd[1]: Starting extend-filesystems.service... Feb 9 10:12:21.132913 systemd[1]: flatcar-setup-environment.service was skipped because of an unmet condition check (ConditionPathExists=/usr/share/oem/bin/flatcar-setup-environment). Feb 9 10:12:21.135815 systemd[1]: Starting motdgen.service... Feb 9 10:12:21.142654 systemd[1]: Started nvidia.service. Feb 9 10:12:21.148604 systemd[1]: Starting prepare-cni-plugins.service... Feb 9 10:12:21.152552 systemd[1]: Starting prepare-critools.service... Feb 9 10:12:21.165182 jq[1719]: false Feb 9 10:12:21.156556 systemd[1]: Starting prepare-helm.service... Feb 9 10:12:21.161198 systemd[1]: Starting ssh-key-proc-cmdline.service... Feb 9 10:12:21.165695 systemd[1]: Starting sshd-keygen.service... Feb 9 10:12:21.180672 systemd[1]: Starting systemd-logind.service... Feb 9 10:12:21.184194 systemd[1]: systemd-pcrphase.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/StubPcrKernelImage-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Feb 9 10:12:21.184856 systemd[1]: tcsd.service was skipped because of an unmet condition check (ConditionPathExists=/dev/tpm0). Feb 9 10:12:21.194557 systemd[1]: cgroup compatibility translation between legacy and unified hierarchy settings activated. See cgroup-compat debug messages for details. Feb 9 10:12:21.201339 systemd[1]: Starting update-engine.service... Feb 9 10:12:21.208893 systemd[1]: Starting update-ssh-keys-after-ignition.service... Feb 9 10:12:21.223001 systemd[1]: enable-oem-cloudinit.service: Skipped due to 'exec-condition'. Feb 9 10:12:21.223365 systemd[1]: Condition check resulted in enable-oem-cloudinit.service being skipped. Feb 9 10:12:21.270116 jq[1737]: true Feb 9 10:12:21.338312 tar[1741]: ./ Feb 9 10:12:21.339169 tar[1741]: ./macvlan Feb 9 10:12:21.340462 systemd[1]: ssh-key-proc-cmdline.service: Deactivated successfully. Feb 9 10:12:21.340891 systemd[1]: Finished ssh-key-proc-cmdline.service. Feb 9 10:12:21.349037 dbus-daemon[1718]: [system] SELinux support is enabled Feb 9 10:12:21.349847 systemd[1]: Started dbus.service. Feb 9 10:12:21.354690 systemd[1]: system-cloudinit@usr-share-oem-cloud\x2dconfig.yml.service was skipped because of an unmet condition check (ConditionFileNotEmpty=/usr/share/oem/cloud-config.yml). Feb 9 10:12:21.354734 systemd[1]: Reached target system-config.target. Feb 9 10:12:21.356626 systemd[1]: user-cloudinit-proc-cmdline.service was skipped because of an unmet condition check (ConditionKernelCommandLine=cloud-config-url). Feb 9 10:12:21.356667 systemd[1]: Reached target user-config.target. Feb 9 10:12:21.371024 tar[1740]: linux-arm64/helm Feb 9 10:12:21.376779 dbus-daemon[1718]: [system] Activating systemd to hand-off: service name='org.freedesktop.hostname1' unit='dbus-org.freedesktop.hostname1.service' requested by ':1.1' (uid=244 pid=1540 comm="/usr/lib/systemd/systemd-networkd" label="system_u:system_r:kernel_t:s0") Feb 9 10:12:21.378101 dbus-daemon[1718]: [system] Successfully activated service 'org.freedesktop.systemd1' Feb 9 10:12:21.385378 jq[1744]: true Feb 9 10:12:21.388550 tar[1742]: crictl Feb 9 10:12:21.390926 systemd[1]: motdgen.service: Deactivated successfully. Feb 9 10:12:21.391296 systemd[1]: Finished motdgen.service. Feb 9 10:12:21.395172 systemd[1]: etc-machine\x2did.mount: Deactivated successfully. Feb 9 10:12:21.396416 systemd[1]: Finished systemd-machine-id-commit.service. Feb 9 10:12:21.414033 systemd[1]: Starting systemd-hostnamed.service... Feb 9 10:12:21.461435 extend-filesystems[1720]: Found nvme0n1 Feb 9 10:12:21.464938 extend-filesystems[1720]: Found nvme0n1p1 Feb 9 10:12:21.467523 extend-filesystems[1720]: Found nvme0n1p2 Feb 9 10:12:21.469237 extend-filesystems[1720]: Found nvme0n1p3 Feb 9 10:12:21.473058 extend-filesystems[1720]: Found usr Feb 9 10:12:21.480012 extend-filesystems[1720]: Found nvme0n1p4 Feb 9 10:12:21.484040 extend-filesystems[1720]: Found nvme0n1p6 Feb 9 10:12:21.485859 extend-filesystems[1720]: Found nvme0n1p7 Feb 9 10:12:21.488408 extend-filesystems[1720]: Found nvme0n1p9 Feb 9 10:12:21.490169 extend-filesystems[1720]: Checking size of /dev/nvme0n1p9 Feb 9 10:12:21.586918 amazon-ssm-agent[1715]: 2024/02/09 10:12:21 Failed to load instance info from vault. RegistrationKey does not exist. Feb 9 10:12:21.591701 env[1743]: time="2024-02-09T10:12:21.591623004Z" level=info msg="starting containerd" revision=92b3a9d6f1b3bcc6dc74875cfdea653fe39f09c2 version=1.6.16 Feb 9 10:12:21.605172 amazon-ssm-agent[1715]: Initializing new seelog logger Feb 9 10:12:21.614494 amazon-ssm-agent[1715]: New Seelog Logger Creation Complete Feb 9 10:12:21.614655 amazon-ssm-agent[1715]: 2024/02/09 10:12:21 Found config file at /etc/amazon/ssm/amazon-ssm-agent.json. Feb 9 10:12:21.614655 amazon-ssm-agent[1715]: Applying config override from /etc/amazon/ssm/amazon-ssm-agent.json. Feb 9 10:12:21.615104 amazon-ssm-agent[1715]: 2024/02/09 10:12:21 processing appconfig overrides Feb 9 10:12:21.637438 extend-filesystems[1720]: Resized partition /dev/nvme0n1p9 Feb 9 10:12:21.725020 systemd-logind[1731]: Watching system buttons on /dev/input/event0 (Power Button) Feb 9 10:12:21.734194 systemd-logind[1731]: New seat seat0. Feb 9 10:12:21.735882 systemd[1]: nvidia.service: Deactivated successfully. Feb 9 10:12:21.744320 bash[1777]: Updated "/home/core/.ssh/authorized_keys" Feb 9 10:12:21.745906 systemd[1]: Finished update-ssh-keys-after-ignition.service. Feb 9 10:12:21.753588 systemd[1]: Started systemd-logind.service. Feb 9 10:12:21.761160 extend-filesystems[1790]: resize2fs 1.46.5 (30-Dec-2021) Feb 9 10:12:21.770414 kernel: EXT4-fs (nvme0n1p9): resizing filesystem from 553472 to 1489915 blocks Feb 9 10:12:21.780935 tar[1741]: ./static Feb 9 10:12:21.812338 update_engine[1734]: I0209 10:12:21.811863 1734 main.cc:92] Flatcar Update Engine starting Feb 9 10:12:21.824881 systemd[1]: Started update-engine.service. Feb 9 10:12:21.830186 systemd[1]: Started locksmithd.service. Feb 9 10:12:21.832669 update_engine[1734]: I0209 10:12:21.832616 1734 update_check_scheduler.cc:74] Next update check in 2m38s Feb 9 10:12:21.836935 kernel: EXT4-fs (nvme0n1p9): resized filesystem to 1489915 Feb 9 10:12:21.974316 env[1743]: time="2024-02-09T10:12:21.847470787Z" level=info msg="loading plugin \"io.containerd.content.v1.content\"..." type=io.containerd.content.v1 Feb 9 10:12:21.974316 env[1743]: time="2024-02-09T10:12:21.971950185Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.aufs\"..." type=io.containerd.snapshotter.v1 Feb 9 10:12:21.872185 systemd[1]: Started systemd-hostnamed.service. Feb 9 10:12:21.871941 dbus-daemon[1718]: [system] Successfully activated service 'org.freedesktop.hostname1' Feb 9 10:12:21.879360 systemd[1]: Starting polkit.service... Feb 9 10:12:21.874205 dbus-daemon[1718]: [system] Activating via systemd: service name='org.freedesktop.PolicyKit1' unit='polkit.service' requested by ':1.6' (uid=0 pid=1760 comm="/usr/lib/systemd/systemd-hostnamed" label="system_u:system_r:kernel_t:s0") Feb 9 10:12:21.906004 polkitd[1817]: Started polkitd version 121 Feb 9 10:12:21.924999 polkitd[1817]: Loading rules from directory /etc/polkit-1/rules.d Feb 9 10:12:21.971655 polkitd[1817]: Loading rules from directory /usr/share/polkit-1/rules.d Feb 9 10:12:21.980628 extend-filesystems[1790]: Filesystem at /dev/nvme0n1p9 is mounted on /; on-line resizing required Feb 9 10:12:21.980628 extend-filesystems[1790]: old_desc_blocks = 1, new_desc_blocks = 1 Feb 9 10:12:21.980628 extend-filesystems[1790]: The filesystem on /dev/nvme0n1p9 is now 1489915 (4k) blocks long. Feb 9 10:12:21.981867 systemd[1]: extend-filesystems.service: Deactivated successfully. Feb 9 10:12:22.017726 env[1743]: time="2024-02-09T10:12:22.007279592Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.aufs\"..." error="aufs is not supported (modprobe aufs failed: exit status 1 \"modprobe: FATAL: Module aufs not found in directory /lib/modules/5.15.148-flatcar\\n\"): skip plugin" type=io.containerd.snapshotter.v1 Feb 9 10:12:22.017726 env[1743]: time="2024-02-09T10:12:22.007339191Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.btrfs\"..." type=io.containerd.snapshotter.v1 Feb 9 10:12:22.017726 env[1743]: time="2024-02-09T10:12:22.007759686Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.btrfs\"..." error="path /var/lib/containerd/io.containerd.snapshotter.v1.btrfs (ext4) must be a btrfs filesystem to be used with the btrfs snapshotter: skip plugin" type=io.containerd.snapshotter.v1 Feb 9 10:12:22.017726 env[1743]: time="2024-02-09T10:12:22.007800600Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.devmapper\"..." type=io.containerd.snapshotter.v1 Feb 9 10:12:22.017726 env[1743]: time="2024-02-09T10:12:22.007831661Z" level=warning msg="failed to load plugin io.containerd.snapshotter.v1.devmapper" error="devmapper not configured" Feb 9 10:12:22.017726 env[1743]: time="2024-02-09T10:12:22.007856522Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.native\"..." type=io.containerd.snapshotter.v1 Feb 9 10:12:22.017726 env[1743]: time="2024-02-09T10:12:22.008025465Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.overlayfs\"..." type=io.containerd.snapshotter.v1 Feb 9 10:12:22.017726 env[1743]: time="2024-02-09T10:12:22.008502578Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.zfs\"..." type=io.containerd.snapshotter.v1 Feb 9 10:12:22.017726 env[1743]: time="2024-02-09T10:12:22.008759838Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.zfs\"..." error="path /var/lib/containerd/io.containerd.snapshotter.v1.zfs must be a zfs filesystem to be used with the zfs snapshotter: skip plugin" type=io.containerd.snapshotter.v1 Feb 9 10:12:22.017726 env[1743]: time="2024-02-09T10:12:22.008797303Z" level=info msg="loading plugin \"io.containerd.metadata.v1.bolt\"..." type=io.containerd.metadata.v1 Feb 9 10:12:22.018216 extend-filesystems[1720]: Resized filesystem in /dev/nvme0n1p9 Feb 9 10:12:21.998181 polkitd[1817]: Finished loading, compiling and executing 2 rules Feb 9 10:12:21.982183 systemd[1]: Finished extend-filesystems.service. Feb 9 10:12:22.023615 env[1743]: time="2024-02-09T10:12:22.008915251Z" level=warning msg="could not use snapshotter devmapper in metadata plugin" error="devmapper not configured" Feb 9 10:12:22.023615 env[1743]: time="2024-02-09T10:12:22.008939799Z" level=info msg="metadata content store policy set" policy=shared Feb 9 10:12:21.999681 dbus-daemon[1718]: [system] Successfully activated service 'org.freedesktop.PolicyKit1' Feb 9 10:12:22.005173 systemd[1]: Started polkit.service. Feb 9 10:12:22.001637 polkitd[1817]: Acquired the name org.freedesktop.PolicyKit1 on the system bus Feb 9 10:12:22.033798 env[1743]: time="2024-02-09T10:12:22.031928624Z" level=info msg="loading plugin \"io.containerd.differ.v1.walking\"..." type=io.containerd.differ.v1 Feb 9 10:12:22.033798 env[1743]: time="2024-02-09T10:12:22.031998713Z" level=info msg="loading plugin \"io.containerd.event.v1.exchange\"..." type=io.containerd.event.v1 Feb 9 10:12:22.033798 env[1743]: time="2024-02-09T10:12:22.032033475Z" level=info msg="loading plugin \"io.containerd.gc.v1.scheduler\"..." type=io.containerd.gc.v1 Feb 9 10:12:22.033798 env[1743]: time="2024-02-09T10:12:22.032111350Z" level=info msg="loading plugin \"io.containerd.service.v1.introspection-service\"..." type=io.containerd.service.v1 Feb 9 10:12:22.033798 env[1743]: time="2024-02-09T10:12:22.032144609Z" level=info msg="loading plugin \"io.containerd.service.v1.containers-service\"..." type=io.containerd.service.v1 Feb 9 10:12:22.033798 env[1743]: time="2024-02-09T10:12:22.032283357Z" level=info msg="loading plugin \"io.containerd.service.v1.content-service\"..." type=io.containerd.service.v1 Feb 9 10:12:22.033798 env[1743]: time="2024-02-09T10:12:22.032318996Z" level=info msg="loading plugin \"io.containerd.service.v1.diff-service\"..." type=io.containerd.service.v1 Feb 9 10:12:22.033798 env[1743]: time="2024-02-09T10:12:22.032840111Z" level=info msg="loading plugin \"io.containerd.service.v1.images-service\"..." type=io.containerd.service.v1 Feb 9 10:12:22.033798 env[1743]: time="2024-02-09T10:12:22.032881963Z" level=info msg="loading plugin \"io.containerd.service.v1.leases-service\"..." type=io.containerd.service.v1 Feb 9 10:12:22.033798 env[1743]: time="2024-02-09T10:12:22.032915739Z" level=info msg="loading plugin \"io.containerd.service.v1.namespaces-service\"..." type=io.containerd.service.v1 Feb 9 10:12:22.033798 env[1743]: time="2024-02-09T10:12:22.032949600Z" level=info msg="loading plugin \"io.containerd.service.v1.snapshots-service\"..." type=io.containerd.service.v1 Feb 9 10:12:22.033798 env[1743]: time="2024-02-09T10:12:22.032984734Z" level=info msg="loading plugin \"io.containerd.runtime.v1.linux\"..." type=io.containerd.runtime.v1 Feb 9 10:12:22.033798 env[1743]: time="2024-02-09T10:12:22.033226830Z" level=info msg="loading plugin \"io.containerd.runtime.v2.task\"..." type=io.containerd.runtime.v2 Feb 9 10:12:22.033798 env[1743]: time="2024-02-09T10:12:22.033448751Z" level=info msg="loading plugin \"io.containerd.monitor.v1.cgroups\"..." type=io.containerd.monitor.v1 Feb 9 10:12:22.036447 env[1743]: time="2024-02-09T10:12:22.034933538Z" level=info msg="loading plugin \"io.containerd.service.v1.tasks-service\"..." type=io.containerd.service.v1 Feb 9 10:12:22.036447 env[1743]: time="2024-02-09T10:12:22.035005489Z" level=info msg="loading plugin \"io.containerd.grpc.v1.introspection\"..." type=io.containerd.grpc.v1 Feb 9 10:12:22.036447 env[1743]: time="2024-02-09T10:12:22.035040684Z" level=info msg="loading plugin \"io.containerd.internal.v1.restart\"..." type=io.containerd.internal.v1 Feb 9 10:12:22.036447 env[1743]: time="2024-02-09T10:12:22.035152299Z" level=info msg="loading plugin \"io.containerd.grpc.v1.containers\"..." type=io.containerd.grpc.v1 Feb 9 10:12:22.036447 env[1743]: time="2024-02-09T10:12:22.035184297Z" level=info msg="loading plugin \"io.containerd.grpc.v1.content\"..." type=io.containerd.grpc.v1 Feb 9 10:12:22.036447 env[1743]: time="2024-02-09T10:12:22.035309238Z" level=info msg="loading plugin \"io.containerd.grpc.v1.diff\"..." type=io.containerd.grpc.v1 Feb 9 10:12:22.036447 env[1743]: time="2024-02-09T10:12:22.035341140Z" level=info msg="loading plugin \"io.containerd.grpc.v1.events\"..." type=io.containerd.grpc.v1 Feb 9 10:12:22.036447 env[1743]: time="2024-02-09T10:12:22.035372201Z" level=info msg="loading plugin \"io.containerd.grpc.v1.healthcheck\"..." type=io.containerd.grpc.v1 Feb 9 10:12:22.036447 env[1743]: time="2024-02-09T10:12:22.035421707Z" level=info msg="loading plugin \"io.containerd.grpc.v1.images\"..." type=io.containerd.grpc.v1 Feb 9 10:12:22.036447 env[1743]: time="2024-02-09T10:12:22.035452107Z" level=info msg="loading plugin \"io.containerd.grpc.v1.leases\"..." type=io.containerd.grpc.v1 Feb 9 10:12:22.036447 env[1743]: time="2024-02-09T10:12:22.035480837Z" level=info msg="loading plugin \"io.containerd.grpc.v1.namespaces\"..." type=io.containerd.grpc.v1 Feb 9 10:12:22.036447 env[1743]: time="2024-02-09T10:12:22.035516728Z" level=info msg="loading plugin \"io.containerd.internal.v1.opt\"..." type=io.containerd.internal.v1 Feb 9 10:12:22.036447 env[1743]: time="2024-02-09T10:12:22.035796085Z" level=info msg="loading plugin \"io.containerd.grpc.v1.snapshots\"..." type=io.containerd.grpc.v1 Feb 9 10:12:22.036447 env[1743]: time="2024-02-09T10:12:22.035833118Z" level=info msg="loading plugin \"io.containerd.grpc.v1.tasks\"..." type=io.containerd.grpc.v1 Feb 9 10:12:22.036447 env[1743]: time="2024-02-09T10:12:22.035863614Z" level=info msg="loading plugin \"io.containerd.grpc.v1.version\"..." type=io.containerd.grpc.v1 Feb 9 10:12:22.037913 env[1743]: time="2024-02-09T10:12:22.035892115Z" level=info msg="loading plugin \"io.containerd.tracing.processor.v1.otlp\"..." type=io.containerd.tracing.processor.v1 Feb 9 10:12:22.037913 env[1743]: time="2024-02-09T10:12:22.035924618Z" level=info msg="skip loading plugin \"io.containerd.tracing.processor.v1.otlp\"..." error="no OpenTelemetry endpoint: skip plugin" type=io.containerd.tracing.processor.v1 Feb 9 10:12:22.037913 env[1743]: time="2024-02-09T10:12:22.035951390Z" level=info msg="loading plugin \"io.containerd.internal.v1.tracing\"..." type=io.containerd.internal.v1 Feb 9 10:12:22.037913 env[1743]: time="2024-02-09T10:12:22.035986957Z" level=error msg="failed to initialize a tracing processor \"otlp\"" error="no OpenTelemetry endpoint: skip plugin" Feb 9 10:12:22.037913 env[1743]: time="2024-02-09T10:12:22.036049175Z" level=info msg="loading plugin \"io.containerd.grpc.v1.cri\"..." type=io.containerd.grpc.v1 Feb 9 10:12:22.040843 env[1743]: time="2024-02-09T10:12:22.036376306Z" level=info msg="Start cri plugin with config {PluginConfig:{ContainerdConfig:{Snapshotter:overlayfs DefaultRuntimeName:runc DefaultRuntime:{Type: Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0} UntrustedWorkloadRuntime:{Type: Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0} Runtimes:map[runc:{Type:io.containerd.runc.v2 Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[SystemdCgroup:true] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0}] NoPivot:false DisableSnapshotAnnotations:true DiscardUnpackedLayers:false IgnoreRdtNotEnabledErrors:false} CniConfig:{NetworkPluginBinDir:/opt/cni/bin NetworkPluginConfDir:/etc/cni/net.d NetworkPluginMaxConfNum:1 NetworkPluginConfTemplate: IPPreference:} Registry:{ConfigPath: Mirrors:map[] Configs:map[] Auths:map[] Headers:map[]} ImageDecryption:{KeyModel:node} DisableTCPService:true StreamServerAddress:127.0.0.1 StreamServerPort:0 StreamIdleTimeout:4h0m0s EnableSelinux:true SelinuxCategoryRange:1024 SandboxImage:registry.k8s.io/pause:3.6 StatsCollectPeriod:10 SystemdCgroup:false EnableTLSStreaming:false X509KeyPairStreaming:{TLSCertFile: TLSKeyFile:} MaxContainerLogLineSize:16384 DisableCgroup:false DisableApparmor:false RestrictOOMScoreAdj:false MaxConcurrentDownloads:3 DisableProcMount:false UnsetSeccompProfile: TolerateMissingHugetlbController:true DisableHugetlbController:true DeviceOwnershipFromSecurityContext:false IgnoreImageDefinedVolumes:false NetNSMountsUnderStateDir:false EnableUnprivilegedPorts:false EnableUnprivilegedICMP:false} ContainerdRootDir:/var/lib/containerd ContainerdEndpoint:/run/containerd/containerd.sock RootDir:/var/lib/containerd/io.containerd.grpc.v1.cri StateDir:/run/containerd/io.containerd.grpc.v1.cri}" Feb 9 10:12:22.051053 env[1743]: time="2024-02-09T10:12:22.050917851Z" level=info msg="Connect containerd service" Feb 9 10:12:22.052214 env[1743]: time="2024-02-09T10:12:22.052138458Z" level=info msg="Get image filesystem path \"/var/lib/containerd/io.containerd.snapshotter.v1.overlayfs\"" Feb 9 10:12:22.062699 env[1743]: time="2024-02-09T10:12:22.062642553Z" level=error msg="failed to load cni during init, please check CRI plugin status before setting up network for pods" error="cni config load failed: no network config found in /etc/cni/net.d: cni plugin not initialized: failed to load cni config" Feb 9 10:12:22.063232 env[1743]: time="2024-02-09T10:12:22.063178352Z" level=info msg="Start subscribing containerd event" Feb 9 10:12:22.063432 env[1743]: time="2024-02-09T10:12:22.063401895Z" level=info msg="Start recovering state" Feb 9 10:12:22.063653 env[1743]: time="2024-02-09T10:12:22.063622783Z" level=info msg="Start event monitor" Feb 9 10:12:22.063791 env[1743]: time="2024-02-09T10:12:22.063762455Z" level=info msg="Start snapshots syncer" Feb 9 10:12:22.063904 env[1743]: time="2024-02-09T10:12:22.063877098Z" level=info msg="Start cni network conf syncer for default" Feb 9 10:12:22.064013 env[1743]: time="2024-02-09T10:12:22.063986154Z" level=info msg="Start streaming server" Feb 9 10:12:22.064807 env[1743]: time="2024-02-09T10:12:22.064764674Z" level=info msg=serving... address=/run/containerd/containerd.sock.ttrpc Feb 9 10:12:22.067553 env[1743]: time="2024-02-09T10:12:22.067499952Z" level=info msg=serving... address=/run/containerd/containerd.sock Feb 9 10:12:22.068982 systemd-hostnamed[1760]: Hostname set to (transient) Feb 9 10:12:22.069138 systemd-resolved[1682]: System hostname changed to 'ip-172-31-28-77'. Feb 9 10:12:22.087828 env[1743]: time="2024-02-09T10:12:22.087776906Z" level=info msg="containerd successfully booted in 0.497403s" Feb 9 10:12:22.087893 systemd[1]: Started containerd.service. Feb 9 10:12:22.128639 tar[1741]: ./vlan Feb 9 10:12:22.325655 tar[1741]: ./portmap Feb 9 10:12:22.497363 tar[1741]: ./host-local Feb 9 10:12:22.531985 coreos-metadata[1717]: Feb 09 10:12:22.531 INFO Putting http://169.254.169.254/latest/api/token: Attempt #1 Feb 9 10:12:22.533105 coreos-metadata[1717]: Feb 09 10:12:22.533 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/public-keys: Attempt #1 Feb 9 10:12:22.533893 coreos-metadata[1717]: Feb 09 10:12:22.533 INFO Fetch successful Feb 9 10:12:22.533999 coreos-metadata[1717]: Feb 09 10:12:22.533 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/public-keys/0/openssh-key: Attempt #1 Feb 9 10:12:22.535312 coreos-metadata[1717]: Feb 09 10:12:22.535 INFO Fetch successful Feb 9 10:12:22.540072 unknown[1717]: wrote ssh authorized keys file for user: core Feb 9 10:12:22.626811 tar[1741]: ./vrf Feb 9 10:12:22.655010 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO Create new startup processor Feb 9 10:12:22.655010 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [LongRunningPluginsManager] registered plugins: {} Feb 9 10:12:22.655010 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO Initializing bookkeeping folders Feb 9 10:12:22.655010 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO removing the completed state files Feb 9 10:12:22.655010 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO Initializing bookkeeping folders for long running plugins Feb 9 10:12:22.655010 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO Initializing replies folder for MDS reply requests that couldn't reach the service Feb 9 10:12:22.655010 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO Initializing healthcheck folders for long running plugins Feb 9 10:12:22.655010 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO Initializing locations for inventory plugin Feb 9 10:12:22.655010 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO Initializing default location for custom inventory Feb 9 10:12:22.655010 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO Initializing default location for file inventory Feb 9 10:12:22.655010 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO Initializing default location for role inventory Feb 9 10:12:22.655010 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO Init the cloudwatchlogs publisher Feb 9 10:12:22.655010 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [instanceID=i-0b766ba5e1c891f0e] Successfully loaded platform independent plugin aws:runPowerShellScript Feb 9 10:12:22.655010 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [instanceID=i-0b766ba5e1c891f0e] Successfully loaded platform independent plugin aws:runDockerAction Feb 9 10:12:22.655010 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [instanceID=i-0b766ba5e1c891f0e] Successfully loaded platform independent plugin aws:configurePackage Feb 9 10:12:22.655010 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [instanceID=i-0b766ba5e1c891f0e] Successfully loaded platform independent plugin aws:downloadContent Feb 9 10:12:22.655010 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [instanceID=i-0b766ba5e1c891f0e] Successfully loaded platform independent plugin aws:runDocument Feb 9 10:12:22.655010 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [instanceID=i-0b766ba5e1c891f0e] Successfully loaded platform independent plugin aws:softwareInventory Feb 9 10:12:22.655010 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [instanceID=i-0b766ba5e1c891f0e] Successfully loaded platform independent plugin aws:updateSsmAgent Feb 9 10:12:22.655010 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [instanceID=i-0b766ba5e1c891f0e] Successfully loaded platform independent plugin aws:configureDocker Feb 9 10:12:22.655010 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [instanceID=i-0b766ba5e1c891f0e] Successfully loaded platform independent plugin aws:refreshAssociation Feb 9 10:12:22.666261 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [instanceID=i-0b766ba5e1c891f0e] Successfully loaded platform dependent plugin aws:runShellScript Feb 9 10:12:22.666261 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO Starting Agent: amazon-ssm-agent - v2.3.1319.0 Feb 9 10:12:22.666261 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO OS: linux, Arch: arm64 Feb 9 10:12:22.666261 amazon-ssm-agent[1715]: datastore file /var/lib/amazon/ssm/i-0b766ba5e1c891f0e/longrunningplugins/datastore/store doesn't exist - no long running plugins to execute Feb 9 10:12:22.666261 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [MessagingDeliveryService] Starting document processing engine... Feb 9 10:12:22.683525 update-ssh-keys[1909]: Updated "/home/core/.ssh/authorized_keys" Feb 9 10:12:22.684080 systemd[1]: Finished coreos-metadata-sshkeys@core.service. Feb 9 10:12:22.762806 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [MessagingDeliveryService] [EngineProcessor] Starting Feb 9 10:12:22.858608 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [MessagingDeliveryService] [EngineProcessor] Initial processing Feb 9 10:12:22.865028 tar[1741]: ./bridge Feb 9 10:12:22.953107 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [MessageGatewayService] Starting session document processing engine... Feb 9 10:12:23.020339 tar[1741]: ./tuning Feb 9 10:12:23.047747 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [MessageGatewayService] [EngineProcessor] Starting Feb 9 10:12:23.122926 tar[1741]: ./firewall Feb 9 10:12:23.142667 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [MessageGatewayService] SSM Agent is trying to setup control channel for Session Manager module. Feb 9 10:12:23.237875 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [MessageGatewayService] Setting up websocket for controlchannel for instance: i-0b766ba5e1c891f0e, requestId: 93cd72eb-7774-42e9-8a14-1ce78e6074eb Feb 9 10:12:23.260064 tar[1741]: ./host-device Feb 9 10:12:23.333139 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [OfflineService] Starting document processing engine... Feb 9 10:12:23.367502 tar[1741]: ./sbr Feb 9 10:12:23.428541 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [OfflineService] [EngineProcessor] Starting Feb 9 10:12:23.444592 systemd[1]: Created slice system-sshd.slice. Feb 9 10:12:23.474885 tar[1741]: ./loopback Feb 9 10:12:23.524244 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [OfflineService] [EngineProcessor] Initial processing Feb 9 10:12:23.577710 tar[1741]: ./dhcp Feb 9 10:12:23.620155 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [OfflineService] Starting message polling Feb 9 10:12:23.657801 tar[1740]: linux-arm64/LICENSE Feb 9 10:12:23.657801 tar[1740]: linux-arm64/README.md Feb 9 10:12:23.669874 systemd[1]: Finished prepare-helm.service. Feb 9 10:12:23.716249 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [OfflineService] Starting send replies to MDS Feb 9 10:12:23.763151 systemd[1]: Finished prepare-critools.service. Feb 9 10:12:23.806421 tar[1741]: ./ptp Feb 9 10:12:23.812530 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [LongRunningPluginsManager] starting long running plugin manager Feb 9 10:12:23.868510 tar[1741]: ./ipvlan Feb 9 10:12:23.909078 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [LongRunningPluginsManager] there aren't any long running plugin to execute Feb 9 10:12:23.929231 tar[1741]: ./bandwidth Feb 9 10:12:24.004682 systemd[1]: Finished prepare-cni-plugins.service. Feb 9 10:12:24.005775 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [HealthCheck] HealthCheck reporting agent health. Feb 9 10:12:24.102717 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [MessageGatewayService] listening reply. Feb 9 10:12:24.195221 locksmithd[1814]: locksmithd starting currentOperation="UPDATE_STATUS_IDLE" strategy="reboot" Feb 9 10:12:24.199735 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [LongRunningPluginsManager] There are no long running plugins currently getting executed - skipping their healthcheck Feb 9 10:12:24.296988 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [MessagingDeliveryService] Starting message polling Feb 9 10:12:24.394491 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [MessagingDeliveryService] Starting send replies to MDS Feb 9 10:12:24.492076 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [instanceID=i-0b766ba5e1c891f0e] Starting association polling Feb 9 10:12:24.540737 sshd_keygen[1761]: ssh-keygen: generating new host keys: RSA ECDSA ED25519 Feb 9 10:12:24.576132 systemd[1]: Finished sshd-keygen.service. Feb 9 10:12:24.580996 systemd[1]: Starting issuegen.service... Feb 9 10:12:24.584817 systemd[1]: Started sshd@0-172.31.28.77:22-139.178.89.65:38506.service. Feb 9 10:12:24.590012 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [MessagingDeliveryService] [Association] [EngineProcessor] Starting Feb 9 10:12:24.596543 systemd[1]: issuegen.service: Deactivated successfully. Feb 9 10:12:24.596895 systemd[1]: Finished issuegen.service. Feb 9 10:12:24.601377 systemd[1]: Starting systemd-user-sessions.service... Feb 9 10:12:24.615789 systemd[1]: Finished systemd-user-sessions.service. Feb 9 10:12:24.620612 systemd[1]: Started getty@tty1.service. Feb 9 10:12:24.625105 systemd[1]: Started serial-getty@ttyS0.service. Feb 9 10:12:24.627304 systemd[1]: Reached target getty.target. Feb 9 10:12:24.629051 systemd[1]: Reached target multi-user.target. Feb 9 10:12:24.634030 systemd[1]: Starting systemd-update-utmp-runlevel.service... Feb 9 10:12:24.648832 systemd[1]: systemd-update-utmp-runlevel.service: Deactivated successfully. Feb 9 10:12:24.649221 systemd[1]: Finished systemd-update-utmp-runlevel.service. Feb 9 10:12:24.651475 systemd[1]: Startup finished in 1.131s (kernel) + 18.011s (initrd) + 28.047s (userspace) = 47.191s. Feb 9 10:12:24.688106 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [MessagingDeliveryService] [Association] Launching response handler Feb 9 10:12:24.786397 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [MessagingDeliveryService] [Association] [EngineProcessor] Initial processing Feb 9 10:12:24.884869 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [MessagingDeliveryService] [Association] Initializing association scheduling service Feb 9 10:12:24.983573 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [MessagingDeliveryService] [Association] Association scheduling service initialized Feb 9 10:12:25.082347 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [StartupProcessor] Executing startup processor tasks Feb 9 10:12:25.181400 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [StartupProcessor] Write to serial port: Amazon SSM Agent v2.3.1319.0 is running Feb 9 10:12:25.280673 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [StartupProcessor] Write to serial port: OsProductName: Flatcar Container Linux by Kinvolk Feb 9 10:12:25.380107 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [StartupProcessor] Write to serial port: OsVersion: 3510.3.2 Feb 9 10:12:25.479712 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [MessageGatewayService] Opening websocket connection to: wss://ssmmessages.us-west-2.amazonaws.com/v1/control-channel/i-0b766ba5e1c891f0e?role=subscribe&stream=input Feb 9 10:12:25.579608 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [MessageGatewayService] Successfully opened websocket connection to: wss://ssmmessages.us-west-2.amazonaws.com/v1/control-channel/i-0b766ba5e1c891f0e?role=subscribe&stream=input Feb 9 10:12:25.679578 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [MessageGatewayService] Starting receiving message from control channel Feb 9 10:12:25.779804 amazon-ssm-agent[1715]: 2024-02-09 10:12:22 INFO [MessageGatewayService] [EngineProcessor] Initial processing Feb 9 10:12:25.920205 sshd[1939]: Accepted publickey for core from 139.178.89.65 port 38506 ssh2: RSA SHA256:GILZ0mQBpBM11yDf0tAXz/O9qwTcvAfkeSGimpOxw0U Feb 9 10:12:25.924071 sshd[1939]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 10:12:25.942874 systemd[1]: Created slice user-500.slice. Feb 9 10:12:25.945329 systemd[1]: Starting user-runtime-dir@500.service... Feb 9 10:12:25.953510 systemd-logind[1731]: New session 1 of user core. Feb 9 10:12:25.964680 systemd[1]: Finished user-runtime-dir@500.service. Feb 9 10:12:25.968173 systemd[1]: Starting user@500.service... Feb 9 10:12:25.975604 (systemd)[1948]: pam_unix(systemd-user:session): session opened for user core(uid=500) by (uid=0) Feb 9 10:12:26.210241 systemd[1948]: Queued start job for default target default.target. Feb 9 10:12:26.212561 systemd[1948]: Reached target paths.target. Feb 9 10:12:26.212902 systemd[1948]: Reached target sockets.target. Feb 9 10:12:26.213064 systemd[1948]: Reached target timers.target. Feb 9 10:12:26.213211 systemd[1948]: Reached target basic.target. Feb 9 10:12:26.213471 systemd[1948]: Reached target default.target. Feb 9 10:12:26.213537 systemd[1]: Started user@500.service. Feb 9 10:12:26.214371 systemd[1948]: Startup finished in 227ms. Feb 9 10:12:26.215445 systemd[1]: Started session-1.scope. Feb 9 10:12:26.360997 systemd[1]: Started sshd@1-172.31.28.77:22-139.178.89.65:38516.service. Feb 9 10:12:26.544559 sshd[1957]: Accepted publickey for core from 139.178.89.65 port 38516 ssh2: RSA SHA256:GILZ0mQBpBM11yDf0tAXz/O9qwTcvAfkeSGimpOxw0U Feb 9 10:12:26.547527 sshd[1957]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 10:12:26.556301 systemd[1]: Started session-2.scope. Feb 9 10:12:26.557419 systemd-logind[1731]: New session 2 of user core. Feb 9 10:12:26.701222 sshd[1957]: pam_unix(sshd:session): session closed for user core Feb 9 10:12:26.706132 systemd-logind[1731]: Session 2 logged out. Waiting for processes to exit. Feb 9 10:12:26.706749 systemd[1]: sshd@1-172.31.28.77:22-139.178.89.65:38516.service: Deactivated successfully. Feb 9 10:12:26.707996 systemd[1]: session-2.scope: Deactivated successfully. Feb 9 10:12:26.709556 systemd-logind[1731]: Removed session 2. Feb 9 10:12:26.731918 systemd[1]: Started sshd@2-172.31.28.77:22-139.178.89.65:38532.service. Feb 9 10:12:26.909685 sshd[1963]: Accepted publickey for core from 139.178.89.65 port 38532 ssh2: RSA SHA256:GILZ0mQBpBM11yDf0tAXz/O9qwTcvAfkeSGimpOxw0U Feb 9 10:12:26.912473 sshd[1963]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 10:12:26.921179 systemd[1]: Started session-3.scope. Feb 9 10:12:26.921955 systemd-logind[1731]: New session 3 of user core. Feb 9 10:12:27.046031 sshd[1963]: pam_unix(sshd:session): session closed for user core Feb 9 10:12:27.051439 systemd-logind[1731]: Session 3 logged out. Waiting for processes to exit. Feb 9 10:12:27.052020 systemd[1]: sshd@2-172.31.28.77:22-139.178.89.65:38532.service: Deactivated successfully. Feb 9 10:12:27.053164 systemd[1]: session-3.scope: Deactivated successfully. Feb 9 10:12:27.054937 systemd-logind[1731]: Removed session 3. Feb 9 10:12:27.072953 systemd[1]: Started sshd@3-172.31.28.77:22-139.178.89.65:38548.service. Feb 9 10:12:27.247585 sshd[1969]: Accepted publickey for core from 139.178.89.65 port 38548 ssh2: RSA SHA256:GILZ0mQBpBM11yDf0tAXz/O9qwTcvAfkeSGimpOxw0U Feb 9 10:12:27.250080 sshd[1969]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 10:12:27.258572 systemd-logind[1731]: New session 4 of user core. Feb 9 10:12:27.258880 systemd[1]: Started session-4.scope. Feb 9 10:12:27.390463 sshd[1969]: pam_unix(sshd:session): session closed for user core Feb 9 10:12:27.394711 systemd[1]: session-4.scope: Deactivated successfully. Feb 9 10:12:27.396130 systemd[1]: sshd@3-172.31.28.77:22-139.178.89.65:38548.service: Deactivated successfully. Feb 9 10:12:27.396490 systemd-logind[1731]: Session 4 logged out. Waiting for processes to exit. Feb 9 10:12:27.398826 systemd-logind[1731]: Removed session 4. Feb 9 10:12:27.416515 systemd[1]: Started sshd@4-172.31.28.77:22-139.178.89.65:38560.service. Feb 9 10:12:27.589348 sshd[1975]: Accepted publickey for core from 139.178.89.65 port 38560 ssh2: RSA SHA256:GILZ0mQBpBM11yDf0tAXz/O9qwTcvAfkeSGimpOxw0U Feb 9 10:12:27.591779 sshd[1975]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 10:12:27.600362 systemd[1]: Started session-5.scope. Feb 9 10:12:27.602623 systemd-logind[1731]: New session 5 of user core. Feb 9 10:12:28.159035 sudo[1978]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/sbin/setenforce 1 Feb 9 10:12:28.160007 sudo[1978]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Feb 9 10:12:28.172683 dbus-daemon[1718]: avc: received setenforce notice (enforcing=1) Feb 9 10:12:28.175330 sudo[1978]: pam_unix(sudo:session): session closed for user root Feb 9 10:12:28.199164 sshd[1975]: pam_unix(sshd:session): session closed for user core Feb 9 10:12:28.204846 systemd[1]: sshd@4-172.31.28.77:22-139.178.89.65:38560.service: Deactivated successfully. Feb 9 10:12:28.206246 systemd[1]: session-5.scope: Deactivated successfully. Feb 9 10:12:28.207561 systemd-logind[1731]: Session 5 logged out. Waiting for processes to exit. Feb 9 10:12:28.209613 systemd-logind[1731]: Removed session 5. Feb 9 10:12:28.229905 systemd[1]: Started sshd@5-172.31.28.77:22-139.178.89.65:60542.service. Feb 9 10:12:28.404757 sshd[1982]: Accepted publickey for core from 139.178.89.65 port 60542 ssh2: RSA SHA256:GILZ0mQBpBM11yDf0tAXz/O9qwTcvAfkeSGimpOxw0U Feb 9 10:12:28.407817 sshd[1982]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 10:12:28.416075 systemd[1]: Started session-6.scope. Feb 9 10:12:28.417765 systemd-logind[1731]: New session 6 of user core. Feb 9 10:12:28.524033 sudo[1986]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/bin/rm -rf /etc/audit/rules.d/80-selinux.rules /etc/audit/rules.d/99-default.rules Feb 9 10:12:28.525082 sudo[1986]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Feb 9 10:12:28.530260 sudo[1986]: pam_unix(sudo:session): session closed for user root Feb 9 10:12:28.539456 sudo[1985]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/bin/systemctl restart audit-rules Feb 9 10:12:28.540459 sudo[1985]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Feb 9 10:12:28.557722 systemd[1]: Stopping audit-rules.service... Feb 9 10:12:28.559000 audit: CONFIG_CHANGE auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=remove_rule key=(null) list=5 res=1 Feb 9 10:12:28.561767 kernel: kauditd_printk_skb: 78 callbacks suppressed Feb 9 10:12:28.561852 kernel: audit: type=1305 audit(1707473548.559:172): auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=remove_rule key=(null) list=5 res=1 Feb 9 10:12:28.562062 auditctl[1989]: No rules Feb 9 10:12:28.559000 audit[1989]: SYSCALL arch=c00000b7 syscall=206 success=yes exit=1056 a0=3 a1=ffffd8f35370 a2=420 a3=0 items=0 ppid=1 pid=1989 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:12:28.567600 systemd[1]: audit-rules.service: Deactivated successfully. Feb 9 10:12:28.567935 systemd[1]: Stopped audit-rules.service. Feb 9 10:12:28.576858 systemd[1]: Starting audit-rules.service... Feb 9 10:12:28.577884 kernel: audit: type=1300 audit(1707473548.559:172): arch=c00000b7 syscall=206 success=yes exit=1056 a0=3 a1=ffffd8f35370 a2=420 a3=0 items=0 ppid=1 pid=1989 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:12:28.583437 kernel: audit: type=1327 audit(1707473548.559:172): proctitle=2F7362696E2F617564697463746C002D44 Feb 9 10:12:28.559000 audit: PROCTITLE proctitle=2F7362696E2F617564697463746C002D44 Feb 9 10:12:28.591227 kernel: audit: type=1131 audit(1707473548.566:173): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:28.566000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:28.615649 augenrules[2006]: No rules Feb 9 10:12:28.617000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:28.617185 systemd[1]: Finished audit-rules.service. Feb 9 10:12:28.620311 sudo[1985]: pam_unix(sudo:session): session closed for user root Feb 9 10:12:28.619000 audit[1985]: USER_END pid=1985 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 10:12:28.635198 kernel: audit: type=1130 audit(1707473548.617:174): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:28.635285 kernel: audit: type=1106 audit(1707473548.619:175): pid=1985 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 10:12:28.635331 kernel: audit: type=1104 audit(1707473548.620:176): pid=1985 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 10:12:28.620000 audit[1985]: CRED_DISP pid=1985 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 10:12:28.648083 sshd[1982]: pam_unix(sshd:session): session closed for user core Feb 9 10:12:28.649000 audit[1982]: USER_END pid=1982 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Feb 9 10:12:28.651962 systemd[1]: session-6.scope: Deactivated successfully. Feb 9 10:12:28.653096 systemd[1]: sshd@5-172.31.28.77:22-139.178.89.65:60542.service: Deactivated successfully. Feb 9 10:12:28.656029 systemd-logind[1731]: Session 6 logged out. Waiting for processes to exit. Feb 9 10:12:28.657710 systemd-logind[1731]: Removed session 6. Feb 9 10:12:28.649000 audit[1982]: CRED_DISP pid=1982 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Feb 9 10:12:28.674544 kernel: audit: type=1106 audit(1707473548.649:177): pid=1982 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Feb 9 10:12:28.674654 kernel: audit: type=1104 audit(1707473548.649:178): pid=1982 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Feb 9 10:12:28.674699 kernel: audit: type=1131 audit(1707473548.653:179): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@5-172.31.28.77:22-139.178.89.65:60542 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:28.653000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@5-172.31.28.77:22-139.178.89.65:60542 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:28.679727 systemd[1]: Started sshd@6-172.31.28.77:22-139.178.89.65:60558.service. Feb 9 10:12:28.681000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@6-172.31.28.77:22-139.178.89.65:60558 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:28.855000 audit[2012]: USER_ACCT pid=2012 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_access,pam_unix,pam_faillock,pam_permit acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Feb 9 10:12:28.856573 sshd[2012]: Accepted publickey for core from 139.178.89.65 port 60558 ssh2: RSA SHA256:GILZ0mQBpBM11yDf0tAXz/O9qwTcvAfkeSGimpOxw0U Feb 9 10:12:28.857000 audit[2012]: CRED_ACQ pid=2012 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Feb 9 10:12:28.858000 audit[2012]: SYSCALL arch=c00000b7 syscall=64 success=yes exit=3 a0=5 a1=ffffe6733290 a2=3 a3=1 items=0 ppid=1 pid=2012 auid=500 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=7 comm="sshd" exe="/usr/sbin/sshd" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:12:28.858000 audit: PROCTITLE proctitle=737368643A20636F7265205B707269765D Feb 9 10:12:28.859405 sshd[2012]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 10:12:28.867704 systemd-logind[1731]: New session 7 of user core. Feb 9 10:12:28.868265 systemd[1]: Started session-7.scope. Feb 9 10:12:28.876000 audit[2012]: USER_START pid=2012 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Feb 9 10:12:28.879000 audit[2014]: CRED_ACQ pid=2014 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Feb 9 10:12:28.972000 audit[2015]: USER_ACCT pid=2015 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_unix,pam_faillock,pam_permit acct="core" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 10:12:28.974587 sudo[2015]: core : PWD=/home/core ; USER=root ; COMMAND=/home/core/install.sh Feb 9 10:12:28.973000 audit[2015]: CRED_REFR pid=2015 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 10:12:28.975688 sudo[2015]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Feb 9 10:12:28.977000 audit[2015]: USER_START pid=2015 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 10:12:30.027537 systemd[1]: Starting docker.service... Feb 9 10:12:30.099356 env[2030]: time="2024-02-09T10:12:30.099260511Z" level=info msg="Starting up" Feb 9 10:12:30.102342 env[2030]: time="2024-02-09T10:12:30.102269002Z" level=info msg="parsed scheme: \"unix\"" module=grpc Feb 9 10:12:30.102342 env[2030]: time="2024-02-09T10:12:30.102317484Z" level=info msg="scheme \"unix\" not registered, fallback to default scheme" module=grpc Feb 9 10:12:30.102588 env[2030]: time="2024-02-09T10:12:30.102372163Z" level=info msg="ccResolverWrapper: sending update to cc: {[{unix:///var/run/docker/libcontainerd/docker-containerd.sock 0 }] }" module=grpc Feb 9 10:12:30.102588 env[2030]: time="2024-02-09T10:12:30.102424861Z" level=info msg="ClientConn switching balancer to \"pick_first\"" module=grpc Feb 9 10:12:30.106180 env[2030]: time="2024-02-09T10:12:30.106118768Z" level=info msg="parsed scheme: \"unix\"" module=grpc Feb 9 10:12:30.106180 env[2030]: time="2024-02-09T10:12:30.106161413Z" level=info msg="scheme \"unix\" not registered, fallback to default scheme" module=grpc Feb 9 10:12:30.106455 env[2030]: time="2024-02-09T10:12:30.106197946Z" level=info msg="ccResolverWrapper: sending update to cc: {[{unix:///var/run/docker/libcontainerd/docker-containerd.sock 0 }] }" module=grpc Feb 9 10:12:30.106455 env[2030]: time="2024-02-09T10:12:30.106220043Z" level=info msg="ClientConn switching balancer to \"pick_first\"" module=grpc Feb 9 10:12:30.115471 systemd[1]: var-lib-docker-check\x2doverlayfs\x2dsupport590469418-merged.mount: Deactivated successfully. Feb 9 10:12:31.779792 env[2030]: time="2024-02-09T10:12:31.779721467Z" level=info msg="Loading containers: start." Feb 9 10:12:31.996000 audit[2061]: NETFILTER_CFG table=nat:2 family=2 entries=2 op=nft_register_chain pid=2061 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:12:31.996000 audit[2061]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=116 a0=3 a1=ffffc0281cc0 a2=0 a3=1 items=0 ppid=2030 pid=2061 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:12:31.996000 audit: PROCTITLE proctitle=2F7573722F7362696E2F69707461626C6573002D2D77616974002D74006E6174002D4E00444F434B4552 Feb 9 10:12:32.000000 audit[2063]: NETFILTER_CFG table=filter:3 family=2 entries=2 op=nft_register_chain pid=2063 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:12:32.000000 audit[2063]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=124 a0=3 a1=fffff7a38670 a2=0 a3=1 items=0 ppid=2030 pid=2063 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:12:32.000000 audit: PROCTITLE proctitle=2F7573722F7362696E2F69707461626C6573002D2D77616974002D740066696C746572002D4E00444F434B4552 Feb 9 10:12:32.004000 audit[2065]: NETFILTER_CFG table=filter:4 family=2 entries=1 op=nft_register_chain pid=2065 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:12:32.004000 audit[2065]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=112 a0=3 a1=fffff37a0cf0 a2=0 a3=1 items=0 ppid=2030 pid=2065 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:12:32.004000 audit: PROCTITLE proctitle=2F7573722F7362696E2F69707461626C6573002D2D77616974002D740066696C746572002D4E00444F434B45522D49534F4C4154494F4E2D53544147452D31 Feb 9 10:12:32.008000 audit[2067]: NETFILTER_CFG table=filter:5 family=2 entries=1 op=nft_register_chain pid=2067 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:12:32.008000 audit[2067]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=112 a0=3 a1=ffffe5b41750 a2=0 a3=1 items=0 ppid=2030 pid=2067 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:12:32.008000 audit: PROCTITLE proctitle=2F7573722F7362696E2F69707461626C6573002D2D77616974002D740066696C746572002D4E00444F434B45522D49534F4C4154494F4E2D53544147452D32 Feb 9 10:12:32.038000 audit[2069]: NETFILTER_CFG table=filter:6 family=2 entries=1 op=nft_register_rule pid=2069 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:12:32.038000 audit[2069]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=228 a0=3 a1=ffffe13a3d00 a2=0 a3=1 items=0 ppid=2030 pid=2069 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:12:32.038000 audit: PROCTITLE proctitle=2F7573722F7362696E2F69707461626C6573002D2D77616974002D4100444F434B45522D49534F4C4154494F4E2D53544147452D31002D6A0052455455524E Feb 9 10:12:32.065000 audit[2074]: NETFILTER_CFG table=filter:7 family=2 entries=1 op=nft_register_rule pid=2074 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:12:32.065000 audit[2074]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=228 a0=3 a1=fffffe0393e0 a2=0 a3=1 items=0 ppid=2030 pid=2074 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:12:32.065000 audit: PROCTITLE proctitle=2F7573722F7362696E2F69707461626C6573002D2D77616974002D4100444F434B45522D49534F4C4154494F4E2D53544147452D32002D6A0052455455524E Feb 9 10:12:32.139000 audit[2076]: NETFILTER_CFG table=filter:8 family=2 entries=1 op=nft_register_chain pid=2076 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:12:32.139000 audit[2076]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=96 a0=3 a1=ffffc1b80a30 a2=0 a3=1 items=0 ppid=2030 pid=2076 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:12:32.139000 audit: PROCTITLE proctitle=2F7573722F7362696E2F69707461626C6573002D2D77616974002D740066696C746572002D4E00444F434B45522D55534552 Feb 9 10:12:32.145000 audit[2078]: NETFILTER_CFG table=filter:9 family=2 entries=1 op=nft_register_rule pid=2078 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:12:32.145000 audit[2078]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=212 a0=3 a1=ffffe24796b0 a2=0 a3=1 items=0 ppid=2030 pid=2078 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:12:32.145000 audit: PROCTITLE proctitle=2F7573722F7362696E2F69707461626C6573002D2D77616974002D4100444F434B45522D55534552002D6A0052455455524E Feb 9 10:12:32.149000 audit[2080]: NETFILTER_CFG table=filter:10 family=2 entries=2 op=nft_register_chain pid=2080 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:12:32.149000 audit[2080]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=308 a0=3 a1=ffffd4cb9980 a2=0 a3=1 items=0 ppid=2030 pid=2080 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:12:32.149000 audit: PROCTITLE proctitle=2F7573722F7362696E2F69707461626C6573002D2D77616974002D4900464F5257415244002D6A00444F434B45522D55534552 Feb 9 10:12:32.163000 audit[2084]: NETFILTER_CFG table=filter:11 family=2 entries=1 op=nft_unregister_rule pid=2084 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:12:32.163000 audit[2084]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=216 a0=3 a1=fffffc1228e0 a2=0 a3=1 items=0 ppid=2030 pid=2084 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:12:32.163000 audit: PROCTITLE proctitle=2F7573722F7362696E2F69707461626C6573002D2D77616974002D4400464F5257415244002D6A00444F434B45522D55534552 Feb 9 10:12:32.165000 audit[2085]: NETFILTER_CFG table=filter:12 family=2 entries=1 op=nft_register_rule pid=2085 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:12:32.165000 audit[2085]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=224 a0=3 a1=ffffceb511b0 a2=0 a3=1 items=0 ppid=2030 pid=2085 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:12:32.165000 audit: PROCTITLE proctitle=2F7573722F7362696E2F69707461626C6573002D2D77616974002D4900464F5257415244002D6A00444F434B45522D55534552 Feb 9 10:12:32.181431 kernel: Initializing XFRM netlink socket Feb 9 10:12:32.337598 env[2030]: time="2024-02-09T10:12:32.337451849Z" level=info msg="Default bridge (docker0) is assigned with an IP address 172.17.0.0/16. Daemon option --bip can be used to set a preferred IP address" Feb 9 10:12:32.341760 (udev-worker)[2041]: Network interface NamePolicy= disabled on kernel command line. Feb 9 10:12:32.378000 audit[2093]: NETFILTER_CFG table=nat:13 family=2 entries=2 op=nft_register_chain pid=2093 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:12:32.378000 audit[2093]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=492 a0=3 a1=ffffd5fd8290 a2=0 a3=1 items=0 ppid=2030 pid=2093 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:12:32.378000 audit: PROCTITLE proctitle=2F7573722F7362696E2F69707461626C6573002D2D77616974002D74006E6174002D4900504F5354524F5554494E47002D73003137322E31372E302E302F31360000002D6F00646F636B657230002D6A004D415351554552414445 Feb 9 10:12:32.399000 audit[2096]: NETFILTER_CFG table=nat:14 family=2 entries=1 op=nft_register_rule pid=2096 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:12:32.399000 audit[2096]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=288 a0=3 a1=ffffe483a0f0 a2=0 a3=1 items=0 ppid=2030 pid=2096 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:12:32.399000 audit: PROCTITLE proctitle=2F7573722F7362696E2F69707461626C6573002D2D77616974002D74006E6174002D4900444F434B4552002D6900646F636B657230002D6A0052455455524E Feb 9 10:12:32.405000 audit[2099]: NETFILTER_CFG table=filter:15 family=2 entries=1 op=nft_register_rule pid=2099 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:12:32.405000 audit[2099]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=376 a0=3 a1=ffffc5b618f0 a2=0 a3=1 items=0 ppid=2030 pid=2099 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:12:32.405000 audit: PROCTITLE proctitle=2F7573722F7362696E2F69707461626C6573002D2D77616974002D4900464F5257415244002D6900646F636B657230002D6F00646F636B657230002D6A00414343455054 Feb 9 10:12:32.409000 audit[2101]: NETFILTER_CFG table=filter:16 family=2 entries=1 op=nft_register_rule pid=2101 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:12:32.409000 audit[2101]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=376 a0=3 a1=ffffee7935b0 a2=0 a3=1 items=0 ppid=2030 pid=2101 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:12:32.409000 audit: PROCTITLE proctitle=2F7573722F7362696E2F69707461626C6573002D2D77616974002D4900464F5257415244002D6900646F636B6572300000002D6F00646F636B657230002D6A00414343455054 Feb 9 10:12:32.413000 audit[2103]: NETFILTER_CFG table=nat:17 family=2 entries=2 op=nft_register_chain pid=2103 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:12:32.413000 audit[2103]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=356 a0=3 a1=ffffcfdb40b0 a2=0 a3=1 items=0 ppid=2030 pid=2103 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:12:32.413000 audit: PROCTITLE proctitle=2F7573722F7362696E2F69707461626C6573002D2D77616974002D74006E6174002D4100505245524F5554494E47002D6D006164647274797065002D2D6473742D74797065004C4F43414C002D6A00444F434B4552 Feb 9 10:12:32.417000 audit[2105]: NETFILTER_CFG table=nat:18 family=2 entries=2 op=nft_register_chain pid=2105 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:12:32.417000 audit[2105]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=444 a0=3 a1=ffffe036a340 a2=0 a3=1 items=0 ppid=2030 pid=2105 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:12:32.417000 audit: PROCTITLE proctitle=2F7573722F7362696E2F69707461626C6573002D2D77616974002D74006E6174002D41004F5554505554002D6D006164647274797065002D2D6473742D74797065004C4F43414C002D6A00444F434B45520000002D2D647374003132372E302E302E302F38 Feb 9 10:12:32.421000 audit[2107]: NETFILTER_CFG table=filter:19 family=2 entries=1 op=nft_register_rule pid=2107 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:12:32.421000 audit[2107]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=304 a0=3 a1=ffffcaa6fc20 a2=0 a3=1 items=0 ppid=2030 pid=2107 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:12:32.421000 audit: PROCTITLE proctitle=2F7573722F7362696E2F69707461626C6573002D2D77616974002D4900464F5257415244002D6F00646F636B657230002D6A00444F434B4552 Feb 9 10:12:32.433000 audit[2110]: NETFILTER_CFG table=filter:20 family=2 entries=1 op=nft_register_rule pid=2110 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:12:32.433000 audit[2110]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=508 a0=3 a1=fffff9bdbc60 a2=0 a3=1 items=0 ppid=2030 pid=2110 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:12:32.433000 audit: PROCTITLE proctitle=2F7573722F7362696E2F69707461626C6573002D2D77616974002D4900464F5257415244002D6F00646F636B657230002D6D00636F6E6E747261636B002D2D637473746174650052454C415445442C45535441424C4953484544002D6A00414343455054 Feb 9 10:12:32.438000 audit[2112]: NETFILTER_CFG table=filter:21 family=2 entries=1 op=nft_register_rule pid=2112 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:12:32.438000 audit[2112]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=240 a0=3 a1=ffffd7fb2e40 a2=0 a3=1 items=0 ppid=2030 pid=2112 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:12:32.438000 audit: PROCTITLE proctitle=2F7573722F7362696E2F69707461626C6573002D2D77616974002D4900464F5257415244002D6A00444F434B45522D49534F4C4154494F4E2D53544147452D31 Feb 9 10:12:32.442000 audit[2114]: NETFILTER_CFG table=filter:22 family=2 entries=1 op=nft_register_rule pid=2114 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:12:32.442000 audit[2114]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=428 a0=3 a1=ffffcf24e470 a2=0 a3=1 items=0 ppid=2030 pid=2114 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:12:32.442000 audit: PROCTITLE proctitle=2F7573722F7362696E2F69707461626C6573002D2D77616974002D740066696C746572002D4900444F434B45522D49534F4C4154494F4E2D53544147452D31002D6900646F636B6572300000002D6F00646F636B657230002D6A00444F434B45522D49534F4C4154494F4E2D53544147452D32 Feb 9 10:12:32.446000 audit[2116]: NETFILTER_CFG table=filter:23 family=2 entries=1 op=nft_register_rule pid=2116 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:12:32.446000 audit[2116]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=312 a0=3 a1=ffffe8b9d380 a2=0 a3=1 items=0 ppid=2030 pid=2116 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:12:32.446000 audit: PROCTITLE proctitle=2F7573722F7362696E2F69707461626C6573002D2D77616974002D740066696C746572002D4900444F434B45522D49534F4C4154494F4E2D53544147452D32002D6F00646F636B657230002D6A0044524F50 Feb 9 10:12:32.448111 systemd-networkd[1540]: docker0: Link UP Feb 9 10:12:32.463000 audit[2120]: NETFILTER_CFG table=filter:24 family=2 entries=1 op=nft_unregister_rule pid=2120 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:12:32.463000 audit[2120]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=228 a0=3 a1=ffffee36ade0 a2=0 a3=1 items=0 ppid=2030 pid=2120 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:12:32.463000 audit: PROCTITLE proctitle=2F7573722F7362696E2F69707461626C6573002D2D77616974002D4400464F5257415244002D6A00444F434B45522D55534552 Feb 9 10:12:32.465000 audit[2121]: NETFILTER_CFG table=filter:25 family=2 entries=1 op=nft_register_rule pid=2121 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:12:32.465000 audit[2121]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=224 a0=3 a1=fffff84e2410 a2=0 a3=1 items=0 ppid=2030 pid=2121 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:12:32.465000 audit: PROCTITLE proctitle=2F7573722F7362696E2F69707461626C6573002D2D77616974002D4900464F5257415244002D6A00444F434B45522D55534552 Feb 9 10:12:32.467276 env[2030]: time="2024-02-09T10:12:32.467235509Z" level=info msg="Loading containers: done." Feb 9 10:12:32.487045 systemd[1]: var-lib-docker-overlay2-opaque\x2dbug\x2dcheck160174946-merged.mount: Deactivated successfully. Feb 9 10:12:32.509787 env[2030]: time="2024-02-09T10:12:32.509687757Z" level=warning msg="Not using native diff for overlay2, this may cause degraded performance for building images: kernel has CONFIG_OVERLAY_FS_REDIRECT_DIR enabled" storage-driver=overlay2 Feb 9 10:12:32.510162 env[2030]: time="2024-02-09T10:12:32.510112527Z" level=info msg="Docker daemon" commit=112bdf3343 graphdriver(s)=overlay2 version=20.10.23 Feb 9 10:12:32.510443 env[2030]: time="2024-02-09T10:12:32.510373299Z" level=info msg="Daemon has completed initialization" Feb 9 10:12:32.539000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=docker comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:32.539586 systemd[1]: Started docker.service. Feb 9 10:12:32.551186 env[2030]: time="2024-02-09T10:12:32.551082011Z" level=info msg="API listen on /run/docker.sock" Feb 9 10:12:32.586752 systemd[1]: Reloading. Feb 9 10:12:32.723523 /usr/lib/systemd/system-generators/torcx-generator[2169]: time="2024-02-09T10:12:32Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.2 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.2 /var/lib/torcx/store]" Feb 9 10:12:32.723582 /usr/lib/systemd/system-generators/torcx-generator[2169]: time="2024-02-09T10:12:32Z" level=info msg="torcx already run" Feb 9 10:12:32.882275 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Feb 9 10:12:32.882585 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Feb 9 10:12:32.920667 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Feb 9 10:12:33.076000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.076000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.077000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.077000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.077000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.077000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.077000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.077000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.077000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.077000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.077000 audit: BPF prog-id=40 op=LOAD Feb 9 10:12:33.078000 audit: BPF prog-id=27 op=UNLOAD Feb 9 10:12:33.078000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.078000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.078000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.078000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.078000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.078000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.079000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.079000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.079000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.079000 audit: BPF prog-id=41 op=LOAD Feb 9 10:12:33.079000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.079000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.079000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.079000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.079000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.079000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.080000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.080000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.080000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.080000 audit: BPF prog-id=42 op=LOAD Feb 9 10:12:33.080000 audit: BPF prog-id=28 op=UNLOAD Feb 9 10:12:33.080000 audit: BPF prog-id=29 op=UNLOAD Feb 9 10:12:33.088000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.088000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.088000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.088000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.088000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.088000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.088000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.088000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.089000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.089000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.089000 audit: BPF prog-id=43 op=LOAD Feb 9 10:12:33.090000 audit: BPF prog-id=32 op=UNLOAD Feb 9 10:12:33.090000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.090000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.090000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.090000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.090000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.090000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.090000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.090000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.090000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.090000 audit: BPF prog-id=44 op=LOAD Feb 9 10:12:33.090000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.090000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.090000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.090000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.090000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.090000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.090000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.090000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.090000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.090000 audit: BPF prog-id=45 op=LOAD Feb 9 10:12:33.090000 audit: BPF prog-id=33 op=UNLOAD Feb 9 10:12:33.090000 audit: BPF prog-id=34 op=UNLOAD Feb 9 10:12:33.091000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.091000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.091000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.091000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.091000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.091000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.091000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.091000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.091000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.091000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.091000 audit: BPF prog-id=46 op=LOAD Feb 9 10:12:33.091000 audit: BPF prog-id=35 op=UNLOAD Feb 9 10:12:33.091000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.091000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.091000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.091000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.091000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.091000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.091000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.091000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.091000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.091000 audit: BPF prog-id=47 op=LOAD Feb 9 10:12:33.091000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.091000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.091000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.091000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.091000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.091000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.091000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.091000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.091000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.091000 audit: BPF prog-id=48 op=LOAD Feb 9 10:12:33.092000 audit: BPF prog-id=36 op=UNLOAD Feb 9 10:12:33.092000 audit: BPF prog-id=37 op=UNLOAD Feb 9 10:12:33.094000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.094000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.094000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.094000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.094000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.094000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.094000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.094000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.094000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.094000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.094000 audit: BPF prog-id=49 op=LOAD Feb 9 10:12:33.095000 audit: BPF prog-id=31 op=UNLOAD Feb 9 10:12:33.096000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.096000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.096000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.096000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.096000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.096000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.096000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.096000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.096000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.096000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.096000 audit: BPF prog-id=50 op=LOAD Feb 9 10:12:33.096000 audit: BPF prog-id=30 op=UNLOAD Feb 9 10:12:33.097000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.097000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.097000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.097000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.097000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.097000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.097000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.097000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.097000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.097000 audit: BPF prog-id=51 op=LOAD Feb 9 10:12:33.097000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.097000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.097000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.097000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.097000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.097000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.097000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.097000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.097000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.097000 audit: BPF prog-id=52 op=LOAD Feb 9 10:12:33.098000 audit: BPF prog-id=24 op=UNLOAD Feb 9 10:12:33.098000 audit: BPF prog-id=25 op=UNLOAD Feb 9 10:12:33.099000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.099000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.099000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.099000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.099000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.099000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.099000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.099000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.099000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.100000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.100000 audit: BPF prog-id=53 op=LOAD Feb 9 10:12:33.100000 audit: BPF prog-id=26 op=UNLOAD Feb 9 10:12:33.102000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.102000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.102000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.102000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.102000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.102000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.102000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.102000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.102000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.103000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.103000 audit: BPF prog-id=54 op=LOAD Feb 9 10:12:33.103000 audit: BPF prog-id=38 op=UNLOAD Feb 9 10:12:33.103000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.103000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.103000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.103000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.103000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.103000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.103000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.103000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.103000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.104000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.104000 audit: BPF prog-id=55 op=LOAD Feb 9 10:12:33.104000 audit: BPF prog-id=21 op=UNLOAD Feb 9 10:12:33.104000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.104000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.104000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.104000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.104000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.104000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.104000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.104000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.104000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.104000 audit: BPF prog-id=56 op=LOAD Feb 9 10:12:33.104000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.104000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.104000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.104000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.104000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.104000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.104000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.104000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.104000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:12:33.104000 audit: BPF prog-id=57 op=LOAD Feb 9 10:12:33.104000 audit: BPF prog-id=22 op=UNLOAD Feb 9 10:12:33.104000 audit: BPF prog-id=23 op=UNLOAD Feb 9 10:12:33.123000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:33.124035 systemd[1]: Started kubelet.service. Feb 9 10:12:33.297485 kubelet[2223]: E0209 10:12:33.297369 2223 run.go:74] "command failed" err="failed to validate kubelet flags: the container runtime endpoint address was not specified or empty, use --container-runtime-endpoint to set" Feb 9 10:12:33.301765 systemd[1]: kubelet.service: Main process exited, code=exited, status=1/FAILURE Feb 9 10:12:33.302087 systemd[1]: kubelet.service: Failed with result 'exit-code'. Feb 9 10:12:33.301000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=failed' Feb 9 10:12:35.666265 env[1743]: time="2024-02-09T10:12:35.666185460Z" level=info msg="PullImage \"registry.k8s.io/kube-apiserver:v1.26.13\"" Feb 9 10:12:36.586228 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount4029738438.mount: Deactivated successfully. Feb 9 10:12:38.711740 amazon-ssm-agent[1715]: 2024-02-09 10:12:38 INFO [MessagingDeliveryService] [Association] No associations on boot. Requerying for associations after 30 seconds. Feb 9 10:12:40.117570 env[1743]: time="2024-02-09T10:12:40.117499720Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/kube-apiserver:v1.26.13,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:12:40.120825 env[1743]: time="2024-02-09T10:12:40.120771361Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:d88fbf485621d26e515136c1848b666d7dfe0fa84ca7ebd826447b039d306d88,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:12:40.125475 env[1743]: time="2024-02-09T10:12:40.125417557Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/kube-apiserver:v1.26.13,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:12:40.130293 env[1743]: time="2024-02-09T10:12:40.130226374Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/kube-apiserver@sha256:2f28bed4096abd572a56595ac0304238bdc271dcfe22c650707c09bf97ec16fd,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:12:40.132116 env[1743]: time="2024-02-09T10:12:40.132052641Z" level=info msg="PullImage \"registry.k8s.io/kube-apiserver:v1.26.13\" returns image reference \"sha256:d88fbf485621d26e515136c1848b666d7dfe0fa84ca7ebd826447b039d306d88\"" Feb 9 10:12:40.150108 env[1743]: time="2024-02-09T10:12:40.150041009Z" level=info msg="PullImage \"registry.k8s.io/kube-controller-manager:v1.26.13\"" Feb 9 10:12:43.134933 env[1743]: time="2024-02-09T10:12:43.134872984Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/kube-controller-manager:v1.26.13,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:12:43.139064 env[1743]: time="2024-02-09T10:12:43.138998190Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:71d8e883014e0849ca9a3161bd1feac09ad210dea2f4140732e218f04a6826c2,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:12:43.142566 env[1743]: time="2024-02-09T10:12:43.142506025Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/kube-controller-manager:v1.26.13,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:12:43.146064 env[1743]: time="2024-02-09T10:12:43.146009082Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/kube-controller-manager@sha256:fda420c6c15cdd01c4eba3404f0662fe486a9c7f38fa13c741a21334673841a2,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:12:43.147789 env[1743]: time="2024-02-09T10:12:43.147734298Z" level=info msg="PullImage \"registry.k8s.io/kube-controller-manager:v1.26.13\" returns image reference \"sha256:71d8e883014e0849ca9a3161bd1feac09ad210dea2f4140732e218f04a6826c2\"" Feb 9 10:12:43.167975 env[1743]: time="2024-02-09T10:12:43.167613694Z" level=info msg="PullImage \"registry.k8s.io/kube-scheduler:v1.26.13\"" Feb 9 10:12:43.521929 systemd[1]: kubelet.service: Scheduled restart job, restart counter is at 1. Feb 9 10:12:43.533208 kernel: kauditd_printk_skb: 292 callbacks suppressed Feb 9 10:12:43.533296 kernel: audit: type=1130 audit(1707473563.520:422): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:43.520000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:43.522258 systemd[1]: Stopped kubelet.service. Feb 9 10:12:43.524870 systemd[1]: Started kubelet.service. Feb 9 10:12:43.543157 kernel: audit: type=1131 audit(1707473563.520:423): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:43.520000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:43.523000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:43.551316 kernel: audit: type=1130 audit(1707473563.523:424): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:43.625376 kubelet[2252]: E0209 10:12:43.625302 2252 run.go:74] "command failed" err="failed to validate kubelet flags: the container runtime endpoint address was not specified or empty, use --container-runtime-endpoint to set" Feb 9 10:12:43.633861 systemd[1]: kubelet.service: Main process exited, code=exited, status=1/FAILURE Feb 9 10:12:43.634175 systemd[1]: kubelet.service: Failed with result 'exit-code'. Feb 9 10:12:43.633000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=failed' Feb 9 10:12:43.643420 kernel: audit: type=1131 audit(1707473563.633:425): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=failed' Feb 9 10:12:44.983370 env[1743]: time="2024-02-09T10:12:44.983301340Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/kube-scheduler:v1.26.13,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:12:44.986542 env[1743]: time="2024-02-09T10:12:44.986481000Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:a636f3d6300bad4775ea80ad544e38f486a039732c4871bddc1db3a5336c871a,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:12:44.989877 env[1743]: time="2024-02-09T10:12:44.989811740Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/kube-scheduler:v1.26.13,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:12:44.994660 env[1743]: time="2024-02-09T10:12:44.994594643Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/kube-scheduler@sha256:c3c7303ee6d01c8e5a769db28661cf854b55175aa72c67e9b6a7b9d47ac42af3,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:12:44.996332 env[1743]: time="2024-02-09T10:12:44.996257702Z" level=info msg="PullImage \"registry.k8s.io/kube-scheduler:v1.26.13\" returns image reference \"sha256:a636f3d6300bad4775ea80ad544e38f486a039732c4871bddc1db3a5336c871a\"" Feb 9 10:12:45.012557 env[1743]: time="2024-02-09T10:12:45.012496151Z" level=info msg="PullImage \"registry.k8s.io/kube-proxy:v1.26.13\"" Feb 9 10:12:47.056347 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount4135735553.mount: Deactivated successfully. Feb 9 10:12:48.445921 env[1743]: time="2024-02-09T10:12:48.445854634Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/kube-proxy:v1.26.13,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:12:48.620775 env[1743]: time="2024-02-09T10:12:48.620715039Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:95874282cd4f2ad9bc384735e604f0380cff88d61a2ca9db65890e6d9df46926,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:12:48.714362 env[1743]: time="2024-02-09T10:12:48.714203658Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/kube-proxy:v1.26.13,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:12:48.733575 env[1743]: time="2024-02-09T10:12:48.733508261Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/kube-proxy@sha256:f6e0de32a002b910b9b2e0e8d769e2d7b05208240559c745ce4781082ab15f22,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:12:48.770841 env[1743]: time="2024-02-09T10:12:48.734409131Z" level=info msg="PullImage \"registry.k8s.io/kube-proxy:v1.26.13\" returns image reference \"sha256:95874282cd4f2ad9bc384735e604f0380cff88d61a2ca9db65890e6d9df46926\"" Feb 9 10:12:48.770841 env[1743]: time="2024-02-09T10:12:48.750936838Z" level=info msg="PullImage \"registry.k8s.io/pause:3.9\"" Feb 9 10:12:49.572258 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount764023762.mount: Deactivated successfully. Feb 9 10:12:49.582756 env[1743]: time="2024-02-09T10:12:49.582695628Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/pause:3.9,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:12:49.585724 env[1743]: time="2024-02-09T10:12:49.585674909Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:829e9de338bd5fdd3f16f68f83a9fb288fbc8453e881e5d5cfd0f6f2ff72b43e,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:12:49.588323 env[1743]: time="2024-02-09T10:12:49.588275143Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.9,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:12:49.590998 env[1743]: time="2024-02-09T10:12:49.590937082Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/pause@sha256:7031c1b283388d2c2e09b57badb803c05ebed362dc88d84b480cc47f72a21097,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:12:49.592233 env[1743]: time="2024-02-09T10:12:49.592186211Z" level=info msg="PullImage \"registry.k8s.io/pause:3.9\" returns image reference \"sha256:829e9de338bd5fdd3f16f68f83a9fb288fbc8453e881e5d5cfd0f6f2ff72b43e\"" Feb 9 10:12:49.610361 env[1743]: time="2024-02-09T10:12:49.610293528Z" level=info msg="PullImage \"registry.k8s.io/etcd:3.5.6-0\"" Feb 9 10:12:50.885796 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount43092689.mount: Deactivated successfully. Feb 9 10:12:52.102996 systemd[1]: systemd-hostnamed.service: Deactivated successfully. Feb 9 10:12:52.101000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-hostnamed comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:52.112452 kernel: audit: type=1131 audit(1707473572.101:426): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-hostnamed comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:52.132000 audit: BPF prog-id=48 op=UNLOAD Feb 9 10:12:52.132000 audit: BPF prog-id=47 op=UNLOAD Feb 9 10:12:52.138578 kernel: audit: type=1334 audit(1707473572.132:427): prog-id=48 op=UNLOAD Feb 9 10:12:52.138656 kernel: audit: type=1334 audit(1707473572.132:428): prog-id=47 op=UNLOAD Feb 9 10:12:52.138716 kernel: audit: type=1334 audit(1707473572.132:429): prog-id=46 op=UNLOAD Feb 9 10:12:52.132000 audit: BPF prog-id=46 op=UNLOAD Feb 9 10:12:53.771000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:53.771899 systemd[1]: kubelet.service: Scheduled restart job, restart counter is at 2. Feb 9 10:12:53.772229 systemd[1]: Stopped kubelet.service. Feb 9 10:12:53.774821 systemd[1]: Started kubelet.service. Feb 9 10:12:53.771000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:53.789957 kernel: audit: type=1130 audit(1707473573.771:430): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:53.790091 kernel: audit: type=1131 audit(1707473573.771:431): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:53.790141 kernel: audit: type=1130 audit(1707473573.771:432): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:53.771000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:12:53.902771 kubelet[2276]: E0209 10:12:53.902670 2276 run.go:74] "command failed" err="failed to validate kubelet flags: the container runtime endpoint address was not specified or empty, use --container-runtime-endpoint to set" Feb 9 10:12:53.906783 systemd[1]: kubelet.service: Main process exited, code=exited, status=1/FAILURE Feb 9 10:12:53.907114 systemd[1]: kubelet.service: Failed with result 'exit-code'. Feb 9 10:12:53.907000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=failed' Feb 9 10:12:53.915428 kernel: audit: type=1131 audit(1707473573.907:433): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=failed' Feb 9 10:12:58.382046 env[1743]: time="2024-02-09T10:12:58.381941296Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/etcd:3.5.6-0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:12:58.461029 env[1743]: time="2024-02-09T10:12:58.460961491Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:ef245802824036d4a23ba6f8b3f04c055416f9dc73a54d546b1f98ad16f6b8cb,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:12:58.533375 env[1743]: time="2024-02-09T10:12:58.533314019Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/etcd:3.5.6-0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:12:58.619570 env[1743]: time="2024-02-09T10:12:58.619519496Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/etcd@sha256:dd75ec974b0a2a6f6bb47001ba09207976e625db898d1b16735528c009cb171c,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:12:58.621010 env[1743]: time="2024-02-09T10:12:58.620962131Z" level=info msg="PullImage \"registry.k8s.io/etcd:3.5.6-0\" returns image reference \"sha256:ef245802824036d4a23ba6f8b3f04c055416f9dc73a54d546b1f98ad16f6b8cb\"" Feb 9 10:12:58.637609 env[1743]: time="2024-02-09T10:12:58.637447944Z" level=info msg="PullImage \"registry.k8s.io/coredns/coredns:v1.9.3\"" Feb 9 10:13:01.422612 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1810848029.mount: Deactivated successfully. Feb 9 10:13:02.620728 env[1743]: time="2024-02-09T10:13:02.620648341Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/coredns/coredns:v1.9.3,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:13:02.631200 env[1743]: time="2024-02-09T10:13:02.631136670Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:b19406328e70dd2f6a36d6dbe4e867b0684ced2fdeb2f02ecb54ead39ec0bac0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:13:02.633902 env[1743]: time="2024-02-09T10:13:02.633839052Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/coredns/coredns:v1.9.3,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:13:02.636329 env[1743]: time="2024-02-09T10:13:02.636283565Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/coredns/coredns@sha256:8e352a029d304ca7431c6507b56800636c321cb52289686a581ab70aaa8a2e2a,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:13:02.637611 env[1743]: time="2024-02-09T10:13:02.637568785Z" level=info msg="PullImage \"registry.k8s.io/coredns/coredns:v1.9.3\" returns image reference \"sha256:b19406328e70dd2f6a36d6dbe4e867b0684ced2fdeb2f02ecb54ead39ec0bac0\"" Feb 9 10:13:03.910000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:13:03.911074 systemd[1]: kubelet.service: Scheduled restart job, restart counter is at 3. Feb 9 10:13:03.911420 systemd[1]: Stopped kubelet.service. Feb 9 10:13:03.919607 systemd[1]: Started kubelet.service. Feb 9 10:13:03.910000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:13:03.931020 kernel: audit: type=1130 audit(1707473583.910:434): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:13:03.931185 kernel: audit: type=1131 audit(1707473583.910:435): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:13:03.918000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:13:03.944990 kernel: audit: type=1130 audit(1707473583.918:436): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:13:04.033275 kubelet[2342]: E0209 10:13:04.033203 2342 run.go:74] "command failed" err="failed to validate kubelet flags: the container runtime endpoint address was not specified or empty, use --container-runtime-endpoint to set" Feb 9 10:13:04.037555 systemd[1]: kubelet.service: Main process exited, code=exited, status=1/FAILURE Feb 9 10:13:04.037885 systemd[1]: kubelet.service: Failed with result 'exit-code'. Feb 9 10:13:04.036000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=failed' Feb 9 10:13:04.047422 kernel: audit: type=1131 audit(1707473584.036:437): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=failed' Feb 9 10:13:07.465661 update_engine[1734]: I0209 10:13:07.465600 1734 update_attempter.cc:509] Updating boot flags... Feb 9 10:13:08.167925 systemd[1]: Stopped kubelet.service. Feb 9 10:13:08.166000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:13:08.192401 kernel: audit: type=1130 audit(1707473588.166:438): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:13:08.192531 kernel: audit: type=1131 audit(1707473588.166:439): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:13:08.166000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:13:08.215090 systemd[1]: Reloading. Feb 9 10:13:08.417685 /usr/lib/systemd/system-generators/torcx-generator[2641]: time="2024-02-09T10:13:08Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.2 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.2 /var/lib/torcx/store]" Feb 9 10:13:08.417749 /usr/lib/systemd/system-generators/torcx-generator[2641]: time="2024-02-09T10:13:08Z" level=info msg="torcx already run" Feb 9 10:13:08.570219 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Feb 9 10:13:08.570258 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Feb 9 10:13:08.608484 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Feb 9 10:13:08.742956 amazon-ssm-agent[1715]: 2024-02-09 10:13:08 INFO [MessagingDeliveryService] [Association] Schedule manager refreshed with 0 associations, 0 new associations associated Feb 9 10:13:08.773000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.791566 kernel: audit: type=1400 audit(1707473588.773:440): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.791702 kernel: audit: type=1400 audit(1707473588.781:441): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.781000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.781000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.799172 kernel: audit: type=1400 audit(1707473588.781:442): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.799257 kernel: audit: audit_backlog=65 > audit_backlog_limit=64 Feb 9 10:13:08.781000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.781000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.781000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.781000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.781000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.781000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.781000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.781000 audit: BPF prog-id=58 op=LOAD Feb 9 10:13:08.781000 audit: BPF prog-id=40 op=UNLOAD Feb 9 10:13:08.781000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.781000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.781000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.781000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.781000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.781000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.781000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.781000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.781000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.781000 audit: BPF prog-id=59 op=LOAD Feb 9 10:13:08.781000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.781000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.781000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.781000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.781000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.781000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.781000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.781000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.781000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.781000 audit: BPF prog-id=60 op=LOAD Feb 9 10:13:08.781000 audit: BPF prog-id=41 op=UNLOAD Feb 9 10:13:08.781000 audit: BPF prog-id=42 op=UNLOAD Feb 9 10:13:08.789000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.789000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.789000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.789000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.789000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.789000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.789000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.789000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.789000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.790000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.790000 audit: BPF prog-id=61 op=LOAD Feb 9 10:13:08.790000 audit: BPF prog-id=43 op=UNLOAD Feb 9 10:13:08.790000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.790000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.790000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.790000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.790000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.790000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.790000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.790000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.790000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.790000 audit: BPF prog-id=62 op=LOAD Feb 9 10:13:08.790000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.790000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.790000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.790000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.790000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.790000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.790000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.790000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.790000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.790000 audit: BPF prog-id=63 op=LOAD Feb 9 10:13:08.790000 audit: BPF prog-id=44 op=UNLOAD Feb 9 10:13:08.790000 audit: BPF prog-id=45 op=UNLOAD Feb 9 10:13:08.800000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.800000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.800000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.800000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.800000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.800000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.800000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.800000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.800000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.800000 audit: BPF prog-id=64 op=LOAD Feb 9 10:13:08.800000 audit: BPF prog-id=49 op=UNLOAD Feb 9 10:13:08.801000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.801000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.801000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.801000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.801000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.801000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.801000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.801000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.801000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.801000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.801000 audit: BPF prog-id=65 op=LOAD Feb 9 10:13:08.801000 audit: BPF prog-id=50 op=UNLOAD Feb 9 10:13:08.802000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.802000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.802000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.802000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.802000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.802000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.802000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.802000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.803000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.803000 audit: BPF prog-id=66 op=LOAD Feb 9 10:13:08.803000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.803000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.803000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.803000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.803000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.803000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.803000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.803000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.803000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.803000 audit: BPF prog-id=67 op=LOAD Feb 9 10:13:08.803000 audit: BPF prog-id=51 op=UNLOAD Feb 9 10:13:08.803000 audit: BPF prog-id=52 op=UNLOAD Feb 9 10:13:08.804000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.804000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.804000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.804000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.804000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.804000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.804000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.804000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.804000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.805000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.805000 audit: BPF prog-id=68 op=LOAD Feb 9 10:13:08.805000 audit: BPF prog-id=53 op=UNLOAD Feb 9 10:13:08.807000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.807000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.807000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.807000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.807000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.807000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.807000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.807000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.807000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.808000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.808000 audit: BPF prog-id=69 op=LOAD Feb 9 10:13:08.808000 audit: BPF prog-id=54 op=UNLOAD Feb 9 10:13:08.809000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.809000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.809000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.809000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.809000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.809000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.809000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.809000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.809000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.809000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.809000 audit: BPF prog-id=70 op=LOAD Feb 9 10:13:08.809000 audit: BPF prog-id=55 op=UNLOAD Feb 9 10:13:08.809000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.809000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.809000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.809000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.809000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.809000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.809000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.809000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.809000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.809000 audit: BPF prog-id=71 op=LOAD Feb 9 10:13:08.809000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.809000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.809000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.809000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.809000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.809000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.809000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.809000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.809000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:08.810000 audit: BPF prog-id=72 op=LOAD Feb 9 10:13:08.810000 audit: BPF prog-id=56 op=UNLOAD Feb 9 10:13:08.810000 audit: BPF prog-id=57 op=UNLOAD Feb 9 10:13:08.883174 systemd[1]: Started kubelet.service. Feb 9 10:13:08.882000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:13:08.993209 kubelet[2694]: Flag --pod-infra-container-image has been deprecated, will be removed in 1.27. Image garbage collector will get sandbox image information from CRI. Feb 9 10:13:08.993209 kubelet[2694]: Flag --volume-plugin-dir has been deprecated, This parameter should be set via the config file specified by the Kubelet's --config flag. See https://kubernetes.io/docs/tasks/administer-cluster/kubelet-config-file/ for more information. Feb 9 10:13:08.998153 kubelet[2694]: I0209 10:13:08.998080 2694 server.go:198] "--pod-infra-container-image will not be pruned by the image garbage collector in kubelet and should also be set in the remote runtime" Feb 9 10:13:09.000638 kubelet[2694]: Flag --pod-infra-container-image has been deprecated, will be removed in 1.27. Image garbage collector will get sandbox image information from CRI. Feb 9 10:13:09.000638 kubelet[2694]: Flag --volume-plugin-dir has been deprecated, This parameter should be set via the config file specified by the Kubelet's --config flag. See https://kubernetes.io/docs/tasks/administer-cluster/kubelet-config-file/ for more information. Feb 9 10:13:09.652792 kubelet[2694]: I0209 10:13:09.652746 2694 server.go:412] "Kubelet version" kubeletVersion="v1.26.5" Feb 9 10:13:09.652792 kubelet[2694]: I0209 10:13:09.652790 2694 server.go:414] "Golang settings" GOGC="" GOMAXPROCS="" GOTRACEBACK="" Feb 9 10:13:09.653268 kubelet[2694]: I0209 10:13:09.653230 2694 server.go:836] "Client rotation is on, will bootstrap in background" Feb 9 10:13:09.659109 kubelet[2694]: E0209 10:13:09.659076 2694 certificate_manager.go:471] kubernetes.io/kube-apiserver-client-kubelet: Failed while requesting a signed certificate from the control plane: cannot create certificate signing request: Post "https://172.31.28.77:6443/apis/certificates.k8s.io/v1/certificatesigningrequests": dial tcp 172.31.28.77:6443: connect: connection refused Feb 9 10:13:09.659329 kubelet[2694]: I0209 10:13:09.659303 2694 dynamic_cafile_content.go:157] "Starting controller" name="client-ca-bundle::/etc/kubernetes/pki/ca.crt" Feb 9 10:13:09.662205 kubelet[2694]: W0209 10:13:09.662169 2694 machine.go:65] Cannot read vendor id correctly, set empty. Feb 9 10:13:09.663446 kubelet[2694]: I0209 10:13:09.663374 2694 server.go:659] "--cgroups-per-qos enabled, but --cgroup-root was not specified. defaulting to /" Feb 9 10:13:09.663927 kubelet[2694]: I0209 10:13:09.663902 2694 container_manager_linux.go:267] "Container manager verified user specified cgroup-root exists" cgroupRoot=[] Feb 9 10:13:09.664046 kubelet[2694]: I0209 10:13:09.664020 2694 container_manager_linux.go:272] "Creating Container Manager object based on Node Config" nodeConfig={RuntimeCgroupsName: SystemCgroupsName: KubeletCgroupsName: KubeletOOMScoreAdj:-999 ContainerRuntime: CgroupsPerQOS:true CgroupRoot:/ CgroupDriver:systemd KubeletRootDir:/var/lib/kubelet ProtectKernelDefaults:false NodeAllocatableConfig:{KubeReservedCgroupName: SystemReservedCgroupName: ReservedSystemCPUs: EnforceNodeAllocatable:map[pods:{}] KubeReserved:map[] SystemReserved:map[] HardEvictionThresholds:[{Signal:memory.available Operator:LessThan Value:{Quantity:100Mi Percentage:0} GracePeriod:0s MinReclaim:} {Signal:nodefs.available Operator:LessThan Value:{Quantity: Percentage:0.1} GracePeriod:0s MinReclaim:} {Signal:nodefs.inodesFree Operator:LessThan Value:{Quantity: Percentage:0.05} GracePeriod:0s MinReclaim:} {Signal:imagefs.available Operator:LessThan Value:{Quantity: Percentage:0.15} GracePeriod:0s MinReclaim:}]} QOSReserved:map[] CPUManagerPolicy:none CPUManagerPolicyOptions:map[] ExperimentalTopologyManagerScope:container CPUManagerReconcilePeriod:10s ExperimentalMemoryManagerPolicy:None ExperimentalMemoryManagerReservedMemory:[] ExperimentalPodPidsLimit:-1 EnforceCPULimits:true CPUCFSQuotaPeriod:100ms ExperimentalTopologyManagerPolicy:none ExperimentalTopologyManagerPolicyOptions:map[]} Feb 9 10:13:09.664239 kubelet[2694]: I0209 10:13:09.664082 2694 topology_manager.go:134] "Creating topology manager with policy per scope" topologyPolicyName="none" topologyScopeName="container" Feb 9 10:13:09.664239 kubelet[2694]: I0209 10:13:09.664110 2694 container_manager_linux.go:308] "Creating device plugin manager" Feb 9 10:13:09.664354 kubelet[2694]: I0209 10:13:09.664294 2694 state_mem.go:36] "Initialized new in-memory state store" Feb 9 10:13:09.670341 kubelet[2694]: I0209 10:13:09.670285 2694 kubelet.go:398] "Attempting to sync node with API server" Feb 9 10:13:09.670341 kubelet[2694]: I0209 10:13:09.670331 2694 kubelet.go:286] "Adding static pod path" path="/etc/kubernetes/manifests" Feb 9 10:13:09.670599 kubelet[2694]: I0209 10:13:09.670437 2694 kubelet.go:297] "Adding apiserver pod source" Feb 9 10:13:09.670599 kubelet[2694]: I0209 10:13:09.670463 2694 apiserver.go:42] "Waiting for node sync before watching apiserver pods" Feb 9 10:13:09.672678 kubelet[2694]: W0209 10:13:09.672598 2694 reflector.go:424] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.Service: Get "https://172.31.28.77:6443/api/v1/services?limit=500&resourceVersion=0": dial tcp 172.31.28.77:6443: connect: connection refused Feb 9 10:13:09.672678 kubelet[2694]: E0209 10:13:09.672685 2694 reflector.go:140] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.Service: failed to list *v1.Service: Get "https://172.31.28.77:6443/api/v1/services?limit=500&resourceVersion=0": dial tcp 172.31.28.77:6443: connect: connection refused Feb 9 10:13:09.672909 kubelet[2694]: W0209 10:13:09.672793 2694 reflector.go:424] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.Node: Get "https://172.31.28.77:6443/api/v1/nodes?fieldSelector=metadata.name%3Dip-172-31-28-77&limit=500&resourceVersion=0": dial tcp 172.31.28.77:6443: connect: connection refused Feb 9 10:13:09.672909 kubelet[2694]: E0209 10:13:09.672843 2694 reflector.go:140] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.Node: failed to list *v1.Node: Get "https://172.31.28.77:6443/api/v1/nodes?fieldSelector=metadata.name%3Dip-172-31-28-77&limit=500&resourceVersion=0": dial tcp 172.31.28.77:6443: connect: connection refused Feb 9 10:13:09.673037 kubelet[2694]: I0209 10:13:09.673020 2694 kuberuntime_manager.go:244] "Container runtime initialized" containerRuntime="containerd" version="1.6.16" apiVersion="v1" Feb 9 10:13:09.673695 kubelet[2694]: W0209 10:13:09.673657 2694 probe.go:268] Flexvolume plugin directory at /opt/libexec/kubernetes/kubelet-plugins/volume/exec/ does not exist. Recreating. Feb 9 10:13:09.675195 kubelet[2694]: I0209 10:13:09.675128 2694 server.go:1186] "Started kubelet" Feb 9 10:13:09.677632 kubelet[2694]: I0209 10:13:09.677599 2694 server.go:161] "Starting to listen" address="0.0.0.0" port=10250 Feb 9 10:13:09.684363 kubelet[2694]: I0209 10:13:09.684325 2694 server.go:451] "Adding debug handlers to kubelet server" Feb 9 10:13:09.690446 kernel: kauditd_printk_skb: 171 callbacks suppressed Feb 9 10:13:09.690601 kernel: audit: type=1400 audit(1707473589.686:612): avc: denied { mac_admin } for pid=2694 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:09.686000 audit[2694]: AVC avc: denied { mac_admin } for pid=2694 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:09.697656 kubelet[2694]: I0209 10:13:09.697602 2694 kubelet.go:1341] "Unprivileged containerized plugins might not work, could not set selinux context on plugin registration dir" path="/var/lib/kubelet/plugins_registry" err="setxattr /var/lib/kubelet/plugins_registry: invalid argument" Feb 9 10:13:09.697755 kubelet[2694]: I0209 10:13:09.697718 2694 kubelet.go:1345] "Unprivileged containerized plugins might not work, could not set selinux context on plugins dir" path="/var/lib/kubelet/plugins" err="setxattr /var/lib/kubelet/plugins: invalid argument" Feb 9 10:13:09.697986 kubelet[2694]: I0209 10:13:09.697952 2694 fs_resource_analyzer.go:67] "Starting FS ResourceAnalyzer" Feb 9 10:13:09.686000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Feb 9 10:13:09.698628 kubelet[2694]: E0209 10:13:09.698601 2694 cri_stats_provider.go:455] "Failed to get the info of the filesystem with mountpoint" err="unable to find data in memory cache" mountpoint="/var/lib/containerd/io.containerd.snapshotter.v1.overlayfs" Feb 9 10:13:09.698764 kubelet[2694]: E0209 10:13:09.698744 2694 kubelet.go:1386] "Image garbage collection failed once. Stats initialization may not have completed yet" err="invalid capacity 0 on image filesystem" Feb 9 10:13:09.699378 kubelet[2694]: E0209 10:13:09.699247 2694 event.go:276] Unable to write event: '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"ip-172-31-28-77.17b22a2ee7efb712", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"ip-172-31-28-77", UID:"ip-172-31-28-77", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"Starting", Message:"Starting kubelet.", Source:v1.EventSource{Component:"kubelet", Host:"ip-172-31-28-77"}, FirstTimestamp:time.Date(2024, time.February, 9, 10, 13, 9, 674948370, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 10, 13, 9, 674948370, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'Post "https://172.31.28.77:6443/api/v1/namespaces/default/events": dial tcp 172.31.28.77:6443: connect: connection refused'(may retry after sleeping) Feb 9 10:13:09.702554 kernel: audit: type=1401 audit(1707473589.686:612): op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Feb 9 10:13:09.702676 kernel: audit: type=1300 audit(1707473589.686:612): arch=c00000b7 syscall=5 success=no exit=-22 a0=4000de1800 a1=4000f5d188 a2=4000de17d0 a3=25 items=0 ppid=1 pid=2694 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.686000 audit[2694]: SYSCALL arch=c00000b7 syscall=5 success=no exit=-22 a0=4000de1800 a1=4000f5d188 a2=4000de17d0 a3=25 items=0 ppid=1 pid=2694 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.710604 kubelet[2694]: I0209 10:13:09.710570 2694 volume_manager.go:293] "Starting Kubelet Volume Manager" Feb 9 10:13:09.710887 kubelet[2694]: I0209 10:13:09.710865 2694 desired_state_of_world_populator.go:151] "Desired state populator starts to run" Feb 9 10:13:09.711624 kubelet[2694]: W0209 10:13:09.711567 2694 reflector.go:424] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.CSIDriver: Get "https://172.31.28.77:6443/apis/storage.k8s.io/v1/csidrivers?limit=500&resourceVersion=0": dial tcp 172.31.28.77:6443: connect: connection refused Feb 9 10:13:09.711783 kubelet[2694]: E0209 10:13:09.711761 2694 reflector.go:140] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.CSIDriver: failed to list *v1.CSIDriver: Get "https://172.31.28.77:6443/apis/storage.k8s.io/v1/csidrivers?limit=500&resourceVersion=0": dial tcp 172.31.28.77:6443: connect: connection refused Feb 9 10:13:09.712271 kubelet[2694]: E0209 10:13:09.712239 2694 controller.go:146] failed to ensure lease exists, will retry in 200ms, error: Get "https://172.31.28.77:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/ip-172-31-28-77?timeout=10s": dial tcp 172.31.28.77:6443: connect: connection refused Feb 9 10:13:09.686000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Feb 9 10:13:09.724431 kernel: audit: type=1327 audit(1707473589.686:612): proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Feb 9 10:13:09.696000 audit[2694]: AVC avc: denied { mac_admin } for pid=2694 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:09.732754 kernel: audit: type=1400 audit(1707473589.696:613): avc: denied { mac_admin } for pid=2694 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:09.696000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Feb 9 10:13:09.738125 kernel: audit: type=1401 audit(1707473589.696:613): op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Feb 9 10:13:09.696000 audit[2694]: SYSCALL arch=c00000b7 syscall=5 success=no exit=-22 a0=40002310a0 a1=40003537e8 a2=4000d19a70 a3=25 items=0 ppid=1 pid=2694 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.753423 kernel: audit: type=1300 audit(1707473589.696:613): arch=c00000b7 syscall=5 success=no exit=-22 a0=40002310a0 a1=40003537e8 a2=4000d19a70 a3=25 items=0 ppid=1 pid=2694 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.696000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Feb 9 10:13:09.763650 kernel: audit: type=1327 audit(1707473589.696:613): proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Feb 9 10:13:09.763801 kernel: audit: type=1325 audit(1707473589.731:614): table=mangle:26 family=2 entries=2 op=nft_register_chain pid=2705 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:13:09.731000 audit[2705]: NETFILTER_CFG table=mangle:26 family=2 entries=2 op=nft_register_chain pid=2705 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:13:09.731000 audit[2705]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=136 a0=3 a1=fffff0c63a30 a2=0 a3=1 items=0 ppid=2694 pid=2705 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.783865 kernel: audit: type=1300 audit(1707473589.731:614): arch=c00000b7 syscall=211 success=yes exit=136 a0=3 a1=fffff0c63a30 a2=0 a3=1 items=0 ppid=2694 pid=2705 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.731000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D49505441424C45532D48494E54002D74006D616E676C65 Feb 9 10:13:09.732000 audit[2707]: NETFILTER_CFG table=filter:27 family=2 entries=1 op=nft_register_chain pid=2707 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:13:09.732000 audit[2707]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffe6602d00 a2=0 a3=1 items=0 ppid=2694 pid=2707 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.732000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4649524557414C4C002D740066696C746572 Feb 9 10:13:09.757000 audit[2712]: NETFILTER_CFG table=filter:28 family=2 entries=2 op=nft_register_chain pid=2712 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:13:09.757000 audit[2712]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=312 a0=3 a1=ffffd8348950 a2=0 a3=1 items=0 ppid=2694 pid=2712 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.757000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6A004B5542452D4649524557414C4C Feb 9 10:13:09.784000 audit[2714]: NETFILTER_CFG table=filter:29 family=2 entries=2 op=nft_register_chain pid=2714 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:13:09.784000 audit[2714]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=312 a0=3 a1=fffff36dd9e0 a2=0 a3=1 items=0 ppid=2694 pid=2714 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.784000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6A004B5542452D4649524557414C4C Feb 9 10:13:09.789175 kubelet[2694]: I0209 10:13:09.789130 2694 cpu_manager.go:214] "Starting CPU manager" policy="none" Feb 9 10:13:09.789175 kubelet[2694]: I0209 10:13:09.789167 2694 cpu_manager.go:215] "Reconciling" reconcilePeriod="10s" Feb 9 10:13:09.789414 kubelet[2694]: I0209 10:13:09.789208 2694 state_mem.go:36] "Initialized new in-memory state store" Feb 9 10:13:09.792048 kubelet[2694]: I0209 10:13:09.791997 2694 policy_none.go:49] "None policy: Start" Feb 9 10:13:09.793502 kubelet[2694]: I0209 10:13:09.793475 2694 memory_manager.go:169] "Starting memorymanager" policy="None" Feb 9 10:13:09.793700 kubelet[2694]: I0209 10:13:09.793679 2694 state_mem.go:35] "Initializing new in-memory state store" Feb 9 10:13:09.795183 kubelet[2694]: E0209 10:13:09.795018 2694 event.go:276] Unable to write event: '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"ip-172-31-28-77.17b22a2ee7efb712", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"ip-172-31-28-77", UID:"ip-172-31-28-77", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"Starting", Message:"Starting kubelet.", Source:v1.EventSource{Component:"kubelet", Host:"ip-172-31-28-77"}, FirstTimestamp:time.Date(2024, time.February, 9, 10, 13, 9, 674948370, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 10, 13, 9, 674948370, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'Post "https://172.31.28.77:6443/api/v1/namespaces/default/events": dial tcp 172.31.28.77:6443: connect: connection refused'(may retry after sleeping) Feb 9 10:13:09.804894 systemd[1]: Created slice kubepods.slice. Feb 9 10:13:09.806000 audit[2717]: NETFILTER_CFG table=filter:30 family=2 entries=1 op=nft_register_rule pid=2717 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:13:09.806000 audit[2717]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=924 a0=3 a1=fffff807e0d0 a2=0 a3=1 items=0 ppid=2694 pid=2717 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.806000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D41004B5542452D4649524557414C4C002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E7400626C6F636B20696E636F6D696E67206C6F63616C6E657420636F6E6E656374696F6E73002D2D647374003132372E302E302E302F38 Feb 9 10:13:09.813535 kubelet[2694]: I0209 10:13:09.813502 2694 kubelet_node_status.go:70] "Attempting to register node" node="ip-172-31-28-77" Feb 9 10:13:09.814474 systemd[1]: Created slice kubepods-burstable.slice. Feb 9 10:13:09.814910 kubelet[2694]: E0209 10:13:09.814884 2694 kubelet_node_status.go:92] "Unable to register node with API server" err="Post \"https://172.31.28.77:6443/api/v1/nodes\": dial tcp 172.31.28.77:6443: connect: connection refused" node="ip-172-31-28-77" Feb 9 10:13:09.814000 audit[2718]: NETFILTER_CFG table=nat:31 family=2 entries=1 op=nft_register_chain pid=2718 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:13:09.814000 audit[2718]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=96 a0=3 a1=ffffe3838cf0 a2=0 a3=1 items=0 ppid=2694 pid=2718 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.814000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4D41524B2D44524F50002D74006E6174 Feb 9 10:13:09.825050 systemd[1]: Created slice kubepods-besteffort.slice. Feb 9 10:13:09.831791 kubelet[2694]: I0209 10:13:09.831760 2694 manager.go:455] "Failed to read data from checkpoint" checkpoint="kubelet_internal_checkpoint" err="checkpoint is not found" Feb 9 10:13:09.830000 audit[2694]: AVC avc: denied { mac_admin } for pid=2694 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:09.830000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Feb 9 10:13:09.830000 audit[2694]: SYSCALL arch=c00000b7 syscall=5 success=no exit=-22 a0=4000e28420 a1=4000e4cae0 a2=4000e283f0 a3=25 items=0 ppid=1 pid=2694 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.830000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Feb 9 10:13:09.832502 kubelet[2694]: I0209 10:13:09.832476 2694 server.go:88] "Unprivileged containerized plugins might not work. Could not set selinux context on socket dir" path="/var/lib/kubelet/device-plugins/" err="setxattr /var/lib/kubelet/device-plugins/: invalid argument" Feb 9 10:13:09.833606 kubelet[2694]: I0209 10:13:09.833574 2694 plugin_manager.go:118] "Starting Kubelet Plugin Manager" Feb 9 10:13:09.835134 kubelet[2694]: E0209 10:13:09.834889 2694 eviction_manager.go:261] "Eviction manager: failed to get summary stats" err="failed to get node info: node \"ip-172-31-28-77\" not found" Feb 9 10:13:09.871000 audit[2721]: NETFILTER_CFG table=nat:32 family=2 entries=1 op=nft_register_rule pid=2721 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:13:09.871000 audit[2721]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=216 a0=3 a1=fffff6d199b0 a2=0 a3=1 items=0 ppid=2694 pid=2721 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.871000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D41004B5542452D4D41524B2D44524F50002D74006E6174002D6A004D41524B002D2D6F722D6D61726B0030783030303038303030 Feb 9 10:13:09.881000 audit[2724]: NETFILTER_CFG table=filter:33 family=2 entries=1 op=nft_register_rule pid=2724 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:13:09.881000 audit[2724]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=664 a0=3 a1=ffffcaa48320 a2=0 a3=1 items=0 ppid=2694 pid=2724 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.881000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D41004B5542452D4649524557414C4C002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206669726577616C6C20666F722064726F7070696E67206D61726B6564207061636B657473002D6D006D61726B Feb 9 10:13:09.884000 audit[2725]: NETFILTER_CFG table=nat:34 family=2 entries=1 op=nft_register_chain pid=2725 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:13:09.884000 audit[2725]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=96 a0=3 a1=ffffe2db5cc0 a2=0 a3=1 items=0 ppid=2694 pid=2725 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.884000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4D41524B2D4D415351002D74006E6174 Feb 9 10:13:09.886000 audit[2726]: NETFILTER_CFG table=nat:35 family=2 entries=1 op=nft_register_chain pid=2726 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:13:09.886000 audit[2726]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffdf013690 a2=0 a3=1 items=0 ppid=2694 pid=2726 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.886000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D504F5354524F5554494E47002D74006E6174 Feb 9 10:13:09.890000 audit[2728]: NETFILTER_CFG table=nat:36 family=2 entries=1 op=nft_register_rule pid=2728 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:13:09.890000 audit[2728]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=216 a0=3 a1=ffffc9b23e80 a2=0 a3=1 items=0 ppid=2694 pid=2728 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.890000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D41004B5542452D4D41524B2D4D415351002D74006E6174002D6A004D41524B002D2D6F722D6D61726B0030783030303034303030 Feb 9 10:13:09.894000 audit[2730]: NETFILTER_CFG table=nat:37 family=2 entries=1 op=nft_register_rule pid=2730 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:13:09.894000 audit[2730]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=532 a0=3 a1=ffffdf959910 a2=0 a3=1 items=0 ppid=2694 pid=2730 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.894000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900504F5354524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320706F7374726F7574696E672072756C6573002D6A004B5542452D504F5354524F5554494E47 Feb 9 10:13:09.899000 audit[2732]: NETFILTER_CFG table=nat:38 family=2 entries=1 op=nft_register_rule pid=2732 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:13:09.899000 audit[2732]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=364 a0=3 a1=ffffde4dd940 a2=0 a3=1 items=0 ppid=2694 pid=2732 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.899000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D41004B5542452D504F5354524F5554494E47002D74006E6174002D6D006D61726B0000002D2D6D61726B00307830303030343030302F30783030303034303030002D6A0052455455524E Feb 9 10:13:09.904000 audit[2734]: NETFILTER_CFG table=nat:39 family=2 entries=1 op=nft_register_rule pid=2734 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:13:09.904000 audit[2734]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=220 a0=3 a1=ffffc58ff830 a2=0 a3=1 items=0 ppid=2694 pid=2734 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.904000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D41004B5542452D504F5354524F5554494E47002D74006E6174002D6A004D41524B002D2D786F722D6D61726B0030783030303034303030 Feb 9 10:13:09.913418 kubelet[2694]: E0209 10:13:09.913332 2694 controller.go:146] failed to ensure lease exists, will retry in 400ms, error: Get "https://172.31.28.77:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/ip-172-31-28-77?timeout=10s": dial tcp 172.31.28.77:6443: connect: connection refused Feb 9 10:13:09.914000 audit[2736]: NETFILTER_CFG table=nat:40 family=2 entries=1 op=nft_register_rule pid=2736 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:13:09.914000 audit[2736]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=540 a0=3 a1=ffffc97d81a0 a2=0 a3=1 items=0 ppid=2694 pid=2736 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.914000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D41004B5542452D504F5354524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732073657276696365207472616666696320726571756972696E6720534E4154002D6A004D415351554552414445 Feb 9 10:13:09.917119 kubelet[2694]: I0209 10:13:09.917072 2694 kubelet_network_linux.go:63] "Initialized iptables rules." protocol=IPv4 Feb 9 10:13:09.917000 audit[2737]: NETFILTER_CFG table=mangle:41 family=10 entries=2 op=nft_register_chain pid=2737 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:13:09.917000 audit[2737]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=136 a0=3 a1=ffffd89c92e0 a2=0 a3=1 items=0 ppid=2694 pid=2737 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.917000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D49505441424C45532D48494E54002D74006D616E676C65 Feb 9 10:13:09.918000 audit[2738]: NETFILTER_CFG table=mangle:42 family=2 entries=1 op=nft_register_chain pid=2738 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:13:09.918000 audit[2738]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=fffffb2729b0 a2=0 a3=1 items=0 ppid=2694 pid=2738 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.918000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006D616E676C65 Feb 9 10:13:09.919000 audit[2739]: NETFILTER_CFG table=nat:43 family=10 entries=2 op=nft_register_chain pid=2739 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:13:09.919000 audit[2739]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=124 a0=3 a1=fffffcca8b40 a2=0 a3=1 items=0 ppid=2694 pid=2739 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.919000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4D41524B2D44524F50002D74006E6174 Feb 9 10:13:09.921000 audit[2740]: NETFILTER_CFG table=nat:44 family=2 entries=1 op=nft_register_chain pid=2740 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:13:09.921000 audit[2740]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffc4e2c8e0 a2=0 a3=1 items=0 ppid=2694 pid=2740 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.921000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006E6174 Feb 9 10:13:09.924000 audit[2742]: NETFILTER_CFG table=nat:45 family=10 entries=1 op=nft_register_rule pid=2742 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:13:09.924000 audit[2742]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=216 a0=3 a1=ffffd2c4fc80 a2=0 a3=1 items=0 ppid=2694 pid=2742 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.924000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D41004B5542452D4D41524B2D44524F50002D74006E6174002D6A004D41524B002D2D6F722D6D61726B0030783030303038303030 Feb 9 10:13:09.925000 audit[2743]: NETFILTER_CFG table=filter:46 family=2 entries=1 op=nft_register_chain pid=2743 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:13:09.925000 audit[2743]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=fffff2aef680 a2=0 a3=1 items=0 ppid=2694 pid=2743 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.926000 audit[2744]: NETFILTER_CFG table=filter:47 family=10 entries=2 op=nft_register_chain pid=2744 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:13:09.926000 audit[2744]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=132 a0=3 a1=ffffd73f3490 a2=0 a3=1 items=0 ppid=2694 pid=2744 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.926000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4649524557414C4C002D740066696C746572 Feb 9 10:13:09.925000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D740066696C746572 Feb 9 10:13:09.931000 audit[2746]: NETFILTER_CFG table=filter:48 family=10 entries=1 op=nft_register_rule pid=2746 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:13:09.931000 audit[2746]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=664 a0=3 a1=ffffe11c7640 a2=0 a3=1 items=0 ppid=2694 pid=2746 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.931000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D41004B5542452D4649524557414C4C002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206669726577616C6C20666F722064726F7070696E67206D61726B6564207061636B657473002D6D006D61726B Feb 9 10:13:09.934000 audit[2747]: NETFILTER_CFG table=nat:49 family=10 entries=1 op=nft_register_chain pid=2747 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:13:09.934000 audit[2747]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=96 a0=3 a1=ffffff5ada80 a2=0 a3=1 items=0 ppid=2694 pid=2747 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.934000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4D41524B2D4D415351002D74006E6174 Feb 9 10:13:09.936000 audit[2748]: NETFILTER_CFG table=nat:50 family=10 entries=1 op=nft_register_chain pid=2748 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:13:09.936000 audit[2748]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffc4246d60 a2=0 a3=1 items=0 ppid=2694 pid=2748 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.936000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D504F5354524F5554494E47002D74006E6174 Feb 9 10:13:09.941000 audit[2750]: NETFILTER_CFG table=nat:51 family=10 entries=1 op=nft_register_rule pid=2750 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:13:09.941000 audit[2750]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=216 a0=3 a1=ffffcfeef6a0 a2=0 a3=1 items=0 ppid=2694 pid=2750 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.941000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D41004B5542452D4D41524B2D4D415351002D74006E6174002D6A004D41524B002D2D6F722D6D61726B0030783030303034303030 Feb 9 10:13:09.947000 audit[2752]: NETFILTER_CFG table=nat:52 family=10 entries=2 op=nft_register_chain pid=2752 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:13:09.947000 audit[2752]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=612 a0=3 a1=fffff15abec0 a2=0 a3=1 items=0 ppid=2694 pid=2752 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.947000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900504F5354524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320706F7374726F7574696E672072756C6573002D6A004B5542452D504F5354524F5554494E47 Feb 9 10:13:09.951000 audit[2754]: NETFILTER_CFG table=nat:53 family=10 entries=1 op=nft_register_rule pid=2754 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:13:09.951000 audit[2754]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=364 a0=3 a1=ffffe2a67a60 a2=0 a3=1 items=0 ppid=2694 pid=2754 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.951000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D41004B5542452D504F5354524F5554494E47002D74006E6174002D6D006D61726B0000002D2D6D61726B00307830303030343030302F30783030303034303030002D6A0052455455524E Feb 9 10:13:09.956000 audit[2756]: NETFILTER_CFG table=nat:54 family=10 entries=1 op=nft_register_rule pid=2756 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:13:09.956000 audit[2756]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=220 a0=3 a1=ffffda7d38a0 a2=0 a3=1 items=0 ppid=2694 pid=2756 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:09.956000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D41004B5542452D504F5354524F5554494E47002D74006E6174002D6A004D41524B002D2D786F722D6D61726B0030783030303034303030 Feb 9 10:13:10.011000 audit[2758]: NETFILTER_CFG table=nat:55 family=10 entries=1 op=nft_register_rule pid=2758 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:13:10.011000 audit[2758]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=556 a0=3 a1=ffffc9828e40 a2=0 a3=1 items=0 ppid=2694 pid=2758 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:10.011000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D41004B5542452D504F5354524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732073657276696365207472616666696320726571756972696E6720534E4154002D6A004D415351554552414445 Feb 9 10:13:10.013182 kubelet[2694]: I0209 10:13:10.013143 2694 kubelet_network_linux.go:63] "Initialized iptables rules." protocol=IPv6 Feb 9 10:13:10.013757 kubelet[2694]: I0209 10:13:10.013216 2694 status_manager.go:176] "Starting to sync pod status with apiserver" Feb 9 10:13:10.013757 kubelet[2694]: I0209 10:13:10.013252 2694 kubelet.go:2113] "Starting kubelet main sync loop" Feb 9 10:13:10.013757 kubelet[2694]: E0209 10:13:10.013556 2694 kubelet.go:2137] "Skipping pod synchronization" err="PLEG is not healthy: pleg has yet to be successful" Feb 9 10:13:10.014950 kubelet[2694]: W0209 10:13:10.014894 2694 reflector.go:424] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.RuntimeClass: Get "https://172.31.28.77:6443/apis/node.k8s.io/v1/runtimeclasses?limit=500&resourceVersion=0": dial tcp 172.31.28.77:6443: connect: connection refused Feb 9 10:13:10.015109 kubelet[2694]: E0209 10:13:10.014956 2694 reflector.go:140] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.RuntimeClass: failed to list *v1.RuntimeClass: Get "https://172.31.28.77:6443/apis/node.k8s.io/v1/runtimeclasses?limit=500&resourceVersion=0": dial tcp 172.31.28.77:6443: connect: connection refused Feb 9 10:13:10.017957 kubelet[2694]: I0209 10:13:10.017906 2694 kubelet_node_status.go:70] "Attempting to register node" node="ip-172-31-28-77" Feb 9 10:13:10.018529 kubelet[2694]: E0209 10:13:10.018490 2694 kubelet_node_status.go:92] "Unable to register node with API server" err="Post \"https://172.31.28.77:6443/api/v1/nodes\": dial tcp 172.31.28.77:6443: connect: connection refused" node="ip-172-31-28-77" Feb 9 10:13:10.018000 audit[2759]: NETFILTER_CFG table=mangle:56 family=10 entries=1 op=nft_register_chain pid=2759 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:13:10.018000 audit[2759]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffe1294560 a2=0 a3=1 items=0 ppid=2694 pid=2759 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:10.018000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006D616E676C65 Feb 9 10:13:10.021000 audit[2760]: NETFILTER_CFG table=nat:57 family=10 entries=1 op=nft_register_chain pid=2760 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:13:10.021000 audit[2760]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=fffff577ce20 a2=0 a3=1 items=0 ppid=2694 pid=2760 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:10.021000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006E6174 Feb 9 10:13:10.023000 audit[2761]: NETFILTER_CFG table=filter:58 family=10 entries=1 op=nft_register_chain pid=2761 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:13:10.023000 audit[2761]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffcd10b010 a2=0 a3=1 items=0 ppid=2694 pid=2761 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:10.023000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D740066696C746572 Feb 9 10:13:10.113711 kubelet[2694]: I0209 10:13:10.113654 2694 topology_manager.go:210] "Topology Admit Handler" Feb 9 10:13:10.115723 kubelet[2694]: I0209 10:13:10.115691 2694 topology_manager.go:210] "Topology Admit Handler" Feb 9 10:13:10.118854 kubelet[2694]: I0209 10:13:10.118804 2694 topology_manager.go:210] "Topology Admit Handler" Feb 9 10:13:10.119363 kubelet[2694]: I0209 10:13:10.119335 2694 status_manager.go:698] "Failed to get status for pod" podUID=934e8902c918c33ab2eed56c17310ad3 pod="kube-system/kube-controller-manager-ip-172-31-28-77" err="Get \"https://172.31.28.77:6443/api/v1/namespaces/kube-system/pods/kube-controller-manager-ip-172-31-28-77\": dial tcp 172.31.28.77:6443: connect: connection refused" Feb 9 10:13:10.124836 kubelet[2694]: I0209 10:13:10.124768 2694 status_manager.go:698] "Failed to get status for pod" podUID=41186d00ccc5d0e4f3abed90c9f8e2fd pod="kube-system/kube-scheduler-ip-172-31-28-77" err="Get \"https://172.31.28.77:6443/api/v1/namespaces/kube-system/pods/kube-scheduler-ip-172-31-28-77\": dial tcp 172.31.28.77:6443: connect: connection refused" Feb 9 10:13:10.125559 kubelet[2694]: I0209 10:13:10.125529 2694 status_manager.go:698] "Failed to get status for pod" podUID=4001fc44037198ea45c906c45c62e1f4 pod="kube-system/kube-apiserver-ip-172-31-28-77" err="Get \"https://172.31.28.77:6443/api/v1/namespaces/kube-system/pods/kube-apiserver-ip-172-31-28-77\": dial tcp 172.31.28.77:6443: connect: connection refused" Feb 9 10:13:10.129833 systemd[1]: Created slice kubepods-burstable-pod934e8902c918c33ab2eed56c17310ad3.slice. Feb 9 10:13:10.147306 systemd[1]: Created slice kubepods-burstable-pod41186d00ccc5d0e4f3abed90c9f8e2fd.slice. Feb 9 10:13:10.156730 systemd[1]: Created slice kubepods-burstable-pod4001fc44037198ea45c906c45c62e1f4.slice. Feb 9 10:13:10.212741 kubelet[2694]: I0209 10:13:10.212629 2694 reconciler_common.go:253] "operationExecutor.VerifyControllerAttachedVolume started for volume \"k8s-certs\" (UniqueName: \"kubernetes.io/host-path/4001fc44037198ea45c906c45c62e1f4-k8s-certs\") pod \"kube-apiserver-ip-172-31-28-77\" (UID: \"4001fc44037198ea45c906c45c62e1f4\") " pod="kube-system/kube-apiserver-ip-172-31-28-77" Feb 9 10:13:10.213193 kubelet[2694]: I0209 10:13:10.212937 2694 reconciler_common.go:253] "operationExecutor.VerifyControllerAttachedVolume started for volume \"usr-share-ca-certificates\" (UniqueName: \"kubernetes.io/host-path/4001fc44037198ea45c906c45c62e1f4-usr-share-ca-certificates\") pod \"kube-apiserver-ip-172-31-28-77\" (UID: \"4001fc44037198ea45c906c45c62e1f4\") " pod="kube-system/kube-apiserver-ip-172-31-28-77" Feb 9 10:13:10.214021 kubelet[2694]: I0209 10:13:10.213894 2694 reconciler_common.go:253] "operationExecutor.VerifyControllerAttachedVolume started for volume \"flexvolume-dir\" (UniqueName: \"kubernetes.io/host-path/934e8902c918c33ab2eed56c17310ad3-flexvolume-dir\") pod \"kube-controller-manager-ip-172-31-28-77\" (UID: \"934e8902c918c33ab2eed56c17310ad3\") " pod="kube-system/kube-controller-manager-ip-172-31-28-77" Feb 9 10:13:10.214771 kubelet[2694]: I0209 10:13:10.214647 2694 reconciler_common.go:253] "operationExecutor.VerifyControllerAttachedVolume started for volume \"k8s-certs\" (UniqueName: \"kubernetes.io/host-path/934e8902c918c33ab2eed56c17310ad3-k8s-certs\") pod \"kube-controller-manager-ip-172-31-28-77\" (UID: \"934e8902c918c33ab2eed56c17310ad3\") " pod="kube-system/kube-controller-manager-ip-172-31-28-77" Feb 9 10:13:10.215567 kubelet[2694]: I0209 10:13:10.215541 2694 reconciler_common.go:253] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kubeconfig\" (UniqueName: \"kubernetes.io/host-path/934e8902c918c33ab2eed56c17310ad3-kubeconfig\") pod \"kube-controller-manager-ip-172-31-28-77\" (UID: \"934e8902c918c33ab2eed56c17310ad3\") " pod="kube-system/kube-controller-manager-ip-172-31-28-77" Feb 9 10:13:10.215755 kubelet[2694]: I0209 10:13:10.215731 2694 reconciler_common.go:253] "operationExecutor.VerifyControllerAttachedVolume started for volume \"usr-share-ca-certificates\" (UniqueName: \"kubernetes.io/host-path/934e8902c918c33ab2eed56c17310ad3-usr-share-ca-certificates\") pod \"kube-controller-manager-ip-172-31-28-77\" (UID: \"934e8902c918c33ab2eed56c17310ad3\") " pod="kube-system/kube-controller-manager-ip-172-31-28-77" Feb 9 10:13:10.215944 kubelet[2694]: I0209 10:13:10.215922 2694 reconciler_common.go:253] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kubeconfig\" (UniqueName: \"kubernetes.io/host-path/41186d00ccc5d0e4f3abed90c9f8e2fd-kubeconfig\") pod \"kube-scheduler-ip-172-31-28-77\" (UID: \"41186d00ccc5d0e4f3abed90c9f8e2fd\") " pod="kube-system/kube-scheduler-ip-172-31-28-77" Feb 9 10:13:10.216100 kubelet[2694]: I0209 10:13:10.216080 2694 reconciler_common.go:253] "operationExecutor.VerifyControllerAttachedVolume started for volume \"ca-certs\" (UniqueName: \"kubernetes.io/host-path/934e8902c918c33ab2eed56c17310ad3-ca-certs\") pod \"kube-controller-manager-ip-172-31-28-77\" (UID: \"934e8902c918c33ab2eed56c17310ad3\") " pod="kube-system/kube-controller-manager-ip-172-31-28-77" Feb 9 10:13:10.216251 kubelet[2694]: I0209 10:13:10.216227 2694 reconciler_common.go:253] "operationExecutor.VerifyControllerAttachedVolume started for volume \"ca-certs\" (UniqueName: \"kubernetes.io/host-path/4001fc44037198ea45c906c45c62e1f4-ca-certs\") pod \"kube-apiserver-ip-172-31-28-77\" (UID: \"4001fc44037198ea45c906c45c62e1f4\") " pod="kube-system/kube-apiserver-ip-172-31-28-77" Feb 9 10:13:10.314445 kubelet[2694]: E0209 10:13:10.314368 2694 controller.go:146] failed to ensure lease exists, will retry in 800ms, error: Get "https://172.31.28.77:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/ip-172-31-28-77?timeout=10s": dial tcp 172.31.28.77:6443: connect: connection refused Feb 9 10:13:10.421019 kubelet[2694]: I0209 10:13:10.420972 2694 kubelet_node_status.go:70] "Attempting to register node" node="ip-172-31-28-77" Feb 9 10:13:10.421514 kubelet[2694]: E0209 10:13:10.421483 2694 kubelet_node_status.go:92] "Unable to register node with API server" err="Post \"https://172.31.28.77:6443/api/v1/nodes\": dial tcp 172.31.28.77:6443: connect: connection refused" node="ip-172-31-28-77" Feb 9 10:13:10.444617 env[1743]: time="2024-02-09T10:13:10.444544190Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:kube-controller-manager-ip-172-31-28-77,Uid:934e8902c918c33ab2eed56c17310ad3,Namespace:kube-system,Attempt:0,}" Feb 9 10:13:10.454554 env[1743]: time="2024-02-09T10:13:10.454468399Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:kube-scheduler-ip-172-31-28-77,Uid:41186d00ccc5d0e4f3abed90c9f8e2fd,Namespace:kube-system,Attempt:0,}" Feb 9 10:13:10.464243 env[1743]: time="2024-02-09T10:13:10.463694741Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:kube-apiserver-ip-172-31-28-77,Uid:4001fc44037198ea45c906c45c62e1f4,Namespace:kube-system,Attempt:0,}" Feb 9 10:13:10.931947 kubelet[2694]: W0209 10:13:10.931866 2694 reflector.go:424] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.Node: Get "https://172.31.28.77:6443/api/v1/nodes?fieldSelector=metadata.name%3Dip-172-31-28-77&limit=500&resourceVersion=0": dial tcp 172.31.28.77:6443: connect: connection refused Feb 9 10:13:10.932107 kubelet[2694]: E0209 10:13:10.931960 2694 reflector.go:140] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.Node: failed to list *v1.Node: Get "https://172.31.28.77:6443/api/v1/nodes?fieldSelector=metadata.name%3Dip-172-31-28-77&limit=500&resourceVersion=0": dial tcp 172.31.28.77:6443: connect: connection refused Feb 9 10:13:11.007072 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2212758438.mount: Deactivated successfully. Feb 9 10:13:11.018858 env[1743]: time="2024-02-09T10:13:11.018792260Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:13:11.023629 env[1743]: time="2024-02-09T10:13:11.023578991Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:13:11.026865 env[1743]: time="2024-02-09T10:13:11.026816257Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:7d46a07936af93fcce097459055f93ab07331509aa55f4a2a90d95a3ace1850e,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:13:11.028969 env[1743]: time="2024-02-09T10:13:11.028921618Z" level=info msg="ImageUpdate event &ImageUpdate{Name:sha256:7d46a07936af93fcce097459055f93ab07331509aa55f4a2a90d95a3ace1850e,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:13:11.031348 env[1743]: time="2024-02-09T10:13:11.031299719Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:13:11.033577 env[1743]: time="2024-02-09T10:13:11.033531412Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:13:11.035207 env[1743]: time="2024-02-09T10:13:11.035153375Z" level=info msg="ImageUpdate event &ImageUpdate{Name:sha256:7d46a07936af93fcce097459055f93ab07331509aa55f4a2a90d95a3ace1850e,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:13:11.040824 env[1743]: time="2024-02-09T10:13:11.040774849Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:13:11.042486 env[1743]: time="2024-02-09T10:13:11.042430726Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/pause@sha256:3d380ca8864549e74af4b29c10f9cb0956236dfb01c40ca076fb6c37253234db,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:13:11.048265 env[1743]: time="2024-02-09T10:13:11.048187268Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:13:11.049764 env[1743]: time="2024-02-09T10:13:11.049706517Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause@sha256:3d380ca8864549e74af4b29c10f9cb0956236dfb01c40ca076fb6c37253234db,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:13:11.071095 env[1743]: time="2024-02-09T10:13:11.071036930Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause@sha256:3d380ca8864549e74af4b29c10f9cb0956236dfb01c40ca076fb6c37253234db,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:13:11.089793 env[1743]: time="2024-02-09T10:13:11.089670984Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 9 10:13:11.089953 env[1743]: time="2024-02-09T10:13:11.089813300Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 9 10:13:11.089953 env[1743]: time="2024-02-09T10:13:11.089876832Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 9 10:13:11.091176 env[1743]: time="2024-02-09T10:13:11.091058682Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/aa4bbc9dfa4809862828cae239af97da0072e017b96899588cf5518ef7f24f00 pid=2770 runtime=io.containerd.runc.v2 Feb 9 10:13:11.098055 env[1743]: time="2024-02-09T10:13:11.097651719Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 9 10:13:11.098055 env[1743]: time="2024-02-09T10:13:11.097721875Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 9 10:13:11.098055 env[1743]: time="2024-02-09T10:13:11.097746968Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 9 10:13:11.098055 env[1743]: time="2024-02-09T10:13:11.097986130Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/c71a792b269e9eea35c3a70e747e74059200eb6c5b651aa577043eb40a177cc9 pid=2785 runtime=io.containerd.runc.v2 Feb 9 10:13:11.185267 kubelet[2694]: E0209 10:13:11.115804 2694 controller.go:146] failed to ensure lease exists, will retry in 1.6s, error: Get "https://172.31.28.77:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/ip-172-31-28-77?timeout=10s": dial tcp 172.31.28.77:6443: connect: connection refused Feb 9 10:13:11.191187 kubelet[2694]: W0209 10:13:11.187913 2694 reflector.go:424] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.CSIDriver: Get "https://172.31.28.77:6443/apis/storage.k8s.io/v1/csidrivers?limit=500&resourceVersion=0": dial tcp 172.31.28.77:6443: connect: connection refused Feb 9 10:13:11.191187 kubelet[2694]: E0209 10:13:11.188006 2694 reflector.go:140] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.CSIDriver: failed to list *v1.CSIDriver: Get "https://172.31.28.77:6443/apis/storage.k8s.io/v1/csidrivers?limit=500&resourceVersion=0": dial tcp 172.31.28.77:6443: connect: connection refused Feb 9 10:13:11.197054 kubelet[2694]: W0209 10:13:11.196423 2694 reflector.go:424] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.Service: Get "https://172.31.28.77:6443/api/v1/services?limit=500&resourceVersion=0": dial tcp 172.31.28.77:6443: connect: connection refused Feb 9 10:13:11.197054 kubelet[2694]: E0209 10:13:11.196518 2694 reflector.go:140] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.Service: failed to list *v1.Service: Get "https://172.31.28.77:6443/api/v1/services?limit=500&resourceVersion=0": dial tcp 172.31.28.77:6443: connect: connection refused Feb 9 10:13:11.223695 systemd[1]: Started cri-containerd-aa4bbc9dfa4809862828cae239af97da0072e017b96899588cf5518ef7f24f00.scope. Feb 9 10:13:11.231530 kubelet[2694]: I0209 10:13:11.227012 2694 kubelet_node_status.go:70] "Attempting to register node" node="ip-172-31-28-77" Feb 9 10:13:11.231530 kubelet[2694]: E0209 10:13:11.227591 2694 kubelet_node_status.go:92] "Unable to register node with API server" err="Post \"https://172.31.28.77:6443/api/v1/nodes\": dial tcp 172.31.28.77:6443: connect: connection refused" node="ip-172-31-28-77" Feb 9 10:13:11.247824 env[1743]: time="2024-02-09T10:13:11.247658838Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 9 10:13:11.247824 env[1743]: time="2024-02-09T10:13:11.247744666Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 9 10:13:11.247824 env[1743]: time="2024-02-09T10:13:11.247772916Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 9 10:13:11.249550 env[1743]: time="2024-02-09T10:13:11.248332855Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/3baa9ed694fa5b2b5a0cae5eabfb5aaf96ff37ff0d1642e8cd60bff111cc0567 pid=2824 runtime=io.containerd.runc.v2 Feb 9 10:13:11.254000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.254000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.254000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.254000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.254000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.254000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.254000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.254000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.254000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.254000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.254000 audit: BPF prog-id=73 op=LOAD Feb 9 10:13:11.256000 audit[2796]: AVC avc: denied { bpf } for pid=2796 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.256000 audit[2796]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=400011db38 a2=10 a3=0 items=0 ppid=2770 pid=2796 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:11.256000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6161346262633964666134383039383632383238636165323339616639 Feb 9 10:13:11.257000 audit[2796]: AVC avc: denied { perfmon } for pid=2796 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.257000 audit[2796]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=400011d5a0 a2=3c a3=0 items=0 ppid=2770 pid=2796 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:11.257000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6161346262633964666134383039383632383238636165323339616639 Feb 9 10:13:11.257000 audit[2796]: AVC avc: denied { bpf } for pid=2796 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.257000 audit[2796]: AVC avc: denied { bpf } for pid=2796 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.257000 audit[2796]: AVC avc: denied { bpf } for pid=2796 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.257000 audit[2796]: AVC avc: denied { perfmon } for pid=2796 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.257000 audit[2796]: AVC avc: denied { perfmon } for pid=2796 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.257000 audit[2796]: AVC avc: denied { perfmon } for pid=2796 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.257000 audit[2796]: AVC avc: denied { perfmon } for pid=2796 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.257000 audit[2796]: AVC avc: denied { perfmon } for pid=2796 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.257000 audit[2796]: AVC avc: denied { bpf } for pid=2796 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.257000 audit[2796]: AVC avc: denied { bpf } for pid=2796 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.257000 audit: BPF prog-id=74 op=LOAD Feb 9 10:13:11.257000 audit[2796]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=400011d8e0 a2=78 a3=0 items=0 ppid=2770 pid=2796 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:11.257000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6161346262633964666134383039383632383238636165323339616639 Feb 9 10:13:11.258000 audit[2796]: AVC avc: denied { bpf } for pid=2796 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.258000 audit[2796]: AVC avc: denied { bpf } for pid=2796 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.258000 audit[2796]: AVC avc: denied { perfmon } for pid=2796 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.258000 audit[2796]: AVC avc: denied { perfmon } for pid=2796 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.258000 audit[2796]: AVC avc: denied { perfmon } for pid=2796 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.258000 audit[2796]: AVC avc: denied { perfmon } for pid=2796 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.258000 audit[2796]: AVC avc: denied { perfmon } for pid=2796 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.258000 audit[2796]: AVC avc: denied { bpf } for pid=2796 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.258000 audit[2796]: AVC avc: denied { bpf } for pid=2796 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.258000 audit: BPF prog-id=75 op=LOAD Feb 9 10:13:11.258000 audit[2796]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=400011d670 a2=78 a3=0 items=0 ppid=2770 pid=2796 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:11.258000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6161346262633964666134383039383632383238636165323339616639 Feb 9 10:13:11.259000 audit: BPF prog-id=75 op=UNLOAD Feb 9 10:13:11.260000 audit: BPF prog-id=74 op=UNLOAD Feb 9 10:13:11.260000 audit[2796]: AVC avc: denied { bpf } for pid=2796 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.260000 audit[2796]: AVC avc: denied { bpf } for pid=2796 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.260000 audit[2796]: AVC avc: denied { bpf } for pid=2796 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.260000 audit[2796]: AVC avc: denied { perfmon } for pid=2796 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.260000 audit[2796]: AVC avc: denied { perfmon } for pid=2796 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.260000 audit[2796]: AVC avc: denied { perfmon } for pid=2796 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.260000 audit[2796]: AVC avc: denied { perfmon } for pid=2796 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.260000 audit[2796]: AVC avc: denied { perfmon } for pid=2796 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.260000 audit[2796]: AVC avc: denied { bpf } for pid=2796 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.260000 audit[2796]: AVC avc: denied { bpf } for pid=2796 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.260000 audit: BPF prog-id=76 op=LOAD Feb 9 10:13:11.260000 audit[2796]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=400011db40 a2=78 a3=0 items=0 ppid=2770 pid=2796 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:11.260000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6161346262633964666134383039383632383238636165323339616639 Feb 9 10:13:11.275467 kubelet[2694]: W0209 10:13:11.275316 2694 reflector.go:424] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.RuntimeClass: Get "https://172.31.28.77:6443/apis/node.k8s.io/v1/runtimeclasses?limit=500&resourceVersion=0": dial tcp 172.31.28.77:6443: connect: connection refused Feb 9 10:13:11.275467 kubelet[2694]: E0209 10:13:11.275474 2694 reflector.go:140] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.RuntimeClass: failed to list *v1.RuntimeClass: Get "https://172.31.28.77:6443/apis/node.k8s.io/v1/runtimeclasses?limit=500&resourceVersion=0": dial tcp 172.31.28.77:6443: connect: connection refused Feb 9 10:13:11.284078 systemd[1]: Started cri-containerd-c71a792b269e9eea35c3a70e747e74059200eb6c5b651aa577043eb40a177cc9.scope. Feb 9 10:13:11.321940 systemd[1]: Started cri-containerd-3baa9ed694fa5b2b5a0cae5eabfb5aaf96ff37ff0d1642e8cd60bff111cc0567.scope. Feb 9 10:13:11.352135 env[1743]: time="2024-02-09T10:13:11.351846097Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:kube-apiserver-ip-172-31-28-77,Uid:4001fc44037198ea45c906c45c62e1f4,Namespace:kube-system,Attempt:0,} returns sandbox id \"aa4bbc9dfa4809862828cae239af97da0072e017b96899588cf5518ef7f24f00\"" Feb 9 10:13:11.352000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.352000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.352000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.352000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.352000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.352000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.352000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.352000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.352000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.352000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.352000 audit: BPF prog-id=77 op=LOAD Feb 9 10:13:11.354000 audit[2804]: AVC avc: denied { bpf } for pid=2804 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.354000 audit[2804]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000145b38 a2=10 a3=0 items=0 ppid=2785 pid=2804 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:11.354000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6337316137393262323639653965656133356333613730653734376537 Feb 9 10:13:11.354000 audit[2804]: AVC avc: denied { perfmon } for pid=2804 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.354000 audit[2804]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=2785 pid=2804 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:11.354000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6337316137393262323639653965656133356333613730653734376537 Feb 9 10:13:11.355000 audit[2804]: AVC avc: denied { bpf } for pid=2804 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.355000 audit[2804]: AVC avc: denied { bpf } for pid=2804 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.355000 audit[2804]: AVC avc: denied { bpf } for pid=2804 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.355000 audit[2804]: AVC avc: denied { perfmon } for pid=2804 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.355000 audit[2804]: AVC avc: denied { perfmon } for pid=2804 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.355000 audit[2804]: AVC avc: denied { perfmon } for pid=2804 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.355000 audit[2804]: AVC avc: denied { perfmon } for pid=2804 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.355000 audit[2804]: AVC avc: denied { perfmon } for pid=2804 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.355000 audit[2804]: AVC avc: denied { bpf } for pid=2804 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.355000 audit[2804]: AVC avc: denied { bpf } for pid=2804 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.355000 audit: BPF prog-id=78 op=LOAD Feb 9 10:13:11.355000 audit[2804]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=2785 pid=2804 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:11.355000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6337316137393262323639653965656133356333613730653734376537 Feb 9 10:13:11.355000 audit[2804]: AVC avc: denied { bpf } for pid=2804 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.355000 audit[2804]: AVC avc: denied { bpf } for pid=2804 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.355000 audit[2804]: AVC avc: denied { perfmon } for pid=2804 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.355000 audit[2804]: AVC avc: denied { perfmon } for pid=2804 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.355000 audit[2804]: AVC avc: denied { perfmon } for pid=2804 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.355000 audit[2804]: AVC avc: denied { perfmon } for pid=2804 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.355000 audit[2804]: AVC avc: denied { perfmon } for pid=2804 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.355000 audit[2804]: AVC avc: denied { bpf } for pid=2804 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.355000 audit[2804]: AVC avc: denied { bpf } for pid=2804 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.355000 audit: BPF prog-id=79 op=LOAD Feb 9 10:13:11.355000 audit[2804]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=2785 pid=2804 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:11.355000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6337316137393262323639653965656133356333613730653734376537 Feb 9 10:13:11.355000 audit: BPF prog-id=79 op=UNLOAD Feb 9 10:13:11.355000 audit: BPF prog-id=78 op=UNLOAD Feb 9 10:13:11.355000 audit[2804]: AVC avc: denied { bpf } for pid=2804 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.355000 audit[2804]: AVC avc: denied { bpf } for pid=2804 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.355000 audit[2804]: AVC avc: denied { bpf } for pid=2804 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.355000 audit[2804]: AVC avc: denied { perfmon } for pid=2804 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.355000 audit[2804]: AVC avc: denied { perfmon } for pid=2804 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.355000 audit[2804]: AVC avc: denied { perfmon } for pid=2804 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.355000 audit[2804]: AVC avc: denied { perfmon } for pid=2804 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.355000 audit[2804]: AVC avc: denied { perfmon } for pid=2804 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.355000 audit[2804]: AVC avc: denied { bpf } for pid=2804 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.355000 audit[2804]: AVC avc: denied { bpf } for pid=2804 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.355000 audit: BPF prog-id=80 op=LOAD Feb 9 10:13:11.355000 audit[2804]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=2785 pid=2804 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:11.355000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6337316137393262323639653965656133356333613730653734376537 Feb 9 10:13:11.356000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.356000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.356000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.356000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.356000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.356000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.356000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.356000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.356000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.356000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.356000 audit: BPF prog-id=81 op=LOAD Feb 9 10:13:11.359000 audit[2835]: AVC avc: denied { bpf } for pid=2835 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.359000 audit[2835]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000145b38 a2=10 a3=0 items=0 ppid=2824 pid=2835 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:11.359000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3362616139656436393466613562326235613063616535656162666235 Feb 9 10:13:11.359000 audit[2835]: AVC avc: denied { perfmon } for pid=2835 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.359000 audit[2835]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=2824 pid=2835 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:11.359000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3362616139656436393466613562326235613063616535656162666235 Feb 9 10:13:11.359000 audit[2835]: AVC avc: denied { bpf } for pid=2835 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.359000 audit[2835]: AVC avc: denied { bpf } for pid=2835 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.359000 audit[2835]: AVC avc: denied { bpf } for pid=2835 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.359000 audit[2835]: AVC avc: denied { perfmon } for pid=2835 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.359000 audit[2835]: AVC avc: denied { perfmon } for pid=2835 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.359000 audit[2835]: AVC avc: denied { perfmon } for pid=2835 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.359000 audit[2835]: AVC avc: denied { perfmon } for pid=2835 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.359000 audit[2835]: AVC avc: denied { perfmon } for pid=2835 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.359000 audit[2835]: AVC avc: denied { bpf } for pid=2835 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.359000 audit[2835]: AVC avc: denied { bpf } for pid=2835 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.359000 audit: BPF prog-id=82 op=LOAD Feb 9 10:13:11.359000 audit[2835]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=2824 pid=2835 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:11.359000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3362616139656436393466613562326235613063616535656162666235 Feb 9 10:13:11.359000 audit[2835]: AVC avc: denied { bpf } for pid=2835 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.359000 audit[2835]: AVC avc: denied { bpf } for pid=2835 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.359000 audit[2835]: AVC avc: denied { perfmon } for pid=2835 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.359000 audit[2835]: AVC avc: denied { perfmon } for pid=2835 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.359000 audit[2835]: AVC avc: denied { perfmon } for pid=2835 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.359000 audit[2835]: AVC avc: denied { perfmon } for pid=2835 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.359000 audit[2835]: AVC avc: denied { perfmon } for pid=2835 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.359000 audit[2835]: AVC avc: denied { bpf } for pid=2835 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.359000 audit[2835]: AVC avc: denied { bpf } for pid=2835 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.359000 audit: BPF prog-id=83 op=LOAD Feb 9 10:13:11.359000 audit[2835]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=2824 pid=2835 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:11.359000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3362616139656436393466613562326235613063616535656162666235 Feb 9 10:13:11.360000 audit: BPF prog-id=83 op=UNLOAD Feb 9 10:13:11.360000 audit: BPF prog-id=82 op=UNLOAD Feb 9 10:13:11.360000 audit[2835]: AVC avc: denied { bpf } for pid=2835 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.360000 audit[2835]: AVC avc: denied { bpf } for pid=2835 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.360000 audit[2835]: AVC avc: denied { bpf } for pid=2835 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.360000 audit[2835]: AVC avc: denied { perfmon } for pid=2835 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.360000 audit[2835]: AVC avc: denied { perfmon } for pid=2835 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.360000 audit[2835]: AVC avc: denied { perfmon } for pid=2835 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.360000 audit[2835]: AVC avc: denied { perfmon } for pid=2835 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.360000 audit[2835]: AVC avc: denied { perfmon } for pid=2835 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.360000 audit[2835]: AVC avc: denied { bpf } for pid=2835 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.360000 audit[2835]: AVC avc: denied { bpf } for pid=2835 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.360000 audit: BPF prog-id=84 op=LOAD Feb 9 10:13:11.360000 audit[2835]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=2824 pid=2835 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:11.360000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3362616139656436393466613562326235613063616535656162666235 Feb 9 10:13:11.375051 env[1743]: time="2024-02-09T10:13:11.373762083Z" level=info msg="CreateContainer within sandbox \"aa4bbc9dfa4809862828cae239af97da0072e017b96899588cf5518ef7f24f00\" for container &ContainerMetadata{Name:kube-apiserver,Attempt:0,}" Feb 9 10:13:11.408895 env[1743]: time="2024-02-09T10:13:11.408825813Z" level=info msg="CreateContainer within sandbox \"aa4bbc9dfa4809862828cae239af97da0072e017b96899588cf5518ef7f24f00\" for &ContainerMetadata{Name:kube-apiserver,Attempt:0,} returns container id \"5613eb38688bc2f02a1c02cdb3c65883b05e8c22164ec38f7f50231650fd10e3\"" Feb 9 10:13:11.409955 env[1743]: time="2024-02-09T10:13:11.409909605Z" level=info msg="StartContainer for \"5613eb38688bc2f02a1c02cdb3c65883b05e8c22164ec38f7f50231650fd10e3\"" Feb 9 10:13:11.433290 env[1743]: time="2024-02-09T10:13:11.433230858Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:kube-scheduler-ip-172-31-28-77,Uid:41186d00ccc5d0e4f3abed90c9f8e2fd,Namespace:kube-system,Attempt:0,} returns sandbox id \"c71a792b269e9eea35c3a70e747e74059200eb6c5b651aa577043eb40a177cc9\"" Feb 9 10:13:11.443656 env[1743]: time="2024-02-09T10:13:11.437681619Z" level=info msg="CreateContainer within sandbox \"c71a792b269e9eea35c3a70e747e74059200eb6c5b651aa577043eb40a177cc9\" for container &ContainerMetadata{Name:kube-scheduler,Attempt:0,}" Feb 9 10:13:11.465591 env[1743]: time="2024-02-09T10:13:11.465517584Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:kube-controller-manager-ip-172-31-28-77,Uid:934e8902c918c33ab2eed56c17310ad3,Namespace:kube-system,Attempt:0,} returns sandbox id \"3baa9ed694fa5b2b5a0cae5eabfb5aaf96ff37ff0d1642e8cd60bff111cc0567\"" Feb 9 10:13:11.474967 systemd[1]: Started cri-containerd-5613eb38688bc2f02a1c02cdb3c65883b05e8c22164ec38f7f50231650fd10e3.scope. Feb 9 10:13:11.520040 env[1743]: time="2024-02-09T10:13:11.519951849Z" level=info msg="CreateContainer within sandbox \"3baa9ed694fa5b2b5a0cae5eabfb5aaf96ff37ff0d1642e8cd60bff111cc0567\" for container &ContainerMetadata{Name:kube-controller-manager,Attempt:0,}" Feb 9 10:13:11.524000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.524000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.524000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.524000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.524000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.524000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.524000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.524000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.524000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.524000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.524000 audit: BPF prog-id=85 op=LOAD Feb 9 10:13:11.525000 audit[2890]: AVC avc: denied { bpf } for pid=2890 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.525000 audit[2890]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=40001c5b38 a2=10 a3=0 items=0 ppid=2770 pid=2890 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:11.525000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3536313365623338363838626332663032613163303263646233633635 Feb 9 10:13:11.525000 audit[2890]: AVC avc: denied { perfmon } for pid=2890 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.525000 audit[2890]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001c55a0 a2=3c a3=0 items=0 ppid=2770 pid=2890 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:11.525000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3536313365623338363838626332663032613163303263646233633635 Feb 9 10:13:11.526000 audit[2890]: AVC avc: denied { bpf } for pid=2890 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.526000 audit[2890]: AVC avc: denied { bpf } for pid=2890 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.526000 audit[2890]: AVC avc: denied { bpf } for pid=2890 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.526000 audit[2890]: AVC avc: denied { perfmon } for pid=2890 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.526000 audit[2890]: AVC avc: denied { perfmon } for pid=2890 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.526000 audit[2890]: AVC avc: denied { perfmon } for pid=2890 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.526000 audit[2890]: AVC avc: denied { perfmon } for pid=2890 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.526000 audit[2890]: AVC avc: denied { perfmon } for pid=2890 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.526000 audit[2890]: AVC avc: denied { bpf } for pid=2890 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.526000 audit[2890]: AVC avc: denied { bpf } for pid=2890 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.526000 audit: BPF prog-id=86 op=LOAD Feb 9 10:13:11.526000 audit[2890]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001c58e0 a2=78 a3=0 items=0 ppid=2770 pid=2890 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:11.526000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3536313365623338363838626332663032613163303263646233633635 Feb 9 10:13:11.526000 audit[2890]: AVC avc: denied { bpf } for pid=2890 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.526000 audit[2890]: AVC avc: denied { bpf } for pid=2890 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.526000 audit[2890]: AVC avc: denied { perfmon } for pid=2890 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.526000 audit[2890]: AVC avc: denied { perfmon } for pid=2890 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.526000 audit[2890]: AVC avc: denied { perfmon } for pid=2890 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.526000 audit[2890]: AVC avc: denied { perfmon } for pid=2890 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.526000 audit[2890]: AVC avc: denied { perfmon } for pid=2890 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.526000 audit[2890]: AVC avc: denied { bpf } for pid=2890 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.526000 audit[2890]: AVC avc: denied { bpf } for pid=2890 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.526000 audit: BPF prog-id=87 op=LOAD Feb 9 10:13:11.526000 audit[2890]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=40001c5670 a2=78 a3=0 items=0 ppid=2770 pid=2890 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:11.526000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3536313365623338363838626332663032613163303263646233633635 Feb 9 10:13:11.526000 audit: BPF prog-id=87 op=UNLOAD Feb 9 10:13:11.526000 audit: BPF prog-id=86 op=UNLOAD Feb 9 10:13:11.526000 audit[2890]: AVC avc: denied { bpf } for pid=2890 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.526000 audit[2890]: AVC avc: denied { bpf } for pid=2890 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.526000 audit[2890]: AVC avc: denied { bpf } for pid=2890 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.526000 audit[2890]: AVC avc: denied { perfmon } for pid=2890 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.526000 audit[2890]: AVC avc: denied { perfmon } for pid=2890 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.526000 audit[2890]: AVC avc: denied { perfmon } for pid=2890 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.526000 audit[2890]: AVC avc: denied { perfmon } for pid=2890 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.526000 audit[2890]: AVC avc: denied { perfmon } for pid=2890 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.526000 audit[2890]: AVC avc: denied { bpf } for pid=2890 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.526000 audit[2890]: AVC avc: denied { bpf } for pid=2890 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.526000 audit: BPF prog-id=88 op=LOAD Feb 9 10:13:11.526000 audit[2890]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001c5b40 a2=78 a3=0 items=0 ppid=2770 pid=2890 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:11.526000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3536313365623338363838626332663032613163303263646233633635 Feb 9 10:13:11.539714 env[1743]: time="2024-02-09T10:13:11.539608216Z" level=info msg="CreateContainer within sandbox \"c71a792b269e9eea35c3a70e747e74059200eb6c5b651aa577043eb40a177cc9\" for &ContainerMetadata{Name:kube-scheduler,Attempt:0,} returns container id \"12d77a7641d350c063fc280dc31279d489f99db83ea3b7974a2c15d94f07d507\"" Feb 9 10:13:11.541529 env[1743]: time="2024-02-09T10:13:11.541466520Z" level=info msg="StartContainer for \"12d77a7641d350c063fc280dc31279d489f99db83ea3b7974a2c15d94f07d507\"" Feb 9 10:13:11.570777 env[1743]: time="2024-02-09T10:13:11.570709744Z" level=info msg="CreateContainer within sandbox \"3baa9ed694fa5b2b5a0cae5eabfb5aaf96ff37ff0d1642e8cd60bff111cc0567\" for &ContainerMetadata{Name:kube-controller-manager,Attempt:0,} returns container id \"a31f5b30fb6c946917358c783b899a70d803f119e81838ccbb1c08f8ec9ca624\"" Feb 9 10:13:11.571747 env[1743]: time="2024-02-09T10:13:11.571687642Z" level=info msg="StartContainer for \"a31f5b30fb6c946917358c783b899a70d803f119e81838ccbb1c08f8ec9ca624\"" Feb 9 10:13:11.595557 env[1743]: time="2024-02-09T10:13:11.595493122Z" level=info msg="StartContainer for \"5613eb38688bc2f02a1c02cdb3c65883b05e8c22164ec38f7f50231650fd10e3\" returns successfully" Feb 9 10:13:11.626069 systemd[1]: Started cri-containerd-12d77a7641d350c063fc280dc31279d489f99db83ea3b7974a2c15d94f07d507.scope. Feb 9 10:13:11.656620 systemd[1]: Started cri-containerd-a31f5b30fb6c946917358c783b899a70d803f119e81838ccbb1c08f8ec9ca624.scope. Feb 9 10:13:11.682000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.682000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.682000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.682000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.682000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.682000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.682000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.682000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.682000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.682000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.682000 audit: BPF prog-id=89 op=LOAD Feb 9 10:13:11.684000 audit[2925]: AVC avc: denied { bpf } for pid=2925 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.684000 audit[2925]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000145b38 a2=10 a3=0 items=0 ppid=2785 pid=2925 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:11.684000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3132643737613736343164333530633036336663323830646333313237 Feb 9 10:13:11.684000 audit[2925]: AVC avc: denied { perfmon } for pid=2925 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.684000 audit[2925]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=2785 pid=2925 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:11.684000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3132643737613736343164333530633036336663323830646333313237 Feb 9 10:13:11.684000 audit[2925]: AVC avc: denied { bpf } for pid=2925 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.684000 audit[2925]: AVC avc: denied { bpf } for pid=2925 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.684000 audit[2925]: AVC avc: denied { bpf } for pid=2925 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.684000 audit[2925]: AVC avc: denied { perfmon } for pid=2925 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.684000 audit[2925]: AVC avc: denied { perfmon } for pid=2925 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.684000 audit[2925]: AVC avc: denied { perfmon } for pid=2925 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.684000 audit[2925]: AVC avc: denied { perfmon } for pid=2925 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.684000 audit[2925]: AVC avc: denied { perfmon } for pid=2925 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.684000 audit[2925]: AVC avc: denied { bpf } for pid=2925 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.684000 audit[2925]: AVC avc: denied { bpf } for pid=2925 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.684000 audit: BPF prog-id=90 op=LOAD Feb 9 10:13:11.684000 audit[2925]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=2785 pid=2925 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:11.684000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3132643737613736343164333530633036336663323830646333313237 Feb 9 10:13:11.686000 audit[2925]: AVC avc: denied { bpf } for pid=2925 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.686000 audit[2925]: AVC avc: denied { bpf } for pid=2925 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.686000 audit[2925]: AVC avc: denied { perfmon } for pid=2925 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.686000 audit[2925]: AVC avc: denied { perfmon } for pid=2925 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.686000 audit[2925]: AVC avc: denied { perfmon } for pid=2925 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.686000 audit[2925]: AVC avc: denied { perfmon } for pid=2925 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.686000 audit[2925]: AVC avc: denied { perfmon } for pid=2925 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.686000 audit[2925]: AVC avc: denied { bpf } for pid=2925 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.686000 audit[2925]: AVC avc: denied { bpf } for pid=2925 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.686000 audit: BPF prog-id=91 op=LOAD Feb 9 10:13:11.686000 audit[2925]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=2785 pid=2925 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:11.686000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3132643737613736343164333530633036336663323830646333313237 Feb 9 10:13:11.687000 audit: BPF prog-id=91 op=UNLOAD Feb 9 10:13:11.687000 audit: BPF prog-id=90 op=UNLOAD Feb 9 10:13:11.688000 audit[2925]: AVC avc: denied { bpf } for pid=2925 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.688000 audit[2925]: AVC avc: denied { bpf } for pid=2925 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.688000 audit[2925]: AVC avc: denied { bpf } for pid=2925 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.688000 audit[2925]: AVC avc: denied { perfmon } for pid=2925 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.688000 audit[2925]: AVC avc: denied { perfmon } for pid=2925 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.688000 audit[2925]: AVC avc: denied { perfmon } for pid=2925 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.688000 audit[2925]: AVC avc: denied { perfmon } for pid=2925 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.688000 audit[2925]: AVC avc: denied { perfmon } for pid=2925 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.688000 audit[2925]: AVC avc: denied { bpf } for pid=2925 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.688000 audit[2925]: AVC avc: denied { bpf } for pid=2925 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.688000 audit: BPF prog-id=92 op=LOAD Feb 9 10:13:11.688000 audit[2925]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=2785 pid=2925 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:11.688000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3132643737613736343164333530633036336663323830646333313237 Feb 9 10:13:11.730000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.730000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.730000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.730000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.730000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.730000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.730000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.730000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.730000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.730000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.730000 audit: BPF prog-id=93 op=LOAD Feb 9 10:13:11.731000 audit[2943]: AVC avc: denied { bpf } for pid=2943 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.731000 audit[2943]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000195b38 a2=10 a3=0 items=0 ppid=2824 pid=2943 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:11.731000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6133316635623330666236633934363931373335386337383362383939 Feb 9 10:13:11.731000 audit[2943]: AVC avc: denied { perfmon } for pid=2943 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.731000 audit[2943]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=2824 pid=2943 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:11.731000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6133316635623330666236633934363931373335386337383362383939 Feb 9 10:13:11.731000 audit[2943]: AVC avc: denied { bpf } for pid=2943 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.731000 audit[2943]: AVC avc: denied { bpf } for pid=2943 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.731000 audit[2943]: AVC avc: denied { bpf } for pid=2943 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.731000 audit[2943]: AVC avc: denied { perfmon } for pid=2943 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.731000 audit[2943]: AVC avc: denied { perfmon } for pid=2943 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.731000 audit[2943]: AVC avc: denied { perfmon } for pid=2943 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.731000 audit[2943]: AVC avc: denied { perfmon } for pid=2943 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.731000 audit[2943]: AVC avc: denied { perfmon } for pid=2943 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.731000 audit[2943]: AVC avc: denied { bpf } for pid=2943 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.731000 audit[2943]: AVC avc: denied { bpf } for pid=2943 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.731000 audit: BPF prog-id=94 op=LOAD Feb 9 10:13:11.731000 audit[2943]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=2824 pid=2943 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:11.731000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6133316635623330666236633934363931373335386337383362383939 Feb 9 10:13:11.731000 audit[2943]: AVC avc: denied { bpf } for pid=2943 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.731000 audit[2943]: AVC avc: denied { bpf } for pid=2943 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.731000 audit[2943]: AVC avc: denied { perfmon } for pid=2943 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.731000 audit[2943]: AVC avc: denied { perfmon } for pid=2943 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.731000 audit[2943]: AVC avc: denied { perfmon } for pid=2943 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.731000 audit[2943]: AVC avc: denied { perfmon } for pid=2943 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.731000 audit[2943]: AVC avc: denied { perfmon } for pid=2943 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.731000 audit[2943]: AVC avc: denied { bpf } for pid=2943 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.731000 audit[2943]: AVC avc: denied { bpf } for pid=2943 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.731000 audit: BPF prog-id=95 op=LOAD Feb 9 10:13:11.731000 audit[2943]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=2824 pid=2943 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:11.731000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6133316635623330666236633934363931373335386337383362383939 Feb 9 10:13:11.731000 audit: BPF prog-id=95 op=UNLOAD Feb 9 10:13:11.732000 audit: BPF prog-id=94 op=UNLOAD Feb 9 10:13:11.732000 audit[2943]: AVC avc: denied { bpf } for pid=2943 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.732000 audit[2943]: AVC avc: denied { bpf } for pid=2943 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.732000 audit[2943]: AVC avc: denied { bpf } for pid=2943 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.732000 audit[2943]: AVC avc: denied { perfmon } for pid=2943 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.732000 audit[2943]: AVC avc: denied { perfmon } for pid=2943 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.732000 audit[2943]: AVC avc: denied { perfmon } for pid=2943 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.732000 audit[2943]: AVC avc: denied { perfmon } for pid=2943 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.732000 audit[2943]: AVC avc: denied { perfmon } for pid=2943 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.732000 audit[2943]: AVC avc: denied { bpf } for pid=2943 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.732000 audit[2943]: AVC avc: denied { bpf } for pid=2943 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:11.732000 audit: BPF prog-id=96 op=LOAD Feb 9 10:13:11.732000 audit[2943]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=2824 pid=2943 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:11.732000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6133316635623330666236633934363931373335386337383362383939 Feb 9 10:13:11.759596 kubelet[2694]: E0209 10:13:11.759554 2694 certificate_manager.go:471] kubernetes.io/kube-apiserver-client-kubelet: Failed while requesting a signed certificate from the control plane: cannot create certificate signing request: Post "https://172.31.28.77:6443/apis/certificates.k8s.io/v1/certificatesigningrequests": dial tcp 172.31.28.77:6443: connect: connection refused Feb 9 10:13:11.874419 env[1743]: time="2024-02-09T10:13:11.874325647Z" level=info msg="StartContainer for \"12d77a7641d350c063fc280dc31279d489f99db83ea3b7974a2c15d94f07d507\" returns successfully" Feb 9 10:13:11.875638 env[1743]: time="2024-02-09T10:13:11.875582189Z" level=info msg="StartContainer for \"a31f5b30fb6c946917358c783b899a70d803f119e81838ccbb1c08f8ec9ca624\" returns successfully" Feb 9 10:13:12.830415 kubelet[2694]: I0209 10:13:12.830365 2694 kubelet_node_status.go:70] "Attempting to register node" node="ip-172-31-28-77" Feb 9 10:13:14.393000 audit[2970]: AVC avc: denied { watch } for pid=2970 comm="kube-controller" path="/etc/kubernetes/pki/front-proxy-ca.crt" dev="nvme0n1p9" ino=521240 scontext=system_u:system_r:svirt_lxc_net_t:s0:c271,c623 tcontext=system_u:object_r:etc_t:s0 tclass=file permissive=0 Feb 9 10:13:14.393000 audit[2970]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=8 a1=40003c2030 a2=fc6 a3=0 items=0 ppid=2824 pid=2970 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kube-controller" exe="/usr/local/bin/kube-controller-manager" subj=system_u:system_r:svirt_lxc_net_t:s0:c271,c623 key=(null) Feb 9 10:13:14.393000 audit: PROCTITLE proctitle=6B7562652D636F6E74726F6C6C65722D6D616E61676572002D2D616C6C6F636174652D6E6F64652D63696472733D74727565002D2D61757468656E7469636174696F6E2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F636F6E74726F6C6C65722D6D616E616765722E636F6E66002D2D617574686F7269 Feb 9 10:13:14.394000 audit[2970]: AVC avc: denied { watch } for pid=2970 comm="kube-controller" path="/etc/kubernetes/pki/ca.crt" dev="nvme0n1p9" ino=521234 scontext=system_u:system_r:svirt_lxc_net_t:s0:c271,c623 tcontext=system_u:object_r:etc_t:s0 tclass=file permissive=0 Feb 9 10:13:14.394000 audit[2970]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=8 a1=4000d4e040 a2=fc6 a3=0 items=0 ppid=2824 pid=2970 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kube-controller" exe="/usr/local/bin/kube-controller-manager" subj=system_u:system_r:svirt_lxc_net_t:s0:c271,c623 key=(null) Feb 9 10:13:14.394000 audit: PROCTITLE proctitle=6B7562652D636F6E74726F6C6C65722D6D616E61676572002D2D616C6C6F636174652D6E6F64652D63696472733D74727565002D2D61757468656E7469636174696F6E2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F636F6E74726F6C6C65722D6D616E616765722E636F6E66002D2D617574686F7269 Feb 9 10:13:16.560000 audit[2906]: AVC avc: denied { watch } for pid=2906 comm="kube-apiserver" path="/etc/kubernetes/pki/front-proxy-client.crt" dev="nvme0n1p9" ino=521242 scontext=system_u:system_r:svirt_lxc_net_t:s0:c125,c855 tcontext=system_u:object_r:etc_t:s0 tclass=file permissive=0 Feb 9 10:13:16.562678 kernel: kauditd_printk_skb: 449 callbacks suppressed Feb 9 10:13:16.562819 kernel: audit: type=1400 audit(1707473596.560:758): avc: denied { watch } for pid=2906 comm="kube-apiserver" path="/etc/kubernetes/pki/front-proxy-client.crt" dev="nvme0n1p9" ino=521242 scontext=system_u:system_r:svirt_lxc_net_t:s0:c125,c855 tcontext=system_u:object_r:etc_t:s0 tclass=file permissive=0 Feb 9 10:13:16.560000 audit[2906]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=46 a1=4005841a10 a2=fc6 a3=0 items=0 ppid=2770 pid=2906 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kube-apiserver" exe="/usr/local/bin/kube-apiserver" subj=system_u:system_r:svirt_lxc_net_t:s0:c125,c855 key=(null) Feb 9 10:13:16.588005 kernel: audit: type=1300 audit(1707473596.560:758): arch=c00000b7 syscall=27 success=no exit=-13 a0=46 a1=4005841a10 a2=fc6 a3=0 items=0 ppid=2770 pid=2906 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kube-apiserver" exe="/usr/local/bin/kube-apiserver" subj=system_u:system_r:svirt_lxc_net_t:s0:c125,c855 key=(null) Feb 9 10:13:16.560000 audit: PROCTITLE proctitle=6B7562652D617069736572766572002D2D6164766572746973652D616464726573733D3137322E33312E32382E3737002D2D616C6C6F772D70726976696C656765643D74727565002D2D617574686F72697A6174696F6E2D6D6F64653D4E6F64652C52424143002D2D636C69656E742D63612D66696C653D2F6574632F6B7562 Feb 9 10:13:16.602461 kernel: audit: type=1327 audit(1707473596.560:758): proctitle=6B7562652D617069736572766572002D2D6164766572746973652D616464726573733D3137322E33312E32382E3737002D2D616C6C6F772D70726976696C656765643D74727565002D2D617574686F72697A6174696F6E2D6D6F64653D4E6F64652C52424143002D2D636C69656E742D63612D66696C653D2F6574632F6B7562 Feb 9 10:13:16.560000 audit[2906]: AVC avc: denied { watch } for pid=2906 comm="kube-apiserver" path="/etc/kubernetes/pki/front-proxy-ca.crt" dev="nvme0n1p9" ino=521240 scontext=system_u:system_r:svirt_lxc_net_t:s0:c125,c855 tcontext=system_u:object_r:etc_t:s0 tclass=file permissive=0 Feb 9 10:13:16.622925 kernel: audit: type=1400 audit(1707473596.560:759): avc: denied { watch } for pid=2906 comm="kube-apiserver" path="/etc/kubernetes/pki/front-proxy-ca.crt" dev="nvme0n1p9" ino=521240 scontext=system_u:system_r:svirt_lxc_net_t:s0:c125,c855 tcontext=system_u:object_r:etc_t:s0 tclass=file permissive=0 Feb 9 10:13:16.560000 audit[2906]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=46 a1=4004e34db0 a2=fc6 a3=0 items=0 ppid=2770 pid=2906 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kube-apiserver" exe="/usr/local/bin/kube-apiserver" subj=system_u:system_r:svirt_lxc_net_t:s0:c125,c855 key=(null) Feb 9 10:13:16.638114 kernel: audit: type=1300 audit(1707473596.560:759): arch=c00000b7 syscall=27 success=no exit=-13 a0=46 a1=4004e34db0 a2=fc6 a3=0 items=0 ppid=2770 pid=2906 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kube-apiserver" exe="/usr/local/bin/kube-apiserver" subj=system_u:system_r:svirt_lxc_net_t:s0:c125,c855 key=(null) Feb 9 10:13:16.560000 audit: PROCTITLE proctitle=6B7562652D617069736572766572002D2D6164766572746973652D616464726573733D3137322E33312E32382E3737002D2D616C6C6F772D70726976696C656765643D74727565002D2D617574686F72697A6174696F6E2D6D6F64653D4E6F64652C52424143002D2D636C69656E742D63612D66696C653D2F6574632F6B7562 Feb 9 10:13:16.651404 kernel: audit: type=1327 audit(1707473596.560:759): proctitle=6B7562652D617069736572766572002D2D6164766572746973652D616464726573733D3137322E33312E32382E3737002D2D616C6C6F772D70726976696C656765643D74727565002D2D617574686F72697A6174696F6E2D6D6F64653D4E6F64652C52424143002D2D636C69656E742D63612D66696C653D2F6574632F6B7562 Feb 9 10:13:16.560000 audit[2906]: AVC avc: denied { watch } for pid=2906 comm="kube-apiserver" path="/etc/kubernetes/pki/apiserver.crt" dev="nvme0n1p9" ino=521236 scontext=system_u:system_r:svirt_lxc_net_t:s0:c125,c855 tcontext=system_u:object_r:etc_t:s0 tclass=file permissive=0 Feb 9 10:13:16.662748 kernel: audit: type=1400 audit(1707473596.560:760): avc: denied { watch } for pid=2906 comm="kube-apiserver" path="/etc/kubernetes/pki/apiserver.crt" dev="nvme0n1p9" ino=521236 scontext=system_u:system_r:svirt_lxc_net_t:s0:c125,c855 tcontext=system_u:object_r:etc_t:s0 tclass=file permissive=0 Feb 9 10:13:16.662853 kernel: audit: type=1300 audit(1707473596.560:760): arch=c00000b7 syscall=27 success=no exit=-13 a0=46 a1=4004e35800 a2=fc6 a3=0 items=0 ppid=2770 pid=2906 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kube-apiserver" exe="/usr/local/bin/kube-apiserver" subj=system_u:system_r:svirt_lxc_net_t:s0:c125,c855 key=(null) Feb 9 10:13:16.560000 audit[2906]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=46 a1=4004e35800 a2=fc6 a3=0 items=0 ppid=2770 pid=2906 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kube-apiserver" exe="/usr/local/bin/kube-apiserver" subj=system_u:system_r:svirt_lxc_net_t:s0:c125,c855 key=(null) Feb 9 10:13:16.560000 audit: PROCTITLE proctitle=6B7562652D617069736572766572002D2D6164766572746973652D616464726573733D3137322E33312E32382E3737002D2D616C6C6F772D70726976696C656765643D74727565002D2D617574686F72697A6174696F6E2D6D6F64653D4E6F64652C52424143002D2D636C69656E742D63612D66696C653D2F6574632F6B7562 Feb 9 10:13:16.688362 kernel: audit: type=1327 audit(1707473596.560:760): proctitle=6B7562652D617069736572766572002D2D6164766572746973652D616464726573733D3137322E33312E32382E3737002D2D616C6C6F772D70726976696C656765643D74727565002D2D617574686F72697A6174696F6E2D6D6F64653D4E6F64652C52424143002D2D636C69656E742D63612D66696C653D2F6574632F6B7562 Feb 9 10:13:16.575000 audit[2906]: AVC avc: denied { watch } for pid=2906 comm="kube-apiserver" path="/etc/kubernetes/pki/ca.crt" dev="nvme0n1p9" ino=521234 scontext=system_u:system_r:svirt_lxc_net_t:s0:c125,c855 tcontext=system_u:object_r:etc_t:s0 tclass=file permissive=0 Feb 9 10:13:16.700548 kernel: audit: type=1400 audit(1707473596.575:761): avc: denied { watch } for pid=2906 comm="kube-apiserver" path="/etc/kubernetes/pki/ca.crt" dev="nvme0n1p9" ino=521234 scontext=system_u:system_r:svirt_lxc_net_t:s0:c125,c855 tcontext=system_u:object_r:etc_t:s0 tclass=file permissive=0 Feb 9 10:13:16.575000 audit[2906]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=6c a1=400287ab40 a2=fc6 a3=0 items=0 ppid=2770 pid=2906 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kube-apiserver" exe="/usr/local/bin/kube-apiserver" subj=system_u:system_r:svirt_lxc_net_t:s0:c125,c855 key=(null) Feb 9 10:13:16.575000 audit: PROCTITLE proctitle=6B7562652D617069736572766572002D2D6164766572746973652D616464726573733D3137322E33312E32382E3737002D2D616C6C6F772D70726976696C656765643D74727565002D2D617574686F72697A6174696F6E2D6D6F64653D4E6F64652C52424143002D2D636C69656E742D63612D66696C653D2F6574632F6B7562 Feb 9 10:13:16.739000 audit[2906]: AVC avc: denied { watch } for pid=2906 comm="kube-apiserver" path="/etc/kubernetes/pki/ca.crt" dev="nvme0n1p9" ino=521234 scontext=system_u:system_r:svirt_lxc_net_t:s0:c125,c855 tcontext=system_u:object_r:etc_t:s0 tclass=file permissive=0 Feb 9 10:13:16.739000 audit[2906]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=81 a1=4002a6c880 a2=fc6 a3=0 items=0 ppid=2770 pid=2906 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kube-apiserver" exe="/usr/local/bin/kube-apiserver" subj=system_u:system_r:svirt_lxc_net_t:s0:c125,c855 key=(null) Feb 9 10:13:16.739000 audit: PROCTITLE proctitle=6B7562652D617069736572766572002D2D6164766572746973652D616464726573733D3137322E33312E32382E3737002D2D616C6C6F772D70726976696C656765643D74727565002D2D617574686F72697A6174696F6E2D6D6F64653D4E6F64652C52424143002D2D636C69656E742D63612D66696C653D2F6574632F6B7562 Feb 9 10:13:16.739000 audit[2906]: AVC avc: denied { watch } for pid=2906 comm="kube-apiserver" path="/etc/kubernetes/pki/front-proxy-ca.crt" dev="nvme0n1p9" ino=521240 scontext=system_u:system_r:svirt_lxc_net_t:s0:c125,c855 tcontext=system_u:object_r:etc_t:s0 tclass=file permissive=0 Feb 9 10:13:16.739000 audit[2906]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=81 a1=4003e23590 a2=fc6 a3=0 items=0 ppid=2770 pid=2906 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kube-apiserver" exe="/usr/local/bin/kube-apiserver" subj=system_u:system_r:svirt_lxc_net_t:s0:c125,c855 key=(null) Feb 9 10:13:16.739000 audit: PROCTITLE proctitle=6B7562652D617069736572766572002D2D6164766572746973652D616464726573733D3137322E33312E32382E3737002D2D616C6C6F772D70726976696C656765643D74727565002D2D617574686F72697A6174696F6E2D6D6F64653D4E6F64652C52424143002D2D636C69656E742D63612D66696C653D2F6574632F6B7562 Feb 9 10:13:16.942938 kubelet[2694]: E0209 10:13:16.942798 2694 nodelease.go:49] "Failed to get node when trying to set owner ref to the node lease" err="nodes \"ip-172-31-28-77\" not found" node="ip-172-31-28-77" Feb 9 10:13:16.991158 kubelet[2694]: I0209 10:13:16.991110 2694 kubelet_node_status.go:73] "Successfully registered node" node="ip-172-31-28-77" Feb 9 10:13:17.099117 kubelet[2694]: E0209 10:13:17.099061 2694 kubelet.go:1802] "Failed creating a mirror pod for" err="pods \"kube-scheduler-ip-172-31-28-77\" is forbidden: no PriorityClass with name system-node-critical was found" pod="kube-system/kube-scheduler-ip-172-31-28-77" Feb 9 10:13:17.676064 kubelet[2694]: I0209 10:13:17.676017 2694 apiserver.go:52] "Watching apiserver" Feb 9 10:13:17.711787 kubelet[2694]: I0209 10:13:17.711744 2694 desired_state_of_world_populator.go:159] "Finished populating initial desired state of world" Feb 9 10:13:17.760523 kubelet[2694]: I0209 10:13:17.760465 2694 reconciler.go:41] "Reconciler: start to sync state" Feb 9 10:13:19.537216 systemd[1]: Reloading. Feb 9 10:13:19.668913 /usr/lib/systemd/system-generators/torcx-generator[3027]: time="2024-02-09T10:13:19Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.2 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.2 /var/lib/torcx/store]" Feb 9 10:13:19.668977 /usr/lib/systemd/system-generators/torcx-generator[3027]: time="2024-02-09T10:13:19Z" level=info msg="torcx already run" Feb 9 10:13:19.872980 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Feb 9 10:13:19.873020 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Feb 9 10:13:19.912274 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Feb 9 10:13:20.120000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.120000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.120000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.120000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.120000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.120000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.120000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.120000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.120000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.120000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.120000 audit: BPF prog-id=97 op=LOAD Feb 9 10:13:20.120000 audit: BPF prog-id=58 op=UNLOAD Feb 9 10:13:20.120000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.120000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.120000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.120000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.120000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.120000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.120000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.120000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.120000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.120000 audit: BPF prog-id=98 op=LOAD Feb 9 10:13:20.120000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.120000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.120000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.121000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.121000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.121000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.121000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.121000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.121000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.121000 audit: BPF prog-id=99 op=LOAD Feb 9 10:13:20.121000 audit: BPF prog-id=59 op=UNLOAD Feb 9 10:13:20.121000 audit: BPF prog-id=60 op=UNLOAD Feb 9 10:13:20.123000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.123000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.123000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.123000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.123000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.123000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.123000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.123000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.123000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.123000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.124000 audit: BPF prog-id=100 op=LOAD Feb 9 10:13:20.124000 audit: BPF prog-id=89 op=UNLOAD Feb 9 10:13:20.131000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.131000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.131000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.131000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.131000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.131000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.131000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.131000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.131000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.131000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.131000 audit: BPF prog-id=101 op=LOAD Feb 9 10:13:20.131000 audit: BPF prog-id=81 op=UNLOAD Feb 9 10:13:20.134000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.134000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.134000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.134000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.134000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.134000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.134000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.134000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.134000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.135000 audit: BPF prog-id=102 op=LOAD Feb 9 10:13:20.135000 audit: BPF prog-id=61 op=UNLOAD Feb 9 10:13:20.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.135000 audit: BPF prog-id=103 op=LOAD Feb 9 10:13:20.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.135000 audit: BPF prog-id=104 op=LOAD Feb 9 10:13:20.135000 audit: BPF prog-id=62 op=UNLOAD Feb 9 10:13:20.135000 audit: BPF prog-id=63 op=UNLOAD Feb 9 10:13:20.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.136000 audit: BPF prog-id=105 op=LOAD Feb 9 10:13:20.136000 audit: BPF prog-id=85 op=UNLOAD Feb 9 10:13:20.140000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.140000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.140000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.140000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.140000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.140000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.140000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.140000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.140000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.140000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.140000 audit: BPF prog-id=106 op=LOAD Feb 9 10:13:20.140000 audit: BPF prog-id=64 op=UNLOAD Feb 9 10:13:20.142000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.142000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.142000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.142000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.142000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.142000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.142000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.142000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.142000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.142000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.142000 audit: BPF prog-id=107 op=LOAD Feb 9 10:13:20.142000 audit: BPF prog-id=65 op=UNLOAD Feb 9 10:13:20.144000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.144000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.144000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.144000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.144000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.144000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.144000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.144000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.144000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.144000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.144000 audit: BPF prog-id=108 op=LOAD Feb 9 10:13:20.145000 audit: BPF prog-id=73 op=UNLOAD Feb 9 10:13:20.145000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.145000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.145000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.145000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.145000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.145000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.145000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.145000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.145000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.145000 audit: BPF prog-id=109 op=LOAD Feb 9 10:13:20.145000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.145000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.145000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.145000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.145000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.145000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.145000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.145000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.146000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.146000 audit: BPF prog-id=110 op=LOAD Feb 9 10:13:20.146000 audit: BPF prog-id=66 op=UNLOAD Feb 9 10:13:20.146000 audit: BPF prog-id=67 op=UNLOAD Feb 9 10:13:20.147000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.147000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.147000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.147000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.147000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.147000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.147000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.147000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.147000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.148000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.148000 audit: BPF prog-id=111 op=LOAD Feb 9 10:13:20.148000 audit: BPF prog-id=68 op=UNLOAD Feb 9 10:13:20.149000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.149000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.149000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.149000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.149000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.149000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.149000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.149000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.149000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.149000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.149000 audit: BPF prog-id=112 op=LOAD Feb 9 10:13:20.149000 audit: BPF prog-id=93 op=UNLOAD Feb 9 10:13:20.152000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.152000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.152000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.152000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.152000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.152000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.152000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.152000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.152000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.152000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.152000 audit: BPF prog-id=113 op=LOAD Feb 9 10:13:20.152000 audit: BPF prog-id=69 op=UNLOAD Feb 9 10:13:20.153000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.153000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.153000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.153000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.153000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.153000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.153000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.153000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.153000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.154000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.154000 audit: BPF prog-id=114 op=LOAD Feb 9 10:13:20.154000 audit: BPF prog-id=70 op=UNLOAD Feb 9 10:13:20.154000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.154000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.154000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.154000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.154000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.154000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.154000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.154000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.154000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.154000 audit: BPF prog-id=115 op=LOAD Feb 9 10:13:20.154000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.154000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.154000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.154000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.154000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.154000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.154000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.154000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.154000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.154000 audit: BPF prog-id=116 op=LOAD Feb 9 10:13:20.154000 audit: BPF prog-id=71 op=UNLOAD Feb 9 10:13:20.154000 audit: BPF prog-id=72 op=UNLOAD Feb 9 10:13:20.157000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.157000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.157000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.157000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.157000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.157000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.157000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.157000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.157000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.157000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.157000 audit: BPF prog-id=117 op=LOAD Feb 9 10:13:20.157000 audit: BPF prog-id=77 op=UNLOAD Feb 9 10:13:20.185817 kubelet[2694]: I0209 10:13:20.184739 2694 dynamic_cafile_content.go:171] "Shutting down controller" name="client-ca-bundle::/etc/kubernetes/pki/ca.crt" Feb 9 10:13:20.185271 systemd[1]: Stopping kubelet.service... Feb 9 10:13:20.209021 systemd[1]: kubelet.service: Deactivated successfully. Feb 9 10:13:20.209467 systemd[1]: Stopped kubelet.service. Feb 9 10:13:20.209565 systemd[1]: kubelet.service: Consumed 1.418s CPU time. Feb 9 10:13:20.209000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:13:20.212000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:13:20.212933 systemd[1]: Started kubelet.service. Feb 9 10:13:20.324464 kubelet[3083]: Flag --pod-infra-container-image has been deprecated, will be removed in 1.27. Image garbage collector will get sandbox image information from CRI. Feb 9 10:13:20.324464 kubelet[3083]: Flag --volume-plugin-dir has been deprecated, This parameter should be set via the config file specified by the Kubelet's --config flag. See https://kubernetes.io/docs/tasks/administer-cluster/kubelet-config-file/ for more information. Feb 9 10:13:20.325016 kubelet[3083]: I0209 10:13:20.324546 3083 server.go:198] "--pod-infra-container-image will not be pruned by the image garbage collector in kubelet and should also be set in the remote runtime" Feb 9 10:13:20.326883 kubelet[3083]: Flag --pod-infra-container-image has been deprecated, will be removed in 1.27. Image garbage collector will get sandbox image information from CRI. Feb 9 10:13:20.326883 kubelet[3083]: Flag --volume-plugin-dir has been deprecated, This parameter should be set via the config file specified by the Kubelet's --config flag. See https://kubernetes.io/docs/tasks/administer-cluster/kubelet-config-file/ for more information. Feb 9 10:13:20.333365 kubelet[3083]: I0209 10:13:20.333313 3083 server.go:412] "Kubelet version" kubeletVersion="v1.26.5" Feb 9 10:13:20.333365 kubelet[3083]: I0209 10:13:20.333358 3083 server.go:414] "Golang settings" GOGC="" GOMAXPROCS="" GOTRACEBACK="" Feb 9 10:13:20.333743 kubelet[3083]: I0209 10:13:20.333698 3083 server.go:836] "Client rotation is on, will bootstrap in background" Feb 9 10:13:20.339044 kubelet[3083]: I0209 10:13:20.338982 3083 certificate_store.go:130] Loading cert/key pair from "/var/lib/kubelet/pki/kubelet-client-current.pem". Feb 9 10:13:20.343256 kubelet[3083]: I0209 10:13:20.343215 3083 dynamic_cafile_content.go:157] "Starting controller" name="client-ca-bundle::/etc/kubernetes/pki/ca.crt" Feb 9 10:13:20.345540 kubelet[3083]: W0209 10:13:20.345507 3083 machine.go:65] Cannot read vendor id correctly, set empty. Feb 9 10:13:20.355037 kubelet[3083]: I0209 10:13:20.354986 3083 server.go:659] "--cgroups-per-qos enabled, but --cgroup-root was not specified. defaulting to /" Feb 9 10:13:20.355789 kubelet[3083]: I0209 10:13:20.355749 3083 container_manager_linux.go:267] "Container manager verified user specified cgroup-root exists" cgroupRoot=[] Feb 9 10:13:20.356168 kubelet[3083]: I0209 10:13:20.356075 3083 container_manager_linux.go:272] "Creating Container Manager object based on Node Config" nodeConfig={RuntimeCgroupsName: SystemCgroupsName: KubeletCgroupsName: KubeletOOMScoreAdj:-999 ContainerRuntime: CgroupsPerQOS:true CgroupRoot:/ CgroupDriver:systemd KubeletRootDir:/var/lib/kubelet ProtectKernelDefaults:false NodeAllocatableConfig:{KubeReservedCgroupName: SystemReservedCgroupName: ReservedSystemCPUs: EnforceNodeAllocatable:map[pods:{}] KubeReserved:map[] SystemReserved:map[] HardEvictionThresholds:[{Signal:memory.available Operator:LessThan Value:{Quantity:100Mi Percentage:0} GracePeriod:0s MinReclaim:} {Signal:nodefs.available Operator:LessThan Value:{Quantity: Percentage:0.1} GracePeriod:0s MinReclaim:} {Signal:nodefs.inodesFree Operator:LessThan Value:{Quantity: Percentage:0.05} GracePeriod:0s MinReclaim:} {Signal:imagefs.available Operator:LessThan Value:{Quantity: Percentage:0.15} GracePeriod:0s MinReclaim:}]} QOSReserved:map[] CPUManagerPolicy:none CPUManagerPolicyOptions:map[] ExperimentalTopologyManagerScope:container CPUManagerReconcilePeriod:10s ExperimentalMemoryManagerPolicy:None ExperimentalMemoryManagerReservedMemory:[] ExperimentalPodPidsLimit:-1 EnforceCPULimits:true CPUCFSQuotaPeriod:100ms ExperimentalTopologyManagerPolicy:none ExperimentalTopologyManagerPolicyOptions:map[]} Feb 9 10:13:20.356443 kubelet[3083]: I0209 10:13:20.356417 3083 topology_manager.go:134] "Creating topology manager with policy per scope" topologyPolicyName="none" topologyScopeName="container" Feb 9 10:13:20.356595 kubelet[3083]: I0209 10:13:20.356574 3083 container_manager_linux.go:308] "Creating device plugin manager" Feb 9 10:13:20.356778 kubelet[3083]: I0209 10:13:20.356756 3083 state_mem.go:36] "Initialized new in-memory state store" Feb 9 10:13:20.373762 kubelet[3083]: I0209 10:13:20.373632 3083 kubelet.go:398] "Attempting to sync node with API server" Feb 9 10:13:20.373762 kubelet[3083]: I0209 10:13:20.373672 3083 kubelet.go:286] "Adding static pod path" path="/etc/kubernetes/manifests" Feb 9 10:13:20.373762 kubelet[3083]: I0209 10:13:20.373719 3083 kubelet.go:297] "Adding apiserver pod source" Feb 9 10:13:20.374503 kubelet[3083]: I0209 10:13:20.374126 3083 apiserver.go:42] "Waiting for node sync before watching apiserver pods" Feb 9 10:13:20.384494 kubelet[3083]: I0209 10:13:20.383985 3083 kuberuntime_manager.go:244] "Container runtime initialized" containerRuntime="containerd" version="1.6.16" apiVersion="v1" Feb 9 10:13:20.394421 kubelet[3083]: I0209 10:13:20.391876 3083 server.go:1186] "Started kubelet" Feb 9 10:13:20.394000 audit[3083]: AVC avc: denied { mac_admin } for pid=3083 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.394000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Feb 9 10:13:20.394000 audit[3083]: SYSCALL arch=c00000b7 syscall=5 success=no exit=-22 a0=4000033350 a1=40006e6ca8 a2=4000033320 a3=25 items=0 ppid=1 pid=3083 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:20.394000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Feb 9 10:13:20.394000 audit[3083]: AVC avc: denied { mac_admin } for pid=3083 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.394000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Feb 9 10:13:20.394000 audit[3083]: SYSCALL arch=c00000b7 syscall=5 success=no exit=-22 a0=4000b4b800 a1=40006e6cc0 a2=40000333e0 a3=25 items=0 ppid=1 pid=3083 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:20.394000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Feb 9 10:13:20.395655 kubelet[3083]: I0209 10:13:20.394933 3083 kubelet.go:1341] "Unprivileged containerized plugins might not work, could not set selinux context on plugin registration dir" path="/var/lib/kubelet/plugins_registry" err="setxattr /var/lib/kubelet/plugins_registry: invalid argument" Feb 9 10:13:20.395655 kubelet[3083]: I0209 10:13:20.395008 3083 kubelet.go:1345] "Unprivileged containerized plugins might not work, could not set selinux context on plugins dir" path="/var/lib/kubelet/plugins" err="setxattr /var/lib/kubelet/plugins: invalid argument" Feb 9 10:13:20.395655 kubelet[3083]: I0209 10:13:20.395056 3083 fs_resource_analyzer.go:67] "Starting FS ResourceAnalyzer" Feb 9 10:13:20.403121 kubelet[3083]: I0209 10:13:20.402089 3083 server.go:161] "Starting to listen" address="0.0.0.0" port=10250 Feb 9 10:13:20.408014 kubelet[3083]: I0209 10:13:20.407965 3083 server.go:451] "Adding debug handlers to kubelet server" Feb 9 10:13:20.432425 kubelet[3083]: I0209 10:13:20.424694 3083 volume_manager.go:293] "Starting Kubelet Volume Manager" Feb 9 10:13:20.432425 kubelet[3083]: I0209 10:13:20.427076 3083 desired_state_of_world_populator.go:151] "Desired state populator starts to run" Feb 9 10:13:20.434513 kubelet[3083]: E0209 10:13:20.434458 3083 cri_stats_provider.go:455] "Failed to get the info of the filesystem with mountpoint" err="unable to find data in memory cache" mountpoint="/var/lib/containerd/io.containerd.snapshotter.v1.overlayfs" Feb 9 10:13:20.434761 kubelet[3083]: E0209 10:13:20.434735 3083 kubelet.go:1386] "Image garbage collection failed once. Stats initialization may not have completed yet" err="invalid capacity 0 on image filesystem" Feb 9 10:13:20.530338 kubelet[3083]: I0209 10:13:20.530306 3083 kubelet_network_linux.go:63] "Initialized iptables rules." protocol=IPv4 Feb 9 10:13:20.542653 kubelet[3083]: I0209 10:13:20.537438 3083 kubelet_node_status.go:70] "Attempting to register node" node="ip-172-31-28-77" Feb 9 10:13:20.585063 kubelet[3083]: I0209 10:13:20.585026 3083 kubelet_node_status.go:108] "Node was previously registered" node="ip-172-31-28-77" Feb 9 10:13:20.585359 kubelet[3083]: I0209 10:13:20.585336 3083 kubelet_node_status.go:73] "Successfully registered node" node="ip-172-31-28-77" Feb 9 10:13:20.726178 kubelet[3083]: I0209 10:13:20.726057 3083 kubelet_network_linux.go:63] "Initialized iptables rules." protocol=IPv6 Feb 9 10:13:20.726752 kubelet[3083]: I0209 10:13:20.726419 3083 status_manager.go:176] "Starting to sync pod status with apiserver" Feb 9 10:13:20.727568 kubelet[3083]: I0209 10:13:20.727538 3083 kubelet.go:2113] "Starting kubelet main sync loop" Feb 9 10:13:20.727795 kubelet[3083]: E0209 10:13:20.727773 3083 kubelet.go:2137] "Skipping pod synchronization" err="[container runtime status check may not have completed yet, PLEG is not healthy: pleg has yet to be successful]" Feb 9 10:13:20.738104 kubelet[3083]: I0209 10:13:20.738071 3083 cpu_manager.go:214] "Starting CPU manager" policy="none" Feb 9 10:13:20.738328 kubelet[3083]: I0209 10:13:20.738306 3083 cpu_manager.go:215] "Reconciling" reconcilePeriod="10s" Feb 9 10:13:20.738485 kubelet[3083]: I0209 10:13:20.738464 3083 state_mem.go:36] "Initialized new in-memory state store" Feb 9 10:13:20.738805 kubelet[3083]: I0209 10:13:20.738783 3083 state_mem.go:88] "Updated default CPUSet" cpuSet="" Feb 9 10:13:20.738929 kubelet[3083]: I0209 10:13:20.738908 3083 state_mem.go:96] "Updated CPUSet assignments" assignments=map[] Feb 9 10:13:20.739036 kubelet[3083]: I0209 10:13:20.739016 3083 policy_none.go:49] "None policy: Start" Feb 9 10:13:20.740360 kubelet[3083]: I0209 10:13:20.740326 3083 memory_manager.go:169] "Starting memorymanager" policy="None" Feb 9 10:13:20.740915 kubelet[3083]: I0209 10:13:20.740888 3083 state_mem.go:35] "Initializing new in-memory state store" Feb 9 10:13:20.741360 kubelet[3083]: I0209 10:13:20.741334 3083 state_mem.go:75] "Updated machine memory state" Feb 9 10:13:20.754965 kubelet[3083]: I0209 10:13:20.754929 3083 manager.go:455] "Failed to read data from checkpoint" checkpoint="kubelet_internal_checkpoint" err="checkpoint is not found" Feb 9 10:13:20.755000 audit[3083]: AVC avc: denied { mac_admin } for pid=3083 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:20.755000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Feb 9 10:13:20.755000 audit[3083]: SYSCALL arch=c00000b7 syscall=5 success=no exit=-22 a0=4000ab5050 a1=4000fbafd8 a2=4000ab5020 a3=25 items=0 ppid=1 pid=3083 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:20.755000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Feb 9 10:13:20.756602 kubelet[3083]: I0209 10:13:20.756566 3083 server.go:88] "Unprivileged containerized plugins might not work. Could not set selinux context on socket dir" path="/var/lib/kubelet/device-plugins/" err="setxattr /var/lib/kubelet/device-plugins/: invalid argument" Feb 9 10:13:20.757309 kubelet[3083]: I0209 10:13:20.757275 3083 plugin_manager.go:118] "Starting Kubelet Plugin Manager" Feb 9 10:13:20.828247 kubelet[3083]: I0209 10:13:20.828200 3083 topology_manager.go:210] "Topology Admit Handler" Feb 9 10:13:20.828625 kubelet[3083]: I0209 10:13:20.828598 3083 topology_manager.go:210] "Topology Admit Handler" Feb 9 10:13:20.829117 kubelet[3083]: I0209 10:13:20.829087 3083 topology_manager.go:210] "Topology Admit Handler" Feb 9 10:13:20.873629 kubelet[3083]: E0209 10:13:20.873598 3083 kubelet.go:1802] "Failed creating a mirror pod for" err="pods \"kube-apiserver-ip-172-31-28-77\" already exists" pod="kube-system/kube-apiserver-ip-172-31-28-77" Feb 9 10:13:20.928504 kubelet[3083]: I0209 10:13:20.928461 3083 reconciler_common.go:253] "operationExecutor.VerifyControllerAttachedVolume started for volume \"flexvolume-dir\" (UniqueName: \"kubernetes.io/host-path/934e8902c918c33ab2eed56c17310ad3-flexvolume-dir\") pod \"kube-controller-manager-ip-172-31-28-77\" (UID: \"934e8902c918c33ab2eed56c17310ad3\") " pod="kube-system/kube-controller-manager-ip-172-31-28-77" Feb 9 10:13:20.928777 kubelet[3083]: I0209 10:13:20.928752 3083 reconciler_common.go:253] "operationExecutor.VerifyControllerAttachedVolume started for volume \"k8s-certs\" (UniqueName: \"kubernetes.io/host-path/934e8902c918c33ab2eed56c17310ad3-k8s-certs\") pod \"kube-controller-manager-ip-172-31-28-77\" (UID: \"934e8902c918c33ab2eed56c17310ad3\") " pod="kube-system/kube-controller-manager-ip-172-31-28-77" Feb 9 10:13:20.928993 kubelet[3083]: I0209 10:13:20.928963 3083 reconciler_common.go:253] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kubeconfig\" (UniqueName: \"kubernetes.io/host-path/934e8902c918c33ab2eed56c17310ad3-kubeconfig\") pod \"kube-controller-manager-ip-172-31-28-77\" (UID: \"934e8902c918c33ab2eed56c17310ad3\") " pod="kube-system/kube-controller-manager-ip-172-31-28-77" Feb 9 10:13:20.929196 kubelet[3083]: I0209 10:13:20.929173 3083 reconciler_common.go:253] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kubeconfig\" (UniqueName: \"kubernetes.io/host-path/41186d00ccc5d0e4f3abed90c9f8e2fd-kubeconfig\") pod \"kube-scheduler-ip-172-31-28-77\" (UID: \"41186d00ccc5d0e4f3abed90c9f8e2fd\") " pod="kube-system/kube-scheduler-ip-172-31-28-77" Feb 9 10:13:20.929344 kubelet[3083]: I0209 10:13:20.929323 3083 reconciler_common.go:253] "operationExecutor.VerifyControllerAttachedVolume started for volume \"k8s-certs\" (UniqueName: \"kubernetes.io/host-path/4001fc44037198ea45c906c45c62e1f4-k8s-certs\") pod \"kube-apiserver-ip-172-31-28-77\" (UID: \"4001fc44037198ea45c906c45c62e1f4\") " pod="kube-system/kube-apiserver-ip-172-31-28-77" Feb 9 10:13:20.929516 kubelet[3083]: I0209 10:13:20.929494 3083 reconciler_common.go:253] "operationExecutor.VerifyControllerAttachedVolume started for volume \"usr-share-ca-certificates\" (UniqueName: \"kubernetes.io/host-path/4001fc44037198ea45c906c45c62e1f4-usr-share-ca-certificates\") pod \"kube-apiserver-ip-172-31-28-77\" (UID: \"4001fc44037198ea45c906c45c62e1f4\") " pod="kube-system/kube-apiserver-ip-172-31-28-77" Feb 9 10:13:20.929668 kubelet[3083]: I0209 10:13:20.929646 3083 reconciler_common.go:253] "operationExecutor.VerifyControllerAttachedVolume started for volume \"usr-share-ca-certificates\" (UniqueName: \"kubernetes.io/host-path/934e8902c918c33ab2eed56c17310ad3-usr-share-ca-certificates\") pod \"kube-controller-manager-ip-172-31-28-77\" (UID: \"934e8902c918c33ab2eed56c17310ad3\") " pod="kube-system/kube-controller-manager-ip-172-31-28-77" Feb 9 10:13:20.929829 kubelet[3083]: I0209 10:13:20.929807 3083 reconciler_common.go:253] "operationExecutor.VerifyControllerAttachedVolume started for volume \"ca-certs\" (UniqueName: \"kubernetes.io/host-path/4001fc44037198ea45c906c45c62e1f4-ca-certs\") pod \"kube-apiserver-ip-172-31-28-77\" (UID: \"4001fc44037198ea45c906c45c62e1f4\") " pod="kube-system/kube-apiserver-ip-172-31-28-77" Feb 9 10:13:20.930028 kubelet[3083]: I0209 10:13:20.930005 3083 reconciler_common.go:253] "operationExecutor.VerifyControllerAttachedVolume started for volume \"ca-certs\" (UniqueName: \"kubernetes.io/host-path/934e8902c918c33ab2eed56c17310ad3-ca-certs\") pod \"kube-controller-manager-ip-172-31-28-77\" (UID: \"934e8902c918c33ab2eed56c17310ad3\") " pod="kube-system/kube-controller-manager-ip-172-31-28-77" Feb 9 10:13:21.375928 kubelet[3083]: I0209 10:13:21.375877 3083 apiserver.go:52] "Watching apiserver" Feb 9 10:13:21.428023 kubelet[3083]: I0209 10:13:21.427946 3083 desired_state_of_world_populator.go:159] "Finished populating initial desired state of world" Feb 9 10:13:21.433149 kubelet[3083]: I0209 10:13:21.433104 3083 reconciler.go:41] "Reconciler: start to sync state" Feb 9 10:13:21.797858 kubelet[3083]: E0209 10:13:21.797817 3083 kubelet.go:1802] "Failed creating a mirror pod for" err="pods \"kube-scheduler-ip-172-31-28-77\" already exists" pod="kube-system/kube-scheduler-ip-172-31-28-77" Feb 9 10:13:21.799334 kubelet[3083]: E0209 10:13:21.799294 3083 kubelet.go:1802] "Failed creating a mirror pod for" err="pods \"kube-apiserver-ip-172-31-28-77\" already exists" pod="kube-system/kube-apiserver-ip-172-31-28-77" Feb 9 10:13:21.984883 kubelet[3083]: E0209 10:13:21.984843 3083 kubelet.go:1802] "Failed creating a mirror pod for" err="pods \"kube-controller-manager-ip-172-31-28-77\" already exists" pod="kube-system/kube-controller-manager-ip-172-31-28-77" Feb 9 10:13:22.093923 kernel: kauditd_printk_skb: 266 callbacks suppressed Feb 9 10:13:22.094054 kernel: audit: type=1400 audit(1707473602.085:1013): avc: denied { watch } for pid=2970 comm="kube-controller" path="/etc/kubernetes/pki/ca.crt" dev="nvme0n1p9" ino=521234 scontext=system_u:system_r:svirt_lxc_net_t:s0:c271,c623 tcontext=system_u:object_r:etc_t:s0 tclass=file permissive=0 Feb 9 10:13:22.085000 audit[2970]: AVC avc: denied { watch } for pid=2970 comm="kube-controller" path="/etc/kubernetes/pki/ca.crt" dev="nvme0n1p9" ino=521234 scontext=system_u:system_r:svirt_lxc_net_t:s0:c271,c623 tcontext=system_u:object_r:etc_t:s0 tclass=file permissive=0 Feb 9 10:13:22.090000 audit[2970]: AVC avc: denied { watch } for pid=2970 comm="kube-controller" path="/etc/kubernetes/pki/ca.crt" dev="nvme0n1p9" ino=521234 scontext=system_u:system_r:svirt_lxc_net_t:s0:c271,c623 tcontext=system_u:object_r:etc_t:s0 tclass=file permissive=0 Feb 9 10:13:22.108521 kernel: audit: type=1400 audit(1707473602.090:1014): avc: denied { watch } for pid=2970 comm="kube-controller" path="/etc/kubernetes/pki/ca.crt" dev="nvme0n1p9" ino=521234 scontext=system_u:system_r:svirt_lxc_net_t:s0:c271,c623 tcontext=system_u:object_r:etc_t:s0 tclass=file permissive=0 Feb 9 10:13:22.090000 audit[2970]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=b a1=40010e8380 a2=fc6 a3=0 items=0 ppid=2824 pid=2970 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kube-controller" exe="/usr/local/bin/kube-controller-manager" subj=system_u:system_r:svirt_lxc_net_t:s0:c271,c623 key=(null) Feb 9 10:13:22.121708 kernel: audit: type=1300 audit(1707473602.090:1014): arch=c00000b7 syscall=27 success=no exit=-13 a0=b a1=40010e8380 a2=fc6 a3=0 items=0 ppid=2824 pid=2970 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kube-controller" exe="/usr/local/bin/kube-controller-manager" subj=system_u:system_r:svirt_lxc_net_t:s0:c271,c623 key=(null) Feb 9 10:13:22.090000 audit: PROCTITLE proctitle=6B7562652D636F6E74726F6C6C65722D6D616E61676572002D2D616C6C6F636174652D6E6F64652D63696472733D74727565002D2D61757468656E7469636174696F6E2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F636F6E74726F6C6C65722D6D616E616765722E636F6E66002D2D617574686F7269 Feb 9 10:13:22.133038 kernel: audit: type=1327 audit(1707473602.090:1014): proctitle=6B7562652D636F6E74726F6C6C65722D6D616E61676572002D2D616C6C6F636174652D6E6F64652D63696472733D74727565002D2D61757468656E7469636174696F6E2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F636F6E74726F6C6C65722D6D616E616765722E636F6E66002D2D617574686F7269 Feb 9 10:13:22.090000 audit[2970]: AVC avc: denied { watch } for pid=2970 comm="kube-controller" path="/etc/kubernetes/pki/ca.crt" dev="nvme0n1p9" ino=521234 scontext=system_u:system_r:svirt_lxc_net_t:s0:c271,c623 tcontext=system_u:object_r:etc_t:s0 tclass=file permissive=0 Feb 9 10:13:22.145230 kernel: audit: type=1400 audit(1707473602.090:1015): avc: denied { watch } for pid=2970 comm="kube-controller" path="/etc/kubernetes/pki/ca.crt" dev="nvme0n1p9" ino=521234 scontext=system_u:system_r:svirt_lxc_net_t:s0:c271,c623 tcontext=system_u:object_r:etc_t:s0 tclass=file permissive=0 Feb 9 10:13:22.090000 audit[2970]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=b a1=40010e83c0 a2=fc6 a3=0 items=0 ppid=2824 pid=2970 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kube-controller" exe="/usr/local/bin/kube-controller-manager" subj=system_u:system_r:svirt_lxc_net_t:s0:c271,c623 key=(null) Feb 9 10:13:22.158494 kernel: audit: type=1300 audit(1707473602.090:1015): arch=c00000b7 syscall=27 success=no exit=-13 a0=b a1=40010e83c0 a2=fc6 a3=0 items=0 ppid=2824 pid=2970 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kube-controller" exe="/usr/local/bin/kube-controller-manager" subj=system_u:system_r:svirt_lxc_net_t:s0:c271,c623 key=(null) Feb 9 10:13:22.090000 audit: PROCTITLE proctitle=6B7562652D636F6E74726F6C6C65722D6D616E61676572002D2D616C6C6F636174652D6E6F64652D63696472733D74727565002D2D61757468656E7469636174696F6E2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F636F6E74726F6C6C65722D6D616E616765722E636F6E66002D2D617574686F7269 Feb 9 10:13:22.170166 kernel: audit: type=1327 audit(1707473602.090:1015): proctitle=6B7562652D636F6E74726F6C6C65722D6D616E61676572002D2D616C6C6F636174652D6E6F64652D63696472733D74727565002D2D61757468656E7469636174696F6E2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F636F6E74726F6C6C65722D6D616E616765722E636F6E66002D2D617574686F7269 Feb 9 10:13:22.090000 audit[2970]: AVC avc: denied { watch } for pid=2970 comm="kube-controller" path="/etc/kubernetes/pki/ca.crt" dev="nvme0n1p9" ino=521234 scontext=system_u:system_r:svirt_lxc_net_t:s0:c271,c623 tcontext=system_u:object_r:etc_t:s0 tclass=file permissive=0 Feb 9 10:13:22.180138 kernel: audit: type=1400 audit(1707473602.090:1016): avc: denied { watch } for pid=2970 comm="kube-controller" path="/etc/kubernetes/pki/ca.crt" dev="nvme0n1p9" ino=521234 scontext=system_u:system_r:svirt_lxc_net_t:s0:c271,c623 tcontext=system_u:object_r:etc_t:s0 tclass=file permissive=0 Feb 9 10:13:22.090000 audit[2970]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=b a1=40010e8400 a2=fc6 a3=0 items=0 ppid=2824 pid=2970 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kube-controller" exe="/usr/local/bin/kube-controller-manager" subj=system_u:system_r:svirt_lxc_net_t:s0:c271,c623 key=(null) Feb 9 10:13:22.197806 kernel: audit: type=1300 audit(1707473602.090:1016): arch=c00000b7 syscall=27 success=no exit=-13 a0=b a1=40010e8400 a2=fc6 a3=0 items=0 ppid=2824 pid=2970 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kube-controller" exe="/usr/local/bin/kube-controller-manager" subj=system_u:system_r:svirt_lxc_net_t:s0:c271,c623 key=(null) Feb 9 10:13:22.090000 audit: PROCTITLE proctitle=6B7562652D636F6E74726F6C6C65722D6D616E61676572002D2D616C6C6F636174652D6E6F64652D63696472733D74727565002D2D61757468656E7469636174696F6E2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F636F6E74726F6C6C65722D6D616E616765722E636F6E66002D2D617574686F7269 Feb 9 10:13:22.212849 kernel: audit: type=1327 audit(1707473602.090:1016): proctitle=6B7562652D636F6E74726F6C6C65722D6D616E61676572002D2D616C6C6F636174652D6E6F64652D63696472733D74727565002D2D61757468656E7469636174696F6E2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F636F6E74726F6C6C65722D6D616E616765722E636F6E66002D2D617574686F7269 Feb 9 10:13:22.085000 audit[2970]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=a a1=4000fbe760 a2=fc6 a3=0 items=0 ppid=2824 pid=2970 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kube-controller" exe="/usr/local/bin/kube-controller-manager" subj=system_u:system_r:svirt_lxc_net_t:s0:c271,c623 key=(null) Feb 9 10:13:22.085000 audit: PROCTITLE proctitle=6B7562652D636F6E74726F6C6C65722D6D616E61676572002D2D616C6C6F636174652D6E6F64652D63696472733D74727565002D2D61757468656E7469636174696F6E2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F636F6E74726F6C6C65722D6D616E616765722E636F6E66002D2D617574686F7269 Feb 9 10:13:22.989698 kubelet[3083]: I0209 10:13:22.989656 3083 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="kube-system/kube-scheduler-ip-172-31-28-77" podStartSLOduration=2.989564174 pod.CreationTimestamp="2024-02-09 10:13:20 +0000 UTC" firstStartedPulling="0001-01-01 00:00:00 +0000 UTC" lastFinishedPulling="0001-01-01 00:00:00 +0000 UTC" observedRunningTime="2024-02-09 10:13:22.594326176 +0000 UTC m=+2.372221251" watchObservedRunningTime="2024-02-09 10:13:22.989564174 +0000 UTC m=+2.767459213" Feb 9 10:13:23.210000 audit[2970]: AVC avc: denied { watch } for pid=2970 comm="kube-controller" path="/opt/libexec/kubernetes/kubelet-plugins/volume/exec" dev="nvme0n1p9" ino=521267 scontext=system_u:system_r:svirt_lxc_net_t:s0:c271,c623 tcontext=system_u:object_r:usr_t:s0 tclass=dir permissive=0 Feb 9 10:13:23.210000 audit[2970]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=a a1=4001240600 a2=fc6 a3=0 items=0 ppid=2824 pid=2970 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kube-controller" exe="/usr/local/bin/kube-controller-manager" subj=system_u:system_r:svirt_lxc_net_t:s0:c271,c623 key=(null) Feb 9 10:13:23.210000 audit: PROCTITLE proctitle=6B7562652D636F6E74726F6C6C65722D6D616E61676572002D2D616C6C6F636174652D6E6F64652D63696472733D74727565002D2D61757468656E7469636174696F6E2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F636F6E74726F6C6C65722D6D616E616765722E636F6E66002D2D617574686F7269 Feb 9 10:13:23.409586 kubelet[3083]: I0209 10:13:23.409533 3083 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="kube-system/kube-controller-manager-ip-172-31-28-77" podStartSLOduration=3.409478486 pod.CreationTimestamp="2024-02-09 10:13:20 +0000 UTC" firstStartedPulling="0001-01-01 00:00:00 +0000 UTC" lastFinishedPulling="0001-01-01 00:00:00 +0000 UTC" observedRunningTime="2024-02-09 10:13:22.990782012 +0000 UTC m=+2.768677087" watchObservedRunningTime="2024-02-09 10:13:23.409478486 +0000 UTC m=+3.187373537" Feb 9 10:13:24.461436 sudo[2015]: pam_unix(sudo:session): session closed for user root Feb 9 10:13:24.461000 audit[2015]: USER_END pid=2015 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 10:13:24.461000 audit[2015]: CRED_DISP pid=2015 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 10:13:24.486268 sshd[2012]: pam_unix(sshd:session): session closed for user core Feb 9 10:13:24.488000 audit[2012]: USER_END pid=2012 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Feb 9 10:13:24.488000 audit[2012]: CRED_DISP pid=2012 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Feb 9 10:13:24.492340 systemd-logind[1731]: Session 7 logged out. Waiting for processes to exit. Feb 9 10:13:24.493000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@6-172.31.28.77:22-139.178.89.65:60558 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:13:24.493600 systemd[1]: sshd@6-172.31.28.77:22-139.178.89.65:60558.service: Deactivated successfully. Feb 9 10:13:24.494937 systemd[1]: session-7.scope: Deactivated successfully. Feb 9 10:13:24.495300 systemd[1]: session-7.scope: Consumed 7.005s CPU time. Feb 9 10:13:24.498288 systemd-logind[1731]: Removed session 7. Feb 9 10:13:38.811246 systemd[1]: cri-containerd-a31f5b30fb6c946917358c783b899a70d803f119e81838ccbb1c08f8ec9ca624.scope: Deactivated successfully. Feb 9 10:13:38.811828 systemd[1]: cri-containerd-a31f5b30fb6c946917358c783b899a70d803f119e81838ccbb1c08f8ec9ca624.scope: Consumed 2.290s CPU time. Feb 9 10:13:38.816000 audit: BPF prog-id=96 op=UNLOAD Feb 9 10:13:38.818736 kernel: kauditd_printk_skb: 10 callbacks suppressed Feb 9 10:13:38.818879 kernel: audit: type=1334 audit(1707473618.816:1023): prog-id=96 op=UNLOAD Feb 9 10:13:38.816000 audit: BPF prog-id=112 op=UNLOAD Feb 9 10:13:38.824177 kernel: audit: type=1334 audit(1707473618.816:1024): prog-id=112 op=UNLOAD Feb 9 10:13:38.854892 systemd[1]: run-containerd-io.containerd.runtime.v2.task-k8s.io-a31f5b30fb6c946917358c783b899a70d803f119e81838ccbb1c08f8ec9ca624-rootfs.mount: Deactivated successfully. Feb 9 10:13:38.868228 env[1743]: time="2024-02-09T10:13:38.868150636Z" level=info msg="shim disconnected" id=a31f5b30fb6c946917358c783b899a70d803f119e81838ccbb1c08f8ec9ca624 Feb 9 10:13:38.868927 env[1743]: time="2024-02-09T10:13:38.868229740Z" level=warning msg="cleaning up after shim disconnected" id=a31f5b30fb6c946917358c783b899a70d803f119e81838ccbb1c08f8ec9ca624 namespace=k8s.io Feb 9 10:13:38.868927 env[1743]: time="2024-02-09T10:13:38.868252924Z" level=info msg="cleaning up dead shim" Feb 9 10:13:38.882138 env[1743]: time="2024-02-09T10:13:38.882067284Z" level=warning msg="cleanup warnings time=\"2024-02-09T10:13:38Z\" level=info msg=\"starting signal loop\" namespace=k8s.io pid=3166 runtime=io.containerd.runc.v2\n" Feb 9 10:13:39.819895 kubelet[3083]: I0209 10:13:39.819782 3083 scope.go:115] "RemoveContainer" containerID="a31f5b30fb6c946917358c783b899a70d803f119e81838ccbb1c08f8ec9ca624" Feb 9 10:13:39.824166 env[1743]: time="2024-02-09T10:13:39.824106936Z" level=info msg="CreateContainer within sandbox \"3baa9ed694fa5b2b5a0cae5eabfb5aaf96ff37ff0d1642e8cd60bff111cc0567\" for container &ContainerMetadata{Name:kube-controller-manager,Attempt:1,}" Feb 9 10:13:39.842023 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount707373622.mount: Deactivated successfully. Feb 9 10:13:39.854616 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3760342928.mount: Deactivated successfully. Feb 9 10:13:39.865097 env[1743]: time="2024-02-09T10:13:39.865000267Z" level=info msg="CreateContainer within sandbox \"3baa9ed694fa5b2b5a0cae5eabfb5aaf96ff37ff0d1642e8cd60bff111cc0567\" for &ContainerMetadata{Name:kube-controller-manager,Attempt:1,} returns container id \"1774a60931b22f52238f1cf8e558c658e57d720f94512510d55ae86ca3ac8d09\"" Feb 9 10:13:39.866159 env[1743]: time="2024-02-09T10:13:39.866089258Z" level=info msg="StartContainer for \"1774a60931b22f52238f1cf8e558c658e57d720f94512510d55ae86ca3ac8d09\"" Feb 9 10:13:39.908024 systemd[1]: run-containerd-runc-k8s.io-1774a60931b22f52238f1cf8e558c658e57d720f94512510d55ae86ca3ac8d09-runc.SBfjZ4.mount: Deactivated successfully. Feb 9 10:13:39.914980 systemd[1]: Started cri-containerd-1774a60931b22f52238f1cf8e558c658e57d720f94512510d55ae86ca3ac8d09.scope. Feb 9 10:13:39.947000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.947000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.962356 kernel: audit: type=1400 audit(1707473619.947:1025): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.962538 kernel: audit: type=1400 audit(1707473619.947:1026): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.962605 kernel: audit: type=1400 audit(1707473619.947:1027): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.947000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.947000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.977235 kernel: audit: type=1400 audit(1707473619.947:1028): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.977332 kernel: audit: type=1400 audit(1707473619.947:1029): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.947000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.947000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.992227 kernel: audit: type=1400 audit(1707473619.947:1030): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.947000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:40.001910 kernel: audit: type=1400 audit(1707473619.947:1031): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.947000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:40.009437 kernel: audit: type=1400 audit(1707473619.947:1032): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.947000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.955000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.955000 audit: BPF prog-id=118 op=LOAD Feb 9 10:13:39.955000 audit[3188]: AVC avc: denied { bpf } for pid=3188 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.955000 audit[3188]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000195b38 a2=10 a3=0 items=0 ppid=2824 pid=3188 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:39.955000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3137373461363039333162323266353232333866316366386535353863 Feb 9 10:13:39.955000 audit[3188]: AVC avc: denied { perfmon } for pid=3188 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.955000 audit[3188]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=2824 pid=3188 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:39.955000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3137373461363039333162323266353232333866316366386535353863 Feb 9 10:13:39.955000 audit[3188]: AVC avc: denied { bpf } for pid=3188 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.955000 audit[3188]: AVC avc: denied { bpf } for pid=3188 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.955000 audit[3188]: AVC avc: denied { bpf } for pid=3188 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.955000 audit[3188]: AVC avc: denied { perfmon } for pid=3188 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.955000 audit[3188]: AVC avc: denied { perfmon } for pid=3188 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.955000 audit[3188]: AVC avc: denied { perfmon } for pid=3188 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.955000 audit[3188]: AVC avc: denied { perfmon } for pid=3188 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.955000 audit[3188]: AVC avc: denied { perfmon } for pid=3188 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.955000 audit[3188]: AVC avc: denied { bpf } for pid=3188 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.955000 audit[3188]: AVC avc: denied { bpf } for pid=3188 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.955000 audit: BPF prog-id=119 op=LOAD Feb 9 10:13:39.955000 audit[3188]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=2824 pid=3188 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:39.955000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3137373461363039333162323266353232333866316366386535353863 Feb 9 10:13:39.962000 audit[3188]: AVC avc: denied { bpf } for pid=3188 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.962000 audit[3188]: AVC avc: denied { bpf } for pid=3188 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.962000 audit[3188]: AVC avc: denied { perfmon } for pid=3188 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.962000 audit[3188]: AVC avc: denied { perfmon } for pid=3188 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.962000 audit[3188]: AVC avc: denied { perfmon } for pid=3188 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.962000 audit[3188]: AVC avc: denied { perfmon } for pid=3188 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.962000 audit[3188]: AVC avc: denied { perfmon } for pid=3188 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.962000 audit[3188]: AVC avc: denied { bpf } for pid=3188 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.962000 audit[3188]: AVC avc: denied { bpf } for pid=3188 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.962000 audit: BPF prog-id=120 op=LOAD Feb 9 10:13:39.962000 audit[3188]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=2824 pid=3188 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:39.962000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3137373461363039333162323266353232333866316366386535353863 Feb 9 10:13:39.969000 audit: BPF prog-id=120 op=UNLOAD Feb 9 10:13:39.969000 audit: BPF prog-id=119 op=UNLOAD Feb 9 10:13:39.969000 audit[3188]: AVC avc: denied { bpf } for pid=3188 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.969000 audit[3188]: AVC avc: denied { bpf } for pid=3188 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.969000 audit[3188]: AVC avc: denied { bpf } for pid=3188 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.969000 audit[3188]: AVC avc: denied { perfmon } for pid=3188 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.969000 audit[3188]: AVC avc: denied { perfmon } for pid=3188 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.969000 audit[3188]: AVC avc: denied { perfmon } for pid=3188 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.969000 audit[3188]: AVC avc: denied { perfmon } for pid=3188 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.969000 audit[3188]: AVC avc: denied { perfmon } for pid=3188 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.969000 audit[3188]: AVC avc: denied { bpf } for pid=3188 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.969000 audit[3188]: AVC avc: denied { bpf } for pid=3188 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:39.969000 audit: BPF prog-id=121 op=LOAD Feb 9 10:13:39.969000 audit[3188]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=2824 pid=3188 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:39.969000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3137373461363039333162323266353232333866316366386535353863 Feb 9 10:13:40.043801 env[1743]: time="2024-02-09T10:13:40.043738108Z" level=info msg="StartContainer for \"1774a60931b22f52238f1cf8e558c658e57d720f94512510d55ae86ca3ac8d09\" returns successfully" Feb 9 10:13:40.732324 kubelet[3083]: E0209 10:13:40.732282 3083 controller.go:189] failed to update lease, error: Put "https://172.31.28.77:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/ip-172-31-28-77?timeout=10s": net/http: request canceled (Client.Timeout exceeded while awaiting headers) Feb 9 10:13:40.832456 kubelet[3083]: E0209 10:13:40.832193 3083 kubelet_node_status.go:540] "Error updating node status, will retry" err="failed to patch status \"{\\\"status\\\":{\\\"$setElementOrder/conditions\\\":[{\\\"type\\\":\\\"MemoryPressure\\\"},{\\\"type\\\":\\\"DiskPressure\\\"},{\\\"type\\\":\\\"PIDPressure\\\"},{\\\"type\\\":\\\"Ready\\\"}],\\\"allocatable\\\":{\\\"ephemeral-storage\\\":\\\"5078580011\\\"},\\\"conditions\\\":[{\\\"lastHeartbeatTime\\\":\\\"2024-02-09T10:13:30Z\\\",\\\"type\\\":\\\"MemoryPressure\\\"},{\\\"lastHeartbeatTime\\\":\\\"2024-02-09T10:13:30Z\\\",\\\"type\\\":\\\"DiskPressure\\\"},{\\\"lastHeartbeatTime\\\":\\\"2024-02-09T10:13:30Z\\\",\\\"type\\\":\\\"PIDPressure\\\"},{\\\"lastHeartbeatTime\\\":\\\"2024-02-09T10:13:30Z\\\",\\\"message\\\":\\\"container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized\\\",\\\"type\\\":\\\"Ready\\\"}]}}\" for node \"ip-172-31-28-77\": Patch \"https://172.31.28.77:6443/api/v1/nodes/ip-172-31-28-77/status?timeout=10s\": net/http: request canceled (Client.Timeout exceeded while awaiting headers)" Feb 9 10:13:42.428000 audit[3199]: AVC avc: denied { watch } for pid=3199 comm="kube-controller" path="/etc/kubernetes/pki/front-proxy-ca.crt" dev="nvme0n1p9" ino=521240 scontext=system_u:system_r:svirt_lxc_net_t:s0:c271,c623 tcontext=system_u:object_r:etc_t:s0 tclass=file permissive=0 Feb 9 10:13:42.428000 audit[3199]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=8 a1=40003356b0 a2=fc6 a3=0 items=0 ppid=2824 pid=3199 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kube-controller" exe="/usr/local/bin/kube-controller-manager" subj=system_u:system_r:svirt_lxc_net_t:s0:c271,c623 key=(null) Feb 9 10:13:42.428000 audit: PROCTITLE proctitle=6B7562652D636F6E74726F6C6C65722D6D616E61676572002D2D616C6C6F636174652D6E6F64652D63696472733D74727565002D2D61757468656E7469636174696F6E2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F636F6E74726F6C6C65722D6D616E616765722E636F6E66002D2D617574686F7269 Feb 9 10:13:42.430000 audit[3199]: AVC avc: denied { watch } for pid=3199 comm="kube-controller" path="/etc/kubernetes/pki/ca.crt" dev="nvme0n1p9" ino=521234 scontext=system_u:system_r:svirt_lxc_net_t:s0:c271,c623 tcontext=system_u:object_r:etc_t:s0 tclass=file permissive=0 Feb 9 10:13:42.430000 audit[3199]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=8 a1=40001541c0 a2=fc6 a3=0 items=0 ppid=2824 pid=3199 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kube-controller" exe="/usr/local/bin/kube-controller-manager" subj=system_u:system_r:svirt_lxc_net_t:s0:c271,c623 key=(null) Feb 9 10:13:42.430000 audit: PROCTITLE proctitle=6B7562652D636F6E74726F6C6C65722D6D616E61676572002D2D616C6C6F636174652D6E6F64652D63696472733D74727565002D2D61757468656E7469636174696F6E2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F636F6E74726F6C6C65722D6D616E616765722E636F6E66002D2D617574686F7269 Feb 9 10:13:43.974765 systemd[1]: cri-containerd-12d77a7641d350c063fc280dc31279d489f99db83ea3b7974a2c15d94f07d507.scope: Deactivated successfully. Feb 9 10:13:43.975333 systemd[1]: cri-containerd-12d77a7641d350c063fc280dc31279d489f99db83ea3b7974a2c15d94f07d507.scope: Consumed 3.335s CPU time. Feb 9 10:13:43.978000 audit: BPF prog-id=92 op=UNLOAD Feb 9 10:13:43.980635 kernel: kauditd_printk_skb: 55 callbacks suppressed Feb 9 10:13:43.980735 kernel: audit: type=1334 audit(1707473623.978:1045): prog-id=92 op=UNLOAD Feb 9 10:13:43.978000 audit: BPF prog-id=100 op=UNLOAD Feb 9 10:13:43.985869 kernel: audit: type=1334 audit(1707473623.978:1046): prog-id=100 op=UNLOAD Feb 9 10:13:44.018932 systemd[1]: run-containerd-io.containerd.runtime.v2.task-k8s.io-12d77a7641d350c063fc280dc31279d489f99db83ea3b7974a2c15d94f07d507-rootfs.mount: Deactivated successfully. Feb 9 10:13:44.193571 env[1743]: time="2024-02-09T10:13:44.193509798Z" level=info msg="shim disconnected" id=12d77a7641d350c063fc280dc31279d489f99db83ea3b7974a2c15d94f07d507 Feb 9 10:13:44.194403 env[1743]: time="2024-02-09T10:13:44.194346416Z" level=warning msg="cleaning up after shim disconnected" id=12d77a7641d350c063fc280dc31279d489f99db83ea3b7974a2c15d94f07d507 namespace=k8s.io Feb 9 10:13:44.194538 env[1743]: time="2024-02-09T10:13:44.194509785Z" level=info msg="cleaning up dead shim" Feb 9 10:13:44.208497 env[1743]: time="2024-02-09T10:13:44.208441307Z" level=warning msg="cleanup warnings time=\"2024-02-09T10:13:44Z\" level=info msg=\"starting signal loop\" namespace=k8s.io pid=3227 runtime=io.containerd.runc.v2\n" Feb 9 10:13:44.834043 kubelet[3083]: I0209 10:13:44.834008 3083 scope.go:115] "RemoveContainer" containerID="12d77a7641d350c063fc280dc31279d489f99db83ea3b7974a2c15d94f07d507" Feb 9 10:13:44.838005 env[1743]: time="2024-02-09T10:13:44.837941783Z" level=info msg="CreateContainer within sandbox \"c71a792b269e9eea35c3a70e747e74059200eb6c5b651aa577043eb40a177cc9\" for container &ContainerMetadata{Name:kube-scheduler,Attempt:1,}" Feb 9 10:13:44.854298 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2933437259.mount: Deactivated successfully. Feb 9 10:13:45.036099 env[1743]: time="2024-02-09T10:13:45.036011745Z" level=info msg="CreateContainer within sandbox \"c71a792b269e9eea35c3a70e747e74059200eb6c5b651aa577043eb40a177cc9\" for &ContainerMetadata{Name:kube-scheduler,Attempt:1,} returns container id \"8fc291e25e6d3af4977716dbfb4be3d65a8b6b924cff7bd94f36a7d14365660c\"" Feb 9 10:13:45.036867 env[1743]: time="2024-02-09T10:13:45.036822899Z" level=info msg="StartContainer for \"8fc291e25e6d3af4977716dbfb4be3d65a8b6b924cff7bd94f36a7d14365660c\"" Feb 9 10:13:45.073031 systemd[1]: Started cri-containerd-8fc291e25e6d3af4977716dbfb4be3d65a8b6b924cff7bd94f36a7d14365660c.scope. Feb 9 10:13:45.083797 systemd[1]: run-containerd-runc-k8s.io-8fc291e25e6d3af4977716dbfb4be3d65a8b6b924cff7bd94f36a7d14365660c-runc.Rkl8nr.mount: Deactivated successfully. Feb 9 10:13:45.116000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.116000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.131514 kernel: audit: type=1400 audit(1707473625.116:1047): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.131637 kernel: audit: type=1400 audit(1707473625.116:1048): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.139293 kernel: audit: type=1400 audit(1707473625.116:1049): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.116000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.116000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.147317 kernel: audit: type=1400 audit(1707473625.116:1050): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.116000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.155103 kernel: audit: type=1400 audit(1707473625.116:1051): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.116000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.163449 kernel: audit: type=1400 audit(1707473625.116:1052): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.116000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.171339 kernel: audit: type=1400 audit(1707473625.116:1053): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.116000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.179405 kernel: audit: type=1400 audit(1707473625.116:1054): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.116000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.123000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.123000 audit: BPF prog-id=122 op=LOAD Feb 9 10:13:45.131000 audit[3246]: AVC avc: denied { bpf } for pid=3246 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.131000 audit[3246]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000195b38 a2=10 a3=0 items=0 ppid=2785 pid=3246 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:45.131000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3866633239316532356536643361663439373737313664626662346265 Feb 9 10:13:45.131000 audit[3246]: AVC avc: denied { perfmon } for pid=3246 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.131000 audit[3246]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=2785 pid=3246 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:45.131000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3866633239316532356536643361663439373737313664626662346265 Feb 9 10:13:45.131000 audit[3246]: AVC avc: denied { bpf } for pid=3246 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.131000 audit[3246]: AVC avc: denied { bpf } for pid=3246 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.131000 audit[3246]: AVC avc: denied { bpf } for pid=3246 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.131000 audit[3246]: AVC avc: denied { perfmon } for pid=3246 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.131000 audit[3246]: AVC avc: denied { perfmon } for pid=3246 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.131000 audit[3246]: AVC avc: denied { perfmon } for pid=3246 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.131000 audit[3246]: AVC avc: denied { perfmon } for pid=3246 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.131000 audit[3246]: AVC avc: denied { perfmon } for pid=3246 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.131000 audit[3246]: AVC avc: denied { bpf } for pid=3246 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.131000 audit[3246]: AVC avc: denied { bpf } for pid=3246 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.131000 audit: BPF prog-id=123 op=LOAD Feb 9 10:13:45.131000 audit[3246]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=2785 pid=3246 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:45.131000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3866633239316532356536643361663439373737313664626662346265 Feb 9 10:13:45.139000 audit[3246]: AVC avc: denied { bpf } for pid=3246 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.139000 audit[3246]: AVC avc: denied { bpf } for pid=3246 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.139000 audit[3246]: AVC avc: denied { perfmon } for pid=3246 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.139000 audit[3246]: AVC avc: denied { perfmon } for pid=3246 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.139000 audit[3246]: AVC avc: denied { perfmon } for pid=3246 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.139000 audit[3246]: AVC avc: denied { perfmon } for pid=3246 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.139000 audit[3246]: AVC avc: denied { perfmon } for pid=3246 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.139000 audit[3246]: AVC avc: denied { bpf } for pid=3246 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.139000 audit[3246]: AVC avc: denied { bpf } for pid=3246 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.139000 audit: BPF prog-id=124 op=LOAD Feb 9 10:13:45.139000 audit[3246]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=2785 pid=3246 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:45.139000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3866633239316532356536643361663439373737313664626662346265 Feb 9 10:13:45.139000 audit: BPF prog-id=124 op=UNLOAD Feb 9 10:13:45.139000 audit: BPF prog-id=123 op=UNLOAD Feb 9 10:13:45.139000 audit[3246]: AVC avc: denied { bpf } for pid=3246 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.139000 audit[3246]: AVC avc: denied { bpf } for pid=3246 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.139000 audit[3246]: AVC avc: denied { bpf } for pid=3246 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.139000 audit[3246]: AVC avc: denied { perfmon } for pid=3246 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.139000 audit[3246]: AVC avc: denied { perfmon } for pid=3246 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.139000 audit[3246]: AVC avc: denied { perfmon } for pid=3246 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.139000 audit[3246]: AVC avc: denied { perfmon } for pid=3246 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.139000 audit[3246]: AVC avc: denied { perfmon } for pid=3246 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.139000 audit[3246]: AVC avc: denied { bpf } for pid=3246 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.139000 audit[3246]: AVC avc: denied { bpf } for pid=3246 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:13:45.139000 audit: BPF prog-id=125 op=LOAD Feb 9 10:13:45.139000 audit[3246]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=2785 pid=3246 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:13:45.139000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3866633239316532356536643361663439373737313664626662346265 Feb 9 10:13:45.208962 env[1743]: time="2024-02-09T10:13:45.208831527Z" level=info msg="StartContainer for \"8fc291e25e6d3af4977716dbfb4be3d65a8b6b924cff7bd94f36a7d14365660c\" returns successfully" Feb 9 10:13:50.732847 kubelet[3083]: E0209 10:13:50.732800 3083 controller.go:189] failed to update lease, error: Put "https://172.31.28.77:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/ip-172-31-28-77?timeout=10s": net/http: request canceled (Client.Timeout exceeded while awaiting headers) Feb 9 10:13:50.833538 kubelet[3083]: E0209 10:13:50.833457 3083 kubelet_node_status.go:540] "Error updating node status, will retry" err="error getting node \"ip-172-31-28-77\": Get \"https://172.31.28.77:6443/api/v1/nodes/ip-172-31-28-77?timeout=10s\": net/http: request canceled (Client.Timeout exceeded while awaiting headers)"