Feb 9 19:18:05.942428 kernel: Booting Linux on physical CPU 0x0000000000 [0x410fd083] Feb 9 19:18:05.942469 kernel: Linux version 5.15.148-flatcar (build@pony-truck.infra.kinvolk.io) (aarch64-cros-linux-gnu-gcc (Gentoo Hardened 11.3.1_p20221209 p3) 11.3.1 20221209, GNU ld (Gentoo 2.39 p5) 2.39.0) #1 SMP PREEMPT Fri Feb 9 17:24:35 -00 2024 Feb 9 19:18:05.942512 kernel: efi: EFI v2.70 by EDK II Feb 9 19:18:05.942528 kernel: efi: SMBIOS=0x7bed0000 SMBIOS 3.0=0x7beb0000 ACPI=0x786e0000 ACPI 2.0=0x786e0014 MEMATTR=0x7ac1aa98 MEMRESERVE=0x71a8cf98 Feb 9 19:18:05.942542 kernel: ACPI: Early table checksum verification disabled Feb 9 19:18:05.942556 kernel: ACPI: RSDP 0x00000000786E0014 000024 (v02 AMAZON) Feb 9 19:18:05.942572 kernel: ACPI: XSDT 0x00000000786D00E8 000064 (v01 AMAZON AMZNFACP 00000001 01000013) Feb 9 19:18:05.942586 kernel: ACPI: FACP 0x00000000786B0000 000114 (v06 AMAZON AMZNFACP 00000001 AMZN 00000001) Feb 9 19:18:05.942600 kernel: ACPI: DSDT 0x0000000078640000 00154F (v02 AMAZON AMZNDSDT 00000001 INTL 20160527) Feb 9 19:18:05.942614 kernel: ACPI: APIC 0x00000000786C0000 000108 (v04 AMAZON AMZNAPIC 00000001 AMZN 00000001) Feb 9 19:18:05.942632 kernel: ACPI: SPCR 0x00000000786A0000 000050 (v02 AMAZON AMZNSPCR 00000001 AMZN 00000001) Feb 9 19:18:05.942646 kernel: ACPI: GTDT 0x0000000078690000 000060 (v02 AMAZON AMZNGTDT 00000001 AMZN 00000001) Feb 9 19:18:05.942660 kernel: ACPI: MCFG 0x0000000078680000 00003C (v02 AMAZON AMZNMCFG 00000001 AMZN 00000001) Feb 9 19:18:05.942674 kernel: ACPI: SLIT 0x0000000078670000 00002D (v01 AMAZON AMZNSLIT 00000001 AMZN 00000001) Feb 9 19:18:05.942706 kernel: ACPI: IORT 0x0000000078660000 000078 (v01 AMAZON AMZNIORT 00000001 AMZN 00000001) Feb 9 19:18:05.942732 kernel: ACPI: PPTT 0x0000000078650000 0000EC (v01 AMAZON AMZNPPTT 00000001 AMZN 00000001) Feb 9 19:18:05.942747 kernel: ACPI: SPCR: console: uart,mmio,0x90a0000,115200 Feb 9 19:18:05.942761 kernel: earlycon: uart0 at MMIO 0x00000000090a0000 (options '115200') Feb 9 19:18:05.942776 kernel: printk: bootconsole [uart0] enabled Feb 9 19:18:05.942791 kernel: NUMA: Failed to initialise from firmware Feb 9 19:18:05.942805 kernel: NUMA: Faking a node at [mem 0x0000000040000000-0x00000004b5ffffff] Feb 9 19:18:05.942820 kernel: NUMA: NODE_DATA [mem 0x4b5841900-0x4b5846fff] Feb 9 19:18:05.942834 kernel: Zone ranges: Feb 9 19:18:05.942849 kernel: DMA [mem 0x0000000040000000-0x00000000ffffffff] Feb 9 19:18:05.942863 kernel: DMA32 empty Feb 9 19:18:05.942877 kernel: Normal [mem 0x0000000100000000-0x00000004b5ffffff] Feb 9 19:18:05.942896 kernel: Movable zone start for each node Feb 9 19:18:05.942910 kernel: Early memory node ranges Feb 9 19:18:05.942924 kernel: node 0: [mem 0x0000000040000000-0x00000000786effff] Feb 9 19:18:05.942939 kernel: node 0: [mem 0x00000000786f0000-0x000000007872ffff] Feb 9 19:18:05.942953 kernel: node 0: [mem 0x0000000078730000-0x000000007bbfffff] Feb 9 19:18:05.942967 kernel: node 0: [mem 0x000000007bc00000-0x000000007bfdffff] Feb 9 19:18:05.942981 kernel: node 0: [mem 0x000000007bfe0000-0x000000007fffffff] Feb 9 19:18:05.942996 kernel: node 0: [mem 0x0000000400000000-0x00000004b5ffffff] Feb 9 19:18:05.943010 kernel: Initmem setup node 0 [mem 0x0000000040000000-0x00000004b5ffffff] Feb 9 19:18:05.943024 kernel: On node 0, zone Normal: 8192 pages in unavailable ranges Feb 9 19:18:05.943038 kernel: psci: probing for conduit method from ACPI. Feb 9 19:18:05.943052 kernel: psci: PSCIv1.0 detected in firmware. Feb 9 19:18:05.943071 kernel: psci: Using standard PSCI v0.2 function IDs Feb 9 19:18:05.943085 kernel: psci: Trusted OS migration not required Feb 9 19:18:05.943106 kernel: psci: SMC Calling Convention v1.1 Feb 9 19:18:05.943121 kernel: ACPI: SRAT not present Feb 9 19:18:05.943137 kernel: percpu: Embedded 29 pages/cpu s79960 r8192 d30632 u118784 Feb 9 19:18:05.943156 kernel: pcpu-alloc: s79960 r8192 d30632 u118784 alloc=29*4096 Feb 9 19:18:05.943172 kernel: pcpu-alloc: [0] 0 [0] 1 Feb 9 19:18:05.943187 kernel: Detected PIPT I-cache on CPU0 Feb 9 19:18:05.943202 kernel: CPU features: detected: GIC system register CPU interface Feb 9 19:18:05.943217 kernel: CPU features: detected: Spectre-v2 Feb 9 19:18:05.943232 kernel: CPU features: detected: Spectre-v3a Feb 9 19:18:05.943247 kernel: CPU features: detected: Spectre-BHB Feb 9 19:18:05.943262 kernel: CPU features: kernel page table isolation forced ON by KASLR Feb 9 19:18:05.943278 kernel: CPU features: detected: Kernel page table isolation (KPTI) Feb 9 19:18:05.943293 kernel: CPU features: detected: ARM erratum 1742098 Feb 9 19:18:05.943308 kernel: CPU features: detected: ARM errata 1165522, 1319367, or 1530923 Feb 9 19:18:05.943327 kernel: Built 1 zonelists, mobility grouping on. Total pages: 991872 Feb 9 19:18:05.943343 kernel: Policy zone: Normal Feb 9 19:18:05.943361 kernel: Kernel command line: BOOT_IMAGE=/flatcar/vmlinuz-a mount.usr=/dev/mapper/usr verity.usr=PARTUUID=7130c94a-213a-4e5a-8e26-6cce9662f132 rootflags=rw mount.usrflags=ro consoleblank=0 root=LABEL=ROOT console=tty1 console=ttyS0,115200n8 earlycon flatcar.first_boot=detected acpi=force flatcar.oem.id=ec2 modprobe.blacklist=xen_fbfront net.ifnames=0 nvme_core.io_timeout=4294967295 verity.usrhash=680ffc8c0dfb23738bd19ec96ea37b5bbadfb5cebf23767d1d52c89a6d5c00b4 Feb 9 19:18:05.943377 kernel: Unknown kernel command line parameters "BOOT_IMAGE=/flatcar/vmlinuz-a", will be passed to user space. Feb 9 19:18:05.943393 kernel: Dentry cache hash table entries: 524288 (order: 10, 4194304 bytes, linear) Feb 9 19:18:05.943432 kernel: Inode-cache hash table entries: 262144 (order: 9, 2097152 bytes, linear) Feb 9 19:18:05.943453 kernel: mem auto-init: stack:off, heap alloc:off, heap free:off Feb 9 19:18:05.943469 kernel: software IO TLB: mapped [mem 0x000000007c000000-0x0000000080000000] (64MB) Feb 9 19:18:05.943485 kernel: Memory: 3826316K/4030464K available (9792K kernel code, 2092K rwdata, 7556K rodata, 34688K init, 778K bss, 204148K reserved, 0K cma-reserved) Feb 9 19:18:05.943501 kernel: SLUB: HWalign=64, Order=0-3, MinObjects=0, CPUs=2, Nodes=1 Feb 9 19:18:05.943539 kernel: trace event string verifier disabled Feb 9 19:18:05.943557 kernel: rcu: Preemptible hierarchical RCU implementation. Feb 9 19:18:05.943573 kernel: rcu: RCU event tracing is enabled. Feb 9 19:18:05.943588 kernel: rcu: RCU restricting CPUs from NR_CPUS=512 to nr_cpu_ids=2. Feb 9 19:18:05.943604 kernel: Trampoline variant of Tasks RCU enabled. Feb 9 19:18:05.943619 kernel: Tracing variant of Tasks RCU enabled. Feb 9 19:18:05.943635 kernel: rcu: RCU calculated value of scheduler-enlistment delay is 100 jiffies. Feb 9 19:18:05.943650 kernel: rcu: Adjusting geometry for rcu_fanout_leaf=16, nr_cpu_ids=2 Feb 9 19:18:05.943665 kernel: NR_IRQS: 64, nr_irqs: 64, preallocated irqs: 0 Feb 9 19:18:05.943680 kernel: GICv3: 96 SPIs implemented Feb 9 19:18:05.943695 kernel: GICv3: 0 Extended SPIs implemented Feb 9 19:18:05.943710 kernel: GICv3: Distributor has no Range Selector support Feb 9 19:18:05.943730 kernel: Root IRQ handler: gic_handle_irq Feb 9 19:18:05.943745 kernel: GICv3: 16 PPIs implemented Feb 9 19:18:05.943760 kernel: GICv3: CPU0: found redistributor 0 region 0:0x0000000010200000 Feb 9 19:18:05.943775 kernel: ACPI: SRAT not present Feb 9 19:18:05.943789 kernel: ITS [mem 0x10080000-0x1009ffff] Feb 9 19:18:05.943805 kernel: ITS@0x0000000010080000: allocated 8192 Devices @4000a0000 (indirect, esz 8, psz 64K, shr 1) Feb 9 19:18:05.943820 kernel: ITS@0x0000000010080000: allocated 8192 Interrupt Collections @4000b0000 (flat, esz 8, psz 64K, shr 1) Feb 9 19:18:05.943835 kernel: GICv3: using LPI property table @0x00000004000c0000 Feb 9 19:18:05.943850 kernel: ITS: Using hypervisor restricted LPI range [128] Feb 9 19:18:05.943866 kernel: GICv3: CPU0: using allocated LPI pending table @0x00000004000d0000 Feb 9 19:18:05.943881 kernel: arch_timer: cp15 timer(s) running at 83.33MHz (virt). Feb 9 19:18:05.943900 kernel: clocksource: arch_sys_counter: mask: 0xffffffffffffff max_cycles: 0x13381ebeec, max_idle_ns: 440795203145 ns Feb 9 19:18:05.943916 kernel: sched_clock: 56 bits at 83MHz, resolution 12ns, wraps every 4398046511100ns Feb 9 19:18:05.943931 kernel: Console: colour dummy device 80x25 Feb 9 19:18:05.943947 kernel: printk: console [tty1] enabled Feb 9 19:18:05.943963 kernel: ACPI: Core revision 20210730 Feb 9 19:18:05.943979 kernel: Calibrating delay loop (skipped), value calculated using timer frequency.. 166.66 BogoMIPS (lpj=83333) Feb 9 19:18:05.943995 kernel: pid_max: default: 32768 minimum: 301 Feb 9 19:18:05.944010 kernel: LSM: Security Framework initializing Feb 9 19:18:05.944026 kernel: SELinux: Initializing. Feb 9 19:18:05.944042 kernel: Mount-cache hash table entries: 8192 (order: 4, 65536 bytes, linear) Feb 9 19:18:05.944061 kernel: Mountpoint-cache hash table entries: 8192 (order: 4, 65536 bytes, linear) Feb 9 19:18:05.944077 kernel: rcu: Hierarchical SRCU implementation. Feb 9 19:18:05.944092 kernel: Platform MSI: ITS@0x10080000 domain created Feb 9 19:18:05.944108 kernel: PCI/MSI: ITS@0x10080000 domain created Feb 9 19:18:05.944123 kernel: Remapping and enabling EFI services. Feb 9 19:18:05.944138 kernel: smp: Bringing up secondary CPUs ... Feb 9 19:18:05.944154 kernel: Detected PIPT I-cache on CPU1 Feb 9 19:18:05.944170 kernel: GICv3: CPU1: found redistributor 1 region 0:0x0000000010220000 Feb 9 19:18:05.944186 kernel: GICv3: CPU1: using allocated LPI pending table @0x00000004000e0000 Feb 9 19:18:05.944205 kernel: CPU1: Booted secondary processor 0x0000000001 [0x410fd083] Feb 9 19:18:05.944221 kernel: smp: Brought up 1 node, 2 CPUs Feb 9 19:18:05.944236 kernel: SMP: Total of 2 processors activated. Feb 9 19:18:05.944252 kernel: CPU features: detected: 32-bit EL0 Support Feb 9 19:18:05.944267 kernel: CPU features: detected: 32-bit EL1 Support Feb 9 19:18:05.944283 kernel: CPU features: detected: CRC32 instructions Feb 9 19:18:05.944298 kernel: CPU: All CPU(s) started at EL1 Feb 9 19:18:05.944313 kernel: alternatives: patching kernel code Feb 9 19:18:05.944329 kernel: devtmpfs: initialized Feb 9 19:18:05.944348 kernel: KASLR disabled due to lack of seed Feb 9 19:18:05.944364 kernel: clocksource: jiffies: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 1911260446275000 ns Feb 9 19:18:05.944380 kernel: futex hash table entries: 512 (order: 3, 32768 bytes, linear) Feb 9 19:18:05.944450 kernel: pinctrl core: initialized pinctrl subsystem Feb 9 19:18:05.944479 kernel: SMBIOS 3.0.0 present. Feb 9 19:18:05.944496 kernel: DMI: Amazon EC2 a1.large/, BIOS 1.0 11/1/2018 Feb 9 19:18:05.944513 kernel: NET: Registered PF_NETLINK/PF_ROUTE protocol family Feb 9 19:18:05.944529 kernel: DMA: preallocated 512 KiB GFP_KERNEL pool for atomic allocations Feb 9 19:18:05.944545 kernel: DMA: preallocated 512 KiB GFP_KERNEL|GFP_DMA pool for atomic allocations Feb 9 19:18:05.944562 kernel: DMA: preallocated 512 KiB GFP_KERNEL|GFP_DMA32 pool for atomic allocations Feb 9 19:18:05.944578 kernel: audit: initializing netlink subsys (disabled) Feb 9 19:18:05.944595 kernel: audit: type=2000 audit(0.247:1): state=initialized audit_enabled=0 res=1 Feb 9 19:18:05.944616 kernel: thermal_sys: Registered thermal governor 'step_wise' Feb 9 19:18:05.944632 kernel: cpuidle: using governor menu Feb 9 19:18:05.944648 kernel: hw-breakpoint: found 6 breakpoint and 4 watchpoint registers. Feb 9 19:18:05.944664 kernel: ASID allocator initialised with 32768 entries Feb 9 19:18:05.944680 kernel: ACPI: bus type PCI registered Feb 9 19:18:05.944700 kernel: acpiphp: ACPI Hot Plug PCI Controller Driver version: 0.5 Feb 9 19:18:05.944716 kernel: Serial: AMBA PL011 UART driver Feb 9 19:18:05.944732 kernel: HugeTLB registered 1.00 GiB page size, pre-allocated 0 pages Feb 9 19:18:05.944748 kernel: HugeTLB registered 32.0 MiB page size, pre-allocated 0 pages Feb 9 19:18:05.944765 kernel: HugeTLB registered 2.00 MiB page size, pre-allocated 0 pages Feb 9 19:18:05.944781 kernel: HugeTLB registered 64.0 KiB page size, pre-allocated 0 pages Feb 9 19:18:05.944797 kernel: cryptd: max_cpu_qlen set to 1000 Feb 9 19:18:05.944813 kernel: alg: No test for fips(ansi_cprng) (fips_ansi_cprng) Feb 9 19:18:05.944829 kernel: ACPI: Added _OSI(Module Device) Feb 9 19:18:05.944849 kernel: ACPI: Added _OSI(Processor Device) Feb 9 19:18:05.944865 kernel: ACPI: Added _OSI(3.0 _SCP Extensions) Feb 9 19:18:05.944881 kernel: ACPI: Added _OSI(Processor Aggregator Device) Feb 9 19:18:05.944897 kernel: ACPI: Added _OSI(Linux-Dell-Video) Feb 9 19:18:05.944913 kernel: ACPI: Added _OSI(Linux-Lenovo-NV-HDMI-Audio) Feb 9 19:18:05.944929 kernel: ACPI: Added _OSI(Linux-HPI-Hybrid-Graphics) Feb 9 19:18:05.944946 kernel: ACPI: 1 ACPI AML tables successfully acquired and loaded Feb 9 19:18:05.944962 kernel: ACPI: Interpreter enabled Feb 9 19:18:05.944978 kernel: ACPI: Using GIC for interrupt routing Feb 9 19:18:05.945005 kernel: ACPI: MCFG table detected, 1 entries Feb 9 19:18:05.945021 kernel: ACPI: PCI Root Bridge [PCI0] (domain 0000 [bus 00-0f]) Feb 9 19:18:05.945305 kernel: acpi PNP0A08:00: _OSC: OS supports [ExtendedConfig ASPM ClockPM Segments MSI HPX-Type3] Feb 9 19:18:05.945537 kernel: acpi PNP0A08:00: _OSC: platform does not support [LTR] Feb 9 19:18:05.945736 kernel: acpi PNP0A08:00: _OSC: OS now controls [PCIeHotplug PME AER PCIeCapability] Feb 9 19:18:05.945931 kernel: acpi PNP0A08:00: ECAM area [mem 0x20000000-0x20ffffff] reserved by PNP0C02:00 Feb 9 19:18:05.946126 kernel: acpi PNP0A08:00: ECAM at [mem 0x20000000-0x20ffffff] for [bus 00-0f] Feb 9 19:18:05.946169 kernel: ACPI: Remapped I/O 0x000000001fff0000 to [io 0x0000-0xffff window] Feb 9 19:18:05.946188 kernel: acpiphp: Slot [1] registered Feb 9 19:18:05.946204 kernel: acpiphp: Slot [2] registered Feb 9 19:18:05.946220 kernel: acpiphp: Slot [3] registered Feb 9 19:18:05.946237 kernel: acpiphp: Slot [4] registered Feb 9 19:18:05.946252 kernel: acpiphp: Slot [5] registered Feb 9 19:18:05.946268 kernel: acpiphp: Slot [6] registered Feb 9 19:18:05.946284 kernel: acpiphp: Slot [7] registered Feb 9 19:18:05.946300 kernel: acpiphp: Slot [8] registered Feb 9 19:18:05.946320 kernel: acpiphp: Slot [9] registered Feb 9 19:18:05.946337 kernel: acpiphp: Slot [10] registered Feb 9 19:18:05.946353 kernel: acpiphp: Slot [11] registered Feb 9 19:18:05.946369 kernel: acpiphp: Slot [12] registered Feb 9 19:18:05.946385 kernel: acpiphp: Slot [13] registered Feb 9 19:18:05.946436 kernel: acpiphp: Slot [14] registered Feb 9 19:18:05.946456 kernel: acpiphp: Slot [15] registered Feb 9 19:18:05.946472 kernel: acpiphp: Slot [16] registered Feb 9 19:18:05.946488 kernel: acpiphp: Slot [17] registered Feb 9 19:18:05.946504 kernel: acpiphp: Slot [18] registered Feb 9 19:18:05.946526 kernel: acpiphp: Slot [19] registered Feb 9 19:18:05.946542 kernel: acpiphp: Slot [20] registered Feb 9 19:18:05.946558 kernel: acpiphp: Slot [21] registered Feb 9 19:18:05.946574 kernel: acpiphp: Slot [22] registered Feb 9 19:18:05.946590 kernel: acpiphp: Slot [23] registered Feb 9 19:18:05.946606 kernel: acpiphp: Slot [24] registered Feb 9 19:18:05.946621 kernel: acpiphp: Slot [25] registered Feb 9 19:18:05.946638 kernel: acpiphp: Slot [26] registered Feb 9 19:18:05.946653 kernel: acpiphp: Slot [27] registered Feb 9 19:18:05.946673 kernel: acpiphp: Slot [28] registered Feb 9 19:18:05.946689 kernel: acpiphp: Slot [29] registered Feb 9 19:18:05.946705 kernel: acpiphp: Slot [30] registered Feb 9 19:18:05.946721 kernel: acpiphp: Slot [31] registered Feb 9 19:18:05.946737 kernel: PCI host bridge to bus 0000:00 Feb 9 19:18:05.946938 kernel: pci_bus 0000:00: root bus resource [mem 0x80000000-0xffffffff window] Feb 9 19:18:05.947118 kernel: pci_bus 0000:00: root bus resource [io 0x0000-0xffff window] Feb 9 19:18:05.947301 kernel: pci_bus 0000:00: root bus resource [mem 0x400000000000-0x407fffffffff window] Feb 9 19:18:05.947507 kernel: pci_bus 0000:00: root bus resource [bus 00-0f] Feb 9 19:18:05.947734 kernel: pci 0000:00:00.0: [1d0f:0200] type 00 class 0x060000 Feb 9 19:18:05.947966 kernel: pci 0000:00:01.0: [1d0f:8250] type 00 class 0x070003 Feb 9 19:18:05.948177 kernel: pci 0000:00:01.0: reg 0x10: [mem 0x80118000-0x80118fff] Feb 9 19:18:05.948397 kernel: pci 0000:00:04.0: [1d0f:8061] type 00 class 0x010802 Feb 9 19:18:05.948628 kernel: pci 0000:00:04.0: reg 0x10: [mem 0x80114000-0x80117fff] Feb 9 19:18:05.948855 kernel: pci 0000:00:04.0: PME# supported from D0 D1 D2 D3hot D3cold Feb 9 19:18:05.949079 kernel: pci 0000:00:05.0: [1d0f:ec20] type 00 class 0x020000 Feb 9 19:18:05.949294 kernel: pci 0000:00:05.0: reg 0x10: [mem 0x80110000-0x80113fff] Feb 9 19:18:05.949532 kernel: pci 0000:00:05.0: reg 0x18: [mem 0x80000000-0x800fffff pref] Feb 9 19:18:05.949742 kernel: pci 0000:00:05.0: reg 0x20: [mem 0x80100000-0x8010ffff] Feb 9 19:18:05.949972 kernel: pci 0000:00:05.0: PME# supported from D0 D1 D2 D3hot D3cold Feb 9 19:18:05.960987 kernel: pci 0000:00:05.0: BAR 2: assigned [mem 0x80000000-0x800fffff pref] Feb 9 19:18:05.961241 kernel: pci 0000:00:05.0: BAR 4: assigned [mem 0x80100000-0x8010ffff] Feb 9 19:18:05.961505 kernel: pci 0000:00:04.0: BAR 0: assigned [mem 0x80110000-0x80113fff] Feb 9 19:18:05.961722 kernel: pci 0000:00:05.0: BAR 0: assigned [mem 0x80114000-0x80117fff] Feb 9 19:18:05.961928 kernel: pci 0000:00:01.0: BAR 0: assigned [mem 0x80118000-0x80118fff] Feb 9 19:18:05.962113 kernel: pci_bus 0000:00: resource 4 [mem 0x80000000-0xffffffff window] Feb 9 19:18:05.962312 kernel: pci_bus 0000:00: resource 5 [io 0x0000-0xffff window] Feb 9 19:18:05.966245 kernel: pci_bus 0000:00: resource 6 [mem 0x400000000000-0x407fffffffff window] Feb 9 19:18:05.966290 kernel: ACPI: PCI: Interrupt link GSI0 configured for IRQ 35 Feb 9 19:18:05.966309 kernel: ACPI: PCI: Interrupt link GSI1 configured for IRQ 36 Feb 9 19:18:05.966326 kernel: ACPI: PCI: Interrupt link GSI2 configured for IRQ 37 Feb 9 19:18:05.966342 kernel: ACPI: PCI: Interrupt link GSI3 configured for IRQ 38 Feb 9 19:18:05.966358 kernel: iommu: Default domain type: Translated Feb 9 19:18:05.966375 kernel: iommu: DMA domain TLB invalidation policy: strict mode Feb 9 19:18:05.966392 kernel: vgaarb: loaded Feb 9 19:18:05.966473 kernel: pps_core: LinuxPPS API ver. 1 registered Feb 9 19:18:05.966496 kernel: pps_core: Software ver. 5.3.6 - Copyright 2005-2007 Rodolfo Giometti Feb 9 19:18:05.966518 kernel: PTP clock support registered Feb 9 19:18:05.966535 kernel: Registered efivars operations Feb 9 19:18:05.966552 kernel: clocksource: Switched to clocksource arch_sys_counter Feb 9 19:18:05.966568 kernel: VFS: Disk quotas dquot_6.6.0 Feb 9 19:18:05.966585 kernel: VFS: Dquot-cache hash table entries: 512 (order 0, 4096 bytes) Feb 9 19:18:05.966602 kernel: pnp: PnP ACPI init Feb 9 19:18:05.966824 kernel: system 00:00: [mem 0x20000000-0x2fffffff] could not be reserved Feb 9 19:18:05.966850 kernel: pnp: PnP ACPI: found 1 devices Feb 9 19:18:05.966867 kernel: NET: Registered PF_INET protocol family Feb 9 19:18:05.966890 kernel: IP idents hash table entries: 65536 (order: 7, 524288 bytes, linear) Feb 9 19:18:05.966907 kernel: tcp_listen_portaddr_hash hash table entries: 2048 (order: 3, 32768 bytes, linear) Feb 9 19:18:05.966924 kernel: Table-perturb hash table entries: 65536 (order: 6, 262144 bytes, linear) Feb 9 19:18:05.966940 kernel: TCP established hash table entries: 32768 (order: 6, 262144 bytes, linear) Feb 9 19:18:05.966958 kernel: TCP bind hash table entries: 32768 (order: 7, 524288 bytes, linear) Feb 9 19:18:05.966974 kernel: TCP: Hash tables configured (established 32768 bind 32768) Feb 9 19:18:05.966991 kernel: UDP hash table entries: 2048 (order: 4, 65536 bytes, linear) Feb 9 19:18:05.967008 kernel: UDP-Lite hash table entries: 2048 (order: 4, 65536 bytes, linear) Feb 9 19:18:05.967025 kernel: NET: Registered PF_UNIX/PF_LOCAL protocol family Feb 9 19:18:05.967047 kernel: PCI: CLS 0 bytes, default 64 Feb 9 19:18:05.967063 kernel: hw perfevents: enabled with armv8_pmuv3_0 PMU driver, 3 counters available Feb 9 19:18:05.967080 kernel: kvm [1]: HYP mode not available Feb 9 19:18:05.967096 kernel: Initialise system trusted keyrings Feb 9 19:18:05.967112 kernel: workingset: timestamp_bits=39 max_order=20 bucket_order=0 Feb 9 19:18:05.967129 kernel: Key type asymmetric registered Feb 9 19:18:05.967146 kernel: Asymmetric key parser 'x509' registered Feb 9 19:18:05.967162 kernel: Block layer SCSI generic (bsg) driver version 0.4 loaded (major 249) Feb 9 19:18:05.967178 kernel: io scheduler mq-deadline registered Feb 9 19:18:05.967199 kernel: io scheduler kyber registered Feb 9 19:18:05.967215 kernel: io scheduler bfq registered Feb 9 19:18:05.967484 kernel: pl061_gpio ARMH0061:00: PL061 GPIO chip registered Feb 9 19:18:05.967513 kernel: input: Power Button as /devices/LNXSYSTM:00/LNXSYBUS:00/PNP0C0C:00/input/input0 Feb 9 19:18:05.967530 kernel: ACPI: button: Power Button [PWRB] Feb 9 19:18:05.967546 kernel: Serial: 8250/16550 driver, 4 ports, IRQ sharing enabled Feb 9 19:18:05.967563 kernel: ACPI: \_SB_.PCI0.GSI2: Enabled at IRQ 37 Feb 9 19:18:05.967770 kernel: serial 0000:00:01.0: enabling device (0010 -> 0012) Feb 9 19:18:05.967800 kernel: printk: console [ttyS0] disabled Feb 9 19:18:05.967818 kernel: 0000:00:01.0: ttyS0 at MMIO 0x80118000 (irq = 14, base_baud = 115200) is a 16550A Feb 9 19:18:05.967834 kernel: printk: console [ttyS0] enabled Feb 9 19:18:05.967851 kernel: printk: bootconsole [uart0] disabled Feb 9 19:18:05.967867 kernel: thunder_xcv, ver 1.0 Feb 9 19:18:05.967884 kernel: thunder_bgx, ver 1.0 Feb 9 19:18:05.967900 kernel: nicpf, ver 1.0 Feb 9 19:18:05.967917 kernel: nicvf, ver 1.0 Feb 9 19:18:05.968137 kernel: rtc-efi rtc-efi.0: registered as rtc0 Feb 9 19:18:05.968359 kernel: rtc-efi rtc-efi.0: setting system clock to 2024-02-09T19:18:05 UTC (1707506285) Feb 9 19:18:05.968383 kernel: hid: raw HID events driver (C) Jiri Kosina Feb 9 19:18:05.968400 kernel: NET: Registered PF_INET6 protocol family Feb 9 19:18:05.972563 kernel: Segment Routing with IPv6 Feb 9 19:18:05.972594 kernel: In-situ OAM (IOAM) with IPv6 Feb 9 19:18:05.972611 kernel: NET: Registered PF_PACKET protocol family Feb 9 19:18:05.972627 kernel: Key type dns_resolver registered Feb 9 19:18:05.972644 kernel: registered taskstats version 1 Feb 9 19:18:05.972668 kernel: Loading compiled-in X.509 certificates Feb 9 19:18:05.972685 kernel: Loaded X.509 cert 'Kinvolk GmbH: Module signing key for 5.15.148-flatcar: 947a80114e81e2815f6db72a0d388260762488f9' Feb 9 19:18:05.972701 kernel: Key type .fscrypt registered Feb 9 19:18:05.972717 kernel: Key type fscrypt-provisioning registered Feb 9 19:18:05.972733 kernel: ima: No TPM chip found, activating TPM-bypass! Feb 9 19:18:05.972750 kernel: ima: Allocated hash algorithm: sha1 Feb 9 19:18:05.972766 kernel: ima: No architecture policies found Feb 9 19:18:05.972782 kernel: Freeing unused kernel memory: 34688K Feb 9 19:18:05.972798 kernel: Run /init as init process Feb 9 19:18:05.972818 kernel: with arguments: Feb 9 19:18:05.972835 kernel: /init Feb 9 19:18:05.972850 kernel: with environment: Feb 9 19:18:05.972866 kernel: HOME=/ Feb 9 19:18:05.972882 kernel: TERM=linux Feb 9 19:18:05.972898 kernel: BOOT_IMAGE=/flatcar/vmlinuz-a Feb 9 19:18:05.972920 systemd[1]: systemd 252 running in system mode (+PAM +AUDIT +SELINUX -APPARMOR +IMA +SMACK +SECCOMP +GCRYPT -GNUTLS +OPENSSL -ACL +BLKID +CURL -ELFUTILS -FIDO2 +IDN2 -IDN +IPTC +KMOD +LIBCRYPTSETUP +LIBFDISK +PCRE2 -PWQUALITY -P11KIT -QRENCODE -TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD -BPF_FRAMEWORK -XKBCOMMON +UTMP +SYSVINIT default-hierarchy=unified) Feb 9 19:18:05.972940 systemd[1]: Detected virtualization amazon. Feb 9 19:18:05.972963 systemd[1]: Detected architecture arm64. Feb 9 19:18:05.972981 systemd[1]: Running in initrd. Feb 9 19:18:05.972998 systemd[1]: No hostname configured, using default hostname. Feb 9 19:18:05.973014 systemd[1]: Hostname set to . Feb 9 19:18:05.973032 systemd[1]: Initializing machine ID from VM UUID. Feb 9 19:18:05.973050 systemd[1]: Queued start job for default target initrd.target. Feb 9 19:18:05.973067 systemd[1]: Started systemd-ask-password-console.path. Feb 9 19:18:05.973084 systemd[1]: Reached target cryptsetup.target. Feb 9 19:18:05.973105 systemd[1]: Reached target paths.target. Feb 9 19:18:05.973123 systemd[1]: Reached target slices.target. Feb 9 19:18:05.973140 systemd[1]: Reached target swap.target. Feb 9 19:18:05.973157 systemd[1]: Reached target timers.target. Feb 9 19:18:05.973175 systemd[1]: Listening on iscsid.socket. Feb 9 19:18:05.973193 systemd[1]: Listening on iscsiuio.socket. Feb 9 19:18:05.973210 systemd[1]: Listening on systemd-journald-audit.socket. Feb 9 19:18:05.973228 systemd[1]: Listening on systemd-journald-dev-log.socket. Feb 9 19:18:05.973249 systemd[1]: Listening on systemd-journald.socket. Feb 9 19:18:05.973267 systemd[1]: Listening on systemd-networkd.socket. Feb 9 19:18:05.973284 systemd[1]: Listening on systemd-udevd-control.socket. Feb 9 19:18:05.973302 systemd[1]: Listening on systemd-udevd-kernel.socket. Feb 9 19:18:05.973319 systemd[1]: Reached target sockets.target. Feb 9 19:18:05.973337 systemd[1]: Starting kmod-static-nodes.service... Feb 9 19:18:05.973354 systemd[1]: Finished network-cleanup.service. Feb 9 19:18:05.973371 systemd[1]: Starting systemd-fsck-usr.service... Feb 9 19:18:05.973389 systemd[1]: Starting systemd-journald.service... Feb 9 19:18:05.973428 systemd[1]: Starting systemd-modules-load.service... Feb 9 19:18:05.973449 kernel: audit: type=1334 audit(1707506285.936:2): prog-id=6 op=LOAD Feb 9 19:18:05.973467 systemd[1]: Starting systemd-resolved.service... Feb 9 19:18:05.973485 systemd[1]: Starting systemd-vconsole-setup.service... Feb 9 19:18:05.973502 systemd[1]: Finished kmod-static-nodes.service. Feb 9 19:18:05.973523 systemd-journald[308]: Journal started Feb 9 19:18:05.973617 systemd-journald[308]: Runtime Journal (/run/log/journal/ec23c880dce83cd99d421c9bdbd40864) is 8.0M, max 75.4M, 67.4M free. Feb 9 19:18:05.936000 audit: BPF prog-id=6 op=LOAD Feb 9 19:18:05.936360 systemd-modules-load[309]: Inserted module 'overlay' Feb 9 19:18:05.990556 kernel: audit: type=1130 audit(1707506285.972:3): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:05.990593 systemd[1]: Started systemd-journald.service. Feb 9 19:18:05.972000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:05.999451 kernel: bridge: filtering via arp/ip/ip6tables is no longer available by default. Update your scripts to load br_netfilter if you need this. Feb 9 19:18:06.004850 systemd-modules-load[309]: Inserted module 'br_netfilter' Feb 9 19:18:06.009203 kernel: Bridge firewalling registered Feb 9 19:18:06.008000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:06.010260 systemd[1]: Finished systemd-fsck-usr.service. Feb 9 19:18:06.020212 kernel: audit: type=1130 audit(1707506286.008:4): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:06.022000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-usr comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:06.024649 systemd[1]: Finished systemd-vconsole-setup.service. Feb 9 19:18:06.055561 kernel: audit: type=1130 audit(1707506286.022:5): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-usr comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:06.055601 kernel: audit: type=1130 audit(1707506286.036:6): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:06.036000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:06.039430 systemd[1]: Starting dracut-cmdline-ask.service... Feb 9 19:18:06.061577 systemd[1]: Starting systemd-tmpfiles-setup-dev.service... Feb 9 19:18:06.072908 kernel: SCSI subsystem initialized Feb 9 19:18:06.078271 systemd[1]: Finished systemd-tmpfiles-setup-dev.service. Feb 9 19:18:06.081793 systemd-resolved[310]: Positive Trust Anchors: Feb 9 19:18:06.081808 systemd-resolved[310]: . IN DS 20326 8 2 e06d44b80b8f1d39a95c0b0d7c65d08458e880409bbc683457104237c7f8ec8d Feb 9 19:18:06.081861 systemd-resolved[310]: Negative trust anchors: home.arpa 10.in-addr.arpa 16.172.in-addr.arpa 17.172.in-addr.arpa 18.172.in-addr.arpa 19.172.in-addr.arpa 20.172.in-addr.arpa 21.172.in-addr.arpa 22.172.in-addr.arpa 23.172.in-addr.arpa 24.172.in-addr.arpa 25.172.in-addr.arpa 26.172.in-addr.arpa 27.172.in-addr.arpa 28.172.in-addr.arpa 29.172.in-addr.arpa 30.172.in-addr.arpa 31.172.in-addr.arpa 168.192.in-addr.arpa d.f.ip6.arpa corp home internal intranet lan local private test Feb 9 19:18:06.120000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:06.135434 kernel: audit: type=1130 audit(1707506286.120:7): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:06.135506 kernel: device-mapper: core: CONFIG_IMA_DISABLE_HTABLE is disabled. Duplicate IMA measurements will not be recorded in the IMA log. Feb 9 19:18:06.137382 kernel: device-mapper: uevent: version 1.0.3 Feb 9 19:18:06.147185 systemd[1]: Finished dracut-cmdline-ask.service. Feb 9 19:18:06.159584 kernel: device-mapper: ioctl: 4.45.0-ioctl (2021-03-22) initialised: dm-devel@redhat.com Feb 9 19:18:06.159630 kernel: audit: type=1130 audit(1707506286.148:8): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:06.148000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:06.160215 systemd[1]: Starting dracut-cmdline.service... Feb 9 19:18:06.167694 systemd-modules-load[309]: Inserted module 'dm_multipath' Feb 9 19:18:06.168993 systemd[1]: Finished systemd-modules-load.service. Feb 9 19:18:06.171000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:06.187667 kernel: audit: type=1130 audit(1707506286.171:9): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:06.189886 systemd[1]: Starting systemd-sysctl.service... Feb 9 19:18:06.207516 dracut-cmdline[326]: dracut-dracut-053 Feb 9 19:18:06.210736 systemd[1]: Finished systemd-sysctl.service. Feb 9 19:18:06.213000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:06.222613 kernel: audit: type=1130 audit(1707506286.213:10): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:06.224033 dracut-cmdline[326]: Using kernel command line parameters: rd.driver.pre=btrfs BOOT_IMAGE=/flatcar/vmlinuz-a mount.usr=/dev/mapper/usr verity.usr=PARTUUID=7130c94a-213a-4e5a-8e26-6cce9662f132 rootflags=rw mount.usrflags=ro consoleblank=0 root=LABEL=ROOT console=tty1 console=ttyS0,115200n8 earlycon flatcar.first_boot=detected acpi=force flatcar.oem.id=ec2 modprobe.blacklist=xen_fbfront net.ifnames=0 nvme_core.io_timeout=4294967295 verity.usrhash=680ffc8c0dfb23738bd19ec96ea37b5bbadfb5cebf23767d1d52c89a6d5c00b4 Feb 9 19:18:06.361448 kernel: Loading iSCSI transport class v2.0-870. Feb 9 19:18:06.375442 kernel: iscsi: registered transport (tcp) Feb 9 19:18:06.399979 kernel: iscsi: registered transport (qla4xxx) Feb 9 19:18:06.400049 kernel: QLogic iSCSI HBA Driver Feb 9 19:18:06.573264 systemd-resolved[310]: Defaulting to hostname 'linux'. Feb 9 19:18:06.575177 kernel: random: crng init done Feb 9 19:18:06.576735 systemd[1]: Started systemd-resolved.service. Feb 9 19:18:06.577000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:06.578626 systemd[1]: Reached target nss-lookup.target. Feb 9 19:18:06.598220 systemd[1]: Finished dracut-cmdline.service. Feb 9 19:18:06.598000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:06.604071 systemd[1]: Starting dracut-pre-udev.service... Feb 9 19:18:06.669448 kernel: raid6: neonx8 gen() 6407 MB/s Feb 9 19:18:06.687434 kernel: raid6: neonx8 xor() 4713 MB/s Feb 9 19:18:06.705432 kernel: raid6: neonx4 gen() 6473 MB/s Feb 9 19:18:06.723432 kernel: raid6: neonx4 xor() 4844 MB/s Feb 9 19:18:06.741432 kernel: raid6: neonx2 gen() 5682 MB/s Feb 9 19:18:06.759439 kernel: raid6: neonx2 xor() 4469 MB/s Feb 9 19:18:06.777439 kernel: raid6: neonx1 gen() 4439 MB/s Feb 9 19:18:06.795440 kernel: raid6: neonx1 xor() 3648 MB/s Feb 9 19:18:06.813439 kernel: raid6: int64x8 gen() 3396 MB/s Feb 9 19:18:06.831441 kernel: raid6: int64x8 xor() 2085 MB/s Feb 9 19:18:06.849440 kernel: raid6: int64x4 gen() 3766 MB/s Feb 9 19:18:06.867441 kernel: raid6: int64x4 xor() 2186 MB/s Feb 9 19:18:06.885440 kernel: raid6: int64x2 gen() 3546 MB/s Feb 9 19:18:06.903441 kernel: raid6: int64x2 xor() 1948 MB/s Feb 9 19:18:06.921440 kernel: raid6: int64x1 gen() 2762 MB/s Feb 9 19:18:06.940930 kernel: raid6: int64x1 xor() 1449 MB/s Feb 9 19:18:06.940960 kernel: raid6: using algorithm neonx4 gen() 6473 MB/s Feb 9 19:18:06.940984 kernel: raid6: .... xor() 4844 MB/s, rmw enabled Feb 9 19:18:06.942737 kernel: raid6: using neon recovery algorithm Feb 9 19:18:06.961446 kernel: xor: measuring software checksum speed Feb 9 19:18:06.965941 kernel: 8regs : 9337 MB/sec Feb 9 19:18:06.965971 kernel: 32regs : 11107 MB/sec Feb 9 19:18:06.970418 kernel: arm64_neon : 9614 MB/sec Feb 9 19:18:06.970457 kernel: xor: using function: 32regs (11107 MB/sec) Feb 9 19:18:07.061460 kernel: Btrfs loaded, crc32c=crc32c-generic, zoned=no, fsverity=no Feb 9 19:18:07.078326 systemd[1]: Finished dracut-pre-udev.service. Feb 9 19:18:07.078000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-udev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:07.080000 audit: BPF prog-id=7 op=LOAD Feb 9 19:18:07.080000 audit: BPF prog-id=8 op=LOAD Feb 9 19:18:07.082913 systemd[1]: Starting systemd-udevd.service... Feb 9 19:18:07.110965 systemd-udevd[508]: Using default interface naming scheme 'v252'. Feb 9 19:18:07.122377 systemd[1]: Started systemd-udevd.service. Feb 9 19:18:07.121000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:07.130548 systemd[1]: Starting dracut-pre-trigger.service... Feb 9 19:18:07.160767 dracut-pre-trigger[519]: rd.md=0: removing MD RAID activation Feb 9 19:18:07.220060 systemd[1]: Finished dracut-pre-trigger.service. Feb 9 19:18:07.222000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:07.224798 systemd[1]: Starting systemd-udev-trigger.service... Feb 9 19:18:07.329931 systemd[1]: Finished systemd-udev-trigger.service. Feb 9 19:18:07.332000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:07.450384 kernel: ACPI: \_SB_.PCI0.GSI1: Enabled at IRQ 36 Feb 9 19:18:07.450478 kernel: ena 0000:00:05.0: enabling device (0010 -> 0012) Feb 9 19:18:07.460835 kernel: ena 0000:00:05.0: ENA device version: 0.10 Feb 9 19:18:07.461167 kernel: ena 0000:00:05.0: ENA controller version: 0.0.1 implementation version 1 Feb 9 19:18:07.471958 kernel: ACPI: \_SB_.PCI0.GSI0: Enabled at IRQ 35 Feb 9 19:18:07.472028 kernel: nvme nvme0: pci function 0000:00:04.0 Feb 9 19:18:07.480453 kernel: ena 0000:00:05.0: Elastic Network Adapter (ENA) found at mem 80114000, mac addr 06:4c:94:09:f7:49 Feb 9 19:18:07.484450 kernel: nvme nvme0: 2/0/0 default/read/poll queues Feb 9 19:18:07.490631 kernel: GPT:Primary header thinks Alt. header is not at the end of the disk. Feb 9 19:18:07.490665 kernel: GPT:9289727 != 16777215 Feb 9 19:18:07.492860 kernel: GPT:Alternate GPT header not at the end of the disk. Feb 9 19:18:07.494199 kernel: GPT:9289727 != 16777215 Feb 9 19:18:07.496126 kernel: GPT: Use GNU Parted to correct GPT errors. Feb 9 19:18:07.497701 kernel: nvme0n1: p1 p2 p3 p4 p6 p7 p9 Feb 9 19:18:07.502302 (udev-worker)[558]: Network interface NamePolicy= disabled on kernel command line. Feb 9 19:18:07.573451 kernel: BTRFS: device label OEM devid 1 transid 12 /dev/nvme0n1p6 scanned by (udev-worker) (565) Feb 9 19:18:07.601853 systemd[1]: Found device dev-disk-by\x2dlabel-EFI\x2dSYSTEM.device. Feb 9 19:18:07.661273 systemd[1]: Found device dev-disk-by\x2dlabel-OEM.device. Feb 9 19:18:07.698709 systemd[1]: Found device dev-disk-by\x2dpartlabel-USR\x2dA.device. Feb 9 19:18:07.702822 systemd[1]: Found device dev-disk-by\x2dpartuuid-7130c94a\x2d213a\x2d4e5a\x2d8e26\x2d6cce9662f132.device. Feb 9 19:18:07.717444 systemd[1]: Found device dev-disk-by\x2dlabel-ROOT.device. Feb 9 19:18:07.722727 systemd[1]: Starting disk-uuid.service... Feb 9 19:18:07.733885 disk-uuid[669]: Primary Header is updated. Feb 9 19:18:07.733885 disk-uuid[669]: Secondary Entries is updated. Feb 9 19:18:07.733885 disk-uuid[669]: Secondary Header is updated. Feb 9 19:18:07.744443 kernel: nvme0n1: p1 p2 p3 p4 p6 p7 p9 Feb 9 19:18:07.754443 kernel: nvme0n1: p1 p2 p3 p4 p6 p7 p9 Feb 9 19:18:07.764451 kernel: nvme0n1: p1 p2 p3 p4 p6 p7 p9 Feb 9 19:18:08.763250 disk-uuid[670]: The operation has completed successfully. Feb 9 19:18:08.765717 kernel: nvme0n1: p1 p2 p3 p4 p6 p7 p9 Feb 9 19:18:08.926012 systemd[1]: disk-uuid.service: Deactivated successfully. Feb 9 19:18:08.928314 systemd[1]: Finished disk-uuid.service. Feb 9 19:18:08.930000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=disk-uuid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:08.930000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=disk-uuid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:08.942599 systemd[1]: Starting verity-setup.service... Feb 9 19:18:08.977469 kernel: device-mapper: verity: sha256 using implementation "sha256-ce" Feb 9 19:18:09.062751 systemd[1]: Found device dev-mapper-usr.device. Feb 9 19:18:09.067092 systemd[1]: Finished verity-setup.service. Feb 9 19:18:09.068000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=verity-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:09.071926 systemd[1]: Mounting sysusr-usr.mount... Feb 9 19:18:09.157455 kernel: EXT4-fs (dm-0): mounted filesystem without journal. Opts: norecovery. Quota mode: none. Feb 9 19:18:09.158672 systemd[1]: Mounted sysusr-usr.mount. Feb 9 19:18:09.160037 systemd[1]: afterburn-network-kargs.service was skipped because no trigger condition checks were met. Feb 9 19:18:09.174367 systemd[1]: Starting ignition-setup.service... Feb 9 19:18:09.181043 systemd[1]: Starting parse-ip-for-networkd.service... Feb 9 19:18:09.207442 kernel: BTRFS info (device nvme0n1p6): using crc32c (crc32c-generic) checksum algorithm Feb 9 19:18:09.207510 kernel: BTRFS info (device nvme0n1p6): using free space tree Feb 9 19:18:09.209853 kernel: BTRFS info (device nvme0n1p6): has skinny extents Feb 9 19:18:09.217455 kernel: BTRFS info (device nvme0n1p6): enabling ssd optimizations Feb 9 19:18:09.235442 systemd[1]: mnt-oem.mount: Deactivated successfully. Feb 9 19:18:09.290269 systemd[1]: Finished ignition-setup.service. Feb 9 19:18:09.290000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:09.294010 systemd[1]: Starting ignition-fetch-offline.service... Feb 9 19:18:09.333577 systemd[1]: Finished parse-ip-for-networkd.service. Feb 9 19:18:09.334000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=parse-ip-for-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:09.336000 audit: BPF prog-id=9 op=LOAD Feb 9 19:18:09.338847 systemd[1]: Starting systemd-networkd.service... Feb 9 19:18:09.393540 systemd-networkd[1193]: lo: Link UP Feb 9 19:18:09.393563 systemd-networkd[1193]: lo: Gained carrier Feb 9 19:18:09.397785 systemd-networkd[1193]: Enumeration completed Feb 9 19:18:09.398666 systemd[1]: Started systemd-networkd.service. Feb 9 19:18:09.400744 systemd-networkd[1193]: eth0: Configuring with /usr/lib/systemd/network/zz-default.network. Feb 9 19:18:09.406003 systemd-networkd[1193]: eth0: Link UP Feb 9 19:18:09.406011 systemd-networkd[1193]: eth0: Gained carrier Feb 9 19:18:09.411000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:09.412992 systemd[1]: Reached target network.target. Feb 9 19:18:09.417092 systemd[1]: Starting iscsiuio.service... Feb 9 19:18:09.421656 systemd-networkd[1193]: eth0: DHCPv4 address 172.31.22.94/20, gateway 172.31.16.1 acquired from 172.31.16.1 Feb 9 19:18:09.431597 systemd[1]: Started iscsiuio.service. Feb 9 19:18:09.433000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsiuio comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:09.435825 systemd[1]: Starting iscsid.service... Feb 9 19:18:09.443053 iscsid[1198]: iscsid: can't open InitiatorName configuration file /etc/iscsi/initiatorname.iscsi Feb 9 19:18:09.443053 iscsid[1198]: iscsid: Warning: InitiatorName file /etc/iscsi/initiatorname.iscsi does not exist or does not contain a properly formatted InitiatorName. If using software iscsi (iscsi_tcp or ib_iser) or partial offload (bnx2i or cxgbi iscsi), you may not be able to log into or discover targets. Please create a file /etc/iscsi/initiatorname.iscsi that contains a sting with the format: InitiatorName=iqn.yyyy-mm.[:identifier]. Feb 9 19:18:09.443053 iscsid[1198]: Example: InitiatorName=iqn.2001-04.com.redhat:fc6. Feb 9 19:18:09.443053 iscsid[1198]: If using hardware iscsi like qla4xxx this message can be ignored. Feb 9 19:18:09.443053 iscsid[1198]: iscsid: can't open InitiatorAlias configuration file /etc/iscsi/initiatorname.iscsi Feb 9 19:18:09.457000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:09.486426 iscsid[1198]: iscsid: can't open iscsid.safe_logout configuration file /etc/iscsi/iscsid.conf Feb 9 19:18:09.456563 systemd[1]: Started iscsid.service. Feb 9 19:18:09.459846 systemd[1]: Starting dracut-initqueue.service... Feb 9 19:18:09.494141 systemd[1]: Finished dracut-initqueue.service. Feb 9 19:18:09.496000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:09.497724 systemd[1]: Reached target remote-fs-pre.target. Feb 9 19:18:09.501069 systemd[1]: Reached target remote-cryptsetup.target. Feb 9 19:18:09.504554 systemd[1]: Reached target remote-fs.target. Feb 9 19:18:09.509082 systemd[1]: Starting dracut-pre-mount.service... Feb 9 19:18:09.525933 systemd[1]: Finished dracut-pre-mount.service. Feb 9 19:18:09.529000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:09.949573 ignition[1169]: Ignition 2.14.0 Feb 9 19:18:09.949593 ignition[1169]: Stage: fetch-offline Feb 9 19:18:09.949881 ignition[1169]: reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 9 19:18:09.949941 ignition[1169]: parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 9 19:18:09.969366 ignition[1169]: no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 9 19:18:09.971847 ignition[1169]: Ignition finished successfully Feb 9 19:18:09.974924 systemd[1]: Finished ignition-fetch-offline.service. Feb 9 19:18:09.985089 kernel: kauditd_printk_skb: 19 callbacks suppressed Feb 9 19:18:09.985182 kernel: audit: type=1130 audit(1707506289.975:30): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:09.975000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:09.979868 systemd[1]: Starting ignition-fetch.service... Feb 9 19:18:09.996789 ignition[1217]: Ignition 2.14.0 Feb 9 19:18:09.998515 ignition[1217]: Stage: fetch Feb 9 19:18:10.000089 ignition[1217]: reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 9 19:18:10.002485 ignition[1217]: parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 9 19:18:10.014318 ignition[1217]: no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 9 19:18:10.016593 ignition[1217]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 9 19:18:10.028484 ignition[1217]: INFO : PUT result: OK Feb 9 19:18:10.031987 ignition[1217]: DEBUG : parsed url from cmdline: "" Feb 9 19:18:10.033804 ignition[1217]: INFO : no config URL provided Feb 9 19:18:10.033804 ignition[1217]: INFO : reading system config file "/usr/lib/ignition/user.ign" Feb 9 19:18:10.033804 ignition[1217]: INFO : no config at "/usr/lib/ignition/user.ign" Feb 9 19:18:10.033804 ignition[1217]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 9 19:18:10.042227 ignition[1217]: INFO : PUT result: OK Feb 9 19:18:10.043660 ignition[1217]: INFO : GET http://169.254.169.254/2019-10-01/user-data: attempt #1 Feb 9 19:18:10.047444 ignition[1217]: INFO : GET result: OK Feb 9 19:18:10.047444 ignition[1217]: DEBUG : parsing config with SHA512: 3c2a8fce548e68fe77424ffb0a5777b92bde33da9884bfcbd577957e679665b51963c0d32636832098c2f760d81d28baade211b991d2578622a3bd90f87c2a86 Feb 9 19:18:10.077399 unknown[1217]: fetched base config from "system" Feb 9 19:18:10.077450 unknown[1217]: fetched base config from "system" Feb 9 19:18:10.077465 unknown[1217]: fetched user config from "aws" Feb 9 19:18:10.083270 ignition[1217]: fetch: fetch complete Feb 9 19:18:10.083297 ignition[1217]: fetch: fetch passed Feb 9 19:18:10.083384 ignition[1217]: Ignition finished successfully Feb 9 19:18:10.089736 systemd[1]: Finished ignition-fetch.service. Feb 9 19:18:10.091000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:10.094877 systemd[1]: Starting ignition-kargs.service... Feb 9 19:18:10.104004 kernel: audit: type=1130 audit(1707506290.091:31): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:10.116165 ignition[1223]: Ignition 2.14.0 Feb 9 19:18:10.116191 ignition[1223]: Stage: kargs Feb 9 19:18:10.116498 ignition[1223]: reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 9 19:18:10.116552 ignition[1223]: parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 9 19:18:10.131583 ignition[1223]: no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 9 19:18:10.134588 ignition[1223]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 9 19:18:10.137490 ignition[1223]: INFO : PUT result: OK Feb 9 19:18:10.141832 ignition[1223]: kargs: kargs passed Feb 9 19:18:10.142128 ignition[1223]: Ignition finished successfully Feb 9 19:18:10.146329 systemd[1]: Finished ignition-kargs.service. Feb 9 19:18:10.162452 kernel: audit: type=1130 audit(1707506290.145:32): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:10.145000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:10.156947 systemd[1]: Starting ignition-disks.service... Feb 9 19:18:10.171931 ignition[1229]: Ignition 2.14.0 Feb 9 19:18:10.171977 ignition[1229]: Stage: disks Feb 9 19:18:10.172314 ignition[1229]: reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 9 19:18:10.172368 ignition[1229]: parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 9 19:18:10.187849 ignition[1229]: no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 9 19:18:10.190455 ignition[1229]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 9 19:18:10.193562 ignition[1229]: INFO : PUT result: OK Feb 9 19:18:10.198428 ignition[1229]: disks: disks passed Feb 9 19:18:10.198549 ignition[1229]: Ignition finished successfully Feb 9 19:18:10.202836 systemd[1]: Finished ignition-disks.service. Feb 9 19:18:10.214812 kernel: audit: type=1130 audit(1707506290.201:33): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:10.201000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:10.205941 systemd[1]: Reached target initrd-root-device.target. Feb 9 19:18:10.214823 systemd[1]: Reached target local-fs-pre.target. Feb 9 19:18:10.216539 systemd[1]: Reached target local-fs.target. Feb 9 19:18:10.219797 systemd[1]: Reached target sysinit.target. Feb 9 19:18:10.222719 systemd[1]: Reached target basic.target. Feb 9 19:18:10.225655 systemd[1]: Starting systemd-fsck-root.service... Feb 9 19:18:10.274604 systemd-fsck[1237]: ROOT: clean, 602/553520 files, 56013/553472 blocks Feb 9 19:18:10.282258 systemd[1]: Finished systemd-fsck-root.service. Feb 9 19:18:10.294385 kernel: audit: type=1130 audit(1707506290.282:34): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:10.282000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:10.285392 systemd[1]: Mounting sysroot.mount... Feb 9 19:18:10.315448 kernel: EXT4-fs (nvme0n1p9): mounted filesystem with ordered data mode. Opts: (null). Quota mode: none. Feb 9 19:18:10.318532 systemd[1]: Mounted sysroot.mount. Feb 9 19:18:10.321658 systemd[1]: Reached target initrd-root-fs.target. Feb 9 19:18:10.340095 systemd[1]: Mounting sysroot-usr.mount... Feb 9 19:18:10.344056 systemd[1]: flatcar-metadata-hostname.service was skipped because no trigger condition checks were met. Feb 9 19:18:10.345204 systemd[1]: ignition-remount-sysroot.service was skipped because of an unmet condition check (ConditionPathIsReadWrite=!/sysroot). Feb 9 19:18:10.345261 systemd[1]: Reached target ignition-diskful.target. Feb 9 19:18:10.359319 systemd[1]: Mounted sysroot-usr.mount. Feb 9 19:18:10.375282 systemd[1]: Mounting sysroot-usr-share-oem.mount... Feb 9 19:18:10.380173 systemd[1]: Starting initrd-setup-root.service... Feb 9 19:18:10.397451 kernel: BTRFS: device label OEM devid 1 transid 14 /dev/nvme0n1p6 scanned by mount (1254) Feb 9 19:18:10.400565 initrd-setup-root[1259]: cut: /sysroot/etc/passwd: No such file or directory Feb 9 19:18:10.408601 kernel: BTRFS info (device nvme0n1p6): using crc32c (crc32c-generic) checksum algorithm Feb 9 19:18:10.408636 kernel: BTRFS info (device nvme0n1p6): using free space tree Feb 9 19:18:10.408659 kernel: BTRFS info (device nvme0n1p6): has skinny extents Feb 9 19:18:10.417477 kernel: BTRFS info (device nvme0n1p6): enabling ssd optimizations Feb 9 19:18:10.420951 systemd[1]: Mounted sysroot-usr-share-oem.mount. Feb 9 19:18:10.426744 initrd-setup-root[1285]: cut: /sysroot/etc/group: No such file or directory Feb 9 19:18:10.435596 initrd-setup-root[1293]: cut: /sysroot/etc/shadow: No such file or directory Feb 9 19:18:10.444005 initrd-setup-root[1301]: cut: /sysroot/etc/gshadow: No such file or directory Feb 9 19:18:10.686952 systemd[1]: Finished initrd-setup-root.service. Feb 9 19:18:10.689000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:10.691535 systemd[1]: Starting ignition-mount.service... Feb 9 19:18:10.701243 kernel: audit: type=1130 audit(1707506290.689:35): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:10.701653 systemd[1]: Starting sysroot-boot.service... Feb 9 19:18:10.714786 systemd[1]: sysusr-usr-share-oem.mount: Deactivated successfully. Feb 9 19:18:10.714966 systemd[1]: sysroot-usr-share-oem.mount: Deactivated successfully. Feb 9 19:18:10.748482 systemd[1]: Finished sysroot-boot.service. Feb 9 19:18:10.750000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:10.759144 ignition[1321]: INFO : Ignition 2.14.0 Feb 9 19:18:10.759144 ignition[1321]: INFO : Stage: mount Feb 9 19:18:10.759144 ignition[1321]: INFO : reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 9 19:18:10.759144 ignition[1321]: DEBUG : parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 9 19:18:10.769395 kernel: audit: type=1130 audit(1707506290.750:36): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:10.777908 ignition[1321]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 9 19:18:10.780467 ignition[1321]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 9 19:18:10.783745 ignition[1321]: INFO : PUT result: OK Feb 9 19:18:10.788806 ignition[1321]: INFO : mount: mount passed Feb 9 19:18:10.790533 ignition[1321]: INFO : Ignition finished successfully Feb 9 19:18:10.793499 systemd[1]: Finished ignition-mount.service. Feb 9 19:18:10.795000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:10.797920 systemd[1]: Starting ignition-files.service... Feb 9 19:18:10.806910 kernel: audit: type=1130 audit(1707506290.795:37): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:10.814167 systemd[1]: Mounting sysroot-usr-share-oem.mount... Feb 9 19:18:10.833838 kernel: BTRFS: device label OEM devid 1 transid 15 /dev/nvme0n1p6 scanned by mount (1329) Feb 9 19:18:10.839350 kernel: BTRFS info (device nvme0n1p6): using crc32c (crc32c-generic) checksum algorithm Feb 9 19:18:10.839382 kernel: BTRFS info (device nvme0n1p6): using free space tree Feb 9 19:18:10.839427 kernel: BTRFS info (device nvme0n1p6): has skinny extents Feb 9 19:18:10.848444 kernel: BTRFS info (device nvme0n1p6): enabling ssd optimizations Feb 9 19:18:10.853300 systemd[1]: Mounted sysroot-usr-share-oem.mount. Feb 9 19:18:10.872726 ignition[1348]: INFO : Ignition 2.14.0 Feb 9 19:18:10.872726 ignition[1348]: INFO : Stage: files Feb 9 19:18:10.876537 ignition[1348]: INFO : reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 9 19:18:10.876537 ignition[1348]: DEBUG : parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 9 19:18:10.889125 ignition[1348]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 9 19:18:10.891956 ignition[1348]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 9 19:18:10.895130 ignition[1348]: INFO : PUT result: OK Feb 9 19:18:10.901076 ignition[1348]: DEBUG : files: compiled without relabeling support, skipping Feb 9 19:18:10.905277 ignition[1348]: INFO : files: ensureUsers: op(1): [started] creating or modifying user "core" Feb 9 19:18:10.907960 ignition[1348]: DEBUG : files: ensureUsers: op(1): executing: "usermod" "--root" "/sysroot" "core" Feb 9 19:18:10.943533 ignition[1348]: INFO : files: ensureUsers: op(1): [finished] creating or modifying user "core" Feb 9 19:18:10.946646 ignition[1348]: INFO : files: ensureUsers: op(2): [started] adding ssh keys to user "core" Feb 9 19:18:10.950480 unknown[1348]: wrote ssh authorized keys file for user: core Feb 9 19:18:10.952689 ignition[1348]: INFO : files: ensureUsers: op(2): [finished] adding ssh keys to user "core" Feb 9 19:18:10.956686 ignition[1348]: INFO : files: createFilesystemsFiles: createFiles: op(3): [started] writing file "/sysroot/opt/cni-plugins-linux-arm64-v1.3.0.tgz" Feb 9 19:18:10.960727 ignition[1348]: INFO : GET https://github.com/containernetworking/plugins/releases/download/v1.3.0/cni-plugins-linux-arm64-v1.3.0.tgz: attempt #1 Feb 9 19:18:11.210575 systemd-networkd[1193]: eth0: Gained IPv6LL Feb 9 19:18:11.454482 ignition[1348]: INFO : GET result: OK Feb 9 19:18:11.976353 ignition[1348]: DEBUG : file matches expected sum of: b2b7fb74f1b3cb8928f49e5bf9d4bc686e057e837fac3caf1b366d54757921dba80d70cc010399b274d136e8dee9a25b1ad87cdfdc4ffcf42cf88f3e8f99587a Feb 9 19:18:11.981837 ignition[1348]: INFO : files: createFilesystemsFiles: createFiles: op(3): [finished] writing file "/sysroot/opt/cni-plugins-linux-arm64-v1.3.0.tgz" Feb 9 19:18:11.981837 ignition[1348]: INFO : files: createFilesystemsFiles: createFiles: op(4): [started] writing file "/sysroot/opt/crictl-v1.27.0-linux-arm64.tar.gz" Feb 9 19:18:11.981837 ignition[1348]: INFO : GET https://github.com/kubernetes-sigs/cri-tools/releases/download/v1.27.0/crictl-v1.27.0-linux-arm64.tar.gz: attempt #1 Feb 9 19:18:12.348705 ignition[1348]: INFO : GET result: OK Feb 9 19:18:12.596236 ignition[1348]: DEBUG : file matches expected sum of: db062e43351a63347871e7094115be2ae3853afcd346d47f7b51141da8c3202c2df58d2e17359322f632abcb37474fd7fdb3b7aadbc5cfd5cf6d3bad040b6251 Feb 9 19:18:12.600886 ignition[1348]: INFO : files: createFilesystemsFiles: createFiles: op(4): [finished] writing file "/sysroot/opt/crictl-v1.27.0-linux-arm64.tar.gz" Feb 9 19:18:12.600886 ignition[1348]: INFO : files: createFilesystemsFiles: createFiles: op(5): [started] writing file "/sysroot/etc/eks/bootstrap.sh" Feb 9 19:18:12.600886 ignition[1348]: INFO : oem config not found in "/usr/share/oem", looking on oem partition Feb 9 19:18:12.622359 ignition[1348]: INFO : op(1): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1876411201" Feb 9 19:18:12.622359 ignition[1348]: CRITICAL : op(1): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1876411201": device or resource busy Feb 9 19:18:12.622359 ignition[1348]: ERROR : failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem1876411201", trying btrfs: device or resource busy Feb 9 19:18:12.622359 ignition[1348]: INFO : op(2): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1876411201" Feb 9 19:18:12.648024 kernel: BTRFS info: devid 1 device path /dev/nvme0n1p6 changed to /dev/disk/by-label/OEM scanned by ignition (1351) Feb 9 19:18:12.648069 ignition[1348]: INFO : op(2): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1876411201" Feb 9 19:18:12.648069 ignition[1348]: INFO : op(3): [started] unmounting "/mnt/oem1876411201" Feb 9 19:18:12.652973 ignition[1348]: INFO : op(3): [finished] unmounting "/mnt/oem1876411201" Feb 9 19:18:12.658253 ignition[1348]: INFO : files: createFilesystemsFiles: createFiles: op(5): [finished] writing file "/sysroot/etc/eks/bootstrap.sh" Feb 9 19:18:12.658253 ignition[1348]: INFO : files: createFilesystemsFiles: createFiles: op(6): [started] writing file "/sysroot/opt/bin/kubeadm" Feb 9 19:18:12.658253 ignition[1348]: INFO : GET https://dl.k8s.io/release/v1.27.2/bin/linux/arm64/kubeadm: attempt #1 Feb 9 19:18:12.778538 ignition[1348]: INFO : GET result: OK Feb 9 19:18:13.333045 ignition[1348]: DEBUG : file matches expected sum of: 45b3100984c979ba0f1c0df8f4211474c2d75ebe916e677dff5fc8e3b3697cf7a953da94e356f39684cc860dff6878b772b7514c55651c2f866d9efeef23f970 Feb 9 19:18:13.338530 ignition[1348]: INFO : files: createFilesystemsFiles: createFiles: op(6): [finished] writing file "/sysroot/opt/bin/kubeadm" Feb 9 19:18:13.338530 ignition[1348]: INFO : files: createFilesystemsFiles: createFiles: op(7): [started] writing file "/sysroot/opt/bin/kubelet" Feb 9 19:18:13.338530 ignition[1348]: INFO : GET https://dl.k8s.io/release/v1.27.2/bin/linux/arm64/kubelet: attempt #1 Feb 9 19:18:13.398698 ignition[1348]: INFO : GET result: OK Feb 9 19:18:14.546531 ignition[1348]: DEBUG : file matches expected sum of: 71857ff499ae135fa478e1827a0ed8865e578a8d2b1e25876e914fd0beba03733801c0654bcd4c0567bafeb16887dafb2dbbe8d1116e6ea28dcd8366c142d348 Feb 9 19:18:14.551591 ignition[1348]: INFO : files: createFilesystemsFiles: createFiles: op(7): [finished] writing file "/sysroot/opt/bin/kubelet" Feb 9 19:18:14.551591 ignition[1348]: INFO : files: createFilesystemsFiles: createFiles: op(8): [started] writing file "/sysroot/home/core/install.sh" Feb 9 19:18:14.551591 ignition[1348]: INFO : files: createFilesystemsFiles: createFiles: op(8): [finished] writing file "/sysroot/home/core/install.sh" Feb 9 19:18:14.551591 ignition[1348]: INFO : files: createFilesystemsFiles: createFiles: op(9): [started] writing file "/sysroot/etc/docker/daemon.json" Feb 9 19:18:14.551591 ignition[1348]: INFO : files: createFilesystemsFiles: createFiles: op(9): [finished] writing file "/sysroot/etc/docker/daemon.json" Feb 9 19:18:14.551591 ignition[1348]: INFO : files: createFilesystemsFiles: createFiles: op(a): [started] writing file "/sysroot/etc/flatcar/update.conf" Feb 9 19:18:14.551591 ignition[1348]: INFO : files: createFilesystemsFiles: createFiles: op(a): [finished] writing file "/sysroot/etc/flatcar/update.conf" Feb 9 19:18:14.551591 ignition[1348]: INFO : files: createFilesystemsFiles: createFiles: op(b): [started] writing file "/sysroot/etc/amazon/ssm/amazon-ssm-agent.json" Feb 9 19:18:14.551591 ignition[1348]: INFO : oem config not found in "/usr/share/oem", looking on oem partition Feb 9 19:18:14.587758 ignition[1348]: INFO : op(4): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem2428718822" Feb 9 19:18:14.587758 ignition[1348]: CRITICAL : op(4): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem2428718822": device or resource busy Feb 9 19:18:14.587758 ignition[1348]: ERROR : failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem2428718822", trying btrfs: device or resource busy Feb 9 19:18:14.587758 ignition[1348]: INFO : op(5): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem2428718822" Feb 9 19:18:14.600864 ignition[1348]: INFO : op(5): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem2428718822" Feb 9 19:18:14.600864 ignition[1348]: INFO : op(6): [started] unmounting "/mnt/oem2428718822" Feb 9 19:18:14.600864 ignition[1348]: INFO : op(6): [finished] unmounting "/mnt/oem2428718822" Feb 9 19:18:14.600864 ignition[1348]: INFO : files: createFilesystemsFiles: createFiles: op(b): [finished] writing file "/sysroot/etc/amazon/ssm/amazon-ssm-agent.json" Feb 9 19:18:14.600864 ignition[1348]: INFO : files: createFilesystemsFiles: createFiles: op(c): [started] writing file "/sysroot/etc/amazon/ssm/seelog.xml" Feb 9 19:18:14.600864 ignition[1348]: INFO : oem config not found in "/usr/share/oem", looking on oem partition Feb 9 19:18:14.623876 systemd[1]: mnt-oem2428718822.mount: Deactivated successfully. Feb 9 19:18:14.641497 ignition[1348]: INFO : op(7): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem4241194319" Feb 9 19:18:14.644803 ignition[1348]: CRITICAL : op(7): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem4241194319": device or resource busy Feb 9 19:18:14.644803 ignition[1348]: ERROR : failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem4241194319", trying btrfs: device or resource busy Feb 9 19:18:14.644803 ignition[1348]: INFO : op(8): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem4241194319" Feb 9 19:18:14.654441 ignition[1348]: INFO : op(8): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem4241194319" Feb 9 19:18:14.654441 ignition[1348]: INFO : op(9): [started] unmounting "/mnt/oem4241194319" Feb 9 19:18:14.659458 ignition[1348]: INFO : op(9): [finished] unmounting "/mnt/oem4241194319" Feb 9 19:18:14.659458 ignition[1348]: INFO : files: createFilesystemsFiles: createFiles: op(c): [finished] writing file "/sysroot/etc/amazon/ssm/seelog.xml" Feb 9 19:18:14.665162 ignition[1348]: INFO : files: createFilesystemsFiles: createFiles: op(d): [started] writing file "/sysroot/etc/systemd/system/nvidia.service" Feb 9 19:18:14.665162 ignition[1348]: INFO : oem config not found in "/usr/share/oem", looking on oem partition Feb 9 19:18:14.685845 ignition[1348]: INFO : op(a): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem4187751174" Feb 9 19:18:14.685845 ignition[1348]: CRITICAL : op(a): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem4187751174": device or resource busy Feb 9 19:18:14.685845 ignition[1348]: ERROR : failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem4187751174", trying btrfs: device or resource busy Feb 9 19:18:14.685845 ignition[1348]: INFO : op(b): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem4187751174" Feb 9 19:18:14.685845 ignition[1348]: INFO : op(b): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem4187751174" Feb 9 19:18:14.685845 ignition[1348]: INFO : op(c): [started] unmounting "/mnt/oem4187751174" Feb 9 19:18:14.704939 ignition[1348]: INFO : op(c): [finished] unmounting "/mnt/oem4187751174" Feb 9 19:18:14.707265 ignition[1348]: INFO : files: createFilesystemsFiles: createFiles: op(d): [finished] writing file "/sysroot/etc/systemd/system/nvidia.service" Feb 9 19:18:14.707265 ignition[1348]: INFO : files: op(e): [started] processing unit "coreos-metadata-sshkeys@.service" Feb 9 19:18:14.707265 ignition[1348]: INFO : files: op(e): [finished] processing unit "coreos-metadata-sshkeys@.service" Feb 9 19:18:14.707265 ignition[1348]: INFO : files: op(f): [started] processing unit "amazon-ssm-agent.service" Feb 9 19:18:14.707265 ignition[1348]: INFO : files: op(f): op(10): [started] writing unit "amazon-ssm-agent.service" at "/sysroot/etc/systemd/system/amazon-ssm-agent.service" Feb 9 19:18:14.722867 ignition[1348]: INFO : files: op(f): op(10): [finished] writing unit "amazon-ssm-agent.service" at "/sysroot/etc/systemd/system/amazon-ssm-agent.service" Feb 9 19:18:14.722867 ignition[1348]: INFO : files: op(f): [finished] processing unit "amazon-ssm-agent.service" Feb 9 19:18:14.722867 ignition[1348]: INFO : files: op(11): [started] processing unit "nvidia.service" Feb 9 19:18:14.722867 ignition[1348]: INFO : files: op(11): [finished] processing unit "nvidia.service" Feb 9 19:18:14.722867 ignition[1348]: INFO : files: op(12): [started] processing unit "prepare-cni-plugins.service" Feb 9 19:18:14.722867 ignition[1348]: INFO : files: op(12): op(13): [started] writing unit "prepare-cni-plugins.service" at "/sysroot/etc/systemd/system/prepare-cni-plugins.service" Feb 9 19:18:14.740860 ignition[1348]: INFO : files: op(12): op(13): [finished] writing unit "prepare-cni-plugins.service" at "/sysroot/etc/systemd/system/prepare-cni-plugins.service" Feb 9 19:18:14.740860 ignition[1348]: INFO : files: op(12): [finished] processing unit "prepare-cni-plugins.service" Feb 9 19:18:14.740860 ignition[1348]: INFO : files: op(14): [started] processing unit "prepare-critools.service" Feb 9 19:18:14.740860 ignition[1348]: INFO : files: op(14): op(15): [started] writing unit "prepare-critools.service" at "/sysroot/etc/systemd/system/prepare-critools.service" Feb 9 19:18:14.740860 ignition[1348]: INFO : files: op(14): op(15): [finished] writing unit "prepare-critools.service" at "/sysroot/etc/systemd/system/prepare-critools.service" Feb 9 19:18:14.740860 ignition[1348]: INFO : files: op(14): [finished] processing unit "prepare-critools.service" Feb 9 19:18:14.740860 ignition[1348]: INFO : files: op(16): [started] setting preset to enabled for "amazon-ssm-agent.service" Feb 9 19:18:14.763266 ignition[1348]: INFO : files: op(16): [finished] setting preset to enabled for "amazon-ssm-agent.service" Feb 9 19:18:14.763266 ignition[1348]: INFO : files: op(17): [started] setting preset to enabled for "nvidia.service" Feb 9 19:18:14.763266 ignition[1348]: INFO : files: op(17): [finished] setting preset to enabled for "nvidia.service" Feb 9 19:18:14.763266 ignition[1348]: INFO : files: op(18): [started] setting preset to enabled for "prepare-cni-plugins.service" Feb 9 19:18:14.774311 ignition[1348]: INFO : files: op(18): [finished] setting preset to enabled for "prepare-cni-plugins.service" Feb 9 19:18:14.774311 ignition[1348]: INFO : files: op(19): [started] setting preset to enabled for "prepare-critools.service" Feb 9 19:18:14.774311 ignition[1348]: INFO : files: op(19): [finished] setting preset to enabled for "prepare-critools.service" Feb 9 19:18:14.774311 ignition[1348]: INFO : files: op(1a): [started] setting preset to enabled for "coreos-metadata-sshkeys@.service " Feb 9 19:18:14.786087 ignition[1348]: INFO : files: op(1a): [finished] setting preset to enabled for "coreos-metadata-sshkeys@.service " Feb 9 19:18:14.795974 ignition[1348]: INFO : files: createResultFile: createFiles: op(1b): [started] writing file "/sysroot/etc/.ignition-result.json" Feb 9 19:18:14.800536 ignition[1348]: INFO : files: createResultFile: createFiles: op(1b): [finished] writing file "/sysroot/etc/.ignition-result.json" Feb 9 19:18:14.800536 ignition[1348]: INFO : files: files passed Feb 9 19:18:14.800536 ignition[1348]: INFO : Ignition finished successfully Feb 9 19:18:14.807769 systemd[1]: Finished ignition-files.service. Feb 9 19:18:14.826378 kernel: audit: type=1130 audit(1707506294.807:38): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:14.807000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:14.825738 systemd[1]: Starting initrd-setup-root-after-ignition.service... Feb 9 19:18:14.832073 systemd[1]: torcx-profile-populate.service was skipped because of an unmet condition check (ConditionPathExists=/sysroot/etc/torcx/next-profile). Feb 9 19:18:14.840066 systemd[1]: Starting ignition-quench.service... Feb 9 19:18:14.851925 systemd[1]: ignition-quench.service: Deactivated successfully. Feb 9 19:18:14.854012 systemd[1]: Finished ignition-quench.service. Feb 9 19:18:14.856000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:14.865000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:14.867481 kernel: audit: type=1130 audit(1707506294.856:39): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:14.870954 initrd-setup-root-after-ignition[1374]: grep: /sysroot/etc/flatcar/enabled-sysext.conf: No such file or directory Feb 9 19:18:14.875613 systemd[1]: Finished initrd-setup-root-after-ignition.service. Feb 9 19:18:14.879967 systemd[1]: Reached target ignition-complete.target. Feb 9 19:18:14.878000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:14.884872 systemd[1]: Starting initrd-parse-etc.service... Feb 9 19:18:14.914549 systemd[1]: initrd-parse-etc.service: Deactivated successfully. Feb 9 19:18:14.916523 systemd[1]: Finished initrd-parse-etc.service. Feb 9 19:18:14.916000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:14.918000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:14.920058 systemd[1]: Reached target initrd-fs.target. Feb 9 19:18:14.923126 systemd[1]: Reached target initrd.target. Feb 9 19:18:14.926155 systemd[1]: dracut-mount.service was skipped because no trigger condition checks were met. Feb 9 19:18:14.930141 systemd[1]: Starting dracut-pre-pivot.service... Feb 9 19:18:14.954662 systemd[1]: Finished dracut-pre-pivot.service. Feb 9 19:18:14.956000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:14.959221 systemd[1]: Starting initrd-cleanup.service... Feb 9 19:18:14.978978 systemd[1]: Stopped target nss-lookup.target. Feb 9 19:18:14.982510 systemd[1]: Stopped target remote-cryptsetup.target. Feb 9 19:18:14.986207 systemd[1]: Stopped target timers.target. Feb 9 19:18:14.989309 systemd[1]: dracut-pre-pivot.service: Deactivated successfully. Feb 9 19:18:14.991426 systemd[1]: Stopped dracut-pre-pivot.service. Feb 9 19:18:14.993000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:14.995053 systemd[1]: Stopped target initrd.target. Feb 9 19:18:15.005255 kernel: kauditd_printk_skb: 5 callbacks suppressed Feb 9 19:18:15.005288 kernel: audit: type=1131 audit(1707506294.993:45): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.007109 systemd[1]: Stopped target basic.target. Feb 9 19:18:15.010270 systemd[1]: Stopped target ignition-complete.target. Feb 9 19:18:15.013968 systemd[1]: Stopped target ignition-diskful.target. Feb 9 19:18:15.017606 systemd[1]: Stopped target initrd-root-device.target. Feb 9 19:18:15.021339 systemd[1]: Stopped target remote-fs.target. Feb 9 19:18:15.024677 systemd[1]: Stopped target remote-fs-pre.target. Feb 9 19:18:15.028161 systemd[1]: Stopped target sysinit.target. Feb 9 19:18:15.031449 systemd[1]: Stopped target local-fs.target. Feb 9 19:18:15.034747 systemd[1]: Stopped target local-fs-pre.target. Feb 9 19:18:15.038129 systemd[1]: Stopped target swap.target. Feb 9 19:18:15.041139 systemd[1]: dracut-pre-mount.service: Deactivated successfully. Feb 9 19:18:15.043260 systemd[1]: Stopped dracut-pre-mount.service. Feb 9 19:18:15.045000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.046745 systemd[1]: Stopped target cryptsetup.target. Feb 9 19:18:15.056968 kernel: audit: type=1131 audit(1707506295.045:46): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.057073 systemd[1]: dracut-initqueue.service: Deactivated successfully. Feb 9 19:18:15.059242 systemd[1]: Stopped dracut-initqueue.service. Feb 9 19:18:15.061000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.062591 systemd[1]: initrd-setup-root-after-ignition.service: Deactivated successfully. Feb 9 19:18:15.083310 kernel: audit: type=1131 audit(1707506295.061:47): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.083345 kernel: audit: type=1131 audit(1707506295.071:48): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.071000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.062874 systemd[1]: Stopped initrd-setup-root-after-ignition.service. Feb 9 19:18:15.073844 systemd[1]: ignition-files.service: Deactivated successfully. Feb 9 19:18:15.074039 systemd[1]: Stopped ignition-files.service. Feb 9 19:18:15.088717 systemd[1]: Stopping ignition-mount.service... Feb 9 19:18:15.105380 ignition[1387]: INFO : Ignition 2.14.0 Feb 9 19:18:15.105380 ignition[1387]: INFO : Stage: umount Feb 9 19:18:15.105380 ignition[1387]: INFO : reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 9 19:18:15.105380 ignition[1387]: DEBUG : parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 9 19:18:15.163655 kernel: audit: type=1131 audit(1707506295.082:49): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.163696 kernel: audit: type=1131 audit(1707506295.121:50): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.082000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.121000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.105669 systemd[1]: Stopping iscsid.service... Feb 9 19:18:15.167085 iscsid[1198]: iscsid shutting down. Feb 9 19:18:15.107018 systemd[1]: kmod-static-nodes.service: Deactivated successfully. Feb 9 19:18:15.108522 systemd[1]: Stopped kmod-static-nodes.service. Feb 9 19:18:15.205706 kernel: audit: type=1131 audit(1707506295.165:51): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.205746 kernel: audit: type=1131 audit(1707506295.169:52): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.165000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.169000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.205890 ignition[1387]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 9 19:18:15.205890 ignition[1387]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 9 19:18:15.246666 kernel: audit: type=1131 audit(1707506295.202:53): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.202000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.125843 systemd[1]: Stopping sysroot-boot.service... Feb 9 19:18:15.248952 ignition[1387]: INFO : PUT result: OK Feb 9 19:18:15.146946 systemd[1]: systemd-udev-trigger.service: Deactivated successfully. Feb 9 19:18:15.147397 systemd[1]: Stopped systemd-udev-trigger.service. Feb 9 19:18:15.255000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsiuio comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.266232 ignition[1387]: INFO : umount: umount passed Feb 9 19:18:15.266232 ignition[1387]: INFO : Ignition finished successfully Feb 9 19:18:15.272145 kernel: audit: type=1131 audit(1707506295.255:54): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsiuio comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.266000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.266000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.269000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.271000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.167131 systemd[1]: dracut-pre-trigger.service: Deactivated successfully. Feb 9 19:18:15.274000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.167373 systemd[1]: Stopped dracut-pre-trigger.service. Feb 9 19:18:15.278000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.177370 systemd[1]: iscsid.service: Deactivated successfully. Feb 9 19:18:15.284000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.180491 systemd[1]: Stopped iscsid.service. Feb 9 19:18:15.211083 systemd[1]: sysroot-boot.mount: Deactivated successfully. Feb 9 19:18:15.216660 systemd[1]: Stopping iscsiuio.service... Feb 9 19:18:15.248909 systemd[1]: iscsiuio.service: Deactivated successfully. Feb 9 19:18:15.249221 systemd[1]: Stopped iscsiuio.service. Feb 9 19:18:15.259000 systemd[1]: initrd-cleanup.service: Deactivated successfully. Feb 9 19:18:15.259172 systemd[1]: Finished initrd-cleanup.service. Feb 9 19:18:15.301000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.268241 systemd[1]: ignition-mount.service: Deactivated successfully. Feb 9 19:18:15.268577 systemd[1]: Stopped ignition-mount.service. Feb 9 19:18:15.271722 systemd[1]: ignition-disks.service: Deactivated successfully. Feb 9 19:18:15.271812 systemd[1]: Stopped ignition-disks.service. Feb 9 19:18:15.273775 systemd[1]: ignition-kargs.service: Deactivated successfully. Feb 9 19:18:15.273854 systemd[1]: Stopped ignition-kargs.service. Feb 9 19:18:15.275572 systemd[1]: ignition-fetch.service: Deactivated successfully. Feb 9 19:18:15.275647 systemd[1]: Stopped ignition-fetch.service. Feb 9 19:18:15.279107 systemd[1]: Stopped target network.target. Feb 9 19:18:15.280831 systemd[1]: ignition-fetch-offline.service: Deactivated successfully. Feb 9 19:18:15.280916 systemd[1]: Stopped ignition-fetch-offline.service. Feb 9 19:18:15.285349 systemd[1]: Stopped target paths.target. Feb 9 19:18:15.288298 systemd[1]: systemd-ask-password-console.path: Deactivated successfully. Feb 9 19:18:15.291513 systemd[1]: Stopped systemd-ask-password-console.path. Feb 9 19:18:15.294537 systemd[1]: Stopped target slices.target. Feb 9 19:18:15.297680 systemd[1]: Stopped target sockets.target. Feb 9 19:18:15.299100 systemd[1]: iscsid.socket: Deactivated successfully. Feb 9 19:18:15.299176 systemd[1]: Closed iscsid.socket. Feb 9 19:18:15.303759 systemd[1]: iscsiuio.socket: Deactivated successfully. Feb 9 19:18:15.303879 systemd[1]: Closed iscsiuio.socket. Feb 9 19:18:15.305322 systemd[1]: ignition-setup.service: Deactivated successfully. Feb 9 19:18:15.305420 systemd[1]: Stopped ignition-setup.service. Feb 9 19:18:15.307494 systemd[1]: Stopping systemd-networkd.service... Feb 9 19:18:15.309087 systemd[1]: Stopping systemd-resolved.service... Feb 9 19:18:15.325610 systemd-networkd[1193]: eth0: DHCPv6 lease lost Feb 9 19:18:15.355000 audit: BPF prog-id=9 op=UNLOAD Feb 9 19:18:15.359000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.327684 systemd[1]: systemd-networkd.service: Deactivated successfully. Feb 9 19:18:15.327891 systemd[1]: Stopped systemd-networkd.service. Feb 9 19:18:15.364084 systemd[1]: systemd-networkd.socket: Deactivated successfully. Feb 9 19:18:15.364184 systemd[1]: Closed systemd-networkd.socket. Feb 9 19:18:15.370535 systemd[1]: Stopping network-cleanup.service... Feb 9 19:18:15.374000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=parse-ip-for-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.376000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.373551 systemd[1]: parse-ip-for-networkd.service: Deactivated successfully. Feb 9 19:18:15.373672 systemd[1]: Stopped parse-ip-for-networkd.service. Feb 9 19:18:15.375615 systemd[1]: systemd-sysctl.service: Deactivated successfully. Feb 9 19:18:15.375695 systemd[1]: Stopped systemd-sysctl.service. Feb 9 19:18:15.387000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.389000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.399000 audit: BPF prog-id=6 op=UNLOAD Feb 9 19:18:15.384939 systemd[1]: systemd-modules-load.service: Deactivated successfully. Feb 9 19:18:15.385029 systemd[1]: Stopped systemd-modules-load.service. Feb 9 19:18:15.388796 systemd[1]: Stopping systemd-udevd.service... Feb 9 19:18:15.390835 systemd[1]: systemd-resolved.service: Deactivated successfully. Feb 9 19:18:15.391041 systemd[1]: Stopped systemd-resolved.service. Feb 9 19:18:15.400081 systemd[1]: systemd-udevd.service: Deactivated successfully. Feb 9 19:18:15.412000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.400967 systemd[1]: Stopped systemd-udevd.service. Feb 9 19:18:15.414462 systemd[1]: network-cleanup.service: Deactivated successfully. Feb 9 19:18:15.418000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=network-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.415323 systemd[1]: Stopped network-cleanup.service. Feb 9 19:18:15.420474 systemd[1]: systemd-udevd-control.socket: Deactivated successfully. Feb 9 19:18:15.420556 systemd[1]: Closed systemd-udevd-control.socket. Feb 9 19:18:15.422358 systemd[1]: systemd-udevd-kernel.socket: Deactivated successfully. Feb 9 19:18:15.435000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-udev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.422632 systemd[1]: Closed systemd-udevd-kernel.socket. Feb 9 19:18:15.435598 systemd[1]: dracut-pre-udev.service: Deactivated successfully. Feb 9 19:18:15.441000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.435698 systemd[1]: Stopped dracut-pre-udev.service. Feb 9 19:18:15.437802 systemd[1]: dracut-cmdline.service: Deactivated successfully. Feb 9 19:18:15.437883 systemd[1]: Stopped dracut-cmdline.service. Feb 9 19:18:15.450000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.449546 systemd[1]: dracut-cmdline-ask.service: Deactivated successfully. Feb 9 19:18:15.449654 systemd[1]: Stopped dracut-cmdline-ask.service. Feb 9 19:18:15.456591 systemd[1]: Starting initrd-udevadm-cleanup-db.service... Feb 9 19:18:15.459000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.458553 systemd[1]: systemd-vconsole-setup.service: Deactivated successfully. Feb 9 19:18:15.458674 systemd[1]: Stopped systemd-vconsole-setup.service. Feb 9 19:18:15.473924 systemd[1]: initrd-udevadm-cleanup-db.service: Deactivated successfully. Feb 9 19:18:15.476143 systemd[1]: Finished initrd-udevadm-cleanup-db.service. Feb 9 19:18:15.478000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-udevadm-cleanup-db comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.478000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-udevadm-cleanup-db comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.488320 systemd[1]: sysroot-boot.service: Deactivated successfully. Feb 9 19:18:15.488683 systemd[1]: Stopped sysroot-boot.service. Feb 9 19:18:15.490000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.496000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:15.492123 systemd[1]: Reached target initrd-switch-root.target. Feb 9 19:18:15.496016 systemd[1]: initrd-setup-root.service: Deactivated successfully. Feb 9 19:18:15.496121 systemd[1]: Stopped initrd-setup-root.service. Feb 9 19:18:15.501297 systemd[1]: Starting initrd-switch-root.service... Feb 9 19:18:15.518825 systemd[1]: Switching root. Feb 9 19:18:15.546590 systemd-journald[308]: Journal stopped Feb 9 19:18:21.680807 systemd-journald[308]: Received SIGTERM from PID 1 (systemd). Feb 9 19:18:21.680925 kernel: SELinux: Class mctp_socket not defined in policy. Feb 9 19:18:21.680968 kernel: SELinux: Class anon_inode not defined in policy. Feb 9 19:18:21.680999 kernel: SELinux: the above unknown classes and permissions will be allowed Feb 9 19:18:21.681030 kernel: SELinux: policy capability network_peer_controls=1 Feb 9 19:18:21.681062 kernel: SELinux: policy capability open_perms=1 Feb 9 19:18:21.681092 kernel: SELinux: policy capability extended_socket_class=1 Feb 9 19:18:21.681126 kernel: SELinux: policy capability always_check_network=0 Feb 9 19:18:21.681156 kernel: SELinux: policy capability cgroup_seclabel=1 Feb 9 19:18:21.681185 kernel: SELinux: policy capability nnp_nosuid_transition=1 Feb 9 19:18:21.681215 kernel: SELinux: policy capability genfs_seclabel_symlinks=0 Feb 9 19:18:21.681245 kernel: SELinux: policy capability ioctl_skip_cloexec=0 Feb 9 19:18:21.681277 systemd[1]: Successfully loaded SELinux policy in 146.171ms. Feb 9 19:18:21.681331 systemd[1]: Relabelled /dev, /dev/shm, /run, /sys/fs/cgroup in 30.212ms. Feb 9 19:18:21.681365 systemd[1]: systemd 252 running in system mode (+PAM +AUDIT +SELINUX -APPARMOR +IMA +SMACK +SECCOMP +GCRYPT -GNUTLS +OPENSSL -ACL +BLKID +CURL -ELFUTILS -FIDO2 +IDN2 -IDN +IPTC +KMOD +LIBCRYPTSETUP +LIBFDISK +PCRE2 -PWQUALITY -P11KIT -QRENCODE -TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD -BPF_FRAMEWORK -XKBCOMMON +UTMP +SYSVINIT default-hierarchy=unified) Feb 9 19:18:21.681399 systemd[1]: Detected virtualization amazon. Feb 9 19:18:21.681449 systemd[1]: Detected architecture arm64. Feb 9 19:18:21.681484 systemd[1]: Detected first boot. Feb 9 19:18:21.681517 systemd[1]: Initializing machine ID from VM UUID. Feb 9 19:18:21.681549 kernel: SELinux: Context system_u:object_r:container_file_t:s0:c1022,c1023 is not valid (left unmapped). Feb 9 19:18:21.681582 systemd[1]: Populated /etc with preset unit settings. Feb 9 19:18:21.681615 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Feb 9 19:18:21.681653 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Feb 9 19:18:21.681690 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Feb 9 19:18:21.681721 kernel: kauditd_printk_skb: 41 callbacks suppressed Feb 9 19:18:21.681750 kernel: audit: type=1334 audit(1707506301.258:89): prog-id=12 op=LOAD Feb 9 19:18:21.681780 kernel: audit: type=1334 audit(1707506301.262:90): prog-id=3 op=UNLOAD Feb 9 19:18:21.681811 kernel: audit: type=1334 audit(1707506301.263:91): prog-id=13 op=LOAD Feb 9 19:18:21.681840 kernel: audit: type=1334 audit(1707506301.266:92): prog-id=14 op=LOAD Feb 9 19:18:21.681868 systemd[1]: initrd-switch-root.service: Deactivated successfully. Feb 9 19:18:21.681899 kernel: audit: type=1334 audit(1707506301.266:93): prog-id=4 op=UNLOAD Feb 9 19:18:21.681939 systemd[1]: Stopped initrd-switch-root.service. Feb 9 19:18:21.681971 kernel: audit: type=1334 audit(1707506301.266:94): prog-id=5 op=UNLOAD Feb 9 19:18:21.682003 kernel: audit: type=1131 audit(1707506301.268:95): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:21.682048 kernel: audit: type=1334 audit(1707506301.274:96): prog-id=12 op=UNLOAD Feb 9 19:18:21.682079 kernel: audit: type=1130 audit(1707506301.293:97): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=initrd-switch-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:21.682108 systemd[1]: systemd-journald.service: Scheduled restart job, restart counter is at 1. Feb 9 19:18:21.682140 kernel: audit: type=1131 audit(1707506301.293:98): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=initrd-switch-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:21.682175 systemd[1]: Created slice system-addon\x2dconfig.slice. Feb 9 19:18:21.682205 systemd[1]: Created slice system-addon\x2drun.slice. Feb 9 19:18:21.682244 systemd[1]: Created slice system-coreos\x2dmetadata\x2dsshkeys.slice. Feb 9 19:18:21.682274 systemd[1]: Created slice system-getty.slice. Feb 9 19:18:21.682305 systemd[1]: Created slice system-modprobe.slice. Feb 9 19:18:21.682342 systemd[1]: Created slice system-serial\x2dgetty.slice. Feb 9 19:18:21.682372 systemd[1]: Created slice system-system\x2dcloudinit.slice. Feb 9 19:18:21.682404 systemd[1]: Created slice system-systemd\x2dfsck.slice. Feb 9 19:18:21.682459 systemd[1]: Created slice user.slice. Feb 9 19:18:21.682492 systemd[1]: Started systemd-ask-password-console.path. Feb 9 19:18:21.682524 systemd[1]: Started systemd-ask-password-wall.path. Feb 9 19:18:21.682553 systemd[1]: Set up automount boot.automount. Feb 9 19:18:21.682582 systemd[1]: Set up automount proc-sys-fs-binfmt_misc.automount. Feb 9 19:18:21.682611 systemd[1]: Stopped target initrd-switch-root.target. Feb 9 19:18:21.682644 systemd[1]: Stopped target initrd-fs.target. Feb 9 19:18:21.682673 systemd[1]: Stopped target initrd-root-fs.target. Feb 9 19:18:21.682703 systemd[1]: Reached target integritysetup.target. Feb 9 19:18:21.682737 systemd[1]: Reached target remote-cryptsetup.target. Feb 9 19:18:21.682768 systemd[1]: Reached target remote-fs.target. Feb 9 19:18:21.682797 systemd[1]: Reached target slices.target. Feb 9 19:18:21.682829 systemd[1]: Reached target swap.target. Feb 9 19:18:21.682859 systemd[1]: Reached target torcx.target. Feb 9 19:18:21.682890 systemd[1]: Reached target veritysetup.target. Feb 9 19:18:21.682921 systemd[1]: Listening on systemd-coredump.socket. Feb 9 19:18:21.682960 systemd[1]: Listening on systemd-initctl.socket. Feb 9 19:18:21.687584 systemd[1]: Listening on systemd-networkd.socket. Feb 9 19:18:21.687630 systemd[1]: Listening on systemd-udevd-control.socket. Feb 9 19:18:21.687667 systemd[1]: Listening on systemd-udevd-kernel.socket. Feb 9 19:18:21.687698 systemd[1]: Listening on systemd-userdbd.socket. Feb 9 19:18:21.687728 systemd[1]: Mounting dev-hugepages.mount... Feb 9 19:18:21.687760 systemd[1]: Mounting dev-mqueue.mount... Feb 9 19:18:21.687795 systemd[1]: Mounting media.mount... Feb 9 19:18:21.687826 systemd[1]: Mounting sys-kernel-debug.mount... Feb 9 19:18:21.687856 systemd[1]: Mounting sys-kernel-tracing.mount... Feb 9 19:18:21.687886 systemd[1]: Mounting tmp.mount... Feb 9 19:18:21.687915 systemd[1]: Starting flatcar-tmpfiles.service... Feb 9 19:18:21.687950 systemd[1]: ignition-delete-config.service was skipped because no trigger condition checks were met. Feb 9 19:18:21.687980 systemd[1]: Starting kmod-static-nodes.service... Feb 9 19:18:21.688009 systemd[1]: Starting modprobe@configfs.service... Feb 9 19:18:21.688039 systemd[1]: Starting modprobe@dm_mod.service... Feb 9 19:18:21.688070 systemd[1]: Starting modprobe@drm.service... Feb 9 19:18:21.688099 systemd[1]: Starting modprobe@efi_pstore.service... Feb 9 19:18:21.688130 systemd[1]: Starting modprobe@fuse.service... Feb 9 19:18:21.688160 systemd[1]: Starting modprobe@loop.service... Feb 9 19:18:21.688191 systemd[1]: setup-nsswitch.service was skipped because of an unmet condition check (ConditionPathExists=!/etc/nsswitch.conf). Feb 9 19:18:21.688225 systemd[1]: systemd-fsck-root.service: Deactivated successfully. Feb 9 19:18:21.688256 kernel: loop: module loaded Feb 9 19:18:21.688285 systemd[1]: Stopped systemd-fsck-root.service. Feb 9 19:18:21.688316 systemd[1]: systemd-fsck-usr.service: Deactivated successfully. Feb 9 19:18:21.688348 systemd[1]: Stopped systemd-fsck-usr.service. Feb 9 19:18:21.688377 systemd[1]: Stopped systemd-journald.service. Feb 9 19:18:21.688405 kernel: fuse: init (API version 7.34) Feb 9 19:18:21.688460 systemd[1]: Starting systemd-journald.service... Feb 9 19:18:21.688490 systemd[1]: Starting systemd-modules-load.service... Feb 9 19:18:21.688524 systemd[1]: Starting systemd-network-generator.service... Feb 9 19:18:21.688553 systemd[1]: Starting systemd-remount-fs.service... Feb 9 19:18:21.688583 systemd[1]: Starting systemd-udev-trigger.service... Feb 9 19:18:21.688615 systemd[1]: verity-setup.service: Deactivated successfully. Feb 9 19:18:21.688647 systemd[1]: Stopped verity-setup.service. Feb 9 19:18:21.688678 systemd[1]: Mounted dev-hugepages.mount. Feb 9 19:18:21.688711 systemd[1]: Mounted dev-mqueue.mount. Feb 9 19:18:21.688740 systemd[1]: Mounted media.mount. Feb 9 19:18:21.688769 systemd[1]: Mounted sys-kernel-debug.mount. Feb 9 19:18:21.688802 systemd[1]: Mounted sys-kernel-tracing.mount. Feb 9 19:18:21.688832 systemd[1]: Mounted tmp.mount. Feb 9 19:18:21.688864 systemd[1]: Finished kmod-static-nodes.service. Feb 9 19:18:21.688893 systemd[1]: modprobe@configfs.service: Deactivated successfully. Feb 9 19:18:21.688925 systemd[1]: Finished modprobe@configfs.service. Feb 9 19:18:21.688955 systemd[1]: modprobe@dm_mod.service: Deactivated successfully. Feb 9 19:18:21.688984 systemd[1]: Finished modprobe@dm_mod.service. Feb 9 19:18:21.689013 systemd[1]: modprobe@drm.service: Deactivated successfully. Feb 9 19:18:21.689044 systemd[1]: Finished modprobe@drm.service. Feb 9 19:18:21.689077 systemd[1]: modprobe@efi_pstore.service: Deactivated successfully. Feb 9 19:18:21.689112 systemd[1]: Finished modprobe@efi_pstore.service. Feb 9 19:18:21.689144 systemd[1]: modprobe@fuse.service: Deactivated successfully. Feb 9 19:18:21.689173 systemd[1]: Finished modprobe@fuse.service. Feb 9 19:18:21.689203 systemd[1]: modprobe@loop.service: Deactivated successfully. Feb 9 19:18:21.689237 systemd-journald[1500]: Journal started Feb 9 19:18:21.689328 systemd-journald[1500]: Runtime Journal (/run/log/journal/ec23c880dce83cd99d421c9bdbd40864) is 8.0M, max 75.4M, 67.4M free. Feb 9 19:18:16.605000 audit: MAC_POLICY_LOAD auid=4294967295 ses=4294967295 lsm=selinux res=1 Feb 9 19:18:16.846000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=1 Feb 9 19:18:16.846000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=1 Feb 9 19:18:16.846000 audit: BPF prog-id=10 op=LOAD Feb 9 19:18:16.846000 audit: BPF prog-id=10 op=UNLOAD Feb 9 19:18:16.846000 audit: BPF prog-id=11 op=LOAD Feb 9 19:18:16.846000 audit: BPF prog-id=11 op=UNLOAD Feb 9 19:18:17.119000 audit[1421]: AVC avc: denied { associate } for pid=1421 comm="torcx-generator" name="docker" dev="tmpfs" ino=2 scontext=system_u:object_r:unlabeled_t:s0 tcontext=system_u:object_r:tmpfs_t:s0 tclass=filesystem permissive=1 srawcon="system_u:object_r:container_file_t:s0:c1022,c1023" Feb 9 19:18:17.119000 audit[1421]: SYSCALL arch=c00000b7 syscall=5 success=yes exit=0 a0=40001458d4 a1=40000c6de0 a2=40000cd0c0 a3=32 items=0 ppid=1404 pid=1421 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="torcx-generator" exe="/usr/lib/systemd/system-generators/torcx-generator" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:21.694641 systemd[1]: Finished modprobe@loop.service. Feb 9 19:18:17.119000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D2D67656E657261746F72732F746F7263782D67656E657261746F72002F72756E2F73797374656D642F67656E657261746F72002F72756E2F73797374656D642F67656E657261746F722E6561726C79002F72756E2F73797374656D642F67656E657261746F722E6C61 Feb 9 19:18:17.123000 audit[1421]: AVC avc: denied { associate } for pid=1421 comm="torcx-generator" name="usr" scontext=system_u:object_r:unlabeled_t:s0 tcontext=system_u:object_r:tmpfs_t:s0 tclass=filesystem permissive=1 Feb 9 19:18:17.123000 audit[1421]: SYSCALL arch=c00000b7 syscall=34 success=yes exit=0 a0=ffffffffffffff9c a1=40001459b9 a2=1ed a3=0 items=2 ppid=1404 pid=1421 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="torcx-generator" exe="/usr/lib/systemd/system-generators/torcx-generator" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:17.123000 audit: CWD cwd="/" Feb 9 19:18:17.123000 audit: PATH item=0 name=(null) inode=2 dev=00:1c mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:unlabeled_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 19:18:17.123000 audit: PATH item=1 name=(null) inode=3 dev=00:1c mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:unlabeled_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 19:18:17.123000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D2D67656E657261746F72732F746F7263782D67656E657261746F72002F72756E2F73797374656D642F67656E657261746F72002F72756E2F73797374656D642F67656E657261746F722E6561726C79002F72756E2F73797374656D642F67656E657261746F722E6C61 Feb 9 19:18:21.258000 audit: BPF prog-id=12 op=LOAD Feb 9 19:18:21.262000 audit: BPF prog-id=3 op=UNLOAD Feb 9 19:18:21.263000 audit: BPF prog-id=13 op=LOAD Feb 9 19:18:21.266000 audit: BPF prog-id=14 op=LOAD Feb 9 19:18:21.266000 audit: BPF prog-id=4 op=UNLOAD Feb 9 19:18:21.266000 audit: BPF prog-id=5 op=UNLOAD Feb 9 19:18:21.268000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:21.274000 audit: BPF prog-id=12 op=UNLOAD Feb 9 19:18:21.293000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=initrd-switch-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:21.293000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=initrd-switch-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:21.548000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:21.554000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck-usr comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:21.561000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:21.561000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:21.563000 audit: BPF prog-id=15 op=LOAD Feb 9 19:18:21.563000 audit: BPF prog-id=16 op=LOAD Feb 9 19:18:21.563000 audit: BPF prog-id=17 op=LOAD Feb 9 19:18:21.563000 audit: BPF prog-id=13 op=UNLOAD Feb 9 19:18:21.563000 audit: BPF prog-id=14 op=UNLOAD Feb 9 19:18:21.609000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=verity-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:21.640000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:21.649000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@configfs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:21.649000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@configfs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:21.658000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:21.658000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:21.666000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@drm comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:21.666000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@drm comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:21.671000 audit: CONFIG_CHANGE op=set audit_enabled=1 old=1 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 res=1 Feb 9 19:18:21.671000 audit[1500]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=60 a0=6 a1=ffffdc077990 a2=4000 a3=1 items=0 ppid=1 pid=1500 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="systemd-journal" exe="/usr/lib/systemd/systemd-journald" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:21.671000 audit: PROCTITLE proctitle="/usr/lib/systemd/systemd-journald" Feb 9 19:18:21.678000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:21.678000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:21.685000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@fuse comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:21.685000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@fuse comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:21.693000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:21.693000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:17.087971 /usr/lib/systemd/system-generators/torcx-generator[1421]: time="2024-02-09T19:18:17Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.2 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.2 /var/lib/torcx/store]" Feb 9 19:18:21.256767 systemd[1]: Queued start job for default target multi-user.target. Feb 9 19:18:17.098605 /usr/lib/systemd/system-generators/torcx-generator[1421]: time="2024-02-09T19:18:17Z" level=debug msg="profile found" name=docker-1.12-no path=/usr/share/torcx/profiles/docker-1.12-no.json Feb 9 19:18:21.269437 systemd[1]: systemd-journald.service: Deactivated successfully. Feb 9 19:18:17.098658 /usr/lib/systemd/system-generators/torcx-generator[1421]: time="2024-02-09T19:18:17Z" level=debug msg="profile found" name=vendor path=/usr/share/torcx/profiles/vendor.json Feb 9 19:18:21.702715 systemd[1]: Started systemd-journald.service. Feb 9 19:18:21.698000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:21.701000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:17.098727 /usr/lib/systemd/system-generators/torcx-generator[1421]: time="2024-02-09T19:18:17Z" level=info msg="no vendor profile selected by /etc/flatcar/docker-1.12" Feb 9 19:18:21.700312 systemd[1]: Finished systemd-modules-load.service. Feb 9 19:18:17.098753 /usr/lib/systemd/system-generators/torcx-generator[1421]: time="2024-02-09T19:18:17Z" level=debug msg="skipped missing lower profile" missing profile=oem Feb 9 19:18:21.704000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-network-generator comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:21.703969 systemd[1]: Finished systemd-network-generator.service. Feb 9 19:18:21.707000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-remount-fs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:17.098821 /usr/lib/systemd/system-generators/torcx-generator[1421]: time="2024-02-09T19:18:17Z" level=warning msg="no next profile: unable to read profile file: open /etc/torcx/next-profile: no such file or directory" Feb 9 19:18:21.706772 systemd[1]: Finished systemd-remount-fs.service. Feb 9 19:18:17.098853 /usr/lib/systemd/system-generators/torcx-generator[1421]: time="2024-02-09T19:18:17Z" level=debug msg="apply configuration parsed" lower profiles (vendor/oem)="[vendor]" upper profile (user)= Feb 9 19:18:17.099260 /usr/lib/systemd/system-generators/torcx-generator[1421]: time="2024-02-09T19:18:17Z" level=debug msg="mounted tmpfs" target=/run/torcx/unpack Feb 9 19:18:17.099340 /usr/lib/systemd/system-generators/torcx-generator[1421]: time="2024-02-09T19:18:17Z" level=debug msg="profile found" name=docker-1.12-no path=/usr/share/torcx/profiles/docker-1.12-no.json Feb 9 19:18:21.709496 systemd[1]: Reached target network-pre.target. Feb 9 19:18:17.099376 /usr/lib/systemd/system-generators/torcx-generator[1421]: time="2024-02-09T19:18:17Z" level=debug msg="profile found" name=vendor path=/usr/share/torcx/profiles/vendor.json Feb 9 19:18:17.109319 /usr/lib/systemd/system-generators/torcx-generator[1421]: time="2024-02-09T19:18:17Z" level=debug msg="new archive/reference added to cache" format=tgz name=docker path="/usr/share/torcx/store/docker:20.10.torcx.tgz" reference=20.10 Feb 9 19:18:17.109481 /usr/lib/systemd/system-generators/torcx-generator[1421]: time="2024-02-09T19:18:17Z" level=debug msg="new archive/reference added to cache" format=tgz name=docker path="/usr/share/torcx/store/docker:com.coreos.cl.torcx.tgz" reference=com.coreos.cl Feb 9 19:18:17.109551 /usr/lib/systemd/system-generators/torcx-generator[1421]: time="2024-02-09T19:18:17Z" level=info msg="store skipped" err="open /usr/share/oem/torcx/store/3510.3.2: no such file or directory" path=/usr/share/oem/torcx/store/3510.3.2 Feb 9 19:18:17.109595 /usr/lib/systemd/system-generators/torcx-generator[1421]: time="2024-02-09T19:18:17Z" level=info msg="store skipped" err="open /usr/share/oem/torcx/store: no such file or directory" path=/usr/share/oem/torcx/store Feb 9 19:18:21.715329 systemd[1]: Mounting sys-fs-fuse-connections.mount... Feb 9 19:18:17.109648 /usr/lib/systemd/system-generators/torcx-generator[1421]: time="2024-02-09T19:18:17Z" level=info msg="store skipped" err="open /var/lib/torcx/store/3510.3.2: no such file or directory" path=/var/lib/torcx/store/3510.3.2 Feb 9 19:18:21.719401 systemd[1]: Mounting sys-kernel-config.mount... Feb 9 19:18:17.109688 /usr/lib/systemd/system-generators/torcx-generator[1421]: time="2024-02-09T19:18:17Z" level=info msg="store skipped" err="open /var/lib/torcx/store: no such file or directory" path=/var/lib/torcx/store Feb 9 19:18:21.725651 systemd[1]: remount-root.service was skipped because of an unmet condition check (ConditionPathIsReadWrite=!/). Feb 9 19:18:20.367214 /usr/lib/systemd/system-generators/torcx-generator[1421]: time="2024-02-09T19:18:20Z" level=debug msg="image unpacked" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Feb 9 19:18:20.367780 /usr/lib/systemd/system-generators/torcx-generator[1421]: time="2024-02-09T19:18:20Z" level=debug msg="binaries propagated" assets="[/bin/containerd /bin/containerd-shim /bin/ctr /bin/docker /bin/docker-containerd /bin/docker-containerd-shim /bin/docker-init /bin/docker-proxy /bin/docker-runc /bin/dockerd /bin/runc /bin/tini]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Feb 9 19:18:20.368022 /usr/lib/systemd/system-generators/torcx-generator[1421]: time="2024-02-09T19:18:20Z" level=debug msg="networkd units propagated" assets="[/lib/systemd/network/50-docker.network /lib/systemd/network/90-docker-veth.network]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Feb 9 19:18:21.729126 systemd[1]: Starting systemd-hwdb-update.service... Feb 9 19:18:20.368497 /usr/lib/systemd/system-generators/torcx-generator[1421]: time="2024-02-09T19:18:20Z" level=debug msg="systemd units propagated" assets="[/lib/systemd/system/containerd.service /lib/systemd/system/docker.service /lib/systemd/system/docker.socket /lib/systemd/system/sockets.target.wants /lib/systemd/system/multi-user.target.wants]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Feb 9 19:18:21.733724 systemd[1]: Starting systemd-journal-flush.service... Feb 9 19:18:20.368619 /usr/lib/systemd/system-generators/torcx-generator[1421]: time="2024-02-09T19:18:20Z" level=debug msg="profile applied" sealed profile=/run/torcx/profile.json upper profile= Feb 9 19:18:21.735745 systemd[1]: systemd-pstore.service was skipped because of an unmet condition check (ConditionDirectoryNotEmpty=/sys/fs/pstore). Feb 9 19:18:20.368756 /usr/lib/systemd/system-generators/torcx-generator[1421]: time="2024-02-09T19:18:20Z" level=debug msg="system state sealed" content="[TORCX_LOWER_PROFILES=\"vendor\" TORCX_UPPER_PROFILE=\"\" TORCX_PROFILE_PATH=\"/run/torcx/profile.json\" TORCX_BINDIR=\"/run/torcx/bin\" TORCX_UNPACKDIR=\"/run/torcx/unpack\"]" path=/run/metadata/torcx Feb 9 19:18:21.737971 systemd[1]: Starting systemd-random-seed.service... Feb 9 19:18:21.739722 systemd[1]: systemd-repart.service was skipped because no trigger condition checks were met. Feb 9 19:18:21.743336 systemd[1]: Starting systemd-sysctl.service... Feb 9 19:18:21.748227 systemd[1]: Mounted sys-fs-fuse-connections.mount. Feb 9 19:18:21.750536 systemd[1]: Mounted sys-kernel-config.mount. Feb 9 19:18:21.780471 systemd-journald[1500]: Time spent on flushing to /var/log/journal/ec23c880dce83cd99d421c9bdbd40864 is 92.620ms for 1146 entries. Feb 9 19:18:21.780471 systemd-journald[1500]: System Journal (/var/log/journal/ec23c880dce83cd99d421c9bdbd40864) is 8.0M, max 195.6M, 187.6M free. Feb 9 19:18:21.915370 systemd-journald[1500]: Received client request to flush runtime journal. Feb 9 19:18:21.784000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-random-seed comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:21.826000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:21.865000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=flatcar-tmpfiles comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:21.916000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:21.781944 systemd[1]: Finished systemd-random-seed.service. Feb 9 19:18:21.785620 systemd[1]: Reached target first-boot-complete.target. Feb 9 19:18:21.825750 systemd[1]: Finished systemd-sysctl.service. Feb 9 19:18:21.864028 systemd[1]: Finished flatcar-tmpfiles.service. Feb 9 19:18:21.868584 systemd[1]: Starting systemd-sysusers.service... Feb 9 19:18:21.915680 systemd[1]: Finished systemd-udev-trigger.service. Feb 9 19:18:21.924000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journal-flush comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:21.919868 systemd[1]: Starting systemd-udev-settle.service... Feb 9 19:18:21.923315 systemd[1]: Finished systemd-journal-flush.service. Feb 9 19:18:21.937692 udevadm[1540]: systemd-udev-settle.service is deprecated. Please fix lvm2-activation.service, lvm2-activation-early.service not to pull it in. Feb 9 19:18:22.056569 systemd[1]: Finished systemd-sysusers.service. Feb 9 19:18:22.057000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysusers comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:22.749927 systemd[1]: Finished systemd-hwdb-update.service. Feb 9 19:18:22.752000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-hwdb-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:22.753000 audit: BPF prog-id=18 op=LOAD Feb 9 19:18:22.753000 audit: BPF prog-id=19 op=LOAD Feb 9 19:18:22.753000 audit: BPF prog-id=7 op=UNLOAD Feb 9 19:18:22.753000 audit: BPF prog-id=8 op=UNLOAD Feb 9 19:18:22.756075 systemd[1]: Starting systemd-udevd.service... Feb 9 19:18:22.793640 systemd-udevd[1541]: Using default interface naming scheme 'v252'. Feb 9 19:18:22.877807 systemd[1]: Started systemd-udevd.service. Feb 9 19:18:22.878000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:22.879000 audit: BPF prog-id=20 op=LOAD Feb 9 19:18:22.884750 systemd[1]: Starting systemd-networkd.service... Feb 9 19:18:22.891000 audit: BPF prog-id=21 op=LOAD Feb 9 19:18:22.891000 audit: BPF prog-id=22 op=LOAD Feb 9 19:18:22.891000 audit: BPF prog-id=23 op=LOAD Feb 9 19:18:22.894403 systemd[1]: Starting systemd-userdbd.service... Feb 9 19:18:22.969805 systemd[1]: Condition check resulted in dev-ttyS0.device being skipped. Feb 9 19:18:22.975227 (udev-worker)[1552]: Network interface NamePolicy= disabled on kernel command line. Feb 9 19:18:22.990155 systemd[1]: Started systemd-userdbd.service. Feb 9 19:18:22.990000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-userdbd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:23.167096 systemd-networkd[1547]: lo: Link UP Feb 9 19:18:23.167634 systemd-networkd[1547]: lo: Gained carrier Feb 9 19:18:23.168772 systemd-networkd[1547]: Enumeration completed Feb 9 19:18:23.169145 systemd[1]: Started systemd-networkd.service. Feb 9 19:18:23.169000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:23.173268 systemd[1]: Starting systemd-networkd-wait-online.service... Feb 9 19:18:23.175789 systemd-networkd[1547]: eth0: Configuring with /usr/lib/systemd/network/zz-default.network. Feb 9 19:18:23.180484 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 9 19:18:23.181619 systemd-networkd[1547]: eth0: Link UP Feb 9 19:18:23.182073 systemd-networkd[1547]: eth0: Gained carrier Feb 9 19:18:23.195640 systemd-networkd[1547]: eth0: DHCPv4 address 172.31.22.94/20, gateway 172.31.16.1 acquired from 172.31.16.1 Feb 9 19:18:23.265501 kernel: BTRFS info: devid 1 device path /dev/disk/by-label/OEM changed to /dev/nvme0n1p6 scanned by (udev-worker) (1565) Feb 9 19:18:23.367000 systemd[1]: Found device dev-disk-by\x2dlabel-OEM.device. Feb 9 19:18:23.369987 systemd[1]: Finished systemd-udev-settle.service. Feb 9 19:18:23.370000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udev-settle comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:23.374070 systemd[1]: Starting lvm2-activation-early.service... Feb 9 19:18:23.455876 lvm[1660]: WARNING: Failed to connect to lvmetad. Falling back to device scanning. Feb 9 19:18:23.493863 systemd[1]: Finished lvm2-activation-early.service. Feb 9 19:18:23.495938 systemd[1]: Reached target cryptsetup.target. Feb 9 19:18:23.494000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=lvm2-activation-early comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:23.499851 systemd[1]: Starting lvm2-activation.service... Feb 9 19:18:23.507633 lvm[1661]: WARNING: Failed to connect to lvmetad. Falling back to device scanning. Feb 9 19:18:23.541014 systemd[1]: Finished lvm2-activation.service. Feb 9 19:18:23.541000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=lvm2-activation comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:23.542989 systemd[1]: Reached target local-fs-pre.target. Feb 9 19:18:23.544732 systemd[1]: var-lib-machines.mount was skipped because of an unmet condition check (ConditionPathExists=/var/lib/machines.raw). Feb 9 19:18:23.544786 systemd[1]: Reached target local-fs.target. Feb 9 19:18:23.546464 systemd[1]: Reached target machines.target. Feb 9 19:18:23.550548 systemd[1]: Starting ldconfig.service... Feb 9 19:18:23.558944 systemd[1]: systemd-binfmt.service was skipped because no trigger condition checks were met. Feb 9 19:18:23.559042 systemd[1]: systemd-boot-system-token.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/LoaderFeatures-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Feb 9 19:18:23.561252 systemd[1]: Starting systemd-boot-update.service... Feb 9 19:18:23.566234 systemd[1]: Starting systemd-fsck@dev-disk-by\x2dlabel-OEM.service... Feb 9 19:18:23.571622 systemd[1]: Starting systemd-machine-id-commit.service... Feb 9 19:18:23.574199 systemd[1]: systemd-sysext.service was skipped because no trigger condition checks were met. Feb 9 19:18:23.574324 systemd[1]: ensure-sysext.service was skipped because no trigger condition checks were met. Feb 9 19:18:23.577650 systemd[1]: Starting systemd-tmpfiles-setup.service... Feb 9 19:18:23.588017 systemd[1]: boot.automount: Got automount request for /boot, triggered by 1663 (bootctl) Feb 9 19:18:23.591898 systemd[1]: Starting systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM.service... Feb 9 19:18:23.630000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck@dev-disk-by\x2dlabel-OEM comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:23.628697 systemd[1]: Finished systemd-fsck@dev-disk-by\x2dlabel-OEM.service. Feb 9 19:18:23.636552 systemd-tmpfiles[1666]: /usr/lib/tmpfiles.d/legacy.conf:13: Duplicate line for path "/run/lock", ignoring. Feb 9 19:18:23.653365 systemd-tmpfiles[1666]: /usr/lib/tmpfiles.d/provision.conf:20: Duplicate line for path "/root", ignoring. Feb 9 19:18:23.684653 systemd-tmpfiles[1666]: /usr/lib/tmpfiles.d/systemd.conf:29: Duplicate line for path "/var/lib/systemd", ignoring. Feb 9 19:18:23.714063 systemd-fsck[1671]: fsck.fat 4.2 (2021-01-31) Feb 9 19:18:23.714063 systemd-fsck[1671]: /dev/nvme0n1p1: 236 files, 113719/258078 clusters Feb 9 19:18:23.717713 systemd[1]: Finished systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM.service. Feb 9 19:18:23.718000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:23.722709 systemd[1]: Mounting boot.mount... Feb 9 19:18:23.750694 systemd[1]: Mounted boot.mount. Feb 9 19:18:23.773821 systemd[1]: Finished systemd-boot-update.service. Feb 9 19:18:23.774000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-boot-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:24.029971 systemd[1]: Finished systemd-tmpfiles-setup.service. Feb 9 19:18:24.030000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-tmpfiles-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:24.037576 systemd[1]: Starting audit-rules.service... Feb 9 19:18:24.041383 systemd[1]: Starting clean-ca-certificates.service... Feb 9 19:18:24.045688 systemd[1]: Starting systemd-journal-catalog-update.service... Feb 9 19:18:24.050000 audit: BPF prog-id=24 op=LOAD Feb 9 19:18:24.053123 systemd[1]: Starting systemd-resolved.service... Feb 9 19:18:24.055000 audit: BPF prog-id=25 op=LOAD Feb 9 19:18:24.059898 systemd[1]: Starting systemd-timesyncd.service... Feb 9 19:18:24.067485 systemd[1]: Starting systemd-update-utmp.service... Feb 9 19:18:24.079775 systemd[1]: Finished clean-ca-certificates.service. Feb 9 19:18:24.080000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=clean-ca-certificates comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:24.082481 systemd[1]: update-ca-certificates.service was skipped because of an unmet condition check (ConditionPathIsSymbolicLink=!/etc/ssl/certs/ca-certificates.crt). Feb 9 19:18:24.093000 audit[1692]: SYSTEM_BOOT pid=1692 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg=' comm="systemd-update-utmp" exe="/usr/lib/systemd/systemd-update-utmp" hostname=? addr=? terminal=? res=success' Feb 9 19:18:24.102097 systemd[1]: Finished systemd-update-utmp.service. Feb 9 19:18:24.102000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-update-utmp comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:24.134885 systemd[1]: Finished systemd-journal-catalog-update.service. Feb 9 19:18:24.135000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journal-catalog-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:24.221000 audit: CONFIG_CHANGE auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=add_rule key=(null) list=5 res=1 Feb 9 19:18:24.221000 audit[1708]: SYSCALL arch=c00000b7 syscall=206 success=yes exit=1056 a0=3 a1=ffffdd59fd10 a2=420 a3=0 items=0 ppid=1686 pid=1708 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:24.221000 audit: PROCTITLE proctitle=2F7362696E2F617564697463746C002D52002F6574632F61756469742F61756469742E72756C6573 Feb 9 19:18:24.223777 augenrules[1708]: No rules Feb 9 19:18:24.225271 systemd[1]: Finished audit-rules.service. Feb 9 19:18:24.242937 systemd[1]: Started systemd-timesyncd.service. Feb 9 19:18:24.244935 systemd[1]: Reached target time-set.target. Feb 9 19:18:24.319070 systemd-resolved[1689]: Positive Trust Anchors: Feb 9 19:18:24.319631 systemd-resolved[1689]: . IN DS 20326 8 2 e06d44b80b8f1d39a95c0b0d7c65d08458e880409bbc683457104237c7f8ec8d Feb 9 19:18:24.319813 systemd-resolved[1689]: Negative trust anchors: home.arpa 10.in-addr.arpa 16.172.in-addr.arpa 17.172.in-addr.arpa 18.172.in-addr.arpa 19.172.in-addr.arpa 20.172.in-addr.arpa 21.172.in-addr.arpa 22.172.in-addr.arpa 23.172.in-addr.arpa 24.172.in-addr.arpa 25.172.in-addr.arpa 26.172.in-addr.arpa 27.172.in-addr.arpa 28.172.in-addr.arpa 29.172.in-addr.arpa 30.172.in-addr.arpa 31.172.in-addr.arpa 168.192.in-addr.arpa d.f.ip6.arpa corp home internal intranet lan local private test Feb 9 19:18:24.547536 systemd-resolved[1689]: Defaulting to hostname 'linux'. Feb 9 19:18:24.550476 systemd[1]: Started systemd-resolved.service. Feb 9 19:18:24.552328 systemd[1]: Reached target network.target. Feb 9 19:18:24.553952 systemd[1]: Reached target nss-lookup.target. Feb 9 19:18:24.586580 systemd-networkd[1547]: eth0: Gained IPv6LL Feb 9 19:18:24.589256 systemd[1]: Finished systemd-networkd-wait-online.service. Feb 9 19:18:24.591597 systemd[1]: Reached target network-online.target. Feb 9 19:18:24.622175 systemd-timesyncd[1690]: Contacted time server 216.229.4.66:123 (0.flatcar.pool.ntp.org). Feb 9 19:18:24.622294 systemd-timesyncd[1690]: Initial clock synchronization to Fri 2024-02-09 19:18:24.783961 UTC. Feb 9 19:18:24.901248 systemd[1]: etc-machine\x2did.mount: Deactivated successfully. Feb 9 19:18:24.903392 systemd[1]: Finished systemd-machine-id-commit.service. Feb 9 19:18:25.381766 ldconfig[1662]: /sbin/ldconfig: /lib/ld.so.conf is not an ELF file - it has the wrong magic bytes at the start. Feb 9 19:18:25.388656 systemd[1]: Finished ldconfig.service. Feb 9 19:18:25.392742 systemd[1]: Starting systemd-update-done.service... Feb 9 19:18:25.406624 systemd[1]: Finished systemd-update-done.service. Feb 9 19:18:25.408975 systemd[1]: Reached target sysinit.target. Feb 9 19:18:25.411061 systemd[1]: Started motdgen.path. Feb 9 19:18:25.412726 systemd[1]: Started user-cloudinit@var-lib-flatcar\x2dinstall-user_data.path. Feb 9 19:18:25.415531 systemd[1]: Started logrotate.timer. Feb 9 19:18:25.417344 systemd[1]: Started mdadm.timer. Feb 9 19:18:25.418964 systemd[1]: Started systemd-tmpfiles-clean.timer. Feb 9 19:18:25.420895 systemd[1]: update-engine-stub.timer was skipped because of an unmet condition check (ConditionPathExists=/usr/.noupdate). Feb 9 19:18:25.421083 systemd[1]: Reached target paths.target. Feb 9 19:18:25.422766 systemd[1]: Reached target timers.target. Feb 9 19:18:25.425416 systemd[1]: Listening on dbus.socket. Feb 9 19:18:25.429232 systemd[1]: Starting docker.socket... Feb 9 19:18:25.435669 systemd[1]: Listening on sshd.socket. Feb 9 19:18:25.437715 systemd[1]: systemd-pcrphase-sysinit.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/StubPcrKernelImage-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Feb 9 19:18:25.438756 systemd[1]: Listening on docker.socket. Feb 9 19:18:25.440754 systemd[1]: Reached target sockets.target. Feb 9 19:18:25.442766 systemd[1]: Reached target basic.target. Feb 9 19:18:25.445340 systemd[1]: addon-config@usr-share-oem.service was skipped because no trigger condition checks were met. Feb 9 19:18:25.445573 systemd[1]: addon-run@usr-share-oem.service was skipped because no trigger condition checks were met. Feb 9 19:18:25.447842 systemd[1]: Started amazon-ssm-agent.service. Feb 9 19:18:25.453281 systemd[1]: Starting containerd.service... Feb 9 19:18:25.457777 systemd[1]: Starting coreos-metadata-sshkeys@core.service... Feb 9 19:18:25.462257 systemd[1]: Starting dbus.service... Feb 9 19:18:25.466458 systemd[1]: Starting enable-oem-cloudinit.service... Feb 9 19:18:25.472000 systemd[1]: Starting extend-filesystems.service... Feb 9 19:18:25.473875 systemd[1]: flatcar-setup-environment.service was skipped because of an unmet condition check (ConditionPathExists=/usr/share/oem/bin/flatcar-setup-environment). Feb 9 19:18:25.484636 systemd[1]: Starting motdgen.service... Feb 9 19:18:25.489482 systemd[1]: Started nvidia.service. Feb 9 19:18:25.495491 systemd[1]: Starting prepare-cni-plugins.service... Feb 9 19:18:25.587961 jq[1727]: false Feb 9 19:18:25.500042 systemd[1]: Starting prepare-critools.service... Feb 9 19:18:25.504961 systemd[1]: Starting ssh-key-proc-cmdline.service... Feb 9 19:18:25.528396 systemd[1]: Starting sshd-keygen.service... Feb 9 19:18:25.539154 systemd[1]: Starting systemd-logind.service... Feb 9 19:18:25.544646 systemd[1]: systemd-pcrphase.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/StubPcrKernelImage-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Feb 9 19:18:25.544865 systemd[1]: tcsd.service was skipped because of an unmet condition check (ConditionPathExists=/dev/tpm0). Feb 9 19:18:25.546239 systemd[1]: cgroup compatibility translation between legacy and unified hierarchy settings activated. See cgroup-compat debug messages for details. Feb 9 19:18:25.547832 systemd[1]: Starting update-engine.service... Feb 9 19:18:25.552611 systemd[1]: Starting update-ssh-keys-after-ignition.service... Feb 9 19:18:25.625060 jq[1739]: true Feb 9 19:18:25.596519 systemd[1]: enable-oem-cloudinit.service: Skipped due to 'exec-condition'. Feb 9 19:18:25.596874 systemd[1]: Condition check resulted in enable-oem-cloudinit.service being skipped. Feb 9 19:18:25.673413 tar[1741]: crictl Feb 9 19:18:25.631197 systemd[1]: ssh-key-proc-cmdline.service: Deactivated successfully. Feb 9 19:18:25.631574 systemd[1]: Finished ssh-key-proc-cmdline.service. Feb 9 19:18:25.674415 tar[1745]: ./ Feb 9 19:18:25.674415 tar[1745]: ./loopback Feb 9 19:18:25.700248 jq[1751]: true Feb 9 19:18:25.754120 dbus-daemon[1726]: [system] SELinux support is enabled Feb 9 19:18:25.759871 systemd[1]: Started dbus.service. Feb 9 19:18:25.764875 systemd[1]: system-cloudinit@usr-share-oem-cloud\x2dconfig.yml.service was skipped because of an unmet condition check (ConditionFileNotEmpty=/usr/share/oem/cloud-config.yml). Feb 9 19:18:25.764943 systemd[1]: Reached target system-config.target. Feb 9 19:18:25.767090 systemd[1]: user-cloudinit-proc-cmdline.service was skipped because of an unmet condition check (ConditionKernelCommandLine=cloud-config-url). Feb 9 19:18:25.767141 systemd[1]: Reached target user-config.target. Feb 9 19:18:25.781169 extend-filesystems[1728]: Found nvme0n1 Feb 9 19:18:25.786660 extend-filesystems[1728]: Found nvme0n1p1 Feb 9 19:18:25.790837 extend-filesystems[1728]: Found nvme0n1p2 Feb 9 19:18:25.790837 extend-filesystems[1728]: Found nvme0n1p3 Feb 9 19:18:25.790837 extend-filesystems[1728]: Found usr Feb 9 19:18:25.790837 extend-filesystems[1728]: Found nvme0n1p4 Feb 9 19:18:25.790837 extend-filesystems[1728]: Found nvme0n1p6 Feb 9 19:18:25.790837 extend-filesystems[1728]: Found nvme0n1p7 Feb 9 19:18:25.790837 extend-filesystems[1728]: Found nvme0n1p9 Feb 9 19:18:25.790837 extend-filesystems[1728]: Checking size of /dev/nvme0n1p9 Feb 9 19:18:25.826851 dbus-daemon[1726]: [system] Activating systemd to hand-off: service name='org.freedesktop.hostname1' unit='dbus-org.freedesktop.hostname1.service' requested by ':1.1' (uid=244 pid=1547 comm="/usr/lib/systemd/systemd-networkd" label="system_u:system_r:kernel_t:s0") Feb 9 19:18:25.828341 dbus-daemon[1726]: [system] Successfully activated service 'org.freedesktop.systemd1' Feb 9 19:18:25.854394 systemd[1]: Starting systemd-hostnamed.service... Feb 9 19:18:25.858323 systemd[1]: motdgen.service: Deactivated successfully. Feb 9 19:18:25.858771 systemd[1]: Finished motdgen.service. Feb 9 19:18:25.920117 extend-filesystems[1728]: Resized partition /dev/nvme0n1p9 Feb 9 19:18:25.935003 bash[1785]: Updated "/home/core/.ssh/authorized_keys" Feb 9 19:18:25.941457 extend-filesystems[1792]: resize2fs 1.46.5 (30-Dec-2021) Feb 9 19:18:25.949316 systemd[1]: Finished update-ssh-keys-after-ignition.service. Feb 9 19:18:25.955146 env[1744]: time="2024-02-09T19:18:25.955054898Z" level=info msg="starting containerd" revision=92b3a9d6f1b3bcc6dc74875cfdea653fe39f09c2 version=1.6.16 Feb 9 19:18:25.961564 update_engine[1738]: I0209 19:18:25.961189 1738 main.cc:92] Flatcar Update Engine starting Feb 9 19:18:25.966708 systemd[1]: Started update-engine.service. Feb 9 19:18:25.968248 update_engine[1738]: I0209 19:18:25.968210 1738 update_check_scheduler.cc:74] Next update check in 5m37s Feb 9 19:18:25.971544 systemd[1]: Started locksmithd.service. Feb 9 19:18:25.982489 kernel: EXT4-fs (nvme0n1p9): resizing filesystem from 553472 to 1489915 blocks Feb 9 19:18:26.006805 amazon-ssm-agent[1723]: 2024/02/09 19:18:26 Failed to load instance info from vault. RegistrationKey does not exist. Feb 9 19:18:26.023249 tar[1745]: ./bandwidth Feb 9 19:18:26.023468 amazon-ssm-agent[1723]: Initializing new seelog logger Feb 9 19:18:26.026356 amazon-ssm-agent[1723]: New Seelog Logger Creation Complete Feb 9 19:18:26.027002 amazon-ssm-agent[1723]: 2024/02/09 19:18:26 Found config file at /etc/amazon/ssm/amazon-ssm-agent.json. Feb 9 19:18:26.028312 amazon-ssm-agent[1723]: Applying config override from /etc/amazon/ssm/amazon-ssm-agent.json. Feb 9 19:18:26.031647 amazon-ssm-agent[1723]: 2024/02/09 19:18:26 processing appconfig overrides Feb 9 19:18:26.042450 kernel: EXT4-fs (nvme0n1p9): resized filesystem to 1489915 Feb 9 19:18:26.083711 systemd-logind[1737]: Watching system buttons on /dev/input/event0 (Power Button) Feb 9 19:18:26.084156 systemd-logind[1737]: New seat seat0. Feb 9 19:18:26.094782 extend-filesystems[1792]: Filesystem at /dev/nvme0n1p9 is mounted on /; on-line resizing required Feb 9 19:18:26.094782 extend-filesystems[1792]: old_desc_blocks = 1, new_desc_blocks = 1 Feb 9 19:18:26.094782 extend-filesystems[1792]: The filesystem on /dev/nvme0n1p9 is now 1489915 (4k) blocks long. Feb 9 19:18:26.089719 systemd[1]: Started systemd-logind.service. Feb 9 19:18:26.102670 extend-filesystems[1728]: Resized filesystem in /dev/nvme0n1p9 Feb 9 19:18:26.092665 systemd[1]: extend-filesystems.service: Deactivated successfully. Feb 9 19:18:26.093010 systemd[1]: Finished extend-filesystems.service. Feb 9 19:18:26.153918 systemd[1]: nvidia.service: Deactivated successfully. Feb 9 19:18:26.257738 env[1744]: time="2024-02-09T19:18:26.257527955Z" level=info msg="loading plugin \"io.containerd.content.v1.content\"..." type=io.containerd.content.v1 Feb 9 19:18:26.258799 env[1744]: time="2024-02-09T19:18:26.258709950Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.aufs\"..." type=io.containerd.snapshotter.v1 Feb 9 19:18:26.273957 env[1744]: time="2024-02-09T19:18:26.273888538Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.aufs\"..." error="aufs is not supported (modprobe aufs failed: exit status 1 \"modprobe: FATAL: Module aufs not found in directory /lib/modules/5.15.148-flatcar\\n\"): skip plugin" type=io.containerd.snapshotter.v1 Feb 9 19:18:26.275983 env[1744]: time="2024-02-09T19:18:26.275913971Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.btrfs\"..." type=io.containerd.snapshotter.v1 Feb 9 19:18:26.276715 env[1744]: time="2024-02-09T19:18:26.276657278Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.btrfs\"..." error="path /var/lib/containerd/io.containerd.snapshotter.v1.btrfs (ext4) must be a btrfs filesystem to be used with the btrfs snapshotter: skip plugin" type=io.containerd.snapshotter.v1 Feb 9 19:18:26.280787 env[1744]: time="2024-02-09T19:18:26.280732131Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.devmapper\"..." type=io.containerd.snapshotter.v1 Feb 9 19:18:26.281166 env[1744]: time="2024-02-09T19:18:26.281119111Z" level=warning msg="failed to load plugin io.containerd.snapshotter.v1.devmapper" error="devmapper not configured" Feb 9 19:18:26.281577 env[1744]: time="2024-02-09T19:18:26.281377187Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.native\"..." type=io.containerd.snapshotter.v1 Feb 9 19:18:26.282117 env[1744]: time="2024-02-09T19:18:26.282084357Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.overlayfs\"..." type=io.containerd.snapshotter.v1 Feb 9 19:18:26.282994 env[1744]: time="2024-02-09T19:18:26.282903407Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.zfs\"..." type=io.containerd.snapshotter.v1 Feb 9 19:18:26.283481 env[1744]: time="2024-02-09T19:18:26.283415163Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.zfs\"..." error="path /var/lib/containerd/io.containerd.snapshotter.v1.zfs must be a zfs filesystem to be used with the zfs snapshotter: skip plugin" type=io.containerd.snapshotter.v1 Feb 9 19:18:26.285970 env[1744]: time="2024-02-09T19:18:26.285887406Z" level=info msg="loading plugin \"io.containerd.metadata.v1.bolt\"..." type=io.containerd.metadata.v1 Feb 9 19:18:26.286884 env[1744]: time="2024-02-09T19:18:26.286812596Z" level=warning msg="could not use snapshotter devmapper in metadata plugin" error="devmapper not configured" Feb 9 19:18:26.287104 env[1744]: time="2024-02-09T19:18:26.287072870Z" level=info msg="metadata content store policy set" policy=shared Feb 9 19:18:26.296560 env[1744]: time="2024-02-09T19:18:26.296501136Z" level=info msg="loading plugin \"io.containerd.differ.v1.walking\"..." type=io.containerd.differ.v1 Feb 9 19:18:26.296803 env[1744]: time="2024-02-09T19:18:26.296770729Z" level=info msg="loading plugin \"io.containerd.event.v1.exchange\"..." type=io.containerd.event.v1 Feb 9 19:18:26.296968 env[1744]: time="2024-02-09T19:18:26.296936563Z" level=info msg="loading plugin \"io.containerd.gc.v1.scheduler\"..." type=io.containerd.gc.v1 Feb 9 19:18:26.297133 env[1744]: time="2024-02-09T19:18:26.297102276Z" level=info msg="loading plugin \"io.containerd.service.v1.introspection-service\"..." type=io.containerd.service.v1 Feb 9 19:18:26.297346 env[1744]: time="2024-02-09T19:18:26.297314812Z" level=info msg="loading plugin \"io.containerd.service.v1.containers-service\"..." type=io.containerd.service.v1 Feb 9 19:18:26.297490 env[1744]: time="2024-02-09T19:18:26.297459055Z" level=info msg="loading plugin \"io.containerd.service.v1.content-service\"..." type=io.containerd.service.v1 Feb 9 19:18:26.297617 env[1744]: time="2024-02-09T19:18:26.297587592Z" level=info msg="loading plugin \"io.containerd.service.v1.diff-service\"..." type=io.containerd.service.v1 Feb 9 19:18:26.298241 env[1744]: time="2024-02-09T19:18:26.298195437Z" level=info msg="loading plugin \"io.containerd.service.v1.images-service\"..." type=io.containerd.service.v1 Feb 9 19:18:26.298447 env[1744]: time="2024-02-09T19:18:26.298393489Z" level=info msg="loading plugin \"io.containerd.service.v1.leases-service\"..." type=io.containerd.service.v1 Feb 9 19:18:26.298607 env[1744]: time="2024-02-09T19:18:26.298576604Z" level=info msg="loading plugin \"io.containerd.service.v1.namespaces-service\"..." type=io.containerd.service.v1 Feb 9 19:18:26.299092 env[1744]: time="2024-02-09T19:18:26.299044786Z" level=info msg="loading plugin \"io.containerd.service.v1.snapshots-service\"..." type=io.containerd.service.v1 Feb 9 19:18:26.299416 env[1744]: time="2024-02-09T19:18:26.299384955Z" level=info msg="loading plugin \"io.containerd.runtime.v1.linux\"..." type=io.containerd.runtime.v1 Feb 9 19:18:26.301629 env[1744]: time="2024-02-09T19:18:26.301576468Z" level=info msg="loading plugin \"io.containerd.runtime.v2.task\"..." type=io.containerd.runtime.v2 Feb 9 19:18:26.302526 env[1744]: time="2024-02-09T19:18:26.302488675Z" level=info msg="loading plugin \"io.containerd.monitor.v1.cgroups\"..." type=io.containerd.monitor.v1 Feb 9 19:18:26.311363 env[1744]: time="2024-02-09T19:18:26.311312039Z" level=info msg="loading plugin \"io.containerd.service.v1.tasks-service\"..." type=io.containerd.service.v1 Feb 9 19:18:26.313341 env[1744]: time="2024-02-09T19:18:26.313288463Z" level=info msg="loading plugin \"io.containerd.grpc.v1.introspection\"..." type=io.containerd.grpc.v1 Feb 9 19:18:26.313625 env[1744]: time="2024-02-09T19:18:26.313590309Z" level=info msg="loading plugin \"io.containerd.internal.v1.restart\"..." type=io.containerd.internal.v1 Feb 9 19:18:26.313854 env[1744]: time="2024-02-09T19:18:26.313822300Z" level=info msg="loading plugin \"io.containerd.grpc.v1.containers\"..." type=io.containerd.grpc.v1 Feb 9 19:18:26.314091 env[1744]: time="2024-02-09T19:18:26.314056513Z" level=info msg="loading plugin \"io.containerd.grpc.v1.content\"..." type=io.containerd.grpc.v1 Feb 9 19:18:26.314257 env[1744]: time="2024-02-09T19:18:26.314205397Z" level=info msg="loading plugin \"io.containerd.grpc.v1.diff\"..." type=io.containerd.grpc.v1 Feb 9 19:18:26.314389 env[1744]: time="2024-02-09T19:18:26.314358750Z" level=info msg="loading plugin \"io.containerd.grpc.v1.events\"..." type=io.containerd.grpc.v1 Feb 9 19:18:26.314530 env[1744]: time="2024-02-09T19:18:26.314499634Z" level=info msg="loading plugin \"io.containerd.grpc.v1.healthcheck\"..." type=io.containerd.grpc.v1 Feb 9 19:18:26.314682 env[1744]: time="2024-02-09T19:18:26.314652609Z" level=info msg="loading plugin \"io.containerd.grpc.v1.images\"..." type=io.containerd.grpc.v1 Feb 9 19:18:26.314810 env[1744]: time="2024-02-09T19:18:26.314780194Z" level=info msg="loading plugin \"io.containerd.grpc.v1.leases\"..." type=io.containerd.grpc.v1 Feb 9 19:18:26.314940 env[1744]: time="2024-02-09T19:18:26.314910271Z" level=info msg="loading plugin \"io.containerd.grpc.v1.namespaces\"..." type=io.containerd.grpc.v1 Feb 9 19:18:26.315236 env[1744]: time="2024-02-09T19:18:26.315202042Z" level=info msg="loading plugin \"io.containerd.internal.v1.opt\"..." type=io.containerd.internal.v1 Feb 9 19:18:26.315681 env[1744]: time="2024-02-09T19:18:26.315644968Z" level=info msg="loading plugin \"io.containerd.grpc.v1.snapshots\"..." type=io.containerd.grpc.v1 Feb 9 19:18:26.316303 env[1744]: time="2024-02-09T19:18:26.316259676Z" level=info msg="loading plugin \"io.containerd.grpc.v1.tasks\"..." type=io.containerd.grpc.v1 Feb 9 19:18:26.316484 env[1744]: time="2024-02-09T19:18:26.316452122Z" level=info msg="loading plugin \"io.containerd.grpc.v1.version\"..." type=io.containerd.grpc.v1 Feb 9 19:18:26.316616 env[1744]: time="2024-02-09T19:18:26.316585557Z" level=info msg="loading plugin \"io.containerd.tracing.processor.v1.otlp\"..." type=io.containerd.tracing.processor.v1 Feb 9 19:18:26.317172 env[1744]: time="2024-02-09T19:18:26.317124926Z" level=info msg="skip loading plugin \"io.containerd.tracing.processor.v1.otlp\"..." error="no OpenTelemetry endpoint: skip plugin" type=io.containerd.tracing.processor.v1 Feb 9 19:18:26.317361 env[1744]: time="2024-02-09T19:18:26.317329450Z" level=info msg="loading plugin \"io.containerd.internal.v1.tracing\"..." type=io.containerd.internal.v1 Feb 9 19:18:26.317544 env[1744]: time="2024-02-09T19:18:26.317512053Z" level=error msg="failed to initialize a tracing processor \"otlp\"" error="no OpenTelemetry endpoint: skip plugin" Feb 9 19:18:26.317707 env[1744]: time="2024-02-09T19:18:26.317676459Z" level=info msg="loading plugin \"io.containerd.grpc.v1.cri\"..." type=io.containerd.grpc.v1 Feb 9 19:18:26.318222 env[1744]: time="2024-02-09T19:18:26.318116674Z" level=info msg="Start cri plugin with config {PluginConfig:{ContainerdConfig:{Snapshotter:overlayfs DefaultRuntimeName:runc DefaultRuntime:{Type: Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0} UntrustedWorkloadRuntime:{Type: Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0} Runtimes:map[runc:{Type:io.containerd.runc.v2 Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[SystemdCgroup:true] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0}] NoPivot:false DisableSnapshotAnnotations:true DiscardUnpackedLayers:false IgnoreRdtNotEnabledErrors:false} CniConfig:{NetworkPluginBinDir:/opt/cni/bin NetworkPluginConfDir:/etc/cni/net.d NetworkPluginMaxConfNum:1 NetworkPluginConfTemplate: IPPreference:} Registry:{ConfigPath: Mirrors:map[] Configs:map[] Auths:map[] Headers:map[]} ImageDecryption:{KeyModel:node} DisableTCPService:true StreamServerAddress:127.0.0.1 StreamServerPort:0 StreamIdleTimeout:4h0m0s EnableSelinux:true SelinuxCategoryRange:1024 SandboxImage:registry.k8s.io/pause:3.6 StatsCollectPeriod:10 SystemdCgroup:false EnableTLSStreaming:false X509KeyPairStreaming:{TLSCertFile: TLSKeyFile:} MaxContainerLogLineSize:16384 DisableCgroup:false DisableApparmor:false RestrictOOMScoreAdj:false MaxConcurrentDownloads:3 DisableProcMount:false UnsetSeccompProfile: TolerateMissingHugetlbController:true DisableHugetlbController:true DeviceOwnershipFromSecurityContext:false IgnoreImageDefinedVolumes:false NetNSMountsUnderStateDir:false EnableUnprivilegedPorts:false EnableUnprivilegedICMP:false} ContainerdRootDir:/var/lib/containerd ContainerdEndpoint:/run/containerd/containerd.sock RootDir:/var/lib/containerd/io.containerd.grpc.v1.cri StateDir:/run/containerd/io.containerd.grpc.v1.cri}" Feb 9 19:18:26.319648 env[1744]: time="2024-02-09T19:18:26.319205292Z" level=info msg="Connect containerd service" Feb 9 19:18:26.319648 env[1744]: time="2024-02-09T19:18:26.319291268Z" level=info msg="Get image filesystem path \"/var/lib/containerd/io.containerd.snapshotter.v1.overlayfs\"" Feb 9 19:18:26.330217 env[1744]: time="2024-02-09T19:18:26.330158201Z" level=error msg="failed to load cni during init, please check CRI plugin status before setting up network for pods" error="cni config load failed: no network config found in /etc/cni/net.d: cni plugin not initialized: failed to load cni config" Feb 9 19:18:26.332962 env[1744]: time="2024-02-09T19:18:26.332891879Z" level=info msg="Start subscribing containerd event" Feb 9 19:18:26.333172 env[1744]: time="2024-02-09T19:18:26.333142213Z" level=info msg="Start recovering state" Feb 9 19:18:26.333527 env[1744]: time="2024-02-09T19:18:26.333497270Z" level=info msg="Start event monitor" Feb 9 19:18:26.334662 env[1744]: time="2024-02-09T19:18:26.334619362Z" level=info msg="Start snapshots syncer" Feb 9 19:18:26.334812 env[1744]: time="2024-02-09T19:18:26.334781961Z" level=info msg="Start cni network conf syncer for default" Feb 9 19:18:26.334923 env[1744]: time="2024-02-09T19:18:26.334895599Z" level=info msg="Start streaming server" Feb 9 19:18:26.335742 env[1744]: time="2024-02-09T19:18:26.335685326Z" level=info msg=serving... address=/run/containerd/containerd.sock.ttrpc Feb 9 19:18:26.341495 env[1744]: time="2024-02-09T19:18:26.341444600Z" level=info msg=serving... address=/run/containerd/containerd.sock Feb 9 19:18:26.341832 env[1744]: time="2024-02-09T19:18:26.341801891Z" level=info msg="containerd successfully booted in 0.430530s" Feb 9 19:18:26.341961 systemd[1]: Started containerd.service. Feb 9 19:18:26.375368 dbus-daemon[1726]: [system] Successfully activated service 'org.freedesktop.hostname1' Feb 9 19:18:26.375668 systemd[1]: Started systemd-hostnamed.service. Feb 9 19:18:26.377660 dbus-daemon[1726]: [system] Activating via systemd: service name='org.freedesktop.PolicyKit1' unit='polkit.service' requested by ':1.6' (uid=0 pid=1780 comm="/usr/lib/systemd/systemd-hostnamed" label="system_u:system_r:kernel_t:s0") Feb 9 19:18:26.381921 tar[1745]: ./ptp Feb 9 19:18:26.382684 systemd[1]: Starting polkit.service... Feb 9 19:18:26.423224 polkitd[1822]: Started polkitd version 121 Feb 9 19:18:26.454138 polkitd[1822]: Loading rules from directory /etc/polkit-1/rules.d Feb 9 19:18:26.454263 polkitd[1822]: Loading rules from directory /usr/share/polkit-1/rules.d Feb 9 19:18:26.457842 polkitd[1822]: Finished loading, compiling and executing 2 rules Feb 9 19:18:26.459971 dbus-daemon[1726]: [system] Successfully activated service 'org.freedesktop.PolicyKit1' Feb 9 19:18:26.460235 systemd[1]: Started polkit.service. Feb 9 19:18:26.462552 polkitd[1822]: Acquired the name org.freedesktop.PolicyKit1 on the system bus Feb 9 19:18:26.495681 systemd-hostnamed[1780]: Hostname set to (transient) Feb 9 19:18:26.495834 systemd-resolved[1689]: System hostname changed to 'ip-172-31-22-94'. Feb 9 19:18:26.617441 tar[1745]: ./vlan Feb 9 19:18:26.660557 coreos-metadata[1725]: Feb 09 19:18:26.660 INFO Putting http://169.254.169.254/latest/api/token: Attempt #1 Feb 9 19:18:26.665046 coreos-metadata[1725]: Feb 09 19:18:26.664 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/public-keys: Attempt #1 Feb 9 19:18:26.668683 coreos-metadata[1725]: Feb 09 19:18:26.668 INFO Fetch successful Feb 9 19:18:26.669239 coreos-metadata[1725]: Feb 09 19:18:26.668 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/public-keys/0/openssh-key: Attempt #1 Feb 9 19:18:26.670961 coreos-metadata[1725]: Feb 09 19:18:26.670 INFO Fetch successful Feb 9 19:18:26.674027 unknown[1725]: wrote ssh authorized keys file for user: core Feb 9 19:18:26.715704 update-ssh-keys[1870]: Updated "/home/core/.ssh/authorized_keys" Feb 9 19:18:26.716906 systemd[1]: Finished coreos-metadata-sshkeys@core.service. Feb 9 19:18:26.809329 tar[1745]: ./host-device Feb 9 19:18:26.825818 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO Create new startup processor Feb 9 19:18:26.827930 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [LongRunningPluginsManager] registered plugins: {} Feb 9 19:18:26.827930 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO Initializing bookkeeping folders Feb 9 19:18:26.828136 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO removing the completed state files Feb 9 19:18:26.828136 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO Initializing bookkeeping folders for long running plugins Feb 9 19:18:26.828136 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO Initializing replies folder for MDS reply requests that couldn't reach the service Feb 9 19:18:26.828136 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO Initializing healthcheck folders for long running plugins Feb 9 19:18:26.828136 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO Initializing locations for inventory plugin Feb 9 19:18:26.828136 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO Initializing default location for custom inventory Feb 9 19:18:26.828136 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO Initializing default location for file inventory Feb 9 19:18:26.828136 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO Initializing default location for role inventory Feb 9 19:18:26.828601 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO Init the cloudwatchlogs publisher Feb 9 19:18:26.828601 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [instanceID=i-0f81609c26403f3b0] Successfully loaded platform independent plugin aws:softwareInventory Feb 9 19:18:26.828601 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [instanceID=i-0f81609c26403f3b0] Successfully loaded platform independent plugin aws:runPowerShellScript Feb 9 19:18:26.828601 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [instanceID=i-0f81609c26403f3b0] Successfully loaded platform independent plugin aws:refreshAssociation Feb 9 19:18:26.828601 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [instanceID=i-0f81609c26403f3b0] Successfully loaded platform independent plugin aws:configurePackage Feb 9 19:18:26.828601 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [instanceID=i-0f81609c26403f3b0] Successfully loaded platform independent plugin aws:downloadContent Feb 9 19:18:26.828601 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [instanceID=i-0f81609c26403f3b0] Successfully loaded platform independent plugin aws:runDocument Feb 9 19:18:26.828601 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [instanceID=i-0f81609c26403f3b0] Successfully loaded platform independent plugin aws:updateSsmAgent Feb 9 19:18:26.828601 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [instanceID=i-0f81609c26403f3b0] Successfully loaded platform independent plugin aws:configureDocker Feb 9 19:18:26.828601 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [instanceID=i-0f81609c26403f3b0] Successfully loaded platform independent plugin aws:runDockerAction Feb 9 19:18:26.828601 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [instanceID=i-0f81609c26403f3b0] Successfully loaded platform dependent plugin aws:runShellScript Feb 9 19:18:26.828601 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO Starting Agent: amazon-ssm-agent - v2.3.1319.0 Feb 9 19:18:26.828601 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO OS: linux, Arch: arm64 Feb 9 19:18:26.830551 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [MessagingDeliveryService] Starting document processing engine... Feb 9 19:18:26.831745 amazon-ssm-agent[1723]: datastore file /var/lib/amazon/ssm/i-0f81609c26403f3b0/longrunningplugins/datastore/store doesn't exist - no long running plugins to execute Feb 9 19:18:26.956958 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [MessagingDeliveryService] [EngineProcessor] Starting Feb 9 19:18:27.029818 tar[1745]: ./tuning Feb 9 19:18:27.054358 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [MessagingDeliveryService] [EngineProcessor] Initial processing Feb 9 19:18:27.149130 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [MessagingDeliveryService] Starting message polling Feb 9 19:18:27.156196 tar[1745]: ./vrf Feb 9 19:18:27.218168 tar[1745]: ./sbr Feb 9 19:18:27.243609 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [MessagingDeliveryService] Starting send replies to MDS Feb 9 19:18:27.308976 tar[1745]: ./tap Feb 9 19:18:27.338582 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [instanceID=i-0f81609c26403f3b0] Starting association polling Feb 9 19:18:27.431770 tar[1745]: ./dhcp Feb 9 19:18:27.433727 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [MessagingDeliveryService] [Association] [EngineProcessor] Starting Feb 9 19:18:27.529112 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [MessagingDeliveryService] [Association] Launching response handler Feb 9 19:18:27.624628 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [MessagingDeliveryService] [Association] [EngineProcessor] Initial processing Feb 9 19:18:27.675523 tar[1745]: ./static Feb 9 19:18:27.679302 systemd[1]: Finished prepare-critools.service. Feb 9 19:18:27.720446 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [MessagingDeliveryService] [Association] Initializing association scheduling service Feb 9 19:18:27.728145 tar[1745]: ./firewall Feb 9 19:18:27.798827 tar[1745]: ./macvlan Feb 9 19:18:27.816413 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [MessagingDeliveryService] [Association] Association scheduling service initialized Feb 9 19:18:27.863611 tar[1745]: ./dummy Feb 9 19:18:27.912498 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [MessageGatewayService] Starting session document processing engine... Feb 9 19:18:27.927554 tar[1745]: ./bridge Feb 9 19:18:27.996993 tar[1745]: ./ipvlan Feb 9 19:18:28.008832 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [MessageGatewayService] [EngineProcessor] Starting Feb 9 19:18:28.060237 tar[1745]: ./portmap Feb 9 19:18:28.105368 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [MessageGatewayService] SSM Agent is trying to setup control channel for Session Manager module. Feb 9 19:18:28.121212 tar[1745]: ./host-local Feb 9 19:18:28.195472 systemd[1]: Finished prepare-cni-plugins.service. Feb 9 19:18:28.202138 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [MessageGatewayService] Setting up websocket for controlchannel for instance: i-0f81609c26403f3b0, requestId: 11f8157c-5c8b-4715-bf01-42f929530a95 Feb 9 19:18:28.236876 locksmithd[1796]: locksmithd starting currentOperation="UPDATE_STATUS_IDLE" strategy="reboot" Feb 9 19:18:28.299046 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [OfflineService] Starting document processing engine... Feb 9 19:18:28.396179 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [OfflineService] [EngineProcessor] Starting Feb 9 19:18:28.493436 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [OfflineService] [EngineProcessor] Initial processing Feb 9 19:18:28.590765 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [OfflineService] Starting message polling Feb 9 19:18:28.688474 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [OfflineService] Starting send replies to MDS Feb 9 19:18:28.786308 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [LongRunningPluginsManager] starting long running plugin manager Feb 9 19:18:28.884357 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [LongRunningPluginsManager] there aren't any long running plugin to execute Feb 9 19:18:28.982687 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [MessageGatewayService] listening reply. Feb 9 19:18:29.081059 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [HealthCheck] HealthCheck reporting agent health. Feb 9 19:18:29.179700 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [LongRunningPluginsManager] There are no long running plugins currently getting executed - skipping their healthcheck Feb 9 19:18:29.278589 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [StartupProcessor] Executing startup processor tasks Feb 9 19:18:29.377700 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [StartupProcessor] Write to serial port: Amazon SSM Agent v2.3.1319.0 is running Feb 9 19:18:29.476925 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [StartupProcessor] Write to serial port: OsProductName: Flatcar Container Linux by Kinvolk Feb 9 19:18:29.576418 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [StartupProcessor] Write to serial port: OsVersion: 3510.3.2 Feb 9 19:18:29.676027 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [MessageGatewayService] Opening websocket connection to: wss://ssmmessages.us-west-2.amazonaws.com/v1/control-channel/i-0f81609c26403f3b0?role=subscribe&stream=input Feb 9 19:18:29.775923 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [MessageGatewayService] Successfully opened websocket connection to: wss://ssmmessages.us-west-2.amazonaws.com/v1/control-channel/i-0f81609c26403f3b0?role=subscribe&stream=input Feb 9 19:18:29.875952 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [MessageGatewayService] Starting receiving message from control channel Feb 9 19:18:29.976239 amazon-ssm-agent[1723]: 2024-02-09 19:18:26 INFO [MessageGatewayService] [EngineProcessor] Initial processing Feb 9 19:18:30.426105 sshd_keygen[1762]: ssh-keygen: generating new host keys: RSA ECDSA ED25519 Feb 9 19:18:30.461998 systemd[1]: Finished sshd-keygen.service. Feb 9 19:18:30.466706 systemd[1]: Starting issuegen.service... Feb 9 19:18:30.477275 systemd[1]: issuegen.service: Deactivated successfully. Feb 9 19:18:30.477661 systemd[1]: Finished issuegen.service. Feb 9 19:18:30.482234 systemd[1]: Starting systemd-user-sessions.service... Feb 9 19:18:30.495356 systemd[1]: Finished systemd-user-sessions.service. Feb 9 19:18:30.500026 systemd[1]: Started getty@tty1.service. Feb 9 19:18:30.505125 systemd[1]: Started serial-getty@ttyS0.service. Feb 9 19:18:30.507304 systemd[1]: Reached target getty.target. Feb 9 19:18:30.509486 systemd[1]: Reached target multi-user.target. Feb 9 19:18:30.513973 systemd[1]: Starting systemd-update-utmp-runlevel.service... Feb 9 19:18:30.530553 systemd[1]: systemd-update-utmp-runlevel.service: Deactivated successfully. Feb 9 19:18:30.530950 systemd[1]: Finished systemd-update-utmp-runlevel.service. Feb 9 19:18:30.533760 systemd[1]: Startup finished in 1.132s (kernel) + 10.818s (initrd) + 14.123s (userspace) = 26.074s. Feb 9 19:18:34.413083 systemd[1]: Created slice system-sshd.slice. Feb 9 19:18:34.415620 systemd[1]: Started sshd@0-172.31.22.94:22-147.75.109.163:46984.service. Feb 9 19:18:34.722481 sshd[1936]: Accepted publickey for core from 147.75.109.163 port 46984 ssh2: RSA SHA256:vbbYXSA+vx4OxGE8RCTI42TSNHgOaZKYEuMHy2EWP78 Feb 9 19:18:34.726401 sshd[1936]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 19:18:34.743771 systemd[1]: Created slice user-500.slice. Feb 9 19:18:34.746167 systemd[1]: Starting user-runtime-dir@500.service... Feb 9 19:18:34.753531 systemd-logind[1737]: New session 1 of user core. Feb 9 19:18:34.766231 systemd[1]: Finished user-runtime-dir@500.service. Feb 9 19:18:34.769999 systemd[1]: Starting user@500.service... Feb 9 19:18:34.777870 (systemd)[1939]: pam_unix(systemd-user:session): session opened for user core(uid=500) by (uid=0) Feb 9 19:18:34.961677 systemd[1939]: Queued start job for default target default.target. Feb 9 19:18:34.964060 systemd[1939]: Reached target paths.target. Feb 9 19:18:34.964294 systemd[1939]: Reached target sockets.target. Feb 9 19:18:34.964477 systemd[1939]: Reached target timers.target. Feb 9 19:18:34.964628 systemd[1939]: Reached target basic.target. Feb 9 19:18:34.964844 systemd[1939]: Reached target default.target. Feb 9 19:18:34.964934 systemd[1]: Started user@500.service. Feb 9 19:18:34.965600 systemd[1939]: Startup finished in 175ms. Feb 9 19:18:34.967717 systemd[1]: Started session-1.scope. Feb 9 19:18:35.122672 systemd[1]: Started sshd@1-172.31.22.94:22-147.75.109.163:46986.service. Feb 9 19:18:35.302668 sshd[1948]: Accepted publickey for core from 147.75.109.163 port 46986 ssh2: RSA SHA256:vbbYXSA+vx4OxGE8RCTI42TSNHgOaZKYEuMHy2EWP78 Feb 9 19:18:35.305768 sshd[1948]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 19:18:35.314331 systemd[1]: Started session-2.scope. Feb 9 19:18:35.315105 systemd-logind[1737]: New session 2 of user core. Feb 9 19:18:35.450272 sshd[1948]: pam_unix(sshd:session): session closed for user core Feb 9 19:18:35.455872 systemd-logind[1737]: Session 2 logged out. Waiting for processes to exit. Feb 9 19:18:35.457271 systemd[1]: sshd@1-172.31.22.94:22-147.75.109.163:46986.service: Deactivated successfully. Feb 9 19:18:35.458609 systemd[1]: session-2.scope: Deactivated successfully. Feb 9 19:18:35.460087 systemd-logind[1737]: Removed session 2. Feb 9 19:18:35.477895 systemd[1]: Started sshd@2-172.31.22.94:22-147.75.109.163:46998.service. Feb 9 19:18:35.655528 sshd[1954]: Accepted publickey for core from 147.75.109.163 port 46998 ssh2: RSA SHA256:vbbYXSA+vx4OxGE8RCTI42TSNHgOaZKYEuMHy2EWP78 Feb 9 19:18:35.658506 sshd[1954]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 19:18:35.666628 systemd-logind[1737]: New session 3 of user core. Feb 9 19:18:35.666957 systemd[1]: Started session-3.scope. Feb 9 19:18:35.790442 sshd[1954]: pam_unix(sshd:session): session closed for user core Feb 9 19:18:35.795209 systemd[1]: sshd@2-172.31.22.94:22-147.75.109.163:46998.service: Deactivated successfully. Feb 9 19:18:35.796496 systemd[1]: session-3.scope: Deactivated successfully. Feb 9 19:18:35.797672 systemd-logind[1737]: Session 3 logged out. Waiting for processes to exit. Feb 9 19:18:35.799439 systemd-logind[1737]: Removed session 3. Feb 9 19:18:35.818524 systemd[1]: Started sshd@3-172.31.22.94:22-147.75.109.163:47004.service. Feb 9 19:18:35.994072 sshd[1960]: Accepted publickey for core from 147.75.109.163 port 47004 ssh2: RSA SHA256:vbbYXSA+vx4OxGE8RCTI42TSNHgOaZKYEuMHy2EWP78 Feb 9 19:18:35.996960 sshd[1960]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 19:18:36.004208 systemd-logind[1737]: New session 4 of user core. Feb 9 19:18:36.005180 systemd[1]: Started session-4.scope. Feb 9 19:18:36.135026 sshd[1960]: pam_unix(sshd:session): session closed for user core Feb 9 19:18:36.140298 systemd-logind[1737]: Session 4 logged out. Waiting for processes to exit. Feb 9 19:18:36.140923 systemd[1]: sshd@3-172.31.22.94:22-147.75.109.163:47004.service: Deactivated successfully. Feb 9 19:18:36.142121 systemd[1]: session-4.scope: Deactivated successfully. Feb 9 19:18:36.143584 systemd-logind[1737]: Removed session 4. Feb 9 19:18:36.162238 systemd[1]: Started sshd@4-172.31.22.94:22-147.75.109.163:47016.service. Feb 9 19:18:36.324899 amazon-ssm-agent[1723]: 2024-02-09 19:18:36 INFO [MessagingDeliveryService] [Association] No associations on boot. Requerying for associations after 30 seconds. Feb 9 19:18:36.338980 sshd[1966]: Accepted publickey for core from 147.75.109.163 port 47016 ssh2: RSA SHA256:vbbYXSA+vx4OxGE8RCTI42TSNHgOaZKYEuMHy2EWP78 Feb 9 19:18:36.341377 sshd[1966]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 19:18:36.350013 systemd[1]: Started session-5.scope. Feb 9 19:18:36.350814 systemd-logind[1737]: New session 5 of user core. Feb 9 19:18:36.488935 sudo[1969]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/sbin/setenforce 1 Feb 9 19:18:36.490116 sudo[1969]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Feb 9 19:18:36.501698 dbus-daemon[1726]: avc: received setenforce notice (enforcing=1) Feb 9 19:18:36.504314 sudo[1969]: pam_unix(sudo:session): session closed for user root Feb 9 19:18:36.528733 sshd[1966]: pam_unix(sshd:session): session closed for user core Feb 9 19:18:36.533713 systemd[1]: session-5.scope: Deactivated successfully. Feb 9 19:18:36.535236 systemd[1]: sshd@4-172.31.22.94:22-147.75.109.163:47016.service: Deactivated successfully. Feb 9 19:18:36.535502 systemd-logind[1737]: Session 5 logged out. Waiting for processes to exit. Feb 9 19:18:36.537871 systemd-logind[1737]: Removed session 5. Feb 9 19:18:36.555774 systemd[1]: Started sshd@5-172.31.22.94:22-147.75.109.163:47026.service. Feb 9 19:18:36.728986 sshd[1973]: Accepted publickey for core from 147.75.109.163 port 47026 ssh2: RSA SHA256:vbbYXSA+vx4OxGE8RCTI42TSNHgOaZKYEuMHy2EWP78 Feb 9 19:18:36.732115 sshd[1973]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 19:18:36.740648 systemd[1]: Started session-6.scope. Feb 9 19:18:36.741262 systemd-logind[1737]: New session 6 of user core. Feb 9 19:18:36.848761 sudo[1977]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/bin/rm -rf /etc/audit/rules.d/80-selinux.rules /etc/audit/rules.d/99-default.rules Feb 9 19:18:36.849808 sudo[1977]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Feb 9 19:18:36.855312 sudo[1977]: pam_unix(sudo:session): session closed for user root Feb 9 19:18:36.864866 sudo[1976]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/bin/systemctl restart audit-rules Feb 9 19:18:36.865386 sudo[1976]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Feb 9 19:18:36.882403 systemd[1]: Stopping audit-rules.service... Feb 9 19:18:36.887741 kernel: kauditd_printk_skb: 64 callbacks suppressed Feb 9 19:18:36.887846 kernel: audit: type=1305 audit(1707506316.885:159): auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=remove_rule key=(null) list=5 res=1 Feb 9 19:18:36.885000 audit: CONFIG_CHANGE auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=remove_rule key=(null) list=5 res=1 Feb 9 19:18:36.885000 audit[1980]: SYSCALL arch=c00000b7 syscall=206 success=yes exit=1056 a0=3 a1=ffffd9bd7990 a2=420 a3=0 items=0 ppid=1 pid=1980 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:36.893292 auditctl[1980]: No rules Feb 9 19:18:36.894443 systemd[1]: audit-rules.service: Deactivated successfully. Feb 9 19:18:36.894817 systemd[1]: Stopped audit-rules.service. Feb 9 19:18:36.903747 kernel: audit: type=1300 audit(1707506316.885:159): arch=c00000b7 syscall=206 success=yes exit=1056 a0=3 a1=ffffd9bd7990 a2=420 a3=0 items=0 ppid=1 pid=1980 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:36.904872 systemd[1]: Starting audit-rules.service... Feb 9 19:18:36.885000 audit: PROCTITLE proctitle=2F7362696E2F617564697463746C002D44 Feb 9 19:18:36.910109 kernel: audit: type=1327 audit(1707506316.885:159): proctitle=2F7362696E2F617564697463746C002D44 Feb 9 19:18:36.894000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:36.918257 kernel: audit: type=1131 audit(1707506316.894:160): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:36.953337 augenrules[1997]: No rules Feb 9 19:18:36.954981 systemd[1]: Finished audit-rules.service. Feb 9 19:18:36.954000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:36.957973 sudo[1976]: pam_unix(sudo:session): session closed for user root Feb 9 19:18:36.956000 audit[1976]: USER_END pid=1976 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 19:18:36.974009 kernel: audit: type=1130 audit(1707506316.954:161): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:36.974111 kernel: audit: type=1106 audit(1707506316.956:162): pid=1976 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 19:18:36.974155 kernel: audit: type=1104 audit(1707506316.956:163): pid=1976 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 19:18:36.956000 audit[1976]: CRED_DISP pid=1976 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 19:18:36.986391 sshd[1973]: pam_unix(sshd:session): session closed for user core Feb 9 19:18:36.987000 audit[1973]: USER_END pid=1973 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 9 19:18:36.992150 systemd-logind[1737]: Session 6 logged out. Waiting for processes to exit. Feb 9 19:18:36.992647 systemd[1]: session-6.scope: Deactivated successfully. Feb 9 19:18:36.993705 systemd[1]: sshd@5-172.31.22.94:22-147.75.109.163:47026.service: Deactivated successfully. Feb 9 19:18:36.997331 systemd-logind[1737]: Removed session 6. Feb 9 19:18:36.987000 audit[1973]: CRED_DISP pid=1973 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 9 19:18:37.010023 kernel: audit: type=1106 audit(1707506316.987:164): pid=1973 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 9 19:18:37.010086 kernel: audit: type=1104 audit(1707506316.987:165): pid=1973 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 9 19:18:36.992000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@5-172.31.22.94:22-147.75.109.163:47026 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:37.020440 kernel: audit: type=1131 audit(1707506316.992:166): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@5-172.31.22.94:22-147.75.109.163:47026 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:37.021044 systemd[1]: Started sshd@6-172.31.22.94:22-147.75.109.163:47042.service. Feb 9 19:18:37.019000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@6-172.31.22.94:22-147.75.109.163:47042 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:37.196000 audit[2003]: USER_ACCT pid=2003 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_access,pam_unix,pam_faillock,pam_permit acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 9 19:18:37.198166 sshd[2003]: Accepted publickey for core from 147.75.109.163 port 47042 ssh2: RSA SHA256:vbbYXSA+vx4OxGE8RCTI42TSNHgOaZKYEuMHy2EWP78 Feb 9 19:18:37.198000 audit[2003]: CRED_ACQ pid=2003 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 9 19:18:37.199000 audit[2003]: SYSCALL arch=c00000b7 syscall=64 success=yes exit=3 a0=5 a1=ffffeae859d0 a2=3 a3=1 items=0 ppid=1 pid=2003 auid=500 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=7 comm="sshd" exe="/usr/sbin/sshd" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:37.199000 audit: PROCTITLE proctitle=737368643A20636F7265205B707269765D Feb 9 19:18:37.201692 sshd[2003]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 19:18:37.209524 systemd-logind[1737]: New session 7 of user core. Feb 9 19:18:37.210471 systemd[1]: Started session-7.scope. Feb 9 19:18:37.218000 audit[2003]: USER_START pid=2003 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 9 19:18:37.220000 audit[2005]: CRED_ACQ pid=2005 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 9 19:18:37.315000 audit[2006]: USER_ACCT pid=2006 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_unix,pam_faillock,pam_permit acct="core" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 19:18:37.316987 sudo[2006]: core : PWD=/home/core ; USER=root ; COMMAND=/home/core/install.sh Feb 9 19:18:37.315000 audit[2006]: CRED_REFR pid=2006 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 19:18:37.317516 sudo[2006]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Feb 9 19:18:37.318000 audit[2006]: USER_START pid=2006 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 19:18:37.968969 systemd[1]: Reloading. Feb 9 19:18:38.095641 /usr/lib/systemd/system-generators/torcx-generator[2036]: time="2024-02-09T19:18:38Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.2 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.2 /var/lib/torcx/store]" Feb 9 19:18:38.095708 /usr/lib/systemd/system-generators/torcx-generator[2036]: time="2024-02-09T19:18:38Z" level=info msg="torcx already run" Feb 9 19:18:38.263108 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Feb 9 19:18:38.263653 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Feb 9 19:18:38.301782 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Feb 9 19:18:38.462000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.462000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.462000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.462000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.463000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.463000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.463000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.463000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.463000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.464000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.464000 audit: BPF prog-id=34 op=LOAD Feb 9 19:18:38.464000 audit: BPF prog-id=26 op=UNLOAD Feb 9 19:18:38.464000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.464000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.464000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.464000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.465000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.465000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.465000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.465000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.465000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.465000 audit: BPF prog-id=35 op=LOAD Feb 9 19:18:38.465000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.465000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.465000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.465000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.466000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.466000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.466000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.466000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.466000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.466000 audit: BPF prog-id=36 op=LOAD Feb 9 19:18:38.466000 audit: BPF prog-id=27 op=UNLOAD Feb 9 19:18:38.466000 audit: BPF prog-id=28 op=UNLOAD Feb 9 19:18:38.469000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.469000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.470000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.470000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.470000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.470000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.470000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.470000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.470000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.471000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.471000 audit: BPF prog-id=37 op=LOAD Feb 9 19:18:38.471000 audit: BPF prog-id=24 op=UNLOAD Feb 9 19:18:38.473000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.473000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.473000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.473000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.473000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.473000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.473000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.473000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.474000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.474000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.474000 audit: BPF prog-id=38 op=LOAD Feb 9 19:18:38.474000 audit: BPF prog-id=25 op=UNLOAD Feb 9 19:18:38.475000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.475000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.475000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.475000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.475000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.475000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.476000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.476000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.476000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.476000 audit: BPF prog-id=39 op=LOAD Feb 9 19:18:38.476000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.476000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.476000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.476000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.476000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.477000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.477000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.477000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.477000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.477000 audit: BPF prog-id=40 op=LOAD Feb 9 19:18:38.477000 audit: BPF prog-id=18 op=UNLOAD Feb 9 19:18:38.477000 audit: BPF prog-id=19 op=UNLOAD Feb 9 19:18:38.479000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.479000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.479000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.479000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.479000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.480000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.480000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.480000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.480000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.480000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.480000 audit: BPF prog-id=41 op=LOAD Feb 9 19:18:38.481000 audit: BPF prog-id=21 op=UNLOAD Feb 9 19:18:38.481000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.481000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.481000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.481000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.481000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.481000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.481000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.481000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.482000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.482000 audit: BPF prog-id=42 op=LOAD Feb 9 19:18:38.482000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.482000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.482000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.482000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.482000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.482000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.482000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.482000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.482000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.482000 audit: BPF prog-id=43 op=LOAD Feb 9 19:18:38.482000 audit: BPF prog-id=22 op=UNLOAD Feb 9 19:18:38.482000 audit: BPF prog-id=23 op=UNLOAD Feb 9 19:18:38.483000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.483000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.483000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.483000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.483000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.483000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.483000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.483000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.484000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.484000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.484000 audit: BPF prog-id=44 op=LOAD Feb 9 19:18:38.484000 audit: BPF prog-id=15 op=UNLOAD Feb 9 19:18:38.484000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.485000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.485000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.485000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.485000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.485000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.485000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.485000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.485000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.485000 audit: BPF prog-id=45 op=LOAD Feb 9 19:18:38.486000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.486000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.486000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.486000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.486000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.486000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.486000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.486000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.486000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.487000 audit: BPF prog-id=46 op=LOAD Feb 9 19:18:38.487000 audit: BPF prog-id=16 op=UNLOAD Feb 9 19:18:38.487000 audit: BPF prog-id=17 op=UNLOAD Feb 9 19:18:38.488000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.488000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.488000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.488000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.488000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.488000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.488000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.489000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.489000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.489000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.489000 audit: BPF prog-id=47 op=LOAD Feb 9 19:18:38.489000 audit: BPF prog-id=32 op=UNLOAD Feb 9 19:18:38.490000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.490000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.490000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.491000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.491000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.491000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.491000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.491000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.491000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.491000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.491000 audit: BPF prog-id=48 op=LOAD Feb 9 19:18:38.491000 audit: BPF prog-id=29 op=UNLOAD Feb 9 19:18:38.491000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.491000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.491000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.491000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.491000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.491000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.491000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.491000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.491000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.491000 audit: BPF prog-id=49 op=LOAD Feb 9 19:18:38.491000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.491000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.491000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.491000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.491000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.491000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.491000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.491000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.491000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.491000 audit: BPF prog-id=50 op=LOAD Feb 9 19:18:38.491000 audit: BPF prog-id=30 op=UNLOAD Feb 9 19:18:38.491000 audit: BPF prog-id=31 op=UNLOAD Feb 9 19:18:38.496000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.496000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.497000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.497000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.497000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.497000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.497000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.497000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.497000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.497000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:38.497000 audit: BPF prog-id=51 op=LOAD Feb 9 19:18:38.497000 audit: BPF prog-id=20 op=UNLOAD Feb 9 19:18:38.522000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:38.523978 systemd[1]: Started kubelet.service. Feb 9 19:18:38.548069 systemd[1]: Starting coreos-metadata.service... Feb 9 19:18:38.648734 kubelet[2090]: E0209 19:18:38.648657 2090 run.go:74] "command failed" err="failed to load kubelet config file, error: failed to load Kubelet config file /var/lib/kubelet/config.yaml, error failed to read kubelet config file \"/var/lib/kubelet/config.yaml\", error: open /var/lib/kubelet/config.yaml: no such file or directory, path: /var/lib/kubelet/config.yaml" Feb 9 19:18:38.652780 systemd[1]: kubelet.service: Main process exited, code=exited, status=1/FAILURE Feb 9 19:18:38.653000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=failed' Feb 9 19:18:38.653107 systemd[1]: kubelet.service: Failed with result 'exit-code'. Feb 9 19:18:38.721612 coreos-metadata[2097]: Feb 09 19:18:38.721 INFO Putting http://169.254.169.254/latest/api/token: Attempt #1 Feb 9 19:18:38.722609 coreos-metadata[2097]: Feb 09 19:18:38.722 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/instance-id: Attempt #1 Feb 9 19:18:38.723290 coreos-metadata[2097]: Feb 09 19:18:38.723 INFO Fetch successful Feb 9 19:18:38.723576 coreos-metadata[2097]: Feb 09 19:18:38.723 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/instance-type: Attempt #1 Feb 9 19:18:38.723900 coreos-metadata[2097]: Feb 09 19:18:38.723 INFO Fetch successful Feb 9 19:18:38.724154 coreos-metadata[2097]: Feb 09 19:18:38.723 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/local-ipv4: Attempt #1 Feb 9 19:18:38.724529 coreos-metadata[2097]: Feb 09 19:18:38.724 INFO Fetch successful Feb 9 19:18:38.724790 coreos-metadata[2097]: Feb 09 19:18:38.724 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/public-ipv4: Attempt #1 Feb 9 19:18:38.725198 coreos-metadata[2097]: Feb 09 19:18:38.725 INFO Fetch successful Feb 9 19:18:38.725506 coreos-metadata[2097]: Feb 09 19:18:38.725 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/placement/availability-zone: Attempt #1 Feb 9 19:18:38.725821 coreos-metadata[2097]: Feb 09 19:18:38.725 INFO Fetch successful Feb 9 19:18:38.726073 coreos-metadata[2097]: Feb 09 19:18:38.725 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/hostname: Attempt #1 Feb 9 19:18:38.726382 coreos-metadata[2097]: Feb 09 19:18:38.726 INFO Fetch successful Feb 9 19:18:38.726670 coreos-metadata[2097]: Feb 09 19:18:38.726 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/public-hostname: Attempt #1 Feb 9 19:18:38.726994 coreos-metadata[2097]: Feb 09 19:18:38.726 INFO Fetch successful Feb 9 19:18:38.727246 coreos-metadata[2097]: Feb 09 19:18:38.727 INFO Fetching http://169.254.169.254/2019-10-01/dynamic/instance-identity/document: Attempt #1 Feb 9 19:18:38.727733 coreos-metadata[2097]: Feb 09 19:18:38.727 INFO Fetch successful Feb 9 19:18:38.741356 systemd[1]: Finished coreos-metadata.service. Feb 9 19:18:38.742000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=coreos-metadata comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:40.049900 systemd[1]: Stopped kubelet.service. Feb 9 19:18:40.049000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:40.049000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:40.081813 systemd[1]: Reloading. Feb 9 19:18:40.206374 /usr/lib/systemd/system-generators/torcx-generator[2156]: time="2024-02-09T19:18:40Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.2 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.2 /var/lib/torcx/store]" Feb 9 19:18:40.214666 /usr/lib/systemd/system-generators/torcx-generator[2156]: time="2024-02-09T19:18:40Z" level=info msg="torcx already run" Feb 9 19:18:40.373201 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Feb 9 19:18:40.373976 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Feb 9 19:18:40.411899 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Feb 9 19:18:40.572000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.572000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.573000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.573000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.573000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.573000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.573000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.573000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.573000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.574000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.574000 audit: BPF prog-id=52 op=LOAD Feb 9 19:18:40.574000 audit: BPF prog-id=34 op=UNLOAD Feb 9 19:18:40.574000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.575000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.575000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.575000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.575000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.575000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.575000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.575000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.575000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.576000 audit: BPF prog-id=53 op=LOAD Feb 9 19:18:40.576000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.576000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.576000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.576000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.576000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.576000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.576000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.576000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.577000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.577000 audit: BPF prog-id=54 op=LOAD Feb 9 19:18:40.577000 audit: BPF prog-id=35 op=UNLOAD Feb 9 19:18:40.577000 audit: BPF prog-id=36 op=UNLOAD Feb 9 19:18:40.580000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.580000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.580000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.580000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.580000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.580000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.581000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.581000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.581000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.581000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.581000 audit: BPF prog-id=55 op=LOAD Feb 9 19:18:40.581000 audit: BPF prog-id=37 op=UNLOAD Feb 9 19:18:40.583000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.583000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.584000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.584000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.584000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.584000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.584000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.584000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.584000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.584000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.585000 audit: BPF prog-id=56 op=LOAD Feb 9 19:18:40.585000 audit: BPF prog-id=38 op=UNLOAD Feb 9 19:18:40.585000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.585000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.585000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.585000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.585000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.585000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.585000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.585000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.585000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.585000 audit: BPF prog-id=57 op=LOAD Feb 9 19:18:40.585000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.585000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.585000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.585000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.585000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.585000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.585000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.585000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.585000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.585000 audit: BPF prog-id=58 op=LOAD Feb 9 19:18:40.585000 audit: BPF prog-id=39 op=UNLOAD Feb 9 19:18:40.585000 audit: BPF prog-id=40 op=UNLOAD Feb 9 19:18:40.587000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.587000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.587000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.587000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.587000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.587000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.587000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.587000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.587000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.588000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.588000 audit: BPF prog-id=59 op=LOAD Feb 9 19:18:40.588000 audit: BPF prog-id=41 op=UNLOAD Feb 9 19:18:40.588000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.588000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.588000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.588000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.588000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.588000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.588000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.588000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.588000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.588000 audit: BPF prog-id=60 op=LOAD Feb 9 19:18:40.588000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.588000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.588000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.588000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.588000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.588000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.588000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.588000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.588000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.588000 audit: BPF prog-id=61 op=LOAD Feb 9 19:18:40.588000 audit: BPF prog-id=42 op=UNLOAD Feb 9 19:18:40.588000 audit: BPF prog-id=43 op=UNLOAD Feb 9 19:18:40.589000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.589000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.589000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.589000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.589000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.589000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.589000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.589000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.589000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.589000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.589000 audit: BPF prog-id=62 op=LOAD Feb 9 19:18:40.589000 audit: BPF prog-id=44 op=UNLOAD Feb 9 19:18:40.589000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.589000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.589000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.589000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.589000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.589000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.589000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.589000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.589000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.589000 audit: BPF prog-id=63 op=LOAD Feb 9 19:18:40.589000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.590000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.590000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.590000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.590000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.590000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.590000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.590000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.590000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.590000 audit: BPF prog-id=64 op=LOAD Feb 9 19:18:40.590000 audit: BPF prog-id=45 op=UNLOAD Feb 9 19:18:40.590000 audit: BPF prog-id=46 op=UNLOAD Feb 9 19:18:40.591000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.591000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.591000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.591000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.591000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.591000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.591000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.591000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.591000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.591000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.591000 audit: BPF prog-id=65 op=LOAD Feb 9 19:18:40.591000 audit: BPF prog-id=47 op=UNLOAD Feb 9 19:18:40.592000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.592000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.592000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.592000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.592000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.592000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.592000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.592000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.592000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.592000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.592000 audit: BPF prog-id=66 op=LOAD Feb 9 19:18:40.592000 audit: BPF prog-id=48 op=UNLOAD Feb 9 19:18:40.593000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.593000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.593000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.593000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.593000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.593000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.593000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.593000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.593000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.593000 audit: BPF prog-id=67 op=LOAD Feb 9 19:18:40.593000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.593000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.593000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.593000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.593000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.593000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.593000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.593000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.593000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.593000 audit: BPF prog-id=68 op=LOAD Feb 9 19:18:40.593000 audit: BPF prog-id=49 op=UNLOAD Feb 9 19:18:40.593000 audit: BPF prog-id=50 op=UNLOAD Feb 9 19:18:40.599000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.599000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.599000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.599000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.599000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.599000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.599000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.599000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.599000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.599000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:40.600000 audit: BPF prog-id=69 op=LOAD Feb 9 19:18:40.600000 audit: BPF prog-id=51 op=UNLOAD Feb 9 19:18:40.647000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:40.647358 systemd[1]: Started kubelet.service. Feb 9 19:18:40.749044 kubelet[2211]: Flag --container-runtime-endpoint has been deprecated, This parameter should be set via the config file specified by the Kubelet's --config flag. See https://kubernetes.io/docs/tasks/administer-cluster/kubelet-config-file/ for more information. Feb 9 19:18:40.749632 kubelet[2211]: Flag --pod-infra-container-image has been deprecated, will be removed in a future release. Image garbage collector will get sandbox image information from CRI. Feb 9 19:18:40.749736 kubelet[2211]: Flag --volume-plugin-dir has been deprecated, This parameter should be set via the config file specified by the Kubelet's --config flag. See https://kubernetes.io/docs/tasks/administer-cluster/kubelet-config-file/ for more information. Feb 9 19:18:40.749961 kubelet[2211]: I0209 19:18:40.749904 2211 server.go:199] "--pod-infra-container-image will not be pruned by the image garbage collector in kubelet and should also be set in the remote runtime" Feb 9 19:18:41.909404 kubelet[2211]: I0209 19:18:41.909364 2211 server.go:415] "Kubelet version" kubeletVersion="v1.27.2" Feb 9 19:18:41.910044 kubelet[2211]: I0209 19:18:41.910020 2211 server.go:417] "Golang settings" GOGC="" GOMAXPROCS="" GOTRACEBACK="" Feb 9 19:18:41.910493 kubelet[2211]: I0209 19:18:41.910469 2211 server.go:837] "Client rotation is on, will bootstrap in background" Feb 9 19:18:41.917053 kubelet[2211]: W0209 19:18:41.917017 2211 machine.go:65] Cannot read vendor id correctly, set empty. Feb 9 19:18:41.918360 kubelet[2211]: I0209 19:18:41.918321 2211 server.go:662] "--cgroups-per-qos enabled, but --cgroup-root was not specified. defaulting to /" Feb 9 19:18:41.918978 kubelet[2211]: I0209 19:18:41.918952 2211 container_manager_linux.go:266] "Container manager verified user specified cgroup-root exists" cgroupRoot=[] Feb 9 19:18:41.919118 kubelet[2211]: I0209 19:18:41.919046 2211 dynamic_cafile_content.go:157] "Starting controller" name="client-ca-bundle::/etc/kubernetes/pki/ca.crt" Feb 9 19:18:41.919310 kubelet[2211]: I0209 19:18:41.919286 2211 container_manager_linux.go:271] "Creating Container Manager object based on Node Config" nodeConfig={RuntimeCgroupsName: SystemCgroupsName: KubeletCgroupsName: KubeletOOMScoreAdj:-999 ContainerRuntime: CgroupsPerQOS:true CgroupRoot:/ CgroupDriver:systemd KubeletRootDir:/var/lib/kubelet ProtectKernelDefaults:false NodeAllocatableConfig:{KubeReservedCgroupName: SystemReservedCgroupName: ReservedSystemCPUs: EnforceNodeAllocatable:map[pods:{}] KubeReserved:map[] SystemReserved:map[] HardEvictionThresholds:[{Signal:memory.available Operator:LessThan Value:{Quantity:100Mi Percentage:0} GracePeriod:0s MinReclaim:} {Signal:nodefs.available Operator:LessThan Value:{Quantity: Percentage:0.1} GracePeriod:0s MinReclaim:} {Signal:nodefs.inodesFree Operator:LessThan Value:{Quantity: Percentage:0.05} GracePeriod:0s MinReclaim:} {Signal:imagefs.available Operator:LessThan Value:{Quantity: Percentage:0.15} GracePeriod:0s MinReclaim:}]} QOSReserved:map[] CPUManagerPolicy:none CPUManagerPolicyOptions:map[] TopologyManagerScope:container CPUManagerReconcilePeriod:10s ExperimentalMemoryManagerPolicy:None ExperimentalMemoryManagerReservedMemory:[] PodPidsLimit:-1 EnforceCPULimits:true CPUCFSQuotaPeriod:100ms TopologyManagerPolicy:none ExperimentalTopologyManagerPolicyOptions:map[]} Feb 9 19:18:41.919602 kubelet[2211]: I0209 19:18:41.919578 2211 topology_manager.go:136] "Creating topology manager with policy per scope" topologyPolicyName="none" topologyScopeName="container" Feb 9 19:18:41.919730 kubelet[2211]: I0209 19:18:41.919710 2211 container_manager_linux.go:302] "Creating device plugin manager" Feb 9 19:18:41.919971 kubelet[2211]: I0209 19:18:41.919950 2211 state_mem.go:36] "Initialized new in-memory state store" Feb 9 19:18:41.926001 kubelet[2211]: I0209 19:18:41.925951 2211 kubelet.go:405] "Attempting to sync node with API server" Feb 9 19:18:41.932141 kubelet[2211]: I0209 19:18:41.932086 2211 kubelet.go:298] "Adding static pod path" path="/etc/kubernetes/manifests" Feb 9 19:18:41.932297 kubelet[2211]: I0209 19:18:41.932171 2211 kubelet.go:309] "Adding apiserver pod source" Feb 9 19:18:41.932297 kubelet[2211]: I0209 19:18:41.932207 2211 apiserver.go:42] "Waiting for node sync before watching apiserver pods" Feb 9 19:18:41.933328 kubelet[2211]: E0209 19:18:41.933282 2211 file.go:98] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:18:41.933511 kubelet[2211]: E0209 19:18:41.933361 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:18:41.933839 kubelet[2211]: I0209 19:18:41.933810 2211 kuberuntime_manager.go:257] "Container runtime initialized" containerRuntime="containerd" version="1.6.16" apiVersion="v1" Feb 9 19:18:41.934637 kubelet[2211]: W0209 19:18:41.934613 2211 probe.go:268] Flexvolume plugin directory at /opt/libexec/kubernetes/kubelet-plugins/volume/exec/ does not exist. Recreating. Feb 9 19:18:41.935686 kubelet[2211]: I0209 19:18:41.935654 2211 server.go:1168] "Started kubelet" Feb 9 19:18:41.937549 kubelet[2211]: I0209 19:18:41.936871 2211 ratelimit.go:65] "Setting rate limiting for podresources endpoint" qps=100 burstTokens=10 Feb 9 19:18:41.937771 kubelet[2211]: I0209 19:18:41.937729 2211 server.go:162] "Starting to listen" address="0.0.0.0" port=10250 Feb 9 19:18:41.938857 kubelet[2211]: I0209 19:18:41.938807 2211 server.go:461] "Adding debug handlers to kubelet server" Feb 9 19:18:41.945479 kernel: kauditd_printk_skb: 429 callbacks suppressed Feb 9 19:18:41.945670 kernel: audit: type=1400 audit(1707506321.938:594): avc: denied { mac_admin } for pid=2211 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:41.938000 audit[2211]: AVC avc: denied { mac_admin } for pid=2211 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:41.945843 kubelet[2211]: E0209 19:18:41.943001 2211 cri_stats_provider.go:455] "Failed to get the info of the filesystem with mountpoint" err="unable to find data in memory cache" mountpoint="/var/lib/containerd/io.containerd.snapshotter.v1.overlayfs" Feb 9 19:18:41.945843 kubelet[2211]: E0209 19:18:41.943041 2211 kubelet.go:1400] "Image garbage collection failed once. Stats initialization may not have completed yet" err="invalid capacity 0 on image filesystem" Feb 9 19:18:41.946130 kubelet[2211]: I0209 19:18:41.946102 2211 kubelet.go:1355] "Unprivileged containerized plugins might not work, could not set selinux context on plugin registration dir" path="/var/lib/kubelet/plugins_registry" err="setxattr /var/lib/kubelet/plugins_registry: invalid argument" Feb 9 19:18:41.946542 kubelet[2211]: I0209 19:18:41.946515 2211 kubelet.go:1359] "Unprivileged containerized plugins might not work, could not set selinux context on plugins dir" path="/var/lib/kubelet/plugins" err="setxattr /var/lib/kubelet/plugins: invalid argument" Feb 9 19:18:41.946798 kubelet[2211]: I0209 19:18:41.946775 2211 fs_resource_analyzer.go:67] "Starting FS ResourceAnalyzer" Feb 9 19:18:41.938000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Feb 9 19:18:41.952618 kernel: audit: type=1401 audit(1707506321.938:594): op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Feb 9 19:18:41.952930 kubelet[2211]: I0209 19:18:41.952900 2211 volume_manager.go:284] "Starting Kubelet Volume Manager" Feb 9 19:18:41.953263 kubelet[2211]: E0209 19:18:41.946965 2211 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.94.17b247f3fab4d853", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.22.94", UID:"172.31.22.94", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"Starting", Message:"Starting kubelet.", Source:v1.EventSource{Component:"kubelet", Host:"172.31.22.94"}, FirstTimestamp:time.Date(2024, time.February, 9, 19, 18, 41, 935620179, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 19, 18, 41, 935620179, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 19:18:41.938000 audit[2211]: SYSCALL arch=c00000b7 syscall=5 success=no exit=-22 a0=4000c091d0 a1=40007e31e8 a2=4000c091a0 a3=25 items=0 ppid=1 pid=2211 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:41.954194 kubelet[2211]: I0209 19:18:41.954136 2211 desired_state_of_world_populator.go:145] "Desired state populator starts to run" Feb 9 19:18:41.955300 kubelet[2211]: E0209 19:18:41.955270 2211 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.22.94\" not found" Feb 9 19:18:41.959448 kubelet[2211]: W0209 19:18:41.959390 2211 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.Service: services is forbidden: User "system:anonymous" cannot list resource "services" in API group "" at the cluster scope Feb 9 19:18:41.959688 kubelet[2211]: E0209 19:18:41.959665 2211 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.Service: failed to list *v1.Service: services is forbidden: User "system:anonymous" cannot list resource "services" in API group "" at the cluster scope Feb 9 19:18:41.963721 kubelet[2211]: E0209 19:18:41.963693 2211 controller.go:146] "Failed to ensure lease exists, will retry" err="leases.coordination.k8s.io \"172.31.22.94\" is forbidden: User \"system:anonymous\" cannot get resource \"leases\" in API group \"coordination.k8s.io\" in the namespace \"kube-node-lease\"" interval="200ms" Feb 9 19:18:41.964010 kubelet[2211]: E0209 19:18:41.963908 2211 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.94.17b247f3fb25d5ee", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.22.94", UID:"172.31.22.94", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"InvalidDiskCapacity", Message:"invalid capacity 0 on image filesystem", Source:v1.EventSource{Component:"kubelet", Host:"172.31.22.94"}, FirstTimestamp:time.Date(2024, time.February, 9, 19, 18, 41, 943025134, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 19, 18, 41, 943025134, time.Local), Count:1, Type:"Warning", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 19:18:41.964299 kubelet[2211]: W0209 19:18:41.964277 2211 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.CSIDriver: csidrivers.storage.k8s.io is forbidden: User "system:anonymous" cannot list resource "csidrivers" in API group "storage.k8s.io" at the cluster scope Feb 9 19:18:41.964452 kubelet[2211]: E0209 19:18:41.964401 2211 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.CSIDriver: failed to list *v1.CSIDriver: csidrivers.storage.k8s.io is forbidden: User "system:anonymous" cannot list resource "csidrivers" in API group "storage.k8s.io" at the cluster scope Feb 9 19:18:41.965114 kernel: audit: type=1300 audit(1707506321.938:594): arch=c00000b7 syscall=5 success=no exit=-22 a0=4000c091d0 a1=40007e31e8 a2=4000c091a0 a3=25 items=0 ppid=1 pid=2211 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:41.976148 kernel: audit: type=1327 audit(1707506321.938:594): proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Feb 9 19:18:41.938000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Feb 9 19:18:41.946000 audit[2211]: AVC avc: denied { mac_admin } for pid=2211 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:41.981791 kubelet[2211]: W0209 19:18:41.981757 2211 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.Node: nodes "172.31.22.94" is forbidden: User "system:anonymous" cannot list resource "nodes" in API group "" at the cluster scope Feb 9 19:18:41.982015 kubelet[2211]: E0209 19:18:41.981975 2211 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.Node: failed to list *v1.Node: nodes "172.31.22.94" is forbidden: User "system:anonymous" cannot list resource "nodes" in API group "" at the cluster scope Feb 9 19:18:41.984691 kernel: audit: type=1400 audit(1707506321.946:595): avc: denied { mac_admin } for pid=2211 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:41.946000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Feb 9 19:18:41.989711 kernel: audit: type=1401 audit(1707506321.946:595): op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Feb 9 19:18:41.946000 audit[2211]: SYSCALL arch=c00000b7 syscall=5 success=no exit=-22 a0=40003c9fe0 a1=40007e3200 a2=4000c09260 a3=25 items=0 ppid=1 pid=2211 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:42.001917 kernel: audit: type=1300 audit(1707506321.946:595): arch=c00000b7 syscall=5 success=no exit=-22 a0=40003c9fe0 a1=40007e3200 a2=4000c09260 a3=25 items=0 ppid=1 pid=2211 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:41.946000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Feb 9 19:18:42.014157 kernel: audit: type=1327 audit(1707506321.946:595): proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Feb 9 19:18:42.041850 kubelet[2211]: I0209 19:18:42.041814 2211 cpu_manager.go:214] "Starting CPU manager" policy="none" Feb 9 19:18:42.042068 kubelet[2211]: I0209 19:18:42.042046 2211 cpu_manager.go:215] "Reconciling" reconcilePeriod="10s" Feb 9 19:18:42.042222 kubelet[2211]: I0209 19:18:42.042200 2211 state_mem.go:36] "Initialized new in-memory state store" Feb 9 19:18:42.052652 kubelet[2211]: E0209 19:18:42.052512 2211 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.94.17b247f400f1b596", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.22.94", UID:"172.31.22.94", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 172.31.22.94 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"172.31.22.94"}, FirstTimestamp:time.Date(2024, time.February, 9, 19, 18, 42, 40272278, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 19, 18, 42, 40272278, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 19:18:42.055636 kubelet[2211]: E0209 19:18:42.055521 2211 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.94.17b247f400f1d41e", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.22.94", UID:"172.31.22.94", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 172.31.22.94 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"172.31.22.94"}, FirstTimestamp:time.Date(2024, time.February, 9, 19, 18, 42, 40280094, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 19, 18, 42, 40280094, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 19:18:42.057551 kubelet[2211]: I0209 19:18:42.057519 2211 kubelet_node_status.go:70] "Attempting to register node" node="172.31.22.94" Feb 9 19:18:42.058005 kubelet[2211]: I0209 19:18:42.057965 2211 policy_none.go:49] "None policy: Start" Feb 9 19:18:42.058291 kubelet[2211]: E0209 19:18:42.058151 2211 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.94.17b247f400f1e700", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.22.94", UID:"172.31.22.94", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 172.31.22.94 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"172.31.22.94"}, FirstTimestamp:time.Date(2024, time.February, 9, 19, 18, 42, 40284928, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 19, 18, 42, 40284928, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 19:18:42.059886 kubelet[2211]: I0209 19:18:42.059843 2211 memory_manager.go:169] "Starting memorymanager" policy="None" Feb 9 19:18:42.060079 kubelet[2211]: I0209 19:18:42.060059 2211 state_mem.go:35] "Initializing new in-memory state store" Feb 9 19:18:42.061452 kubelet[2211]: E0209 19:18:42.061387 2211 kubelet_node_status.go:92] "Unable to register node with API server" err="nodes is forbidden: User \"system:anonymous\" cannot create resource \"nodes\" in API group \"\" at the cluster scope" node="172.31.22.94" Feb 9 19:18:42.063974 kubelet[2211]: E0209 19:18:42.063858 2211 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.94.17b247f400f1b596", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.22.94", UID:"172.31.22.94", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 172.31.22.94 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"172.31.22.94"}, FirstTimestamp:time.Date(2024, time.February, 9, 19, 18, 42, 40272278, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 19, 18, 42, 57374772, time.Local), Count:2, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.22.94.17b247f400f1b596" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 19:18:42.066541 kubelet[2211]: E0209 19:18:42.066361 2211 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.94.17b247f400f1d41e", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.22.94", UID:"172.31.22.94", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 172.31.22.94 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"172.31.22.94"}, FirstTimestamp:time.Date(2024, time.February, 9, 19, 18, 42, 40280094, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 19, 18, 42, 57381891, time.Local), Count:2, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.22.94.17b247f400f1d41e" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 19:18:42.074017 kubelet[2211]: E0209 19:18:42.073878 2211 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.94.17b247f400f1e700", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.22.94", UID:"172.31.22.94", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 172.31.22.94 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"172.31.22.94"}, FirstTimestamp:time.Date(2024, time.February, 9, 19, 18, 42, 40284928, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 19, 18, 42, 57442040, time.Local), Count:2, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.22.94.17b247f400f1e700" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 19:18:42.076225 systemd[1]: Created slice kubepods.slice. Feb 9 19:18:42.075000 audit[2226]: NETFILTER_CFG table=mangle:2 family=2 entries=2 op=nft_register_chain pid=2226 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 19:18:42.075000 audit[2226]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=136 a0=3 a1=ffffc2b2ac60 a2=0 a3=1 items=0 ppid=2211 pid=2226 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:42.096258 kernel: audit: type=1325 audit(1707506322.075:596): table=mangle:2 family=2 entries=2 op=nft_register_chain pid=2226 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 19:18:42.096367 kernel: audit: type=1300 audit(1707506322.075:596): arch=c00000b7 syscall=211 success=yes exit=136 a0=3 a1=ffffc2b2ac60 a2=0 a3=1 items=0 ppid=2211 pid=2226 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:42.075000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D49505441424C45532D48494E54002D74006D616E676C65 Feb 9 19:18:42.086000 audit[2229]: NETFILTER_CFG table=filter:3 family=2 entries=2 op=nft_register_chain pid=2229 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 19:18:42.086000 audit[2229]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=132 a0=3 a1=ffffe3885100 a2=0 a3=1 items=0 ppid=2211 pid=2229 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:42.086000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4649524557414C4C002D740066696C746572 Feb 9 19:18:42.100038 systemd[1]: Created slice kubepods-burstable.slice. Feb 9 19:18:42.107034 systemd[1]: Created slice kubepods-besteffort.slice. Feb 9 19:18:42.118000 audit[2211]: AVC avc: denied { mac_admin } for pid=2211 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:42.118000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Feb 9 19:18:42.118000 audit[2211]: SYSCALL arch=c00000b7 syscall=5 success=no exit=-22 a0=4000f8a5d0 a1=4000e35f08 a2=4000f8a5a0 a3=25 items=0 ppid=1 pid=2211 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:42.118000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Feb 9 19:18:42.120106 kubelet[2211]: I0209 19:18:42.119468 2211 manager.go:455] "Failed to read data from checkpoint" checkpoint="kubelet_internal_checkpoint" err="checkpoint is not found" Feb 9 19:18:42.120106 kubelet[2211]: I0209 19:18:42.119587 2211 server.go:88] "Unprivileged containerized plugins might not work. Could not set selinux context on socket dir" path="/var/lib/kubelet/device-plugins/" err="setxattr /var/lib/kubelet/device-plugins/: invalid argument" Feb 9 19:18:42.120106 kubelet[2211]: I0209 19:18:42.119917 2211 plugin_manager.go:118] "Starting Kubelet Plugin Manager" Feb 9 19:18:42.122119 kubelet[2211]: E0209 19:18:42.121463 2211 eviction_manager.go:262] "Eviction manager: failed to get summary stats" err="failed to get node info: node \"172.31.22.94\" not found" Feb 9 19:18:42.126092 kubelet[2211]: E0209 19:18:42.125978 2211 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.94.17b247f405da0962", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.22.94", UID:"172.31.22.94", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeAllocatableEnforced", Message:"Updated Node Allocatable limit across pods", Source:v1.EventSource{Component:"kubelet", Host:"172.31.22.94"}, FirstTimestamp:time.Date(2024, time.February, 9, 19, 18, 42, 122606946, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 19, 18, 42, 122606946, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 19:18:42.097000 audit[2231]: NETFILTER_CFG table=filter:4 family=2 entries=2 op=nft_register_chain pid=2231 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 19:18:42.097000 audit[2231]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=312 a0=3 a1=ffffed174190 a2=0 a3=1 items=0 ppid=2211 pid=2231 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:42.097000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6A004B5542452D4649524557414C4C Feb 9 19:18:42.139000 audit[2236]: NETFILTER_CFG table=filter:5 family=2 entries=2 op=nft_register_chain pid=2236 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 19:18:42.139000 audit[2236]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=312 a0=3 a1=ffffe3b99180 a2=0 a3=1 items=0 ppid=2211 pid=2236 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:42.139000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6A004B5542452D4649524557414C4C Feb 9 19:18:42.166077 kubelet[2211]: E0209 19:18:42.165949 2211 controller.go:146] "Failed to ensure lease exists, will retry" err="leases.coordination.k8s.io \"172.31.22.94\" is forbidden: User \"system:anonymous\" cannot get resource \"leases\" in API group \"coordination.k8s.io\" in the namespace \"kube-node-lease\"" interval="400ms" Feb 9 19:18:42.225000 audit[2241]: NETFILTER_CFG table=filter:6 family=2 entries=1 op=nft_register_rule pid=2241 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 19:18:42.225000 audit[2241]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=924 a0=3 a1=ffffe7610dd0 a2=0 a3=1 items=0 ppid=2211 pid=2241 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:42.225000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D41004B5542452D4649524557414C4C002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E7400626C6F636B20696E636F6D696E67206C6F63616C6E657420636F6E6E656374696F6E73002D2D647374003132372E302E302E302F38 Feb 9 19:18:42.228471 kubelet[2211]: I0209 19:18:42.228395 2211 kubelet_network_linux.go:63] "Initialized iptables rules." protocol=IPv4 Feb 9 19:18:42.228000 audit[2242]: NETFILTER_CFG table=mangle:7 family=10 entries=2 op=nft_register_chain pid=2242 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 19:18:42.228000 audit[2242]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=136 a0=3 a1=ffffe18cc2a0 a2=0 a3=1 items=0 ppid=2211 pid=2242 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:42.228000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D49505441424C45532D48494E54002D74006D616E676C65 Feb 9 19:18:42.230815 kubelet[2211]: I0209 19:18:42.230788 2211 kubelet_network_linux.go:63] "Initialized iptables rules." protocol=IPv6 Feb 9 19:18:42.230978 kubelet[2211]: I0209 19:18:42.230957 2211 status_manager.go:207] "Starting to sync pod status with apiserver" Feb 9 19:18:42.231123 kubelet[2211]: I0209 19:18:42.231102 2211 kubelet.go:2257] "Starting kubelet main sync loop" Feb 9 19:18:42.231331 kubelet[2211]: E0209 19:18:42.231310 2211 kubelet.go:2281] "Skipping pod synchronization" err="PLEG is not healthy: pleg has yet to be successful" Feb 9 19:18:42.230000 audit[2243]: NETFILTER_CFG table=mangle:8 family=2 entries=1 op=nft_register_chain pid=2243 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 19:18:42.230000 audit[2243]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffc7531290 a2=0 a3=1 items=0 ppid=2211 pid=2243 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:42.230000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006D616E676C65 Feb 9 19:18:42.233000 audit[2244]: NETFILTER_CFG table=mangle:9 family=10 entries=1 op=nft_register_chain pid=2244 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 19:18:42.233000 audit[2244]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffdc1a7ae0 a2=0 a3=1 items=0 ppid=2211 pid=2244 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:42.233000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006D616E676C65 Feb 9 19:18:42.235279 kubelet[2211]: W0209 19:18:42.235246 2211 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.RuntimeClass: runtimeclasses.node.k8s.io is forbidden: User "system:anonymous" cannot list resource "runtimeclasses" in API group "node.k8s.io" at the cluster scope Feb 9 19:18:42.235529 kubelet[2211]: E0209 19:18:42.235507 2211 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.RuntimeClass: failed to list *v1.RuntimeClass: runtimeclasses.node.k8s.io is forbidden: User "system:anonymous" cannot list resource "runtimeclasses" in API group "node.k8s.io" at the cluster scope Feb 9 19:18:42.234000 audit[2246]: NETFILTER_CFG table=nat:10 family=10 entries=2 op=nft_register_chain pid=2246 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 19:18:42.234000 audit[2246]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=128 a0=3 a1=ffffc3cc4520 a2=0 a3=1 items=0 ppid=2211 pid=2246 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:42.234000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006E6174 Feb 9 19:18:42.236000 audit[2245]: NETFILTER_CFG table=nat:11 family=2 entries=2 op=nft_register_chain pid=2245 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 19:18:42.236000 audit[2245]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=128 a0=3 a1=ffffcfa55c00 a2=0 a3=1 items=0 ppid=2211 pid=2245 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:42.236000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006E6174 Feb 9 19:18:42.237000 audit[2247]: NETFILTER_CFG table=filter:12 family=10 entries=2 op=nft_register_chain pid=2247 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 19:18:42.237000 audit[2247]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=136 a0=3 a1=fffff82cde70 a2=0 a3=1 items=0 ppid=2211 pid=2247 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:42.237000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D740066696C746572 Feb 9 19:18:42.240000 audit[2248]: NETFILTER_CFG table=filter:13 family=2 entries=1 op=nft_register_chain pid=2248 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 19:18:42.240000 audit[2248]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=fffff904b340 a2=0 a3=1 items=0 ppid=2211 pid=2248 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:42.240000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D740066696C746572 Feb 9 19:18:42.263527 kubelet[2211]: I0209 19:18:42.263494 2211 kubelet_node_status.go:70] "Attempting to register node" node="172.31.22.94" Feb 9 19:18:42.266904 kubelet[2211]: E0209 19:18:42.266873 2211 kubelet_node_status.go:92] "Unable to register node with API server" err="nodes is forbidden: User \"system:anonymous\" cannot create resource \"nodes\" in API group \"\" at the cluster scope" node="172.31.22.94" Feb 9 19:18:42.267294 kubelet[2211]: E0209 19:18:42.267173 2211 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.94.17b247f400f1b596", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.22.94", UID:"172.31.22.94", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 172.31.22.94 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"172.31.22.94"}, FirstTimestamp:time.Date(2024, time.February, 9, 19, 18, 42, 40272278, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 19, 18, 42, 263395372, time.Local), Count:3, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.22.94.17b247f400f1b596" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 19:18:42.269298 kubelet[2211]: E0209 19:18:42.269197 2211 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.94.17b247f400f1d41e", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.22.94", UID:"172.31.22.94", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 172.31.22.94 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"172.31.22.94"}, FirstTimestamp:time.Date(2024, time.February, 9, 19, 18, 42, 40280094, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 19, 18, 42, 263455834, time.Local), Count:3, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.22.94.17b247f400f1d41e" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 19:18:42.271555 kubelet[2211]: E0209 19:18:42.271462 2211 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.94.17b247f400f1e700", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.22.94", UID:"172.31.22.94", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 172.31.22.94 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"172.31.22.94"}, FirstTimestamp:time.Date(2024, time.February, 9, 19, 18, 42, 40284928, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 19, 18, 42, 263461366, time.Local), Count:3, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.22.94.17b247f400f1e700" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 19:18:42.567745 kubelet[2211]: E0209 19:18:42.567698 2211 controller.go:146] "Failed to ensure lease exists, will retry" err="leases.coordination.k8s.io \"172.31.22.94\" is forbidden: User \"system:anonymous\" cannot get resource \"leases\" in API group \"coordination.k8s.io\" in the namespace \"kube-node-lease\"" interval="800ms" Feb 9 19:18:42.668280 kubelet[2211]: I0209 19:18:42.668236 2211 kubelet_node_status.go:70] "Attempting to register node" node="172.31.22.94" Feb 9 19:18:42.670389 kubelet[2211]: E0209 19:18:42.670280 2211 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.94.17b247f400f1b596", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.22.94", UID:"172.31.22.94", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 172.31.22.94 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"172.31.22.94"}, FirstTimestamp:time.Date(2024, time.February, 9, 19, 18, 42, 40272278, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 19, 18, 42, 668185931, time.Local), Count:4, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.22.94.17b247f400f1b596" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 19:18:42.671085 kubelet[2211]: E0209 19:18:42.671056 2211 kubelet_node_status.go:92] "Unable to register node with API server" err="nodes is forbidden: User \"system:anonymous\" cannot create resource \"nodes\" in API group \"\" at the cluster scope" node="172.31.22.94" Feb 9 19:18:42.672607 kubelet[2211]: E0209 19:18:42.672512 2211 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.94.17b247f400f1d41e", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.22.94", UID:"172.31.22.94", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 172.31.22.94 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"172.31.22.94"}, FirstTimestamp:time.Date(2024, time.February, 9, 19, 18, 42, 40280094, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 19, 18, 42, 668195815, time.Local), Count:4, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.22.94.17b247f400f1d41e" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 19:18:42.674295 kubelet[2211]: E0209 19:18:42.674203 2211 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.94.17b247f400f1e700", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.22.94", UID:"172.31.22.94", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 172.31.22.94 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"172.31.22.94"}, FirstTimestamp:time.Date(2024, time.February, 9, 19, 18, 42, 40284928, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 19, 18, 42, 668200782, time.Local), Count:4, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.22.94.17b247f400f1e700" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 19:18:42.888617 kubelet[2211]: W0209 19:18:42.888484 2211 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.Node: nodes "172.31.22.94" is forbidden: User "system:anonymous" cannot list resource "nodes" in API group "" at the cluster scope Feb 9 19:18:42.888617 kubelet[2211]: E0209 19:18:42.888538 2211 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.Node: failed to list *v1.Node: nodes "172.31.22.94" is forbidden: User "system:anonymous" cannot list resource "nodes" in API group "" at the cluster scope Feb 9 19:18:42.918648 kubelet[2211]: I0209 19:18:42.918616 2211 transport.go:147] "Certificate rotation detected, shutting down client connections to start using new credentials" Feb 9 19:18:42.933896 kubelet[2211]: E0209 19:18:42.933848 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:18:43.325084 kubelet[2211]: E0209 19:18:43.325044 2211 csi_plugin.go:295] Failed to initialize CSINode: error updating CSINode annotation: timed out waiting for the condition; caused by: nodes "172.31.22.94" not found Feb 9 19:18:43.381655 kubelet[2211]: E0209 19:18:43.381624 2211 nodelease.go:49] "Failed to get node when trying to set owner ref to the node lease" err="nodes \"172.31.22.94\" not found" node="172.31.22.94" Feb 9 19:18:43.473529 kubelet[2211]: I0209 19:18:43.472960 2211 kubelet_node_status.go:70] "Attempting to register node" node="172.31.22.94" Feb 9 19:18:43.486576 kubelet[2211]: I0209 19:18:43.486546 2211 kubelet_node_status.go:73] "Successfully registered node" node="172.31.22.94" Feb 9 19:18:43.549799 kubelet[2211]: E0209 19:18:43.549757 2211 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.22.94\" not found" Feb 9 19:18:43.650768 kubelet[2211]: E0209 19:18:43.650639 2211 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.22.94\" not found" Feb 9 19:18:43.678000 audit[2006]: USER_END pid=2006 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 19:18:43.679000 audit[2006]: CRED_DISP pid=2006 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 19:18:43.680251 sudo[2006]: pam_unix(sudo:session): session closed for user root Feb 9 19:18:43.703758 sshd[2003]: pam_unix(sshd:session): session closed for user core Feb 9 19:18:43.704000 audit[2003]: USER_END pid=2003 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 9 19:18:43.705000 audit[2003]: CRED_DISP pid=2003 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 9 19:18:43.710129 systemd[1]: sshd@6-172.31.22.94:22-147.75.109.163:47042.service: Deactivated successfully. Feb 9 19:18:43.709000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@6-172.31.22.94:22-147.75.109.163:47042 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:43.711581 systemd[1]: session-7.scope: Deactivated successfully. Feb 9 19:18:43.712336 systemd-logind[1737]: Session 7 logged out. Waiting for processes to exit. Feb 9 19:18:43.714096 systemd-logind[1737]: Removed session 7. Feb 9 19:18:43.751464 kubelet[2211]: E0209 19:18:43.751384 2211 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.22.94\" not found" Feb 9 19:18:43.852242 kubelet[2211]: E0209 19:18:43.852202 2211 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.22.94\" not found" Feb 9 19:18:43.934258 kubelet[2211]: E0209 19:18:43.934152 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:18:43.953450 kubelet[2211]: E0209 19:18:43.953398 2211 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.22.94\" not found" Feb 9 19:18:44.054069 kubelet[2211]: E0209 19:18:44.054031 2211 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.22.94\" not found" Feb 9 19:18:44.154852 kubelet[2211]: E0209 19:18:44.154816 2211 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.22.94\" not found" Feb 9 19:18:44.255267 kubelet[2211]: E0209 19:18:44.255147 2211 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.22.94\" not found" Feb 9 19:18:44.355789 kubelet[2211]: E0209 19:18:44.355748 2211 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.22.94\" not found" Feb 9 19:18:44.456664 kubelet[2211]: E0209 19:18:44.456634 2211 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.22.94\" not found" Feb 9 19:18:44.557674 kubelet[2211]: E0209 19:18:44.557640 2211 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.22.94\" not found" Feb 9 19:18:44.658385 kubelet[2211]: E0209 19:18:44.658344 2211 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.22.94\" not found" Feb 9 19:18:44.759673 kubelet[2211]: I0209 19:18:44.759637 2211 kuberuntime_manager.go:1460] "Updating runtime config through cri with podcidr" CIDR="192.168.1.0/24" Feb 9 19:18:44.760224 env[1744]: time="2024-02-09T19:18:44.760147363Z" level=info msg="No cni config template is specified, wait for other system components to drop the config." Feb 9 19:18:44.761213 kubelet[2211]: I0209 19:18:44.761174 2211 kubelet_network.go:61] "Updating Pod CIDR" originalPodCIDR="" newPodCIDR="192.168.1.0/24" Feb 9 19:18:44.934740 kubelet[2211]: I0209 19:18:44.934628 2211 apiserver.go:52] "Watching apiserver" Feb 9 19:18:44.935575 kubelet[2211]: E0209 19:18:44.935531 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:18:44.941071 kubelet[2211]: I0209 19:18:44.941033 2211 topology_manager.go:212] "Topology Admit Handler" Feb 9 19:18:44.941424 kubelet[2211]: I0209 19:18:44.941377 2211 topology_manager.go:212] "Topology Admit Handler" Feb 9 19:18:44.941627 kubelet[2211]: E0209 19:18:44.941580 2211 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-cqn68" podUID=a6dae328-8341-4be4-ac60-ed961c923c62 Feb 9 19:18:44.941813 kubelet[2211]: I0209 19:18:44.941789 2211 topology_manager.go:212] "Topology Admit Handler" Feb 9 19:18:44.951710 systemd[1]: Created slice kubepods-besteffort-poda314b406_3ae2_4866_9a49_5e0d0ad0d18e.slice. Feb 9 19:18:44.956189 kubelet[2211]: I0209 19:18:44.956134 2211 desired_state_of_world_populator.go:153] "Finished populating initial desired state of world" Feb 9 19:18:44.972353 kubelet[2211]: I0209 19:18:44.972315 2211 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"socket-dir\" (UniqueName: \"kubernetes.io/host-path/a6dae328-8341-4be4-ac60-ed961c923c62-socket-dir\") pod \"csi-node-driver-cqn68\" (UID: \"a6dae328-8341-4be4-ac60-ed961c923c62\") " pod="calico-system/csi-node-driver-cqn68" Feb 9 19:18:44.972645 kubelet[2211]: I0209 19:18:44.972619 2211 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"xtables-lock\" (UniqueName: \"kubernetes.io/host-path/a314b406-3ae2-4866-9a49-5e0d0ad0d18e-xtables-lock\") pod \"kube-proxy-ctm7j\" (UID: \"a314b406-3ae2-4866-9a49-5e0d0ad0d18e\") " pod="kube-system/kube-proxy-ctm7j" Feb 9 19:18:44.972795 kubelet[2211]: I0209 19:18:44.972773 2211 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"lib-modules\" (UniqueName: \"kubernetes.io/host-path/a314b406-3ae2-4866-9a49-5e0d0ad0d18e-lib-modules\") pod \"kube-proxy-ctm7j\" (UID: \"a314b406-3ae2-4866-9a49-5e0d0ad0d18e\") " pod="kube-system/kube-proxy-ctm7j" Feb 9 19:18:44.972942 kubelet[2211]: I0209 19:18:44.972921 2211 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"lib-modules\" (UniqueName: \"kubernetes.io/host-path/d30f36ef-11ac-4f2a-9cce-c7802f14b756-lib-modules\") pod \"calico-node-d9w6x\" (UID: \"d30f36ef-11ac-4f2a-9cce-c7802f14b756\") " pod="calico-system/calico-node-d9w6x" Feb 9 19:18:44.973081 kubelet[2211]: I0209 19:18:44.973060 2211 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"policysync\" (UniqueName: \"kubernetes.io/host-path/d30f36ef-11ac-4f2a-9cce-c7802f14b756-policysync\") pod \"calico-node-d9w6x\" (UID: \"d30f36ef-11ac-4f2a-9cce-c7802f14b756\") " pod="calico-system/calico-node-d9w6x" Feb 9 19:18:44.973729 kubelet[2211]: I0209 19:18:44.973561 2211 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-log-dir\" (UniqueName: \"kubernetes.io/host-path/d30f36ef-11ac-4f2a-9cce-c7802f14b756-cni-log-dir\") pod \"calico-node-d9w6x\" (UID: \"d30f36ef-11ac-4f2a-9cce-c7802f14b756\") " pod="calico-system/calico-node-d9w6x" Feb 9 19:18:44.974211 kubelet[2211]: I0209 19:18:44.974182 2211 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-proxy\" (UniqueName: \"kubernetes.io/configmap/a314b406-3ae2-4866-9a49-5e0d0ad0d18e-kube-proxy\") pod \"kube-proxy-ctm7j\" (UID: \"a314b406-3ae2-4866-9a49-5e0d0ad0d18e\") " pod="kube-system/kube-proxy-ctm7j" Feb 9 19:18:44.974383 kubelet[2211]: I0209 19:18:44.974361 2211 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-prn49\" (UniqueName: \"kubernetes.io/projected/a314b406-3ae2-4866-9a49-5e0d0ad0d18e-kube-api-access-prn49\") pod \"kube-proxy-ctm7j\" (UID: \"a314b406-3ae2-4866-9a49-5e0d0ad0d18e\") " pod="kube-system/kube-proxy-ctm7j" Feb 9 19:18:44.974662 kubelet[2211]: I0209 19:18:44.974638 2211 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"xtables-lock\" (UniqueName: \"kubernetes.io/host-path/d30f36ef-11ac-4f2a-9cce-c7802f14b756-xtables-lock\") pod \"calico-node-d9w6x\" (UID: \"d30f36ef-11ac-4f2a-9cce-c7802f14b756\") " pod="calico-system/calico-node-d9w6x" Feb 9 19:18:44.974808 kubelet[2211]: I0209 19:18:44.974786 2211 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"tigera-ca-bundle\" (UniqueName: \"kubernetes.io/configmap/d30f36ef-11ac-4f2a-9cce-c7802f14b756-tigera-ca-bundle\") pod \"calico-node-d9w6x\" (UID: \"d30f36ef-11ac-4f2a-9cce-c7802f14b756\") " pod="calico-system/calico-node-d9w6x" Feb 9 19:18:44.974950 kubelet[2211]: I0209 19:18:44.974929 2211 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-bin-dir\" (UniqueName: \"kubernetes.io/host-path/d30f36ef-11ac-4f2a-9cce-c7802f14b756-cni-bin-dir\") pod \"calico-node-d9w6x\" (UID: \"d30f36ef-11ac-4f2a-9cce-c7802f14b756\") " pod="calico-system/calico-node-d9w6x" Feb 9 19:18:44.975114 kubelet[2211]: I0209 19:18:44.975092 2211 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"flexvol-driver-host\" (UniqueName: \"kubernetes.io/host-path/d30f36ef-11ac-4f2a-9cce-c7802f14b756-flexvol-driver-host\") pod \"calico-node-d9w6x\" (UID: \"d30f36ef-11ac-4f2a-9cce-c7802f14b756\") " pod="calico-system/calico-node-d9w6x" Feb 9 19:18:44.975262 systemd[1]: Created slice kubepods-besteffort-podd30f36ef_11ac_4f2a_9cce_c7802f14b756.slice. Feb 9 19:18:44.976090 kubelet[2211]: I0209 19:18:44.976060 2211 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"varrun\" (UniqueName: \"kubernetes.io/host-path/a6dae328-8341-4be4-ac60-ed961c923c62-varrun\") pod \"csi-node-driver-cqn68\" (UID: \"a6dae328-8341-4be4-ac60-ed961c923c62\") " pod="calico-system/csi-node-driver-cqn68" Feb 9 19:18:44.976277 kubelet[2211]: I0209 19:18:44.976255 2211 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kubelet-dir\" (UniqueName: \"kubernetes.io/host-path/a6dae328-8341-4be4-ac60-ed961c923c62-kubelet-dir\") pod \"csi-node-driver-cqn68\" (UID: \"a6dae328-8341-4be4-ac60-ed961c923c62\") " pod="calico-system/csi-node-driver-cqn68" Feb 9 19:18:44.976466 kubelet[2211]: I0209 19:18:44.976406 2211 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"registration-dir\" (UniqueName: \"kubernetes.io/host-path/a6dae328-8341-4be4-ac60-ed961c923c62-registration-dir\") pod \"csi-node-driver-cqn68\" (UID: \"a6dae328-8341-4be4-ac60-ed961c923c62\") " pod="calico-system/csi-node-driver-cqn68" Feb 9 19:18:44.976612 kubelet[2211]: I0209 19:18:44.976592 2211 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-d4b54\" (UniqueName: \"kubernetes.io/projected/a6dae328-8341-4be4-ac60-ed961c923c62-kube-api-access-d4b54\") pod \"csi-node-driver-cqn68\" (UID: \"a6dae328-8341-4be4-ac60-ed961c923c62\") " pod="calico-system/csi-node-driver-cqn68" Feb 9 19:18:44.976749 kubelet[2211]: I0209 19:18:44.976729 2211 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"node-certs\" (UniqueName: \"kubernetes.io/secret/d30f36ef-11ac-4f2a-9cce-c7802f14b756-node-certs\") pod \"calico-node-d9w6x\" (UID: \"d30f36ef-11ac-4f2a-9cce-c7802f14b756\") " pod="calico-system/calico-node-d9w6x" Feb 9 19:18:44.976932 kubelet[2211]: I0209 19:18:44.976911 2211 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"var-lib-calico\" (UniqueName: \"kubernetes.io/host-path/d30f36ef-11ac-4f2a-9cce-c7802f14b756-var-lib-calico\") pod \"calico-node-d9w6x\" (UID: \"d30f36ef-11ac-4f2a-9cce-c7802f14b756\") " pod="calico-system/calico-node-d9w6x" Feb 9 19:18:44.977079 kubelet[2211]: I0209 19:18:44.977053 2211 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-net-dir\" (UniqueName: \"kubernetes.io/host-path/d30f36ef-11ac-4f2a-9cce-c7802f14b756-cni-net-dir\") pod \"calico-node-d9w6x\" (UID: \"d30f36ef-11ac-4f2a-9cce-c7802f14b756\") " pod="calico-system/calico-node-d9w6x" Feb 9 19:18:44.977223 kubelet[2211]: I0209 19:18:44.977201 2211 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"var-run-calico\" (UniqueName: \"kubernetes.io/host-path/d30f36ef-11ac-4f2a-9cce-c7802f14b756-var-run-calico\") pod \"calico-node-d9w6x\" (UID: \"d30f36ef-11ac-4f2a-9cce-c7802f14b756\") " pod="calico-system/calico-node-d9w6x" Feb 9 19:18:44.977369 kubelet[2211]: I0209 19:18:44.977347 2211 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-bcqph\" (UniqueName: \"kubernetes.io/projected/d30f36ef-11ac-4f2a-9cce-c7802f14b756-kube-api-access-bcqph\") pod \"calico-node-d9w6x\" (UID: \"d30f36ef-11ac-4f2a-9cce-c7802f14b756\") " pod="calico-system/calico-node-d9w6x" Feb 9 19:18:44.977525 kubelet[2211]: I0209 19:18:44.977503 2211 reconciler.go:41] "Reconciler: start to sync state" Feb 9 19:18:45.091299 kubelet[2211]: E0209 19:18:45.091264 2211 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 19:18:45.091515 kubelet[2211]: W0209 19:18:45.091486 2211 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 19:18:45.093220 kubelet[2211]: E0209 19:18:45.093176 2211 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 19:18:45.136767 kubelet[2211]: E0209 19:18:45.132513 2211 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 19:18:45.136767 kubelet[2211]: W0209 19:18:45.132550 2211 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 19:18:45.136767 kubelet[2211]: E0209 19:18:45.132590 2211 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 19:18:45.146117 kubelet[2211]: E0209 19:18:45.146062 2211 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 19:18:45.146117 kubelet[2211]: W0209 19:18:45.146100 2211 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 19:18:45.146331 kubelet[2211]: E0209 19:18:45.146143 2211 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 19:18:45.146740 kubelet[2211]: E0209 19:18:45.146712 2211 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 19:18:45.146820 kubelet[2211]: W0209 19:18:45.146739 2211 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 19:18:45.146820 kubelet[2211]: E0209 19:18:45.146771 2211 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 19:18:45.274683 env[1744]: time="2024-02-09T19:18:45.272596452Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:kube-proxy-ctm7j,Uid:a314b406-3ae2-4866-9a49-5e0d0ad0d18e,Namespace:kube-system,Attempt:0,}" Feb 9 19:18:45.289821 env[1744]: time="2024-02-09T19:18:45.289755419Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-node-d9w6x,Uid:d30f36ef-11ac-4f2a-9cce-c7802f14b756,Namespace:calico-system,Attempt:0,}" Feb 9 19:18:45.915886 env[1744]: time="2024-02-09T19:18:45.915828161Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:18:45.918737 env[1744]: time="2024-02-09T19:18:45.918687382Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:18:45.924339 env[1744]: time="2024-02-09T19:18:45.924264206Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:7d46a07936af93fcce097459055f93ab07331509aa55f4a2a90d95a3ace1850e,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:18:45.927358 env[1744]: time="2024-02-09T19:18:45.927285557Z" level=info msg="ImageUpdate event &ImageUpdate{Name:sha256:7d46a07936af93fcce097459055f93ab07331509aa55f4a2a90d95a3ace1850e,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:18:45.931626 env[1744]: time="2024-02-09T19:18:45.931545578Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:18:45.934952 env[1744]: time="2024-02-09T19:18:45.934895458Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:18:45.936428 kubelet[2211]: E0209 19:18:45.936337 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:18:45.939169 env[1744]: time="2024-02-09T19:18:45.939098158Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/pause@sha256:3d380ca8864549e74af4b29c10f9cb0956236dfb01c40ca076fb6c37253234db,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:18:45.943649 env[1744]: time="2024-02-09T19:18:45.943596329Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause@sha256:3d380ca8864549e74af4b29c10f9cb0956236dfb01c40ca076fb6c37253234db,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:18:45.980191 env[1744]: time="2024-02-09T19:18:45.980054047Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 9 19:18:45.980191 env[1744]: time="2024-02-09T19:18:45.980139331Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 9 19:18:45.980514 env[1744]: time="2024-02-09T19:18:45.980166633Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 9 19:18:45.980514 env[1744]: time="2024-02-09T19:18:45.980442227Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/7172aaa27c6a1bc69273bdd68cadcc109b15cb804da24a9380c0c0dab5232cd9 pid=2274 runtime=io.containerd.runc.v2 Feb 9 19:18:45.982480 env[1744]: time="2024-02-09T19:18:45.982314663Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 9 19:18:45.982760 env[1744]: time="2024-02-09T19:18:45.982680683Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 9 19:18:45.982929 env[1744]: time="2024-02-09T19:18:45.982873493Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 9 19:18:45.983365 env[1744]: time="2024-02-09T19:18:45.983310160Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/92504bda0d37ce3161dbefb6abe24ee15d09a466c12e806c6eea8378f0f42db7 pid=2275 runtime=io.containerd.runc.v2 Feb 9 19:18:46.012738 systemd[1]: Started cri-containerd-92504bda0d37ce3161dbefb6abe24ee15d09a466c12e806c6eea8378f0f42db7.scope. Feb 9 19:18:46.029123 systemd[1]: Started cri-containerd-7172aaa27c6a1bc69273bdd68cadcc109b15cb804da24a9380c0c0dab5232cd9.scope. Feb 9 19:18:46.054000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.054000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.054000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.054000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.054000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.054000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.054000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.054000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.054000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.054000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.054000 audit: BPF prog-id=70 op=LOAD Feb 9 19:18:46.056000 audit[2296]: AVC avc: denied { bpf } for pid=2296 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.056000 audit[2296]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=40001bdb38 a2=10 a3=0 items=0 ppid=2275 pid=2296 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:46.056000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3932353034626461306433376365333136316462656662366162653234 Feb 9 19:18:46.056000 audit[2296]: AVC avc: denied { perfmon } for pid=2296 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.056000 audit[2296]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001bd5a0 a2=3c a3=0 items=0 ppid=2275 pid=2296 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:46.056000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3932353034626461306433376365333136316462656662366162653234 Feb 9 19:18:46.056000 audit[2296]: AVC avc: denied { bpf } for pid=2296 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.056000 audit[2296]: AVC avc: denied { bpf } for pid=2296 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.056000 audit[2296]: AVC avc: denied { bpf } for pid=2296 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.056000 audit[2296]: AVC avc: denied { perfmon } for pid=2296 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.056000 audit[2296]: AVC avc: denied { perfmon } for pid=2296 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.056000 audit[2296]: AVC avc: denied { perfmon } for pid=2296 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.056000 audit[2296]: AVC avc: denied { perfmon } for pid=2296 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.056000 audit[2296]: AVC avc: denied { perfmon } for pid=2296 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.056000 audit[2296]: AVC avc: denied { bpf } for pid=2296 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.056000 audit[2296]: AVC avc: denied { bpf } for pid=2296 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.056000 audit: BPF prog-id=71 op=LOAD Feb 9 19:18:46.056000 audit[2296]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001bd8e0 a2=78 a3=0 items=0 ppid=2275 pid=2296 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:46.056000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3932353034626461306433376365333136316462656662366162653234 Feb 9 19:18:46.056000 audit[2296]: AVC avc: denied { bpf } for pid=2296 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.056000 audit[2296]: AVC avc: denied { bpf } for pid=2296 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.056000 audit[2296]: AVC avc: denied { perfmon } for pid=2296 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.056000 audit[2296]: AVC avc: denied { perfmon } for pid=2296 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.056000 audit[2296]: AVC avc: denied { perfmon } for pid=2296 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.056000 audit[2296]: AVC avc: denied { perfmon } for pid=2296 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.056000 audit[2296]: AVC avc: denied { perfmon } for pid=2296 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.056000 audit[2296]: AVC avc: denied { bpf } for pid=2296 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.056000 audit[2296]: AVC avc: denied { bpf } for pid=2296 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.056000 audit: BPF prog-id=72 op=LOAD Feb 9 19:18:46.056000 audit[2296]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=40001bd670 a2=78 a3=0 items=0 ppid=2275 pid=2296 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:46.056000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3932353034626461306433376365333136316462656662366162653234 Feb 9 19:18:46.057000 audit: BPF prog-id=72 op=UNLOAD Feb 9 19:18:46.057000 audit: BPF prog-id=71 op=UNLOAD Feb 9 19:18:46.057000 audit[2296]: AVC avc: denied { bpf } for pid=2296 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.057000 audit[2296]: AVC avc: denied { bpf } for pid=2296 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.057000 audit[2296]: AVC avc: denied { bpf } for pid=2296 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.057000 audit[2296]: AVC avc: denied { perfmon } for pid=2296 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.057000 audit[2296]: AVC avc: denied { perfmon } for pid=2296 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.057000 audit[2296]: AVC avc: denied { perfmon } for pid=2296 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.057000 audit[2296]: AVC avc: denied { perfmon } for pid=2296 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.057000 audit[2296]: AVC avc: denied { perfmon } for pid=2296 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.057000 audit[2296]: AVC avc: denied { bpf } for pid=2296 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.057000 audit[2296]: AVC avc: denied { bpf } for pid=2296 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.057000 audit: BPF prog-id=73 op=LOAD Feb 9 19:18:46.057000 audit[2296]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001bdb40 a2=78 a3=0 items=0 ppid=2275 pid=2296 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:46.057000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3932353034626461306433376365333136316462656662366162653234 Feb 9 19:18:46.071000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.071000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.071000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.071000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.071000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.071000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.071000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.071000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.071000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.071000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.071000 audit: BPF prog-id=74 op=LOAD Feb 9 19:18:46.079000 audit[2297]: AVC avc: denied { bpf } for pid=2297 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.079000 audit[2297]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000145b38 a2=10 a3=0 items=0 ppid=2274 pid=2297 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:46.079000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3731373261616132376336613162633639323733626464363863616463 Feb 9 19:18:46.080000 audit[2297]: AVC avc: denied { perfmon } for pid=2297 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.080000 audit[2297]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=2274 pid=2297 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:46.080000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3731373261616132376336613162633639323733626464363863616463 Feb 9 19:18:46.080000 audit[2297]: AVC avc: denied { bpf } for pid=2297 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.080000 audit[2297]: AVC avc: denied { bpf } for pid=2297 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.080000 audit[2297]: AVC avc: denied { bpf } for pid=2297 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.080000 audit[2297]: AVC avc: denied { perfmon } for pid=2297 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.080000 audit[2297]: AVC avc: denied { perfmon } for pid=2297 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.080000 audit[2297]: AVC avc: denied { perfmon } for pid=2297 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.080000 audit[2297]: AVC avc: denied { perfmon } for pid=2297 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.080000 audit[2297]: AVC avc: denied { perfmon } for pid=2297 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.080000 audit[2297]: AVC avc: denied { bpf } for pid=2297 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.080000 audit[2297]: AVC avc: denied { bpf } for pid=2297 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.080000 audit: BPF prog-id=75 op=LOAD Feb 9 19:18:46.080000 audit[2297]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=2274 pid=2297 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:46.080000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3731373261616132376336613162633639323733626464363863616463 Feb 9 19:18:46.082000 audit[2297]: AVC avc: denied { bpf } for pid=2297 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.082000 audit[2297]: AVC avc: denied { bpf } for pid=2297 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.082000 audit[2297]: AVC avc: denied { perfmon } for pid=2297 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.082000 audit[2297]: AVC avc: denied { perfmon } for pid=2297 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.082000 audit[2297]: AVC avc: denied { perfmon } for pid=2297 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.082000 audit[2297]: AVC avc: denied { perfmon } for pid=2297 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.082000 audit[2297]: AVC avc: denied { perfmon } for pid=2297 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.082000 audit[2297]: AVC avc: denied { bpf } for pid=2297 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.082000 audit[2297]: AVC avc: denied { bpf } for pid=2297 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.082000 audit: BPF prog-id=76 op=LOAD Feb 9 19:18:46.082000 audit[2297]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=2274 pid=2297 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:46.082000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3731373261616132376336613162633639323733626464363863616463 Feb 9 19:18:46.092000 audit: BPF prog-id=76 op=UNLOAD Feb 9 19:18:46.092000 audit: BPF prog-id=75 op=UNLOAD Feb 9 19:18:46.094153 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1812991556.mount: Deactivated successfully. Feb 9 19:18:46.092000 audit[2297]: AVC avc: denied { bpf } for pid=2297 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.092000 audit[2297]: AVC avc: denied { bpf } for pid=2297 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.092000 audit[2297]: AVC avc: denied { bpf } for pid=2297 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.092000 audit[2297]: AVC avc: denied { perfmon } for pid=2297 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.092000 audit[2297]: AVC avc: denied { perfmon } for pid=2297 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.092000 audit[2297]: AVC avc: denied { perfmon } for pid=2297 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.092000 audit[2297]: AVC avc: denied { perfmon } for pid=2297 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.092000 audit[2297]: AVC avc: denied { perfmon } for pid=2297 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.092000 audit[2297]: AVC avc: denied { bpf } for pid=2297 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.092000 audit[2297]: AVC avc: denied { bpf } for pid=2297 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:46.092000 audit: BPF prog-id=77 op=LOAD Feb 9 19:18:46.092000 audit[2297]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=2274 pid=2297 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:46.092000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3731373261616132376336613162633639323733626464363863616463 Feb 9 19:18:46.112707 env[1744]: time="2024-02-09T19:18:46.112649521Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-node-d9w6x,Uid:d30f36ef-11ac-4f2a-9cce-c7802f14b756,Namespace:calico-system,Attempt:0,} returns sandbox id \"92504bda0d37ce3161dbefb6abe24ee15d09a466c12e806c6eea8378f0f42db7\"" Feb 9 19:18:46.116319 env[1744]: time="2024-02-09T19:18:46.116269097Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.0\"" Feb 9 19:18:46.132614 env[1744]: time="2024-02-09T19:18:46.132546366Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:kube-proxy-ctm7j,Uid:a314b406-3ae2-4866-9a49-5e0d0ad0d18e,Namespace:kube-system,Attempt:0,} returns sandbox id \"7172aaa27c6a1bc69273bdd68cadcc109b15cb804da24a9380c0c0dab5232cd9\"" Feb 9 19:18:46.937285 kubelet[2211]: E0209 19:18:46.937222 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:18:47.232284 kubelet[2211]: E0209 19:18:47.232087 2211 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-cqn68" podUID=a6dae328-8341-4be4-ac60-ed961c923c62 Feb 9 19:18:47.688594 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3999600538.mount: Deactivated successfully. Feb 9 19:18:47.845339 env[1744]: time="2024-02-09T19:18:47.845280041Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:18:47.848400 env[1744]: time="2024-02-09T19:18:47.848353595Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:cbddd33ed55a4a5c129e8f09945d426860425b9778d9402efe7bcefea7990a57,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:18:47.850950 env[1744]: time="2024-02-09T19:18:47.850907820Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:18:47.853735 env[1744]: time="2024-02-09T19:18:47.853671982Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol@sha256:b05edbd1f80db4ada229e6001a666a7dd36bb6ab617143684fb3d28abfc4b71e,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:18:47.854771 env[1744]: time="2024-02-09T19:18:47.854721547Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.0\" returns image reference \"sha256:cbddd33ed55a4a5c129e8f09945d426860425b9778d9402efe7bcefea7990a57\"" Feb 9 19:18:47.856733 env[1744]: time="2024-02-09T19:18:47.856682036Z" level=info msg="PullImage \"registry.k8s.io/kube-proxy:v1.27.10\"" Feb 9 19:18:47.858831 env[1744]: time="2024-02-09T19:18:47.858752407Z" level=info msg="CreateContainer within sandbox \"92504bda0d37ce3161dbefb6abe24ee15d09a466c12e806c6eea8378f0f42db7\" for container &ContainerMetadata{Name:flexvol-driver,Attempt:0,}" Feb 9 19:18:47.880468 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1011854790.mount: Deactivated successfully. Feb 9 19:18:47.892698 env[1744]: time="2024-02-09T19:18:47.892612854Z" level=info msg="CreateContainer within sandbox \"92504bda0d37ce3161dbefb6abe24ee15d09a466c12e806c6eea8378f0f42db7\" for &ContainerMetadata{Name:flexvol-driver,Attempt:0,} returns container id \"1c74799a8612a50dc36ebc7c4766560b0f38aeed68580b3201131360407276ca\"" Feb 9 19:18:47.894072 env[1744]: time="2024-02-09T19:18:47.894004678Z" level=info msg="StartContainer for \"1c74799a8612a50dc36ebc7c4766560b0f38aeed68580b3201131360407276ca\"" Feb 9 19:18:47.928892 systemd[1]: Started cri-containerd-1c74799a8612a50dc36ebc7c4766560b0f38aeed68580b3201131360407276ca.scope. Feb 9 19:18:47.940512 kubelet[2211]: E0209 19:18:47.937359 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:18:47.984082 kernel: kauditd_printk_skb: 157 callbacks suppressed Feb 9 19:18:47.984190 kernel: audit: type=1400 audit(1707506327.973:650): avc: denied { perfmon } for pid=2353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:47.973000 audit[2353]: AVC avc: denied { perfmon } for pid=2353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:47.995525 kernel: audit: type=1300 audit(1707506327.973:650): arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=400019f5a0 a2=3c a3=0 items=0 ppid=2275 pid=2353 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:47.973000 audit[2353]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=400019f5a0 a2=3c a3=0 items=0 ppid=2275 pid=2353 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:47.973000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3163373437393961383631326135306463333665626337633437363635 Feb 9 19:18:48.006819 kernel: audit: type=1327 audit(1707506327.973:650): proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3163373437393961383631326135306463333665626337633437363635 Feb 9 19:18:47.974000 audit[2353]: AVC avc: denied { bpf } for pid=2353 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:48.014785 kernel: audit: type=1400 audit(1707506327.974:651): avc: denied { bpf } for pid=2353 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:47.974000 audit[2353]: AVC avc: denied { bpf } for pid=2353 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:48.023144 kernel: audit: type=1400 audit(1707506327.974:651): avc: denied { bpf } for pid=2353 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:47.974000 audit[2353]: AVC avc: denied { bpf } for pid=2353 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:48.035338 kernel: audit: type=1400 audit(1707506327.974:651): avc: denied { bpf } for pid=2353 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:47.974000 audit[2353]: AVC avc: denied { perfmon } for pid=2353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:48.043174 kernel: audit: type=1400 audit(1707506327.974:651): avc: denied { perfmon } for pid=2353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:47.974000 audit[2353]: AVC avc: denied { perfmon } for pid=2353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:48.051061 kernel: audit: type=1400 audit(1707506327.974:651): avc: denied { perfmon } for pid=2353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:47.974000 audit[2353]: AVC avc: denied { perfmon } for pid=2353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:48.058839 kernel: audit: type=1400 audit(1707506327.974:651): avc: denied { perfmon } for pid=2353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:47.974000 audit[2353]: AVC avc: denied { perfmon } for pid=2353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:48.068699 kernel: audit: type=1400 audit(1707506327.974:651): avc: denied { perfmon } for pid=2353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:47.974000 audit[2353]: AVC avc: denied { perfmon } for pid=2353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:47.974000 audit[2353]: AVC avc: denied { bpf } for pid=2353 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:47.974000 audit[2353]: AVC avc: denied { bpf } for pid=2353 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:47.974000 audit: BPF prog-id=78 op=LOAD Feb 9 19:18:47.974000 audit[2353]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=400019f8e0 a2=78 a3=0 items=0 ppid=2275 pid=2353 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:47.974000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3163373437393961383631326135306463333665626337633437363635 Feb 9 19:18:47.975000 audit[2353]: AVC avc: denied { bpf } for pid=2353 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:47.975000 audit[2353]: AVC avc: denied { bpf } for pid=2353 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:47.975000 audit[2353]: AVC avc: denied { perfmon } for pid=2353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:47.975000 audit[2353]: AVC avc: denied { perfmon } for pid=2353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:47.975000 audit[2353]: AVC avc: denied { perfmon } for pid=2353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:47.975000 audit[2353]: AVC avc: denied { perfmon } for pid=2353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:47.975000 audit[2353]: AVC avc: denied { perfmon } for pid=2353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:47.975000 audit[2353]: AVC avc: denied { bpf } for pid=2353 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:47.975000 audit[2353]: AVC avc: denied { bpf } for pid=2353 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:47.975000 audit: BPF prog-id=79 op=LOAD Feb 9 19:18:47.975000 audit[2353]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=400019f670 a2=78 a3=0 items=0 ppid=2275 pid=2353 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:47.975000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3163373437393961383631326135306463333665626337633437363635 Feb 9 19:18:47.982000 audit: BPF prog-id=79 op=UNLOAD Feb 9 19:18:47.982000 audit: BPF prog-id=78 op=UNLOAD Feb 9 19:18:47.982000 audit[2353]: AVC avc: denied { bpf } for pid=2353 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:47.982000 audit[2353]: AVC avc: denied { bpf } for pid=2353 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:47.982000 audit[2353]: AVC avc: denied { bpf } for pid=2353 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:47.982000 audit[2353]: AVC avc: denied { perfmon } for pid=2353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:47.982000 audit[2353]: AVC avc: denied { perfmon } for pid=2353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:47.982000 audit[2353]: AVC avc: denied { perfmon } for pid=2353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:47.982000 audit[2353]: AVC avc: denied { perfmon } for pid=2353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:47.982000 audit[2353]: AVC avc: denied { perfmon } for pid=2353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:47.982000 audit[2353]: AVC avc: denied { bpf } for pid=2353 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:47.982000 audit[2353]: AVC avc: denied { bpf } for pid=2353 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:47.982000 audit: BPF prog-id=80 op=LOAD Feb 9 19:18:47.982000 audit[2353]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=400019fb40 a2=78 a3=0 items=0 ppid=2275 pid=2353 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:47.982000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3163373437393961383631326135306463333665626337633437363635 Feb 9 19:18:48.072462 env[1744]: time="2024-02-09T19:18:48.072385592Z" level=info msg="StartContainer for \"1c74799a8612a50dc36ebc7c4766560b0f38aeed68580b3201131360407276ca\" returns successfully" Feb 9 19:18:48.079519 systemd[1]: cri-containerd-1c74799a8612a50dc36ebc7c4766560b0f38aeed68580b3201131360407276ca.scope: Deactivated successfully. Feb 9 19:18:48.082000 audit: BPF prog-id=80 op=UNLOAD Feb 9 19:18:48.316265 env[1744]: time="2024-02-09T19:18:48.316111870Z" level=info msg="shim disconnected" id=1c74799a8612a50dc36ebc7c4766560b0f38aeed68580b3201131360407276ca Feb 9 19:18:48.316265 env[1744]: time="2024-02-09T19:18:48.316177800Z" level=warning msg="cleaning up after shim disconnected" id=1c74799a8612a50dc36ebc7c4766560b0f38aeed68580b3201131360407276ca namespace=k8s.io Feb 9 19:18:48.316265 env[1744]: time="2024-02-09T19:18:48.316197955Z" level=info msg="cleaning up dead shim" Feb 9 19:18:48.329389 env[1744]: time="2024-02-09T19:18:48.329315325Z" level=warning msg="cleanup warnings time=\"2024-02-09T19:18:48Z\" level=info msg=\"starting signal loop\" namespace=k8s.io pid=2396 runtime=io.containerd.runc.v2\n" Feb 9 19:18:48.515084 systemd[1]: run-containerd-io.containerd.runtime.v2.task-k8s.io-1c74799a8612a50dc36ebc7c4766560b0f38aeed68580b3201131360407276ca-rootfs.mount: Deactivated successfully. Feb 9 19:18:48.938104 kubelet[2211]: E0209 19:18:48.938043 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:18:49.232823 kubelet[2211]: E0209 19:18:49.232518 2211 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-cqn68" podUID=a6dae328-8341-4be4-ac60-ed961c923c62 Feb 9 19:18:49.343301 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount4103449.mount: Deactivated successfully. Feb 9 19:18:49.938741 kubelet[2211]: E0209 19:18:49.938677 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:18:50.121205 env[1744]: time="2024-02-09T19:18:50.121122270Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/kube-proxy:v1.27.10,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:18:50.124219 env[1744]: time="2024-02-09T19:18:50.124153451Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:f17f9528c5073692925255c3de3f310109480873912e8b5ddc171ae1e64324ef,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:18:50.126892 env[1744]: time="2024-02-09T19:18:50.126842687Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/kube-proxy:v1.27.10,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:18:50.129291 env[1744]: time="2024-02-09T19:18:50.129230674Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/kube-proxy@sha256:d084b53c772f62ec38fddb2348a82d4234016daf6cd43fedbf0b3281f3790f88,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:18:50.130361 env[1744]: time="2024-02-09T19:18:50.130316470Z" level=info msg="PullImage \"registry.k8s.io/kube-proxy:v1.27.10\" returns image reference \"sha256:f17f9528c5073692925255c3de3f310109480873912e8b5ddc171ae1e64324ef\"" Feb 9 19:18:50.131577 env[1744]: time="2024-02-09T19:18:50.131525426Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/cni:v3.27.0\"" Feb 9 19:18:50.134551 env[1744]: time="2024-02-09T19:18:50.134462675Z" level=info msg="CreateContainer within sandbox \"7172aaa27c6a1bc69273bdd68cadcc109b15cb804da24a9380c0c0dab5232cd9\" for container &ContainerMetadata{Name:kube-proxy,Attempt:0,}" Feb 9 19:18:50.157775 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2004581171.mount: Deactivated successfully. Feb 9 19:18:50.167126 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1324382631.mount: Deactivated successfully. Feb 9 19:18:50.172026 env[1744]: time="2024-02-09T19:18:50.171946336Z" level=info msg="CreateContainer within sandbox \"7172aaa27c6a1bc69273bdd68cadcc109b15cb804da24a9380c0c0dab5232cd9\" for &ContainerMetadata{Name:kube-proxy,Attempt:0,} returns container id \"a774bdb15f49658c938fae1799929fca3c927a8717d7fe1cb333537b9c6fe2bf\"" Feb 9 19:18:50.173094 env[1744]: time="2024-02-09T19:18:50.173028493Z" level=info msg="StartContainer for \"a774bdb15f49658c938fae1799929fca3c927a8717d7fe1cb333537b9c6fe2bf\"" Feb 9 19:18:50.214169 systemd[1]: Started cri-containerd-a774bdb15f49658c938fae1799929fca3c927a8717d7fe1cb333537b9c6fe2bf.scope. Feb 9 19:18:50.264000 audit[2417]: AVC avc: denied { perfmon } for pid=2417 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:50.264000 audit[2417]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=2274 pid=2417 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.264000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6137373462646231356634393635386339333866616531373939393239 Feb 9 19:18:50.265000 audit[2417]: AVC avc: denied { bpf } for pid=2417 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:50.265000 audit[2417]: AVC avc: denied { bpf } for pid=2417 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:50.265000 audit[2417]: AVC avc: denied { bpf } for pid=2417 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:50.265000 audit[2417]: AVC avc: denied { perfmon } for pid=2417 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:50.265000 audit[2417]: AVC avc: denied { perfmon } for pid=2417 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:50.265000 audit[2417]: AVC avc: denied { perfmon } for pid=2417 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:50.265000 audit[2417]: AVC avc: denied { perfmon } for pid=2417 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:50.265000 audit[2417]: AVC avc: denied { perfmon } for pid=2417 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:50.265000 audit[2417]: AVC avc: denied { bpf } for pid=2417 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:50.265000 audit[2417]: AVC avc: denied { bpf } for pid=2417 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:50.265000 audit: BPF prog-id=81 op=LOAD Feb 9 19:18:50.265000 audit[2417]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=2274 pid=2417 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.265000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6137373462646231356634393635386339333866616531373939393239 Feb 9 19:18:50.265000 audit[2417]: AVC avc: denied { bpf } for pid=2417 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:50.265000 audit[2417]: AVC avc: denied { bpf } for pid=2417 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:50.265000 audit[2417]: AVC avc: denied { perfmon } for pid=2417 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:50.265000 audit[2417]: AVC avc: denied { perfmon } for pid=2417 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:50.265000 audit[2417]: AVC avc: denied { perfmon } for pid=2417 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:50.265000 audit[2417]: AVC avc: denied { perfmon } for pid=2417 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:50.265000 audit[2417]: AVC avc: denied { perfmon } for pid=2417 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:50.265000 audit[2417]: AVC avc: denied { bpf } for pid=2417 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:50.265000 audit[2417]: AVC avc: denied { bpf } for pid=2417 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:50.265000 audit: BPF prog-id=82 op=LOAD Feb 9 19:18:50.265000 audit[2417]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=2274 pid=2417 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.265000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6137373462646231356634393635386339333866616531373939393239 Feb 9 19:18:50.265000 audit: BPF prog-id=82 op=UNLOAD Feb 9 19:18:50.265000 audit: BPF prog-id=81 op=UNLOAD Feb 9 19:18:50.265000 audit[2417]: AVC avc: denied { bpf } for pid=2417 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:50.265000 audit[2417]: AVC avc: denied { bpf } for pid=2417 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:50.265000 audit[2417]: AVC avc: denied { bpf } for pid=2417 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:50.265000 audit[2417]: AVC avc: denied { perfmon } for pid=2417 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:50.265000 audit[2417]: AVC avc: denied { perfmon } for pid=2417 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:50.265000 audit[2417]: AVC avc: denied { perfmon } for pid=2417 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:50.265000 audit[2417]: AVC avc: denied { perfmon } for pid=2417 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:50.265000 audit[2417]: AVC avc: denied { perfmon } for pid=2417 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:50.265000 audit[2417]: AVC avc: denied { bpf } for pid=2417 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:50.265000 audit[2417]: AVC avc: denied { bpf } for pid=2417 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:50.265000 audit: BPF prog-id=83 op=LOAD Feb 9 19:18:50.265000 audit[2417]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=2274 pid=2417 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.265000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6137373462646231356634393635386339333866616531373939393239 Feb 9 19:18:50.301909 env[1744]: time="2024-02-09T19:18:50.301838032Z" level=info msg="StartContainer for \"a774bdb15f49658c938fae1799929fca3c927a8717d7fe1cb333537b9c6fe2bf\" returns successfully" Feb 9 19:18:50.404000 audit[2466]: NETFILTER_CFG table=mangle:14 family=2 entries=1 op=nft_register_chain pid=2466 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 19:18:50.404000 audit[2466]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffc52d8610 a2=0 a3=ffff8e0ff6c0 items=0 ppid=2427 pid=2466 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.404000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006D616E676C65 Feb 9 19:18:50.408000 audit[2467]: NETFILTER_CFG table=mangle:15 family=10 entries=1 op=nft_register_chain pid=2467 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 19:18:50.408000 audit[2467]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=fffff90803f0 a2=0 a3=ffffb06396c0 items=0 ppid=2427 pid=2467 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.408000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006D616E676C65 Feb 9 19:18:50.411000 audit[2468]: NETFILTER_CFG table=nat:16 family=2 entries=1 op=nft_register_chain pid=2468 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 19:18:50.411000 audit[2468]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffebfc16d0 a2=0 a3=ffffac0fb6c0 items=0 ppid=2427 pid=2468 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.411000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006E6174 Feb 9 19:18:50.413000 audit[2470]: NETFILTER_CFG table=nat:17 family=10 entries=1 op=nft_register_chain pid=2470 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 19:18:50.413000 audit[2470]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffd8ef0b40 a2=0 a3=ffff82f2f6c0 items=0 ppid=2427 pid=2470 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.413000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006E6174 Feb 9 19:18:50.414000 audit[2471]: NETFILTER_CFG table=filter:18 family=2 entries=1 op=nft_register_chain pid=2471 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 19:18:50.414000 audit[2471]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffc804c020 a2=0 a3=ffffbb6776c0 items=0 ppid=2427 pid=2471 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.414000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D740066696C746572 Feb 9 19:18:50.416000 audit[2472]: NETFILTER_CFG table=filter:19 family=10 entries=1 op=nft_register_chain pid=2472 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 19:18:50.416000 audit[2472]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffc0c05320 a2=0 a3=ffffabff16c0 items=0 ppid=2427 pid=2472 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.416000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D740066696C746572 Feb 9 19:18:50.511000 audit[2473]: NETFILTER_CFG table=filter:20 family=2 entries=1 op=nft_register_chain pid=2473 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 19:18:50.511000 audit[2473]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=108 a0=3 a1=ffffd914b400 a2=0 a3=ffffac1166c0 items=0 ppid=2427 pid=2473 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.511000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D45585445524E414C2D5345525649434553002D740066696C746572 Feb 9 19:18:50.518000 audit[2475]: NETFILTER_CFG table=filter:21 family=2 entries=1 op=nft_register_rule pid=2475 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 19:18:50.518000 audit[2475]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=752 a0=3 a1=ffffc7b1dfe0 a2=0 a3=ffff9bb516c0 items=0 ppid=2427 pid=2475 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.518000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C652073657276696365 Feb 9 19:18:50.528000 audit[2478]: NETFILTER_CFG table=filter:22 family=2 entries=2 op=nft_register_chain pid=2478 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 19:18:50.528000 audit[2478]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=836 a0=3 a1=ffffd46e3920 a2=0 a3=ffffadae56c0 items=0 ppid=2427 pid=2478 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.528000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C65207365727669 Feb 9 19:18:50.531000 audit[2479]: NETFILTER_CFG table=filter:23 family=2 entries=1 op=nft_register_chain pid=2479 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 19:18:50.531000 audit[2479]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=fffff5d861a0 a2=0 a3=ffff854216c0 items=0 ppid=2427 pid=2479 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.531000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4E4F4445504F525453002D740066696C746572 Feb 9 19:18:50.537000 audit[2481]: NETFILTER_CFG table=filter:24 family=2 entries=1 op=nft_register_rule pid=2481 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 19:18:50.537000 audit[2481]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=528 a0=3 a1=ffffd6d4b3b0 a2=0 a3=ffffaa1e96c0 items=0 ppid=2427 pid=2481 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.537000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206865616C746820636865636B207365727669636520706F727473002D6A004B5542452D4E4F4445504F525453 Feb 9 19:18:50.539000 audit[2482]: NETFILTER_CFG table=filter:25 family=2 entries=1 op=nft_register_chain pid=2482 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 19:18:50.539000 audit[2482]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffc894ed10 a2=0 a3=ffff95b286c0 items=0 ppid=2427 pid=2482 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.539000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D740066696C746572 Feb 9 19:18:50.545000 audit[2484]: NETFILTER_CFG table=filter:26 family=2 entries=1 op=nft_register_rule pid=2484 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 19:18:50.545000 audit[2484]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=744 a0=3 a1=ffffe7e31980 a2=0 a3=ffff993d36c0 items=0 ppid=2427 pid=2484 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.545000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D Feb 9 19:18:50.553000 audit[2487]: NETFILTER_CFG table=filter:27 family=2 entries=1 op=nft_register_rule pid=2487 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 19:18:50.553000 audit[2487]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=744 a0=3 a1=ffffe72cbb40 a2=0 a3=ffff890526c0 items=0 ppid=2427 pid=2487 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.553000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D53 Feb 9 19:18:50.556000 audit[2488]: NETFILTER_CFG table=filter:28 family=2 entries=1 op=nft_register_chain pid=2488 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 19:18:50.556000 audit[2488]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffe7af6ee0 a2=0 a3=ffff996176c0 items=0 ppid=2427 pid=2488 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.556000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D464F5257415244002D740066696C746572 Feb 9 19:18:50.561000 audit[2490]: NETFILTER_CFG table=filter:29 family=2 entries=1 op=nft_register_rule pid=2490 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 19:18:50.561000 audit[2490]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=528 a0=3 a1=ffffc25bc0c0 a2=0 a3=ffff81fc26c0 items=0 ppid=2427 pid=2490 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.561000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320666F7277617264696E672072756C6573002D6A004B5542452D464F5257415244 Feb 9 19:18:50.563000 audit[2491]: NETFILTER_CFG table=filter:30 family=2 entries=1 op=nft_register_chain pid=2491 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 19:18:50.563000 audit[2491]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffdc592d50 a2=0 a3=ffffa3fea6c0 items=0 ppid=2427 pid=2491 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.563000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D4649524557414C4C002D740066696C746572 Feb 9 19:18:50.572000 audit[2493]: NETFILTER_CFG table=filter:31 family=2 entries=1 op=nft_register_rule pid=2493 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 19:18:50.572000 audit[2493]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffe50f0530 a2=0 a3=ffffa0bd56c0 items=0 ppid=2427 pid=2493 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.572000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Feb 9 19:18:50.580000 audit[2496]: NETFILTER_CFG table=filter:32 family=2 entries=1 op=nft_register_rule pid=2496 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 19:18:50.580000 audit[2496]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffd3d364c0 a2=0 a3=ffffa12bd6c0 items=0 ppid=2427 pid=2496 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.580000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Feb 9 19:18:50.587000 audit[2499]: NETFILTER_CFG table=filter:33 family=2 entries=1 op=nft_register_rule pid=2499 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 19:18:50.587000 audit[2499]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=fffff4d41700 a2=0 a3=ffff9deca6c0 items=0 ppid=2427 pid=2499 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.587000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D Feb 9 19:18:50.589000 audit[2500]: NETFILTER_CFG table=nat:34 family=2 entries=1 op=nft_register_chain pid=2500 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 19:18:50.589000 audit[2500]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=96 a0=3 a1=ffffc34c2810 a2=0 a3=ffff8ed3f6c0 items=0 ppid=2427 pid=2500 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.589000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D74006E6174 Feb 9 19:18:50.594000 audit[2502]: NETFILTER_CFG table=nat:35 family=2 entries=2 op=nft_register_chain pid=2502 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 19:18:50.594000 audit[2502]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=600 a0=3 a1=ffffedf76af0 a2=0 a3=ffff9727c6c0 items=0 ppid=2427 pid=2502 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.594000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Feb 9 19:18:50.634000 audit[2507]: NETFILTER_CFG table=nat:36 family=2 entries=2 op=nft_register_chain pid=2507 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 19:18:50.634000 audit[2507]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=608 a0=3 a1=ffffd14f78f0 a2=0 a3=ffffb839b6c0 items=0 ppid=2427 pid=2507 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.634000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900505245524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Feb 9 19:18:50.646000 audit[2512]: NETFILTER_CFG table=nat:37 family=2 entries=1 op=nft_register_chain pid=2512 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 19:18:50.646000 audit[2512]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffcd0f7d80 a2=0 a3=ffffa255e6c0 items=0 ppid=2427 pid=2512 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.646000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D504F5354524F5554494E47002D74006E6174 Feb 9 19:18:50.651000 audit[2514]: NETFILTER_CFG table=nat:38 family=2 entries=2 op=nft_register_chain pid=2514 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 19:18:50.651000 audit[2514]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=612 a0=3 a1=ffffe0409130 a2=0 a3=ffffbc9686c0 items=0 ppid=2427 pid=2514 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.651000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900504F5354524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320706F7374726F7574696E672072756C6573002D6A004B5542452D504F5354524F5554494E47 Feb 9 19:18:50.674000 audit[2516]: NETFILTER_CFG table=filter:39 family=2 entries=5 op=nft_register_rule pid=2516 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 19:18:50.674000 audit[2516]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=2844 a0=3 a1=fffff52b5390 a2=0 a3=ffffa91406c0 items=0 ppid=2427 pid=2516 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.674000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 19:18:50.701000 audit[2516]: NETFILTER_CFG table=nat:40 family=2 entries=54 op=nft_register_chain pid=2516 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 19:18:50.701000 audit[2516]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=24988 a0=3 a1=fffff52b5390 a2=0 a3=ffffa91406c0 items=0 ppid=2427 pid=2516 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.701000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 19:18:50.721000 audit[2524]: NETFILTER_CFG table=filter:41 family=10 entries=1 op=nft_register_chain pid=2524 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 19:18:50.721000 audit[2524]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=108 a0=3 a1=ffffedd49b20 a2=0 a3=ffff9fa616c0 items=0 ppid=2427 pid=2524 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.721000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D45585445524E414C2D5345525649434553002D740066696C746572 Feb 9 19:18:50.727000 audit[2526]: NETFILTER_CFG table=filter:42 family=10 entries=2 op=nft_register_chain pid=2526 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 19:18:50.727000 audit[2526]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=836 a0=3 a1=ffffde770910 a2=0 a3=ffff863936c0 items=0 ppid=2427 pid=2526 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.727000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C6520736572766963 Feb 9 19:18:50.734000 audit[2529]: NETFILTER_CFG table=filter:43 family=10 entries=2 op=nft_register_chain pid=2529 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 19:18:50.734000 audit[2529]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=836 a0=3 a1=ffffefa24b70 a2=0 a3=ffff96dff6c0 items=0 ppid=2427 pid=2529 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.734000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C652073657276 Feb 9 19:18:50.736000 audit[2530]: NETFILTER_CFG table=filter:44 family=10 entries=1 op=nft_register_chain pid=2530 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 19:18:50.736000 audit[2530]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffc85a7750 a2=0 a3=ffff9b6956c0 items=0 ppid=2427 pid=2530 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.736000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4E4F4445504F525453002D740066696C746572 Feb 9 19:18:50.741000 audit[2532]: NETFILTER_CFG table=filter:45 family=10 entries=1 op=nft_register_rule pid=2532 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 19:18:50.741000 audit[2532]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=528 a0=3 a1=fffffd40c550 a2=0 a3=ffffb45d26c0 items=0 ppid=2427 pid=2532 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.741000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206865616C746820636865636B207365727669636520706F727473002D6A004B5542452D4E4F4445504F525453 Feb 9 19:18:50.744000 audit[2533]: NETFILTER_CFG table=filter:46 family=10 entries=1 op=nft_register_chain pid=2533 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 19:18:50.744000 audit[2533]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffd0af86c0 a2=0 a3=ffffb70726c0 items=0 ppid=2427 pid=2533 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.744000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D740066696C746572 Feb 9 19:18:50.749000 audit[2535]: NETFILTER_CFG table=filter:47 family=10 entries=1 op=nft_register_rule pid=2535 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 19:18:50.749000 audit[2535]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=744 a0=3 a1=fffff7d5d910 a2=0 a3=ffff81df86c0 items=0 ppid=2427 pid=2535 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.749000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B554245 Feb 9 19:18:50.756000 audit[2538]: NETFILTER_CFG table=filter:48 family=10 entries=2 op=nft_register_chain pid=2538 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 19:18:50.756000 audit[2538]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=828 a0=3 a1=ffffd79ca9c0 a2=0 a3=ffff824606c0 items=0 ppid=2427 pid=2538 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.756000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D Feb 9 19:18:50.759000 audit[2539]: NETFILTER_CFG table=filter:49 family=10 entries=1 op=nft_register_chain pid=2539 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 19:18:50.759000 audit[2539]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=fffffbe93200 a2=0 a3=ffff8f2646c0 items=0 ppid=2427 pid=2539 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.759000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D464F5257415244002D740066696C746572 Feb 9 19:18:50.763000 audit[2541]: NETFILTER_CFG table=filter:50 family=10 entries=1 op=nft_register_rule pid=2541 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 19:18:50.763000 audit[2541]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=528 a0=3 a1=ffffdc4a7880 a2=0 a3=ffffa2ed16c0 items=0 ppid=2427 pid=2541 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.763000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320666F7277617264696E672072756C6573002D6A004B5542452D464F5257415244 Feb 9 19:18:50.770000 audit[2542]: NETFILTER_CFG table=filter:51 family=10 entries=1 op=nft_register_chain pid=2542 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 19:18:50.770000 audit[2542]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffe20f2be0 a2=0 a3=ffff87adc6c0 items=0 ppid=2427 pid=2542 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.770000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D4649524557414C4C002D740066696C746572 Feb 9 19:18:50.778000 audit[2544]: NETFILTER_CFG table=filter:52 family=10 entries=1 op=nft_register_rule pid=2544 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 19:18:50.778000 audit[2544]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffe7b1a2d0 a2=0 a3=ffffbf1a76c0 items=0 ppid=2427 pid=2544 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.778000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Feb 9 19:18:50.785000 audit[2547]: NETFILTER_CFG table=filter:53 family=10 entries=1 op=nft_register_rule pid=2547 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 19:18:50.785000 audit[2547]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffdc320c60 a2=0 a3=ffff95f8b6c0 items=0 ppid=2427 pid=2547 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.785000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D Feb 9 19:18:50.792000 audit[2550]: NETFILTER_CFG table=filter:54 family=10 entries=1 op=nft_register_rule pid=2550 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 19:18:50.792000 audit[2550]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffca5e2260 a2=0 a3=ffff8a3846c0 items=0 ppid=2427 pid=2550 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.792000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C Feb 9 19:18:50.794000 audit[2551]: NETFILTER_CFG table=nat:55 family=10 entries=1 op=nft_register_chain pid=2551 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 19:18:50.794000 audit[2551]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=96 a0=3 a1=fffff2284240 a2=0 a3=ffff8a1796c0 items=0 ppid=2427 pid=2551 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.794000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D74006E6174 Feb 9 19:18:50.799000 audit[2553]: NETFILTER_CFG table=nat:56 family=10 entries=2 op=nft_register_chain pid=2553 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 19:18:50.799000 audit[2553]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=600 a0=3 a1=fffff1d76590 a2=0 a3=ffffbb75f6c0 items=0 ppid=2427 pid=2553 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.799000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Feb 9 19:18:50.808000 audit[2556]: NETFILTER_CFG table=nat:57 family=10 entries=2 op=nft_register_chain pid=2556 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 19:18:50.808000 audit[2556]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=608 a0=3 a1=fffff7a63ff0 a2=0 a3=ffff840c96c0 items=0 ppid=2427 pid=2556 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.808000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900505245524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Feb 9 19:18:50.810000 audit[2557]: NETFILTER_CFG table=filter:58 family=10 entries=1 op=nft_register_chain pid=2557 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 19:18:50.810000 audit[2557]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=fffffef54f00 a2=0 a3=ffffbb3716c0 items=0 ppid=2427 pid=2557 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.810000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4649524557414C4C002D740066696C746572 Feb 9 19:18:50.815000 audit[2559]: NETFILTER_CFG table=filter:59 family=10 entries=1 op=nft_register_rule pid=2559 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 19:18:50.815000 audit[2559]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=228 a0=3 a1=ffffd36e1aa0 a2=0 a3=ffffa29806c0 items=0 ppid=2427 pid=2559 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.815000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6A004B5542452D4649524557414C4C Feb 9 19:18:50.822000 audit[2562]: NETFILTER_CFG table=filter:60 family=10 entries=1 op=nft_register_rule pid=2562 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 19:18:50.822000 audit[2562]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=228 a0=3 a1=ffffd6752420 a2=0 a3=ffffa8ee66c0 items=0 ppid=2427 pid=2562 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.822000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6A004B5542452D4649524557414C4C Feb 9 19:18:50.824000 audit[2563]: NETFILTER_CFG table=nat:61 family=10 entries=1 op=nft_register_chain pid=2563 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 19:18:50.824000 audit[2563]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffec745ee0 a2=0 a3=ffffbad296c0 items=0 ppid=2427 pid=2563 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.824000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D504F5354524F5554494E47002D74006E6174 Feb 9 19:18:50.829000 audit[2565]: NETFILTER_CFG table=nat:62 family=10 entries=2 op=nft_register_chain pid=2565 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 19:18:50.829000 audit[2565]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=612 a0=3 a1=ffffee890130 a2=0 a3=ffff8330a6c0 items=0 ppid=2427 pid=2565 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.829000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900504F5354524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320706F7374726F7574696E672072756C6573002D6A004B5542452D504F5354524F5554494E47 Feb 9 19:18:50.835000 audit[2567]: NETFILTER_CFG table=filter:63 family=10 entries=3 op=nft_register_rule pid=2567 subj=system_u:system_r:kernel_t:s0 comm="ip6tables-resto" Feb 9 19:18:50.835000 audit[2567]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=1916 a0=3 a1=fffff545a2b0 a2=0 a3=ffff883c06c0 items=0 ppid=2427 pid=2567 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables-resto" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.835000 audit: PROCTITLE proctitle=6970367461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 19:18:50.837000 audit[2567]: NETFILTER_CFG table=nat:64 family=10 entries=7 op=nft_register_chain pid=2567 subj=system_u:system_r:kernel_t:s0 comm="ip6tables-resto" Feb 9 19:18:50.837000 audit[2567]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=1968 a0=3 a1=fffff545a2b0 a2=0 a3=ffff883c06c0 items=0 ppid=2427 pid=2567 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables-resto" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:50.837000 audit: PROCTITLE proctitle=6970367461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 19:18:50.939845 kubelet[2211]: E0209 19:18:50.939738 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:18:51.232464 kubelet[2211]: E0209 19:18:51.232246 2211 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-cqn68" podUID=a6dae328-8341-4be4-ac60-ed961c923c62 Feb 9 19:18:51.275105 kubelet[2211]: I0209 19:18:51.274933 2211 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="kube-system/kube-proxy-ctm7j" podStartSLOduration=4.278708141 podCreationTimestamp="2024-02-09 19:18:43 +0000 UTC" firstStartedPulling="2024-02-09 19:18:46.134738174 +0000 UTC m=+5.479014655" lastFinishedPulling="2024-02-09 19:18:50.130888837 +0000 UTC m=+9.475165378" observedRunningTime="2024-02-09 19:18:51.274732388 +0000 UTC m=+10.619008905" watchObservedRunningTime="2024-02-09 19:18:51.274858864 +0000 UTC m=+10.619135345" Feb 9 19:18:51.565919 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3296867344.mount: Deactivated successfully. Feb 9 19:18:51.941554 kubelet[2211]: E0209 19:18:51.940552 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:18:52.940934 kubelet[2211]: E0209 19:18:52.940872 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:18:53.232848 kubelet[2211]: E0209 19:18:53.232536 2211 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-cqn68" podUID=a6dae328-8341-4be4-ac60-ed961c923c62 Feb 9 19:18:53.941810 kubelet[2211]: E0209 19:18:53.941739 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:18:54.942480 kubelet[2211]: E0209 19:18:54.942426 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:18:55.232280 kubelet[2211]: E0209 19:18:55.231991 2211 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-cqn68" podUID=a6dae328-8341-4be4-ac60-ed961c923c62 Feb 9 19:18:55.943060 kubelet[2211]: E0209 19:18:55.942992 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:18:56.362525 env[1744]: time="2024-02-09T19:18:56.362443261Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/cni:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:18:56.365506 env[1744]: time="2024-02-09T19:18:56.365397138Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:9c9318f5fbf505fc3d84676966009a3887e58ea1e3eac10039e5a96dfceb254b,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:18:56.368753 env[1744]: time="2024-02-09T19:18:56.368674831Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/cni:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:18:56.372962 env[1744]: time="2024-02-09T19:18:56.372899101Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/cni@sha256:d943b4c23e82a39b0186a1a3b2fe8f728e543d503df72d7be521501a82b7e7b4,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:18:56.375381 env[1744]: time="2024-02-09T19:18:56.374279570Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/cni:v3.27.0\" returns image reference \"sha256:9c9318f5fbf505fc3d84676966009a3887e58ea1e3eac10039e5a96dfceb254b\"" Feb 9 19:18:56.380374 env[1744]: time="2024-02-09T19:18:56.380297302Z" level=info msg="CreateContainer within sandbox \"92504bda0d37ce3161dbefb6abe24ee15d09a466c12e806c6eea8378f0f42db7\" for container &ContainerMetadata{Name:install-cni,Attempt:0,}" Feb 9 19:18:56.403681 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3644364668.mount: Deactivated successfully. Feb 9 19:18:56.413584 env[1744]: time="2024-02-09T19:18:56.413523056Z" level=info msg="CreateContainer within sandbox \"92504bda0d37ce3161dbefb6abe24ee15d09a466c12e806c6eea8378f0f42db7\" for &ContainerMetadata{Name:install-cni,Attempt:0,} returns container id \"ce17fd516c0a0d519f8aebc4eca875caa032fa1511415c6360a218cc6b664bef\"" Feb 9 19:18:56.414648 env[1744]: time="2024-02-09T19:18:56.414600572Z" level=info msg="StartContainer for \"ce17fd516c0a0d519f8aebc4eca875caa032fa1511415c6360a218cc6b664bef\"" Feb 9 19:18:56.460991 systemd[1]: run-containerd-runc-k8s.io-ce17fd516c0a0d519f8aebc4eca875caa032fa1511415c6360a218cc6b664bef-runc.LWV2t1.mount: Deactivated successfully. Feb 9 19:18:56.464251 systemd[1]: Started cri-containerd-ce17fd516c0a0d519f8aebc4eca875caa032fa1511415c6360a218cc6b664bef.scope. Feb 9 19:18:56.493000 audit[2576]: AVC avc: denied { perfmon } for pid=2576 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.497388 kernel: kauditd_printk_skb: 230 callbacks suppressed Feb 9 19:18:56.497494 kernel: audit: type=1400 audit(1707506336.493:714): avc: denied { perfmon } for pid=2576 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.493000 audit[2576]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001155a0 a2=3c a3=0 items=0 ppid=2275 pid=2576 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:56.518171 kernel: audit: type=1300 audit(1707506336.493:714): arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001155a0 a2=3c a3=0 items=0 ppid=2275 pid=2576 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:56.493000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6365313766643531366330613064353139663861656263346563613837 Feb 9 19:18:56.529143 kernel: audit: type=1327 audit(1707506336.493:714): proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6365313766643531366330613064353139663861656263346563613837 Feb 9 19:18:56.493000 audit[2576]: AVC avc: denied { bpf } for pid=2576 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.538291 kernel: audit: type=1400 audit(1707506336.493:715): avc: denied { bpf } for pid=2576 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.493000 audit[2576]: AVC avc: denied { bpf } for pid=2576 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.547039 kernel: audit: type=1400 audit(1707506336.493:715): avc: denied { bpf } for pid=2576 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.539890 systemd[1]: systemd-hostnamed.service: Deactivated successfully. Feb 9 19:18:56.493000 audit[2576]: AVC avc: denied { bpf } for pid=2576 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.555216 kernel: audit: type=1400 audit(1707506336.493:715): avc: denied { bpf } for pid=2576 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.493000 audit[2576]: AVC avc: denied { perfmon } for pid=2576 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.564688 kernel: audit: type=1400 audit(1707506336.493:715): avc: denied { perfmon } for pid=2576 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.493000 audit[2576]: AVC avc: denied { perfmon } for pid=2576 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.573437 kernel: audit: type=1400 audit(1707506336.493:715): avc: denied { perfmon } for pid=2576 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.493000 audit[2576]: AVC avc: denied { perfmon } for pid=2576 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.581932 kernel: audit: type=1400 audit(1707506336.493:715): avc: denied { perfmon } for pid=2576 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.493000 audit[2576]: AVC avc: denied { perfmon } for pid=2576 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.590253 kernel: audit: type=1400 audit(1707506336.493:715): avc: denied { perfmon } for pid=2576 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.493000 audit[2576]: AVC avc: denied { perfmon } for pid=2576 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.493000 audit[2576]: AVC avc: denied { bpf } for pid=2576 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.493000 audit[2576]: AVC avc: denied { bpf } for pid=2576 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.493000 audit: BPF prog-id=84 op=LOAD Feb 9 19:18:56.493000 audit[2576]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001158e0 a2=78 a3=0 items=0 ppid=2275 pid=2576 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:56.493000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6365313766643531366330613064353139663861656263346563613837 Feb 9 19:18:56.493000 audit[2576]: AVC avc: denied { bpf } for pid=2576 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.493000 audit[2576]: AVC avc: denied { bpf } for pid=2576 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.493000 audit[2576]: AVC avc: denied { perfmon } for pid=2576 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.493000 audit[2576]: AVC avc: denied { perfmon } for pid=2576 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.493000 audit[2576]: AVC avc: denied { perfmon } for pid=2576 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.493000 audit[2576]: AVC avc: denied { perfmon } for pid=2576 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.493000 audit[2576]: AVC avc: denied { perfmon } for pid=2576 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.493000 audit[2576]: AVC avc: denied { bpf } for pid=2576 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.493000 audit[2576]: AVC avc: denied { bpf } for pid=2576 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.493000 audit: BPF prog-id=85 op=LOAD Feb 9 19:18:56.493000 audit[2576]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000115670 a2=78 a3=0 items=0 ppid=2275 pid=2576 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:56.493000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6365313766643531366330613064353139663861656263346563613837 Feb 9 19:18:56.493000 audit: BPF prog-id=85 op=UNLOAD Feb 9 19:18:56.493000 audit: BPF prog-id=84 op=UNLOAD Feb 9 19:18:56.493000 audit[2576]: AVC avc: denied { bpf } for pid=2576 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.493000 audit[2576]: AVC avc: denied { bpf } for pid=2576 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.493000 audit[2576]: AVC avc: denied { bpf } for pid=2576 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.493000 audit[2576]: AVC avc: denied { perfmon } for pid=2576 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.493000 audit[2576]: AVC avc: denied { perfmon } for pid=2576 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.493000 audit[2576]: AVC avc: denied { perfmon } for pid=2576 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.493000 audit[2576]: AVC avc: denied { perfmon } for pid=2576 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.493000 audit[2576]: AVC avc: denied { perfmon } for pid=2576 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.493000 audit[2576]: AVC avc: denied { bpf } for pid=2576 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.493000 audit[2576]: AVC avc: denied { bpf } for pid=2576 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:18:56.493000 audit: BPF prog-id=86 op=LOAD Feb 9 19:18:56.493000 audit[2576]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000115b40 a2=78 a3=0 items=0 ppid=2275 pid=2576 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:18:56.493000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6365313766643531366330613064353139663861656263346563613837 Feb 9 19:18:56.538000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-hostnamed comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 19:18:56.593064 env[1744]: time="2024-02-09T19:18:56.591690279Z" level=info msg="StartContainer for \"ce17fd516c0a0d519f8aebc4eca875caa032fa1511415c6360a218cc6b664bef\" returns successfully" Feb 9 19:18:56.597000 audit: BPF prog-id=68 op=UNLOAD Feb 9 19:18:56.597000 audit: BPF prog-id=67 op=UNLOAD Feb 9 19:18:56.597000 audit: BPF prog-id=66 op=UNLOAD Feb 9 19:18:56.944197 kubelet[2211]: E0209 19:18:56.944140 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:18:57.232646 kubelet[2211]: E0209 19:18:57.232143 2211 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-cqn68" podUID=a6dae328-8341-4be4-ac60-ed961c923c62 Feb 9 19:18:57.944533 kubelet[2211]: E0209 19:18:57.944490 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:18:58.945795 kubelet[2211]: E0209 19:18:58.945752 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:18:59.232782 kubelet[2211]: E0209 19:18:59.232227 2211 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-cqn68" podUID=a6dae328-8341-4be4-ac60-ed961c923c62 Feb 9 19:18:59.947560 kubelet[2211]: E0209 19:18:59.947500 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:00.948004 kubelet[2211]: E0209 19:19:00.947968 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:01.231626 kubelet[2211]: E0209 19:19:01.231508 2211 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-cqn68" podUID=a6dae328-8341-4be4-ac60-ed961c923c62 Feb 9 19:19:01.932446 kubelet[2211]: E0209 19:19:01.932393 2211 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:01.948898 kubelet[2211]: E0209 19:19:01.948835 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:02.329724 env[1744]: time="2024-02-09T19:19:02.329648980Z" level=error msg="failed to reload cni configuration after receiving fs change event(\"/etc/cni/net.d/calico-kubeconfig\": WRITE)" error="cni config load failed: no network config found in /etc/cni/net.d: cni plugin not initialized: failed to load cni config" Feb 9 19:19:02.335466 systemd[1]: cri-containerd-ce17fd516c0a0d519f8aebc4eca875caa032fa1511415c6360a218cc6b664bef.scope: Deactivated successfully. Feb 9 19:19:02.337000 audit: BPF prog-id=86 op=UNLOAD Feb 9 19:19:02.339941 kernel: kauditd_printk_skb: 37 callbacks suppressed Feb 9 19:19:02.340067 kernel: audit: type=1334 audit(1707506342.337:724): prog-id=86 op=UNLOAD Feb 9 19:19:02.345635 kubelet[2211]: I0209 19:19:02.345581 2211 kubelet_node_status.go:493] "Fast updating node status as it just became ready" Feb 9 19:19:02.375334 systemd[1]: run-containerd-io.containerd.runtime.v2.task-k8s.io-ce17fd516c0a0d519f8aebc4eca875caa032fa1511415c6360a218cc6b664bef-rootfs.mount: Deactivated successfully. Feb 9 19:19:02.949621 kubelet[2211]: E0209 19:19:02.949564 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:03.240177 systemd[1]: Created slice kubepods-besteffort-poda6dae328_8341_4be4_ac60_ed961c923c62.slice. Feb 9 19:19:03.246266 env[1744]: time="2024-02-09T19:19:03.246194797Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-cqn68,Uid:a6dae328-8341-4be4-ac60-ed961c923c62,Namespace:calico-system,Attempt:0,}" Feb 9 19:19:03.950135 kubelet[2211]: E0209 19:19:03.950073 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:04.581533 env[1744]: time="2024-02-09T19:19:04.581444657Z" level=error msg="Failed to destroy network for sandbox \"4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687\"" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 19:19:04.585256 env[1744]: time="2024-02-09T19:19:04.585182793Z" level=error msg="encountered an error cleaning up failed sandbox \"4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687\", marking sandbox state as SANDBOX_UNKNOWN" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 19:19:04.585528 env[1744]: time="2024-02-09T19:19:04.585475506Z" level=error msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-cqn68,Uid:a6dae328-8341-4be4-ac60-ed961c923c62,Namespace:calico-system,Attempt:0,} failed, error" error="failed to setup network for sandbox \"4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 19:19:04.586651 kubelet[2211]: E0209 19:19:04.586017 2211 remote_runtime.go:176] "RunPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 19:19:04.586651 kubelet[2211]: E0209 19:19:04.586120 2211 kuberuntime_sandbox.go:72] "Failed to create sandbox for pod" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="calico-system/csi-node-driver-cqn68" Feb 9 19:19:04.586651 kubelet[2211]: E0209 19:19:04.586182 2211 kuberuntime_manager.go:1122] "CreatePodSandbox for pod failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="calico-system/csi-node-driver-cqn68" Feb 9 19:19:04.586934 kubelet[2211]: E0209 19:19:04.586282 2211 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"CreatePodSandbox\" for \"csi-node-driver-cqn68_calico-system(a6dae328-8341-4be4-ac60-ed961c923c62)\" with CreatePodSandboxError: \"Failed to create sandbox for pod \\\"csi-node-driver-cqn68_calico-system(a6dae328-8341-4be4-ac60-ed961c923c62)\\\": rpc error: code = Unknown desc = failed to setup network for sandbox \\\"4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687\\\": plugin type=\\\"calico\\\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="calico-system/csi-node-driver-cqn68" podUID=a6dae328-8341-4be4-ac60-ed961c923c62 Feb 9 19:19:04.587088 systemd[1]: run-containerd-io.containerd.grpc.v1.cri-sandboxes-4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687-shm.mount: Deactivated successfully. Feb 9 19:19:04.951801 kubelet[2211]: E0209 19:19:04.950922 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:05.291107 kubelet[2211]: I0209 19:19:05.290716 2211 pod_container_deletor.go:80] "Container not found in pod's containers" containerID="4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" Feb 9 19:19:05.291992 env[1744]: time="2024-02-09T19:19:05.291943473Z" level=info msg="StopPodSandbox for \"4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687\"" Feb 9 19:19:05.335720 env[1744]: time="2024-02-09T19:19:05.335645106Z" level=error msg="StopPodSandbox for \"4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687\" failed" error="failed to destroy network for sandbox \"4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 19:19:05.336298 kubelet[2211]: E0209 19:19:05.336243 2211 remote_runtime.go:205] "StopPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to destroy network for sandbox \"4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" podSandboxID="4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" Feb 9 19:19:05.336465 kubelet[2211]: E0209 19:19:05.336331 2211 kuberuntime_manager.go:1312] "Failed to stop sandbox" podSandboxID={Type:containerd ID:4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687} Feb 9 19:19:05.336465 kubelet[2211]: E0209 19:19:05.336396 2211 kuberuntime_manager.go:1038] "killPodWithSyncResult failed" err="failed to \"KillPodSandbox\" for \"a6dae328-8341-4be4-ac60-ed961c923c62\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" Feb 9 19:19:05.336654 kubelet[2211]: E0209 19:19:05.336475 2211 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"KillPodSandbox\" for \"a6dae328-8341-4be4-ac60-ed961c923c62\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="calico-system/csi-node-driver-cqn68" podUID=a6dae328-8341-4be4-ac60-ed961c923c62 Feb 9 19:19:05.905202 env[1744]: time="2024-02-09T19:19:05.905140355Z" level=info msg="shim disconnected" id=ce17fd516c0a0d519f8aebc4eca875caa032fa1511415c6360a218cc6b664bef Feb 9 19:19:05.905867 env[1744]: time="2024-02-09T19:19:05.905829967Z" level=warning msg="cleaning up after shim disconnected" id=ce17fd516c0a0d519f8aebc4eca875caa032fa1511415c6360a218cc6b664bef namespace=k8s.io Feb 9 19:19:05.906012 env[1744]: time="2024-02-09T19:19:05.905983632Z" level=info msg="cleaning up dead shim" Feb 9 19:19:05.920583 env[1744]: time="2024-02-09T19:19:05.920527947Z" level=warning msg="cleanup warnings time=\"2024-02-09T19:19:05Z\" level=info msg=\"starting signal loop\" namespace=k8s.io pid=2673 runtime=io.containerd.runc.v2\n" Feb 9 19:19:05.951540 kubelet[2211]: E0209 19:19:05.951476 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:06.297203 env[1744]: time="2024-02-09T19:19:06.296680187Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node:v3.27.0\"" Feb 9 19:19:06.352583 amazon-ssm-agent[1723]: 2024-02-09 19:19:06 INFO [MessagingDeliveryService] [Association] Schedule manager refreshed with 0 associations, 0 new associations associated Feb 9 19:19:06.952573 kubelet[2211]: E0209 19:19:06.952504 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:07.952922 kubelet[2211]: E0209 19:19:07.952848 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:08.525220 kubelet[2211]: I0209 19:19:08.525169 2211 topology_manager.go:212] "Topology Admit Handler" Feb 9 19:19:08.534652 systemd[1]: Created slice kubepods-besteffort-poded2fe88b_21fc_4150_af4a_9cafe261183f.slice. Feb 9 19:19:08.546191 kubelet[2211]: I0209 19:19:08.546131 2211 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-h6lnj\" (UniqueName: \"kubernetes.io/projected/ed2fe88b-21fc-4150-af4a-9cafe261183f-kube-api-access-h6lnj\") pod \"nginx-deployment-845c78c8b9-mq8dw\" (UID: \"ed2fe88b-21fc-4150-af4a-9cafe261183f\") " pod="default/nginx-deployment-845c78c8b9-mq8dw" Feb 9 19:19:08.839576 env[1744]: time="2024-02-09T19:19:08.839521227Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-845c78c8b9-mq8dw,Uid:ed2fe88b-21fc-4150-af4a-9cafe261183f,Namespace:default,Attempt:0,}" Feb 9 19:19:08.953725 kubelet[2211]: E0209 19:19:08.953658 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:09.954081 kubelet[2211]: E0209 19:19:09.954034 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:10.836052 env[1744]: time="2024-02-09T19:19:10.835949790Z" level=error msg="Failed to destroy network for sandbox \"a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471\"" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 19:19:10.838857 systemd[1]: run-containerd-io.containerd.grpc.v1.cri-sandboxes-a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471-shm.mount: Deactivated successfully. Feb 9 19:19:10.842951 env[1744]: time="2024-02-09T19:19:10.840541220Z" level=error msg="encountered an error cleaning up failed sandbox \"a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471\", marking sandbox state as SANDBOX_UNKNOWN" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 19:19:10.842951 env[1744]: time="2024-02-09T19:19:10.840646763Z" level=error msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-845c78c8b9-mq8dw,Uid:ed2fe88b-21fc-4150-af4a-9cafe261183f,Namespace:default,Attempt:0,} failed, error" error="failed to setup network for sandbox \"a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 19:19:10.843218 kubelet[2211]: E0209 19:19:10.840932 2211 remote_runtime.go:176] "RunPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 19:19:10.843218 kubelet[2211]: E0209 19:19:10.841004 2211 kuberuntime_sandbox.go:72] "Failed to create sandbox for pod" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="default/nginx-deployment-845c78c8b9-mq8dw" Feb 9 19:19:10.843218 kubelet[2211]: E0209 19:19:10.841042 2211 kuberuntime_manager.go:1122] "CreatePodSandbox for pod failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="default/nginx-deployment-845c78c8b9-mq8dw" Feb 9 19:19:10.843468 kubelet[2211]: E0209 19:19:10.841113 2211 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"CreatePodSandbox\" for \"nginx-deployment-845c78c8b9-mq8dw_default(ed2fe88b-21fc-4150-af4a-9cafe261183f)\" with CreatePodSandboxError: \"Failed to create sandbox for pod \\\"nginx-deployment-845c78c8b9-mq8dw_default(ed2fe88b-21fc-4150-af4a-9cafe261183f)\\\": rpc error: code = Unknown desc = failed to setup network for sandbox \\\"a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471\\\": plugin type=\\\"calico\\\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="default/nginx-deployment-845c78c8b9-mq8dw" podUID=ed2fe88b-21fc-4150-af4a-9cafe261183f Feb 9 19:19:10.955774 kubelet[2211]: E0209 19:19:10.955713 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:11.307342 kubelet[2211]: I0209 19:19:11.307284 2211 pod_container_deletor.go:80] "Container not found in pod's containers" containerID="a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" Feb 9 19:19:11.308563 env[1744]: time="2024-02-09T19:19:11.308495171Z" level=info msg="StopPodSandbox for \"a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471\"" Feb 9 19:19:11.382006 env[1744]: time="2024-02-09T19:19:11.381915875Z" level=error msg="StopPodSandbox for \"a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471\" failed" error="failed to destroy network for sandbox \"a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 19:19:11.382292 kubelet[2211]: E0209 19:19:11.382251 2211 remote_runtime.go:205] "StopPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to destroy network for sandbox \"a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" podSandboxID="a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" Feb 9 19:19:11.382387 kubelet[2211]: E0209 19:19:11.382314 2211 kuberuntime_manager.go:1312] "Failed to stop sandbox" podSandboxID={Type:containerd ID:a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471} Feb 9 19:19:11.382387 kubelet[2211]: E0209 19:19:11.382377 2211 kuberuntime_manager.go:1038] "killPodWithSyncResult failed" err="failed to \"KillPodSandbox\" for \"ed2fe88b-21fc-4150-af4a-9cafe261183f\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" Feb 9 19:19:11.382600 kubelet[2211]: E0209 19:19:11.382459 2211 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"KillPodSandbox\" for \"ed2fe88b-21fc-4150-af4a-9cafe261183f\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="default/nginx-deployment-845c78c8b9-mq8dw" podUID=ed2fe88b-21fc-4150-af4a-9cafe261183f Feb 9 19:19:11.464234 update_engine[1738]: I0209 19:19:11.464174 1738 update_attempter.cc:509] Updating boot flags... Feb 9 19:19:11.956147 kubelet[2211]: E0209 19:19:11.956080 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:12.956724 kubelet[2211]: E0209 19:19:12.956666 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:13.957839 kubelet[2211]: E0209 19:19:13.957774 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:14.958833 kubelet[2211]: E0209 19:19:14.958746 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:15.959255 kubelet[2211]: E0209 19:19:15.959186 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:16.959402 kubelet[2211]: E0209 19:19:16.959339 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:17.310864 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2204406500.mount: Deactivated successfully. Feb 9 19:19:17.960335 kubelet[2211]: E0209 19:19:17.960274 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:18.754422 env[1744]: time="2024-02-09T19:19:18.754340213Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:19:18.931199 env[1744]: time="2024-02-09T19:19:18.931127693Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:c445639cb28807ced09724016dc3b273b170b14d3b3d0c39b1affa1cc6b68774,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:19:18.960783 kubelet[2211]: E0209 19:19:18.960721 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:18.980376 env[1744]: time="2024-02-09T19:19:18.980316160Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/node:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:19:19.031602 env[1744]: time="2024-02-09T19:19:19.030971904Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node@sha256:a45dffb21a0e9ca8962f36359a2ab776beeecd93843543c2fa1745d7bbb0f754,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:19:19.032967 env[1744]: time="2024-02-09T19:19:19.032905419Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node:v3.27.0\" returns image reference \"sha256:c445639cb28807ced09724016dc3b273b170b14d3b3d0c39b1affa1cc6b68774\"" Feb 9 19:19:19.072770 env[1744]: time="2024-02-09T19:19:19.072515717Z" level=info msg="CreateContainer within sandbox \"92504bda0d37ce3161dbefb6abe24ee15d09a466c12e806c6eea8378f0f42db7\" for container &ContainerMetadata{Name:calico-node,Attempt:0,}" Feb 9 19:19:19.564267 env[1744]: time="2024-02-09T19:19:19.564176977Z" level=info msg="CreateContainer within sandbox \"92504bda0d37ce3161dbefb6abe24ee15d09a466c12e806c6eea8378f0f42db7\" for &ContainerMetadata{Name:calico-node,Attempt:0,} returns container id \"6905539977a419e29eff125506d1d6d0d98c865c459f5e96096a565e258da16f\"" Feb 9 19:19:19.565745 env[1744]: time="2024-02-09T19:19:19.565667459Z" level=info msg="StartContainer for \"6905539977a419e29eff125506d1d6d0d98c865c459f5e96096a565e258da16f\"" Feb 9 19:19:19.602428 systemd[1]: Started cri-containerd-6905539977a419e29eff125506d1d6d0d98c865c459f5e96096a565e258da16f.scope. Feb 9 19:19:19.645000 audit[3018]: AVC avc: denied { perfmon } for pid=3018 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.665795 kernel: audit: type=1400 audit(1707506359.645:725): avc: denied { perfmon } for pid=3018 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.665902 kernel: audit: type=1300 audit(1707506359.645:725): arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=400014d5a0 a2=3c a3=0 items=0 ppid=2275 pid=3018 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:19.645000 audit[3018]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=400014d5a0 a2=3c a3=0 items=0 ppid=2275 pid=3018 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:19.645000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3639303535333939373761343139653239656666313235353036643164 Feb 9 19:19:19.676463 kernel: audit: type=1327 audit(1707506359.645:725): proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3639303535333939373761343139653239656666313235353036643164 Feb 9 19:19:19.652000 audit[3018]: AVC avc: denied { bpf } for pid=3018 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.684041 kernel: audit: type=1400 audit(1707506359.652:726): avc: denied { bpf } for pid=3018 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.652000 audit[3018]: AVC avc: denied { bpf } for pid=3018 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.652000 audit[3018]: AVC avc: denied { bpf } for pid=3018 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.700487 kernel: audit: type=1400 audit(1707506359.652:726): avc: denied { bpf } for pid=3018 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.700607 kernel: audit: type=1400 audit(1707506359.652:726): avc: denied { bpf } for pid=3018 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.652000 audit[3018]: AVC avc: denied { perfmon } for pid=3018 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.652000 audit[3018]: AVC avc: denied { perfmon } for pid=3018 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.709654 kernel: audit: type=1400 audit(1707506359.652:726): avc: denied { perfmon } for pid=3018 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.652000 audit[3018]: AVC avc: denied { perfmon } for pid=3018 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.717555 kernel: audit: type=1400 audit(1707506359.652:726): avc: denied { perfmon } for pid=3018 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.652000 audit[3018]: AVC avc: denied { perfmon } for pid=3018 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.735346 kernel: audit: type=1400 audit(1707506359.652:726): avc: denied { perfmon } for pid=3018 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.735529 kernel: audit: type=1400 audit(1707506359.652:726): avc: denied { perfmon } for pid=3018 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.652000 audit[3018]: AVC avc: denied { perfmon } for pid=3018 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.652000 audit[3018]: AVC avc: denied { bpf } for pid=3018 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.652000 audit[3018]: AVC avc: denied { bpf } for pid=3018 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.652000 audit: BPF prog-id=87 op=LOAD Feb 9 19:19:19.652000 audit[3018]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=400014d8e0 a2=78 a3=0 items=0 ppid=2275 pid=3018 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:19.652000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3639303535333939373761343139653239656666313235353036643164 Feb 9 19:19:19.653000 audit[3018]: AVC avc: denied { bpf } for pid=3018 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.653000 audit[3018]: AVC avc: denied { bpf } for pid=3018 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.653000 audit[3018]: AVC avc: denied { perfmon } for pid=3018 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.653000 audit[3018]: AVC avc: denied { perfmon } for pid=3018 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.653000 audit[3018]: AVC avc: denied { perfmon } for pid=3018 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.653000 audit[3018]: AVC avc: denied { perfmon } for pid=3018 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.653000 audit[3018]: AVC avc: denied { perfmon } for pid=3018 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.653000 audit[3018]: AVC avc: denied { bpf } for pid=3018 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.653000 audit[3018]: AVC avc: denied { bpf } for pid=3018 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.653000 audit: BPF prog-id=88 op=LOAD Feb 9 19:19:19.653000 audit[3018]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=400014d670 a2=78 a3=0 items=0 ppid=2275 pid=3018 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:19.653000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3639303535333939373761343139653239656666313235353036643164 Feb 9 19:19:19.653000 audit: BPF prog-id=88 op=UNLOAD Feb 9 19:19:19.653000 audit: BPF prog-id=87 op=UNLOAD Feb 9 19:19:19.653000 audit[3018]: AVC avc: denied { bpf } for pid=3018 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.653000 audit[3018]: AVC avc: denied { bpf } for pid=3018 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.653000 audit[3018]: AVC avc: denied { bpf } for pid=3018 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.653000 audit[3018]: AVC avc: denied { perfmon } for pid=3018 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.653000 audit[3018]: AVC avc: denied { perfmon } for pid=3018 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.653000 audit[3018]: AVC avc: denied { perfmon } for pid=3018 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.653000 audit[3018]: AVC avc: denied { perfmon } for pid=3018 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.653000 audit[3018]: AVC avc: denied { perfmon } for pid=3018 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.653000 audit[3018]: AVC avc: denied { bpf } for pid=3018 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.653000 audit[3018]: AVC avc: denied { bpf } for pid=3018 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:19.653000 audit: BPF prog-id=89 op=LOAD Feb 9 19:19:19.653000 audit[3018]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=400014db40 a2=78 a3=0 items=0 ppid=2275 pid=3018 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:19.653000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3639303535333939373761343139653239656666313235353036643164 Feb 9 19:19:19.837228 env[1744]: time="2024-02-09T19:19:19.834672114Z" level=info msg="StartContainer for \"6905539977a419e29eff125506d1d6d0d98c865c459f5e96096a565e258da16f\" returns successfully" Feb 9 19:19:19.879938 kernel: wireguard: WireGuard 1.0.0 loaded. See www.wireguard.com for information. Feb 9 19:19:19.880094 kernel: wireguard: Copyright (C) 2015-2019 Jason A. Donenfeld . All Rights Reserved. Feb 9 19:19:19.961725 kubelet[2211]: E0209 19:19:19.961656 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:20.234787 env[1744]: time="2024-02-09T19:19:20.234277612Z" level=info msg="StopPodSandbox for \"4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687\"" Feb 9 19:19:20.359137 kubelet[2211]: I0209 19:19:20.358863 2211 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="calico-system/calico-node-d9w6x" podStartSLOduration=4.440096847 podCreationTimestamp="2024-02-09 19:18:43 +0000 UTC" firstStartedPulling="2024-02-09 19:18:46.115347965 +0000 UTC m=+5.459624446" lastFinishedPulling="2024-02-09 19:19:19.034062341 +0000 UTC m=+38.378338822" observedRunningTime="2024-02-09 19:19:20.358702901 +0000 UTC m=+39.702979406" watchObservedRunningTime="2024-02-09 19:19:20.358811223 +0000 UTC m=+39.703087716" Feb 9 19:19:20.406978 systemd[1]: run-containerd-runc-k8s.io-6905539977a419e29eff125506d1d6d0d98c865c459f5e96096a565e258da16f-runc.YX9Nu1.mount: Deactivated successfully. Feb 9 19:19:20.437724 env[1744]: 2024-02-09 19:19:20.328 [INFO][3079] k8s.go 578: Cleaning up netns ContainerID="4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" Feb 9 19:19:20.437724 env[1744]: 2024-02-09 19:19:20.329 [INFO][3079] dataplane_linux.go 530: Deleting workload's device in netns. ContainerID="4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" iface="eth0" netns="/var/run/netns/cni-98a8e424-b3d6-7753-b353-a1030270df87" Feb 9 19:19:20.437724 env[1744]: 2024-02-09 19:19:20.329 [INFO][3079] dataplane_linux.go 541: Entered netns, deleting veth. ContainerID="4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" iface="eth0" netns="/var/run/netns/cni-98a8e424-b3d6-7753-b353-a1030270df87" Feb 9 19:19:20.437724 env[1744]: 2024-02-09 19:19:20.329 [INFO][3079] dataplane_linux.go 568: Workload's veth was already gone. Nothing to do. ContainerID="4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" iface="eth0" netns="/var/run/netns/cni-98a8e424-b3d6-7753-b353-a1030270df87" Feb 9 19:19:20.437724 env[1744]: 2024-02-09 19:19:20.330 [INFO][3079] k8s.go 585: Releasing IP address(es) ContainerID="4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" Feb 9 19:19:20.437724 env[1744]: 2024-02-09 19:19:20.330 [INFO][3079] utils.go 188: Calico CNI releasing IP address ContainerID="4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" Feb 9 19:19:20.437724 env[1744]: 2024-02-09 19:19:20.395 [INFO][3096] ipam_plugin.go 415: Releasing address using handleID ContainerID="4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" HandleID="k8s-pod-network.4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" Workload="172.31.22.94-k8s-csi--node--driver--cqn68-eth0" Feb 9 19:19:20.437724 env[1744]: 2024-02-09 19:19:20.400 [INFO][3096] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 19:19:20.437724 env[1744]: 2024-02-09 19:19:20.403 [INFO][3096] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 19:19:20.437724 env[1744]: 2024-02-09 19:19:20.426 [WARNING][3096] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" HandleID="k8s-pod-network.4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" Workload="172.31.22.94-k8s-csi--node--driver--cqn68-eth0" Feb 9 19:19:20.437724 env[1744]: 2024-02-09 19:19:20.426 [INFO][3096] ipam_plugin.go 443: Releasing address using workloadID ContainerID="4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" HandleID="k8s-pod-network.4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" Workload="172.31.22.94-k8s-csi--node--driver--cqn68-eth0" Feb 9 19:19:20.437724 env[1744]: 2024-02-09 19:19:20.429 [INFO][3096] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 19:19:20.437724 env[1744]: 2024-02-09 19:19:20.435 [INFO][3079] k8s.go 591: Teardown processing complete. ContainerID="4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" Feb 9 19:19:20.440650 systemd[1]: run-netns-cni\x2d98a8e424\x2db3d6\x2d7753\x2db353\x2da1030270df87.mount: Deactivated successfully. Feb 9 19:19:20.444334 env[1744]: time="2024-02-09T19:19:20.442054982Z" level=info msg="TearDown network for sandbox \"4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687\" successfully" Feb 9 19:19:20.444334 env[1744]: time="2024-02-09T19:19:20.442120028Z" level=info msg="StopPodSandbox for \"4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687\" returns successfully" Feb 9 19:19:20.445702 env[1744]: time="2024-02-09T19:19:20.445640356Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-cqn68,Uid:a6dae328-8341-4be4-ac60-ed961c923c62,Namespace:calico-system,Attempt:1,}" Feb 9 19:19:20.962473 kubelet[2211]: E0209 19:19:20.962382 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:21.186462 kernel: Initializing XFRM netlink socket Feb 9 19:19:21.194167 (udev-worker)[3052]: Network interface NamePolicy= disabled on kernel command line. Feb 9 19:19:21.200259 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 9 19:19:21.200382 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali4af51bbdf74: link becomes ready Feb 9 19:19:21.201205 systemd-networkd[1547]: cali4af51bbdf74: Link UP Feb 9 19:19:21.202294 systemd-networkd[1547]: cali4af51bbdf74: Gained carrier Feb 9 19:19:21.222588 env[1744]: 2024-02-09 19:19:21.026 [INFO][3126] utils.go 100: File /var/lib/calico/mtu does not exist Feb 9 19:19:21.222588 env[1744]: 2024-02-09 19:19:21.054 [INFO][3126] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.22.94-k8s-csi--node--driver--cqn68-eth0 csi-node-driver- calico-system a6dae328-8341-4be4-ac60-ed961c923c62 966 0 2024-02-09 19:18:43 +0000 UTC map[app.kubernetes.io/name:csi-node-driver controller-revision-hash:86b88cf7c9 k8s-app:csi-node-driver name:csi-node-driver pod-template-generation:1 projectcalico.org/namespace:calico-system projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 172.31.22.94 csi-node-driver-cqn68 eth0 default [] [] [kns.calico-system ksa.calico-system.default] cali4af51bbdf74 [] []}} ContainerID="52d9e5a4fe38f5a21c6852b9e08cc7a49598e5666acca36d94a8bfc035a5e796" Namespace="calico-system" Pod="csi-node-driver-cqn68" WorkloadEndpoint="172.31.22.94-k8s-csi--node--driver--cqn68-" Feb 9 19:19:21.222588 env[1744]: 2024-02-09 19:19:21.054 [INFO][3126] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="52d9e5a4fe38f5a21c6852b9e08cc7a49598e5666acca36d94a8bfc035a5e796" Namespace="calico-system" Pod="csi-node-driver-cqn68" WorkloadEndpoint="172.31.22.94-k8s-csi--node--driver--cqn68-eth0" Feb 9 19:19:21.222588 env[1744]: 2024-02-09 19:19:21.096 [INFO][3139] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="52d9e5a4fe38f5a21c6852b9e08cc7a49598e5666acca36d94a8bfc035a5e796" HandleID="k8s-pod-network.52d9e5a4fe38f5a21c6852b9e08cc7a49598e5666acca36d94a8bfc035a5e796" Workload="172.31.22.94-k8s-csi--node--driver--cqn68-eth0" Feb 9 19:19:21.222588 env[1744]: 2024-02-09 19:19:21.114 [INFO][3139] ipam_plugin.go 268: Auto assigning IP ContainerID="52d9e5a4fe38f5a21c6852b9e08cc7a49598e5666acca36d94a8bfc035a5e796" HandleID="k8s-pod-network.52d9e5a4fe38f5a21c6852b9e08cc7a49598e5666acca36d94a8bfc035a5e796" Workload="172.31.22.94-k8s-csi--node--driver--cqn68-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x400025f2e0), Attrs:map[string]string{"namespace":"calico-system", "node":"172.31.22.94", "pod":"csi-node-driver-cqn68", "timestamp":"2024-02-09 19:19:21.096847714 +0000 UTC"}, Hostname:"172.31.22.94", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 9 19:19:21.222588 env[1744]: 2024-02-09 19:19:21.114 [INFO][3139] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 19:19:21.222588 env[1744]: 2024-02-09 19:19:21.114 [INFO][3139] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 19:19:21.222588 env[1744]: 2024-02-09 19:19:21.114 [INFO][3139] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.22.94' Feb 9 19:19:21.222588 env[1744]: 2024-02-09 19:19:21.117 [INFO][3139] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.52d9e5a4fe38f5a21c6852b9e08cc7a49598e5666acca36d94a8bfc035a5e796" host="172.31.22.94" Feb 9 19:19:21.222588 env[1744]: 2024-02-09 19:19:21.126 [INFO][3139] ipam.go 372: Looking up existing affinities for host host="172.31.22.94" Feb 9 19:19:21.222588 env[1744]: 2024-02-09 19:19:21.134 [INFO][3139] ipam.go 489: Trying affinity for 192.168.35.0/26 host="172.31.22.94" Feb 9 19:19:21.222588 env[1744]: 2024-02-09 19:19:21.138 [INFO][3139] ipam.go 155: Attempting to load block cidr=192.168.35.0/26 host="172.31.22.94" Feb 9 19:19:21.222588 env[1744]: 2024-02-09 19:19:21.143 [INFO][3139] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.35.0/26 host="172.31.22.94" Feb 9 19:19:21.222588 env[1744]: 2024-02-09 19:19:21.143 [INFO][3139] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.35.0/26 handle="k8s-pod-network.52d9e5a4fe38f5a21c6852b9e08cc7a49598e5666acca36d94a8bfc035a5e796" host="172.31.22.94" Feb 9 19:19:21.222588 env[1744]: 2024-02-09 19:19:21.146 [INFO][3139] ipam.go 1682: Creating new handle: k8s-pod-network.52d9e5a4fe38f5a21c6852b9e08cc7a49598e5666acca36d94a8bfc035a5e796 Feb 9 19:19:21.222588 env[1744]: 2024-02-09 19:19:21.151 [INFO][3139] ipam.go 1203: Writing block in order to claim IPs block=192.168.35.0/26 handle="k8s-pod-network.52d9e5a4fe38f5a21c6852b9e08cc7a49598e5666acca36d94a8bfc035a5e796" host="172.31.22.94" Feb 9 19:19:21.222588 env[1744]: 2024-02-09 19:19:21.159 [INFO][3139] ipam.go 1216: Successfully claimed IPs: [192.168.35.1/26] block=192.168.35.0/26 handle="k8s-pod-network.52d9e5a4fe38f5a21c6852b9e08cc7a49598e5666acca36d94a8bfc035a5e796" host="172.31.22.94" Feb 9 19:19:21.222588 env[1744]: 2024-02-09 19:19:21.159 [INFO][3139] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.35.1/26] handle="k8s-pod-network.52d9e5a4fe38f5a21c6852b9e08cc7a49598e5666acca36d94a8bfc035a5e796" host="172.31.22.94" Feb 9 19:19:21.222588 env[1744]: 2024-02-09 19:19:21.159 [INFO][3139] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 19:19:21.222588 env[1744]: 2024-02-09 19:19:21.159 [INFO][3139] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.35.1/26] IPv6=[] ContainerID="52d9e5a4fe38f5a21c6852b9e08cc7a49598e5666acca36d94a8bfc035a5e796" HandleID="k8s-pod-network.52d9e5a4fe38f5a21c6852b9e08cc7a49598e5666acca36d94a8bfc035a5e796" Workload="172.31.22.94-k8s-csi--node--driver--cqn68-eth0" Feb 9 19:19:21.224320 env[1744]: 2024-02-09 19:19:21.164 [INFO][3126] k8s.go 385: Populated endpoint ContainerID="52d9e5a4fe38f5a21c6852b9e08cc7a49598e5666acca36d94a8bfc035a5e796" Namespace="calico-system" Pod="csi-node-driver-cqn68" WorkloadEndpoint="172.31.22.94-k8s-csi--node--driver--cqn68-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.94-k8s-csi--node--driver--cqn68-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"a6dae328-8341-4be4-ac60-ed961c923c62", ResourceVersion:"966", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 19, 18, 43, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"86b88cf7c9", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.94", ContainerID:"", Pod:"csi-node-driver-cqn68", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.35.1/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"cali4af51bbdf74", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 19:19:21.224320 env[1744]: 2024-02-09 19:19:21.164 [INFO][3126] k8s.go 386: Calico CNI using IPs: [192.168.35.1/32] ContainerID="52d9e5a4fe38f5a21c6852b9e08cc7a49598e5666acca36d94a8bfc035a5e796" Namespace="calico-system" Pod="csi-node-driver-cqn68" WorkloadEndpoint="172.31.22.94-k8s-csi--node--driver--cqn68-eth0" Feb 9 19:19:21.224320 env[1744]: 2024-02-09 19:19:21.164 [INFO][3126] dataplane_linux.go 68: Setting the host side veth name to cali4af51bbdf74 ContainerID="52d9e5a4fe38f5a21c6852b9e08cc7a49598e5666acca36d94a8bfc035a5e796" Namespace="calico-system" Pod="csi-node-driver-cqn68" WorkloadEndpoint="172.31.22.94-k8s-csi--node--driver--cqn68-eth0" Feb 9 19:19:21.224320 env[1744]: 2024-02-09 19:19:21.200 [INFO][3126] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="52d9e5a4fe38f5a21c6852b9e08cc7a49598e5666acca36d94a8bfc035a5e796" Namespace="calico-system" Pod="csi-node-driver-cqn68" WorkloadEndpoint="172.31.22.94-k8s-csi--node--driver--cqn68-eth0" Feb 9 19:19:21.224320 env[1744]: 2024-02-09 19:19:21.206 [INFO][3126] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="52d9e5a4fe38f5a21c6852b9e08cc7a49598e5666acca36d94a8bfc035a5e796" Namespace="calico-system" Pod="csi-node-driver-cqn68" WorkloadEndpoint="172.31.22.94-k8s-csi--node--driver--cqn68-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.94-k8s-csi--node--driver--cqn68-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"a6dae328-8341-4be4-ac60-ed961c923c62", ResourceVersion:"966", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 19, 18, 43, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"86b88cf7c9", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.94", ContainerID:"52d9e5a4fe38f5a21c6852b9e08cc7a49598e5666acca36d94a8bfc035a5e796", Pod:"csi-node-driver-cqn68", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.35.1/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"cali4af51bbdf74", MAC:"8e:ff:f1:87:53:b9", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 19:19:21.224320 env[1744]: 2024-02-09 19:19:21.219 [INFO][3126] k8s.go 491: Wrote updated endpoint to datastore ContainerID="52d9e5a4fe38f5a21c6852b9e08cc7a49598e5666acca36d94a8bfc035a5e796" Namespace="calico-system" Pod="csi-node-driver-cqn68" WorkloadEndpoint="172.31.22.94-k8s-csi--node--driver--cqn68-eth0" Feb 9 19:19:21.242718 env[1744]: time="2024-02-09T19:19:21.242557449Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 9 19:19:21.242998 env[1744]: time="2024-02-09T19:19:21.242659014Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 9 19:19:21.243185 env[1744]: time="2024-02-09T19:19:21.243109317Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 9 19:19:21.244916 env[1744]: time="2024-02-09T19:19:21.243626647Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/52d9e5a4fe38f5a21c6852b9e08cc7a49598e5666acca36d94a8bfc035a5e796 pid=3166 runtime=io.containerd.runc.v2 Feb 9 19:19:21.277232 systemd[1]: Started cri-containerd-52d9e5a4fe38f5a21c6852b9e08cc7a49598e5666acca36d94a8bfc035a5e796.scope. Feb 9 19:19:21.316000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.316000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.316000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.316000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.316000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.316000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.316000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.316000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.316000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.316000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.316000 audit: BPF prog-id=90 op=LOAD Feb 9 19:19:21.317000 audit[3176]: AVC avc: denied { bpf } for pid=3176 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.317000 audit[3176]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000195b38 a2=10 a3=0 items=0 ppid=3166 pid=3176 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:21.317000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3532643965356134666533386635613231633638353262396530386363 Feb 9 19:19:21.317000 audit[3176]: AVC avc: denied { perfmon } for pid=3176 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.317000 audit[3176]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=3166 pid=3176 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:21.317000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3532643965356134666533386635613231633638353262396530386363 Feb 9 19:19:21.317000 audit[3176]: AVC avc: denied { bpf } for pid=3176 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.317000 audit[3176]: AVC avc: denied { bpf } for pid=3176 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.317000 audit[3176]: AVC avc: denied { bpf } for pid=3176 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.317000 audit[3176]: AVC avc: denied { perfmon } for pid=3176 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.317000 audit[3176]: AVC avc: denied { perfmon } for pid=3176 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.317000 audit[3176]: AVC avc: denied { perfmon } for pid=3176 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.317000 audit[3176]: AVC avc: denied { perfmon } for pid=3176 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.317000 audit[3176]: AVC avc: denied { perfmon } for pid=3176 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.317000 audit[3176]: AVC avc: denied { bpf } for pid=3176 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.317000 audit[3176]: AVC avc: denied { bpf } for pid=3176 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.317000 audit: BPF prog-id=91 op=LOAD Feb 9 19:19:21.317000 audit[3176]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=3166 pid=3176 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:21.317000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3532643965356134666533386635613231633638353262396530386363 Feb 9 19:19:21.317000 audit[3176]: AVC avc: denied { bpf } for pid=3176 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.317000 audit[3176]: AVC avc: denied { bpf } for pid=3176 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.317000 audit[3176]: AVC avc: denied { perfmon } for pid=3176 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.317000 audit[3176]: AVC avc: denied { perfmon } for pid=3176 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.317000 audit[3176]: AVC avc: denied { perfmon } for pid=3176 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.317000 audit[3176]: AVC avc: denied { perfmon } for pid=3176 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.317000 audit[3176]: AVC avc: denied { perfmon } for pid=3176 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.317000 audit[3176]: AVC avc: denied { bpf } for pid=3176 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.317000 audit[3176]: AVC avc: denied { bpf } for pid=3176 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.317000 audit: BPF prog-id=92 op=LOAD Feb 9 19:19:21.317000 audit[3176]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=3166 pid=3176 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:21.317000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3532643965356134666533386635613231633638353262396530386363 Feb 9 19:19:21.317000 audit: BPF prog-id=92 op=UNLOAD Feb 9 19:19:21.317000 audit: BPF prog-id=91 op=UNLOAD Feb 9 19:19:21.317000 audit[3176]: AVC avc: denied { bpf } for pid=3176 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.317000 audit[3176]: AVC avc: denied { bpf } for pid=3176 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.317000 audit[3176]: AVC avc: denied { bpf } for pid=3176 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.317000 audit[3176]: AVC avc: denied { perfmon } for pid=3176 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.317000 audit[3176]: AVC avc: denied { perfmon } for pid=3176 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.317000 audit[3176]: AVC avc: denied { perfmon } for pid=3176 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.317000 audit[3176]: AVC avc: denied { perfmon } for pid=3176 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.317000 audit[3176]: AVC avc: denied { perfmon } for pid=3176 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.317000 audit[3176]: AVC avc: denied { bpf } for pid=3176 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.317000 audit[3176]: AVC avc: denied { bpf } for pid=3176 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:21.317000 audit: BPF prog-id=93 op=LOAD Feb 9 19:19:21.317000 audit[3176]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=3166 pid=3176 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:21.317000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3532643965356134666533386635613231633638353262396530386363 Feb 9 19:19:21.383304 systemd[1]: run-containerd-runc-k8s.io-6905539977a419e29eff125506d1d6d0d98c865c459f5e96096a565e258da16f-runc.9Bekr9.mount: Deactivated successfully. Feb 9 19:19:21.405181 env[1744]: time="2024-02-09T19:19:21.403778347Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-cqn68,Uid:a6dae328-8341-4be4-ac60-ed961c923c62,Namespace:calico-system,Attempt:1,} returns sandbox id \"52d9e5a4fe38f5a21c6852b9e08cc7a49598e5666acca36d94a8bfc035a5e796\"" Feb 9 19:19:21.411046 env[1744]: time="2024-02-09T19:19:21.410977931Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/csi:v3.27.0\"" Feb 9 19:19:21.415000 audit[3249]: AVC avc: denied { write } for pid=3249 comm="tee" name="fd" dev="proc" ino=16567 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 9 19:19:21.415000 audit[3249]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=fffff460997b a2=241 a3=1b6 items=1 ppid=3209 pid=3249 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:21.415000 audit: CWD cwd="/etc/service/enabled/node-status-reporter/log" Feb 9 19:19:21.415000 audit: PATH item=0 name="/dev/fd/63" inode=16547 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 19:19:21.415000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 9 19:19:21.452000 audit[3255]: AVC avc: denied { write } for pid=3255 comm="tee" name="fd" dev="proc" ino=16072 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 9 19:19:21.452000 audit[3255]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffebef998a a2=241 a3=1b6 items=1 ppid=3207 pid=3255 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:21.452000 audit: CWD cwd="/etc/service/enabled/confd/log" Feb 9 19:19:21.452000 audit: PATH item=0 name="/dev/fd/63" inode=16569 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 19:19:21.452000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 9 19:19:21.479000 audit[3281]: AVC avc: denied { write } for pid=3281 comm="tee" name="fd" dev="proc" ino=16089 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 9 19:19:21.463000 audit[3269]: AVC avc: denied { write } for pid=3269 comm="tee" name="fd" dev="proc" ino=16600 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 9 19:19:21.463000 audit[3269]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=fffff908f98a a2=241 a3=1b6 items=1 ppid=3203 pid=3269 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:21.463000 audit: CWD cwd="/etc/service/enabled/felix/log" Feb 9 19:19:21.463000 audit: PATH item=0 name="/dev/fd/63" inode=16573 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 19:19:21.463000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 9 19:19:21.479000 audit[3281]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=fffff042698b a2=241 a3=1b6 items=1 ppid=3202 pid=3281 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:21.479000 audit: CWD cwd="/etc/service/enabled/bird/log" Feb 9 19:19:21.479000 audit: PATH item=0 name="/dev/fd/63" inode=16076 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 19:19:21.479000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 9 19:19:21.494000 audit[3285]: AVC avc: denied { write } for pid=3285 comm="tee" name="fd" dev="proc" ino=16608 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 9 19:19:21.494000 audit[3285]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffde0b997a a2=241 a3=1b6 items=1 ppid=3212 pid=3285 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:21.494000 audit: CWD cwd="/etc/service/enabled/allocate-tunnel-addrs/log" Feb 9 19:19:21.494000 audit: PATH item=0 name="/dev/fd/63" inode=16604 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 19:19:21.494000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 9 19:19:21.496000 audit[3289]: AVC avc: denied { write } for pid=3289 comm="tee" name="fd" dev="proc" ino=16612 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 9 19:19:21.496000 audit[3289]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffd669998c a2=241 a3=1b6 items=1 ppid=3215 pid=3289 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:21.496000 audit: CWD cwd="/etc/service/enabled/cni/log" Feb 9 19:19:21.496000 audit: PATH item=0 name="/dev/fd/63" inode=16091 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 19:19:21.496000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 9 19:19:21.498000 audit[3287]: AVC avc: denied { write } for pid=3287 comm="tee" name="fd" dev="proc" ino=16095 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 9 19:19:21.498000 audit[3287]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffd7da898a a2=241 a3=1b6 items=1 ppid=3205 pid=3287 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:21.498000 audit: CWD cwd="/etc/service/enabled/bird6/log" Feb 9 19:19:21.498000 audit: PATH item=0 name="/dev/fd/63" inode=16090 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 19:19:21.498000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 9 19:19:21.932746 kubelet[2211]: E0209 19:19:21.932656 2211 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:21.963108 kubelet[2211]: E0209 19:19:21.963025 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:22.072362 (udev-worker)[3148]: Network interface NamePolicy= disabled on kernel command line. Feb 9 19:19:22.081000 audit[3367]: AVC avc: denied { bpf } for pid=3367 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.081000 audit[3367]: AVC avc: denied { bpf } for pid=3367 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.081000 audit[3367]: AVC avc: denied { perfmon } for pid=3367 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.081000 audit[3367]: AVC avc: denied { perfmon } for pid=3367 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.081000 audit[3367]: AVC avc: denied { perfmon } for pid=3367 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.081000 audit[3367]: AVC avc: denied { perfmon } for pid=3367 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.081000 audit[3367]: AVC avc: denied { perfmon } for pid=3367 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.081000 audit[3367]: AVC avc: denied { bpf } for pid=3367 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.081000 audit[3367]: AVC avc: denied { bpf } for pid=3367 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.081000 audit: BPF prog-id=94 op=LOAD Feb 9 19:19:22.081000 audit[3367]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=3 a0=5 a1=ffffc9e5a698 a2=70 a3=0 items=0 ppid=3214 pid=3367 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:22.081000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 9 19:19:22.082000 audit: BPF prog-id=94 op=UNLOAD Feb 9 19:19:22.082000 audit[3367]: AVC avc: denied { bpf } for pid=3367 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.082000 audit[3367]: AVC avc: denied { bpf } for pid=3367 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.082000 audit[3367]: AVC avc: denied { perfmon } for pid=3367 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.082000 audit[3367]: AVC avc: denied { perfmon } for pid=3367 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.082000 audit[3367]: AVC avc: denied { perfmon } for pid=3367 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.082000 audit[3367]: AVC avc: denied { perfmon } for pid=3367 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.082000 audit[3367]: AVC avc: denied { perfmon } for pid=3367 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.082000 audit[3367]: AVC avc: denied { bpf } for pid=3367 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.082000 audit[3367]: AVC avc: denied { bpf } for pid=3367 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.082000 audit: BPF prog-id=95 op=LOAD Feb 9 19:19:22.082000 audit[3367]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=3 a0=5 a1=ffffc9e5a698 a2=70 a3=4a174c items=0 ppid=3214 pid=3367 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:22.082000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 9 19:19:22.082000 audit: BPF prog-id=95 op=UNLOAD Feb 9 19:19:22.082000 audit[3367]: AVC avc: denied { bpf } for pid=3367 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.082000 audit[3367]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=3 a0=0 a1=ffffc9e5a6c8 a2=70 a3=2a0ba73f items=0 ppid=3214 pid=3367 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:22.082000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 9 19:19:22.083000 audit[3367]: AVC avc: denied { bpf } for pid=3367 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.083000 audit[3367]: AVC avc: denied { bpf } for pid=3367 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.083000 audit[3367]: AVC avc: denied { bpf } for pid=3367 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.083000 audit[3367]: AVC avc: denied { perfmon } for pid=3367 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.083000 audit[3367]: AVC avc: denied { perfmon } for pid=3367 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.083000 audit[3367]: AVC avc: denied { perfmon } for pid=3367 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.083000 audit[3367]: AVC avc: denied { perfmon } for pid=3367 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.083000 audit[3367]: AVC avc: denied { perfmon } for pid=3367 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.083000 audit[3367]: AVC avc: denied { bpf } for pid=3367 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.083000 audit[3367]: AVC avc: denied { bpf } for pid=3367 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.083000 audit: BPF prog-id=96 op=LOAD Feb 9 19:19:22.083000 audit[3367]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=5 a0=5 a1=ffffc9e5a618 a2=70 a3=2a0ba759 items=0 ppid=3214 pid=3367 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:22.083000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 9 19:19:22.091000 audit[3372]: AVC avc: denied { bpf } for pid=3372 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.091000 audit[3372]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=ffffc36a8a78 a2=70 a3=0 items=0 ppid=3214 pid=3372 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:22.091000 audit: PROCTITLE proctitle=627066746F6F6C002D2D6A736F6E002D2D7072657474790070726F670073686F770070696E6E6564002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41 Feb 9 19:19:22.092000 audit[3372]: AVC avc: denied { bpf } for pid=3372 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.092000 audit[3372]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=ffffc36a8958 a2=70 a3=2 items=0 ppid=3214 pid=3372 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:22.092000 audit: PROCTITLE proctitle=627066746F6F6C002D2D6A736F6E002D2D7072657474790070726F670073686F770070696E6E6564002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41 Feb 9 19:19:22.104000 audit: BPF prog-id=96 op=UNLOAD Feb 9 19:19:22.201000 audit[3395]: NETFILTER_CFG table=mangle:65 family=2 entries=19 op=nft_register_chain pid=3395 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 19:19:22.201000 audit[3395]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=6800 a0=3 a1=ffffc819c540 a2=0 a3=ffffbd40dfa8 items=0 ppid=3214 pid=3395 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:22.203000 audit[3393]: NETFILTER_CFG table=raw:66 family=2 entries=19 op=nft_register_chain pid=3393 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 19:19:22.203000 audit[3393]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=6132 a0=3 a1=ffffe19309e0 a2=0 a3=ffffa379dfa8 items=0 ppid=3214 pid=3393 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:22.203000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 19:19:22.201000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 19:19:22.207000 audit[3394]: NETFILTER_CFG table=nat:67 family=2 entries=16 op=nft_register_chain pid=3394 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 19:19:22.207000 audit[3394]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5188 a0=3 a1=ffffe36a2c50 a2=0 a3=ffffb4e6dfa8 items=0 ppid=3214 pid=3394 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:22.207000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 19:19:22.220000 audit[3399]: NETFILTER_CFG table=filter:68 family=2 entries=71 op=nft_register_chain pid=3399 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 19:19:22.220000 audit[3399]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=36636 a0=3 a1=ffffd8148a70 a2=0 a3=ffffbc03ffa8 items=0 ppid=3214 pid=3399 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:22.220000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 19:19:22.256090 env[1744]: time="2024-02-09T19:19:22.254158390Z" level=info msg="StopPodSandbox for \"a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471\"" Feb 9 19:19:22.403636 env[1744]: 2024-02-09 19:19:22.344 [INFO][3415] k8s.go 578: Cleaning up netns ContainerID="a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" Feb 9 19:19:22.403636 env[1744]: 2024-02-09 19:19:22.345 [INFO][3415] dataplane_linux.go 530: Deleting workload's device in netns. ContainerID="a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" iface="eth0" netns="/var/run/netns/cni-21e2c73d-1dce-c0c4-5ed4-70c0ae181be8" Feb 9 19:19:22.403636 env[1744]: 2024-02-09 19:19:22.345 [INFO][3415] dataplane_linux.go 541: Entered netns, deleting veth. ContainerID="a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" iface="eth0" netns="/var/run/netns/cni-21e2c73d-1dce-c0c4-5ed4-70c0ae181be8" Feb 9 19:19:22.403636 env[1744]: 2024-02-09 19:19:22.345 [INFO][3415] dataplane_linux.go 568: Workload's veth was already gone. Nothing to do. ContainerID="a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" iface="eth0" netns="/var/run/netns/cni-21e2c73d-1dce-c0c4-5ed4-70c0ae181be8" Feb 9 19:19:22.403636 env[1744]: 2024-02-09 19:19:22.345 [INFO][3415] k8s.go 585: Releasing IP address(es) ContainerID="a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" Feb 9 19:19:22.403636 env[1744]: 2024-02-09 19:19:22.345 [INFO][3415] utils.go 188: Calico CNI releasing IP address ContainerID="a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" Feb 9 19:19:22.403636 env[1744]: 2024-02-09 19:19:22.382 [INFO][3422] ipam_plugin.go 415: Releasing address using handleID ContainerID="a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" HandleID="k8s-pod-network.a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" Workload="172.31.22.94-k8s-nginx--deployment--845c78c8b9--mq8dw-eth0" Feb 9 19:19:22.403636 env[1744]: 2024-02-09 19:19:22.383 [INFO][3422] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 19:19:22.403636 env[1744]: 2024-02-09 19:19:22.383 [INFO][3422] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 19:19:22.403636 env[1744]: 2024-02-09 19:19:22.395 [WARNING][3422] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" HandleID="k8s-pod-network.a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" Workload="172.31.22.94-k8s-nginx--deployment--845c78c8b9--mq8dw-eth0" Feb 9 19:19:22.403636 env[1744]: 2024-02-09 19:19:22.395 [INFO][3422] ipam_plugin.go 443: Releasing address using workloadID ContainerID="a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" HandleID="k8s-pod-network.a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" Workload="172.31.22.94-k8s-nginx--deployment--845c78c8b9--mq8dw-eth0" Feb 9 19:19:22.403636 env[1744]: 2024-02-09 19:19:22.398 [INFO][3422] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 19:19:22.403636 env[1744]: 2024-02-09 19:19:22.400 [INFO][3415] k8s.go 591: Teardown processing complete. ContainerID="a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" Feb 9 19:19:22.410122 env[1744]: time="2024-02-09T19:19:22.403901271Z" level=info msg="TearDown network for sandbox \"a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471\" successfully" Feb 9 19:19:22.410122 env[1744]: time="2024-02-09T19:19:22.403949299Z" level=info msg="StopPodSandbox for \"a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471\" returns successfully" Feb 9 19:19:22.410122 env[1744]: time="2024-02-09T19:19:22.408483904Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-845c78c8b9-mq8dw,Uid:ed2fe88b-21fc-4150-af4a-9cafe261183f,Namespace:default,Attempt:1,}" Feb 9 19:19:22.406633 systemd[1]: run-netns-cni\x2d21e2c73d\x2d1dce\x2dc0c4\x2d5ed4\x2d70c0ae181be8.mount: Deactivated successfully. Feb 9 19:19:22.711199 systemd-networkd[1547]: cali03c5e430856: Link UP Feb 9 19:19:22.714945 systemd-networkd[1547]: cali03c5e430856: Gained carrier Feb 9 19:19:22.715673 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali03c5e430856: link becomes ready Feb 9 19:19:22.734375 env[1744]: 2024-02-09 19:19:22.600 [INFO][3430] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.22.94-k8s-nginx--deployment--845c78c8b9--mq8dw-eth0 nginx-deployment-845c78c8b9- default ed2fe88b-21fc-4150-af4a-9cafe261183f 980 0 2024-02-09 19:19:08 +0000 UTC map[app:nginx pod-template-hash:845c78c8b9 projectcalico.org/namespace:default projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 172.31.22.94 nginx-deployment-845c78c8b9-mq8dw eth0 default [] [] [kns.default ksa.default.default] cali03c5e430856 [] []}} ContainerID="8d6d0ee2f1793fa3d12fce39f3bf08b8fde8ddfe2cc54b4b6622188b4a9df596" Namespace="default" Pod="nginx-deployment-845c78c8b9-mq8dw" WorkloadEndpoint="172.31.22.94-k8s-nginx--deployment--845c78c8b9--mq8dw-" Feb 9 19:19:22.734375 env[1744]: 2024-02-09 19:19:22.600 [INFO][3430] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="8d6d0ee2f1793fa3d12fce39f3bf08b8fde8ddfe2cc54b4b6622188b4a9df596" Namespace="default" Pod="nginx-deployment-845c78c8b9-mq8dw" WorkloadEndpoint="172.31.22.94-k8s-nginx--deployment--845c78c8b9--mq8dw-eth0" Feb 9 19:19:22.734375 env[1744]: 2024-02-09 19:19:22.644 [INFO][3442] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="8d6d0ee2f1793fa3d12fce39f3bf08b8fde8ddfe2cc54b4b6622188b4a9df596" HandleID="k8s-pod-network.8d6d0ee2f1793fa3d12fce39f3bf08b8fde8ddfe2cc54b4b6622188b4a9df596" Workload="172.31.22.94-k8s-nginx--deployment--845c78c8b9--mq8dw-eth0" Feb 9 19:19:22.734375 env[1744]: 2024-02-09 19:19:22.664 [INFO][3442] ipam_plugin.go 268: Auto assigning IP ContainerID="8d6d0ee2f1793fa3d12fce39f3bf08b8fde8ddfe2cc54b4b6622188b4a9df596" HandleID="k8s-pod-network.8d6d0ee2f1793fa3d12fce39f3bf08b8fde8ddfe2cc54b4b6622188b4a9df596" Workload="172.31.22.94-k8s-nginx--deployment--845c78c8b9--mq8dw-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x400027b9c0), Attrs:map[string]string{"namespace":"default", "node":"172.31.22.94", "pod":"nginx-deployment-845c78c8b9-mq8dw", "timestamp":"2024-02-09 19:19:22.644565493 +0000 UTC"}, Hostname:"172.31.22.94", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 9 19:19:22.734375 env[1744]: 2024-02-09 19:19:22.664 [INFO][3442] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 19:19:22.734375 env[1744]: 2024-02-09 19:19:22.664 [INFO][3442] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 19:19:22.734375 env[1744]: 2024-02-09 19:19:22.664 [INFO][3442] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.22.94' Feb 9 19:19:22.734375 env[1744]: 2024-02-09 19:19:22.667 [INFO][3442] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.8d6d0ee2f1793fa3d12fce39f3bf08b8fde8ddfe2cc54b4b6622188b4a9df596" host="172.31.22.94" Feb 9 19:19:22.734375 env[1744]: 2024-02-09 19:19:22.673 [INFO][3442] ipam.go 372: Looking up existing affinities for host host="172.31.22.94" Feb 9 19:19:22.734375 env[1744]: 2024-02-09 19:19:22.678 [INFO][3442] ipam.go 489: Trying affinity for 192.168.35.0/26 host="172.31.22.94" Feb 9 19:19:22.734375 env[1744]: 2024-02-09 19:19:22.681 [INFO][3442] ipam.go 155: Attempting to load block cidr=192.168.35.0/26 host="172.31.22.94" Feb 9 19:19:22.734375 env[1744]: 2024-02-09 19:19:22.685 [INFO][3442] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.35.0/26 host="172.31.22.94" Feb 9 19:19:22.734375 env[1744]: 2024-02-09 19:19:22.685 [INFO][3442] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.35.0/26 handle="k8s-pod-network.8d6d0ee2f1793fa3d12fce39f3bf08b8fde8ddfe2cc54b4b6622188b4a9df596" host="172.31.22.94" Feb 9 19:19:22.734375 env[1744]: 2024-02-09 19:19:22.687 [INFO][3442] ipam.go 1682: Creating new handle: k8s-pod-network.8d6d0ee2f1793fa3d12fce39f3bf08b8fde8ddfe2cc54b4b6622188b4a9df596 Feb 9 19:19:22.734375 env[1744]: 2024-02-09 19:19:22.693 [INFO][3442] ipam.go 1203: Writing block in order to claim IPs block=192.168.35.0/26 handle="k8s-pod-network.8d6d0ee2f1793fa3d12fce39f3bf08b8fde8ddfe2cc54b4b6622188b4a9df596" host="172.31.22.94" Feb 9 19:19:22.734375 env[1744]: 2024-02-09 19:19:22.702 [INFO][3442] ipam.go 1216: Successfully claimed IPs: [192.168.35.2/26] block=192.168.35.0/26 handle="k8s-pod-network.8d6d0ee2f1793fa3d12fce39f3bf08b8fde8ddfe2cc54b4b6622188b4a9df596" host="172.31.22.94" Feb 9 19:19:22.734375 env[1744]: 2024-02-09 19:19:22.703 [INFO][3442] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.35.2/26] handle="k8s-pod-network.8d6d0ee2f1793fa3d12fce39f3bf08b8fde8ddfe2cc54b4b6622188b4a9df596" host="172.31.22.94" Feb 9 19:19:22.734375 env[1744]: 2024-02-09 19:19:22.703 [INFO][3442] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 19:19:22.734375 env[1744]: 2024-02-09 19:19:22.703 [INFO][3442] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.35.2/26] IPv6=[] ContainerID="8d6d0ee2f1793fa3d12fce39f3bf08b8fde8ddfe2cc54b4b6622188b4a9df596" HandleID="k8s-pod-network.8d6d0ee2f1793fa3d12fce39f3bf08b8fde8ddfe2cc54b4b6622188b4a9df596" Workload="172.31.22.94-k8s-nginx--deployment--845c78c8b9--mq8dw-eth0" Feb 9 19:19:22.736062 env[1744]: 2024-02-09 19:19:22.705 [INFO][3430] k8s.go 385: Populated endpoint ContainerID="8d6d0ee2f1793fa3d12fce39f3bf08b8fde8ddfe2cc54b4b6622188b4a9df596" Namespace="default" Pod="nginx-deployment-845c78c8b9-mq8dw" WorkloadEndpoint="172.31.22.94-k8s-nginx--deployment--845c78c8b9--mq8dw-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.94-k8s-nginx--deployment--845c78c8b9--mq8dw-eth0", GenerateName:"nginx-deployment-845c78c8b9-", Namespace:"default", SelfLink:"", UID:"ed2fe88b-21fc-4150-af4a-9cafe261183f", ResourceVersion:"980", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 19, 19, 8, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"845c78c8b9", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.94", ContainerID:"", Pod:"nginx-deployment-845c78c8b9-mq8dw", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.35.2/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali03c5e430856", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 19:19:22.736062 env[1744]: 2024-02-09 19:19:22.706 [INFO][3430] k8s.go 386: Calico CNI using IPs: [192.168.35.2/32] ContainerID="8d6d0ee2f1793fa3d12fce39f3bf08b8fde8ddfe2cc54b4b6622188b4a9df596" Namespace="default" Pod="nginx-deployment-845c78c8b9-mq8dw" WorkloadEndpoint="172.31.22.94-k8s-nginx--deployment--845c78c8b9--mq8dw-eth0" Feb 9 19:19:22.736062 env[1744]: 2024-02-09 19:19:22.706 [INFO][3430] dataplane_linux.go 68: Setting the host side veth name to cali03c5e430856 ContainerID="8d6d0ee2f1793fa3d12fce39f3bf08b8fde8ddfe2cc54b4b6622188b4a9df596" Namespace="default" Pod="nginx-deployment-845c78c8b9-mq8dw" WorkloadEndpoint="172.31.22.94-k8s-nginx--deployment--845c78c8b9--mq8dw-eth0" Feb 9 19:19:22.736062 env[1744]: 2024-02-09 19:19:22.715 [INFO][3430] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="8d6d0ee2f1793fa3d12fce39f3bf08b8fde8ddfe2cc54b4b6622188b4a9df596" Namespace="default" Pod="nginx-deployment-845c78c8b9-mq8dw" WorkloadEndpoint="172.31.22.94-k8s-nginx--deployment--845c78c8b9--mq8dw-eth0" Feb 9 19:19:22.736062 env[1744]: 2024-02-09 19:19:22.719 [INFO][3430] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="8d6d0ee2f1793fa3d12fce39f3bf08b8fde8ddfe2cc54b4b6622188b4a9df596" Namespace="default" Pod="nginx-deployment-845c78c8b9-mq8dw" WorkloadEndpoint="172.31.22.94-k8s-nginx--deployment--845c78c8b9--mq8dw-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.94-k8s-nginx--deployment--845c78c8b9--mq8dw-eth0", GenerateName:"nginx-deployment-845c78c8b9-", Namespace:"default", SelfLink:"", UID:"ed2fe88b-21fc-4150-af4a-9cafe261183f", ResourceVersion:"980", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 19, 19, 8, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"845c78c8b9", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.94", ContainerID:"8d6d0ee2f1793fa3d12fce39f3bf08b8fde8ddfe2cc54b4b6622188b4a9df596", Pod:"nginx-deployment-845c78c8b9-mq8dw", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.35.2/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali03c5e430856", MAC:"b6:07:77:d2:09:64", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 19:19:22.736062 env[1744]: 2024-02-09 19:19:22.729 [INFO][3430] k8s.go 491: Wrote updated endpoint to datastore ContainerID="8d6d0ee2f1793fa3d12fce39f3bf08b8fde8ddfe2cc54b4b6622188b4a9df596" Namespace="default" Pod="nginx-deployment-845c78c8b9-mq8dw" WorkloadEndpoint="172.31.22.94-k8s-nginx--deployment--845c78c8b9--mq8dw-eth0" Feb 9 19:19:22.757802 env[1744]: time="2024-02-09T19:19:22.757471837Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 9 19:19:22.757802 env[1744]: time="2024-02-09T19:19:22.757547684Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 9 19:19:22.757802 env[1744]: time="2024-02-09T19:19:22.757573450Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 9 19:19:22.758057 env[1744]: time="2024-02-09T19:19:22.757868350Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/8d6d0ee2f1793fa3d12fce39f3bf08b8fde8ddfe2cc54b4b6622188b4a9df596 pid=3467 runtime=io.containerd.runc.v2 Feb 9 19:19:22.818356 systemd[1]: Started cri-containerd-8d6d0ee2f1793fa3d12fce39f3bf08b8fde8ddfe2cc54b4b6622188b4a9df596.scope. Feb 9 19:19:22.845000 audit[3490]: NETFILTER_CFG table=filter:69 family=2 entries=40 op=nft_register_chain pid=3490 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 19:19:22.845000 audit[3490]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=21064 a0=3 a1=ffffc8aedd10 a2=0 a3=ffffb5523fa8 items=0 ppid=3214 pid=3490 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:22.845000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 19:19:22.863000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.863000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.863000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.863000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.863000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.863000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.863000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.863000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.863000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.863000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.863000 audit: BPF prog-id=97 op=LOAD Feb 9 19:19:22.864000 audit[3476]: AVC avc: denied { bpf } for pid=3476 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.864000 audit[3476]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=40001c5b38 a2=10 a3=0 items=0 ppid=3467 pid=3476 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:22.864000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3864366430656532663137393366613364313266636533396633626630 Feb 9 19:19:22.865000 audit[3476]: AVC avc: denied { perfmon } for pid=3476 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.865000 audit[3476]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001c55a0 a2=3c a3=0 items=0 ppid=3467 pid=3476 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:22.865000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3864366430656532663137393366613364313266636533396633626630 Feb 9 19:19:22.865000 audit[3476]: AVC avc: denied { bpf } for pid=3476 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.865000 audit[3476]: AVC avc: denied { bpf } for pid=3476 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.865000 audit[3476]: AVC avc: denied { bpf } for pid=3476 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.865000 audit[3476]: AVC avc: denied { perfmon } for pid=3476 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.865000 audit[3476]: AVC avc: denied { perfmon } for pid=3476 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.865000 audit[3476]: AVC avc: denied { perfmon } for pid=3476 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.865000 audit[3476]: AVC avc: denied { perfmon } for pid=3476 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.865000 audit[3476]: AVC avc: denied { perfmon } for pid=3476 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.865000 audit[3476]: AVC avc: denied { bpf } for pid=3476 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.865000 audit[3476]: AVC avc: denied { bpf } for pid=3476 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.865000 audit: BPF prog-id=98 op=LOAD Feb 9 19:19:22.865000 audit[3476]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001c58e0 a2=78 a3=0 items=0 ppid=3467 pid=3476 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:22.865000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3864366430656532663137393366613364313266636533396633626630 Feb 9 19:19:22.867000 audit[3476]: AVC avc: denied { bpf } for pid=3476 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.867000 audit[3476]: AVC avc: denied { bpf } for pid=3476 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.867000 audit[3476]: AVC avc: denied { perfmon } for pid=3476 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.867000 audit[3476]: AVC avc: denied { perfmon } for pid=3476 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.867000 audit[3476]: AVC avc: denied { perfmon } for pid=3476 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.867000 audit[3476]: AVC avc: denied { perfmon } for pid=3476 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.867000 audit[3476]: AVC avc: denied { perfmon } for pid=3476 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.867000 audit[3476]: AVC avc: denied { bpf } for pid=3476 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.867000 audit[3476]: AVC avc: denied { bpf } for pid=3476 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.867000 audit: BPF prog-id=99 op=LOAD Feb 9 19:19:22.867000 audit[3476]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=40001c5670 a2=78 a3=0 items=0 ppid=3467 pid=3476 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:22.867000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3864366430656532663137393366613364313266636533396633626630 Feb 9 19:19:22.869000 audit: BPF prog-id=99 op=UNLOAD Feb 9 19:19:22.869000 audit: BPF prog-id=98 op=UNLOAD Feb 9 19:19:22.869000 audit[3476]: AVC avc: denied { bpf } for pid=3476 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.869000 audit[3476]: AVC avc: denied { bpf } for pid=3476 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.869000 audit[3476]: AVC avc: denied { bpf } for pid=3476 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.869000 audit[3476]: AVC avc: denied { perfmon } for pid=3476 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.869000 audit[3476]: AVC avc: denied { perfmon } for pid=3476 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.869000 audit[3476]: AVC avc: denied { perfmon } for pid=3476 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.869000 audit[3476]: AVC avc: denied { perfmon } for pid=3476 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.869000 audit[3476]: AVC avc: denied { perfmon } for pid=3476 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.869000 audit[3476]: AVC avc: denied { bpf } for pid=3476 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.869000 audit[3476]: AVC avc: denied { bpf } for pid=3476 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:22.869000 audit: BPF prog-id=100 op=LOAD Feb 9 19:19:22.869000 audit[3476]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001c5b40 a2=78 a3=0 items=0 ppid=3467 pid=3476 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:22.869000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3864366430656532663137393366613364313266636533396633626630 Feb 9 19:19:22.914186 env[1744]: time="2024-02-09T19:19:22.914118729Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-845c78c8b9-mq8dw,Uid:ed2fe88b-21fc-4150-af4a-9cafe261183f,Namespace:default,Attempt:1,} returns sandbox id \"8d6d0ee2f1793fa3d12fce39f3bf08b8fde8ddfe2cc54b4b6622188b4a9df596\"" Feb 9 19:19:22.966513 kubelet[2211]: E0209 19:19:22.963984 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:23.013720 systemd-networkd[1547]: vxlan.calico: Link UP Feb 9 19:19:23.013737 systemd-networkd[1547]: vxlan.calico: Gained carrier Feb 9 19:19:23.016955 (udev-worker)[3371]: Network interface NamePolicy= disabled on kernel command line. Feb 9 19:19:23.083823 systemd-networkd[1547]: cali4af51bbdf74: Gained IPv6LL Feb 9 19:19:23.291810 env[1744]: time="2024-02-09T19:19:23.291651094Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/csi:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:19:23.295555 env[1744]: time="2024-02-09T19:19:23.295493720Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:4b71e7439e0eba34a97844591560a009f37e8e6c17a386a34d416c1cc872dee8,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:19:23.298260 env[1744]: time="2024-02-09T19:19:23.298191237Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/csi:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:19:23.300835 env[1744]: time="2024-02-09T19:19:23.300774757Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/csi@sha256:2b9021393c17e87ba8a3c89f5b3719941812f4e4751caa0b71eb2233bff48738,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:19:23.301858 env[1744]: time="2024-02-09T19:19:23.301811497Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/csi:v3.27.0\" returns image reference \"sha256:4b71e7439e0eba34a97844591560a009f37e8e6c17a386a34d416c1cc872dee8\"" Feb 9 19:19:23.302836 env[1744]: time="2024-02-09T19:19:23.302764194Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\"" Feb 9 19:19:23.306483 env[1744]: time="2024-02-09T19:19:23.306388150Z" level=info msg="CreateContainer within sandbox \"52d9e5a4fe38f5a21c6852b9e08cc7a49598e5666acca36d94a8bfc035a5e796\" for container &ContainerMetadata{Name:calico-csi,Attempt:0,}" Feb 9 19:19:23.329195 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2397864954.mount: Deactivated successfully. Feb 9 19:19:23.334798 env[1744]: time="2024-02-09T19:19:23.334557122Z" level=info msg="CreateContainer within sandbox \"52d9e5a4fe38f5a21c6852b9e08cc7a49598e5666acca36d94a8bfc035a5e796\" for &ContainerMetadata{Name:calico-csi,Attempt:0,} returns container id \"7c522d79b33e82970ce8dccb44570b8775279d1473a8ed6ee503bd162e8b70c2\"" Feb 9 19:19:23.336289 env[1744]: time="2024-02-09T19:19:23.336236225Z" level=info msg="StartContainer for \"7c522d79b33e82970ce8dccb44570b8775279d1473a8ed6ee503bd162e8b70c2\"" Feb 9 19:19:23.385043 systemd[1]: Started cri-containerd-7c522d79b33e82970ce8dccb44570b8775279d1473a8ed6ee503bd162e8b70c2.scope. Feb 9 19:19:23.418000 audit[3519]: AVC avc: denied { perfmon } for pid=3519 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:23.418000 audit[3519]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=3166 pid=3519 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:23.418000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3763353232643739623333653832393730636538646363623434353730 Feb 9 19:19:23.419000 audit[3519]: AVC avc: denied { bpf } for pid=3519 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:23.419000 audit[3519]: AVC avc: denied { bpf } for pid=3519 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:23.419000 audit[3519]: AVC avc: denied { bpf } for pid=3519 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:23.419000 audit[3519]: AVC avc: denied { perfmon } for pid=3519 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:23.419000 audit[3519]: AVC avc: denied { perfmon } for pid=3519 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:23.419000 audit[3519]: AVC avc: denied { perfmon } for pid=3519 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:23.419000 audit[3519]: AVC avc: denied { perfmon } for pid=3519 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:23.419000 audit[3519]: AVC avc: denied { perfmon } for pid=3519 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:23.419000 audit[3519]: AVC avc: denied { bpf } for pid=3519 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:23.419000 audit[3519]: AVC avc: denied { bpf } for pid=3519 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:23.419000 audit: BPF prog-id=101 op=LOAD Feb 9 19:19:23.419000 audit[3519]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=3166 pid=3519 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:23.419000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3763353232643739623333653832393730636538646363623434353730 Feb 9 19:19:23.419000 audit[3519]: AVC avc: denied { bpf } for pid=3519 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:23.419000 audit[3519]: AVC avc: denied { bpf } for pid=3519 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:23.419000 audit[3519]: AVC avc: denied { perfmon } for pid=3519 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:23.419000 audit[3519]: AVC avc: denied { perfmon } for pid=3519 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:23.419000 audit[3519]: AVC avc: denied { perfmon } for pid=3519 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:23.419000 audit[3519]: AVC avc: denied { perfmon } for pid=3519 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:23.419000 audit[3519]: AVC avc: denied { perfmon } for pid=3519 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:23.419000 audit[3519]: AVC avc: denied { bpf } for pid=3519 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:23.419000 audit[3519]: AVC avc: denied { bpf } for pid=3519 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:23.419000 audit: BPF prog-id=102 op=LOAD Feb 9 19:19:23.419000 audit[3519]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=3166 pid=3519 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:23.419000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3763353232643739623333653832393730636538646363623434353730 Feb 9 19:19:23.419000 audit: BPF prog-id=102 op=UNLOAD Feb 9 19:19:23.419000 audit: BPF prog-id=101 op=UNLOAD Feb 9 19:19:23.419000 audit[3519]: AVC avc: denied { bpf } for pid=3519 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:23.419000 audit[3519]: AVC avc: denied { bpf } for pid=3519 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:23.419000 audit[3519]: AVC avc: denied { bpf } for pid=3519 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:23.419000 audit[3519]: AVC avc: denied { perfmon } for pid=3519 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:23.419000 audit[3519]: AVC avc: denied { perfmon } for pid=3519 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:23.419000 audit[3519]: AVC avc: denied { perfmon } for pid=3519 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:23.419000 audit[3519]: AVC avc: denied { perfmon } for pid=3519 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:23.419000 audit[3519]: AVC avc: denied { perfmon } for pid=3519 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:23.419000 audit[3519]: AVC avc: denied { bpf } for pid=3519 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:23.419000 audit[3519]: AVC avc: denied { bpf } for pid=3519 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:23.419000 audit: BPF prog-id=103 op=LOAD Feb 9 19:19:23.419000 audit[3519]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=3166 pid=3519 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:23.419000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3763353232643739623333653832393730636538646363623434353730 Feb 9 19:19:23.453987 env[1744]: time="2024-02-09T19:19:23.453899533Z" level=info msg="StartContainer for \"7c522d79b33e82970ce8dccb44570b8775279d1473a8ed6ee503bd162e8b70c2\" returns successfully" Feb 9 19:19:23.964975 kubelet[2211]: E0209 19:19:23.964920 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:24.107085 systemd-networkd[1547]: vxlan.calico: Gained IPv6LL Feb 9 19:19:24.363083 systemd-networkd[1547]: cali03c5e430856: Gained IPv6LL Feb 9 19:19:24.965813 kubelet[2211]: E0209 19:19:24.965729 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:25.966225 kubelet[2211]: E0209 19:19:25.966186 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:26.967426 kubelet[2211]: E0209 19:19:26.967356 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:27.968233 kubelet[2211]: E0209 19:19:27.968147 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:28.308993 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3483787363.mount: Deactivated successfully. Feb 9 19:19:28.968914 kubelet[2211]: E0209 19:19:28.968860 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:29.969844 kubelet[2211]: E0209 19:19:29.969776 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:30.061920 env[1744]: time="2024-02-09T19:19:30.061862756Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:19:30.064852 env[1744]: time="2024-02-09T19:19:30.064802653Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:01bfff6bfbc6f0e8a890bad9e22c5392e6dbfd67def93467db6231d4be1b719b,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:19:30.068041 env[1744]: time="2024-02-09T19:19:30.067994542Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:19:30.071263 env[1744]: time="2024-02-09T19:19:30.071195972Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/nginx@sha256:e34a272f01984c973b1e034e197c02f77dda18981038e3a54e957554ada4fec6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:19:30.072831 env[1744]: time="2024-02-09T19:19:30.072785461Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\" returns image reference \"sha256:01bfff6bfbc6f0e8a890bad9e22c5392e6dbfd67def93467db6231d4be1b719b\"" Feb 9 19:19:30.074360 env[1744]: time="2024-02-09T19:19:30.074310817Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node-driver-registrar:v3.27.0\"" Feb 9 19:19:30.077319 env[1744]: time="2024-02-09T19:19:30.077250762Z" level=info msg="CreateContainer within sandbox \"8d6d0ee2f1793fa3d12fce39f3bf08b8fde8ddfe2cc54b4b6622188b4a9df596\" for container &ContainerMetadata{Name:nginx,Attempt:0,}" Feb 9 19:19:30.098204 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1131603934.mount: Deactivated successfully. Feb 9 19:19:30.109259 env[1744]: time="2024-02-09T19:19:30.109194725Z" level=info msg="CreateContainer within sandbox \"8d6d0ee2f1793fa3d12fce39f3bf08b8fde8ddfe2cc54b4b6622188b4a9df596\" for &ContainerMetadata{Name:nginx,Attempt:0,} returns container id \"800c0c4e0446d35bc70781f290faf48a0d977c5f2b90c252ab87434fd26b4ca9\"" Feb 9 19:19:30.110344 env[1744]: time="2024-02-09T19:19:30.110297619Z" level=info msg="StartContainer for \"800c0c4e0446d35bc70781f290faf48a0d977c5f2b90c252ab87434fd26b4ca9\"" Feb 9 19:19:30.148473 systemd[1]: Started cri-containerd-800c0c4e0446d35bc70781f290faf48a0d977c5f2b90c252ab87434fd26b4ca9.scope. Feb 9 19:19:30.183959 kernel: kauditd_printk_skb: 289 callbacks suppressed Feb 9 19:19:30.184101 kernel: audit: type=1400 audit(1707506370.180:794): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.180000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.198831 kernel: audit: type=1400 audit(1707506370.180:795): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.180000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.180000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.207303 kernel: audit: type=1400 audit(1707506370.180:796): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.180000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.215266 kernel: audit: type=1400 audit(1707506370.180:797): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.180000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.223084 kernel: audit: type=1400 audit(1707506370.180:798): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.180000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.234371 kernel: audit: type=1400 audit(1707506370.180:799): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.234516 kernel: audit: type=1400 audit(1707506370.180:800): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.180000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.180000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.247802 kernel: audit: type=1400 audit(1707506370.180:801): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.180000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.255619 kernel: audit: type=1400 audit(1707506370.180:802): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.182000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.182000 audit: BPF prog-id=104 op=LOAD Feb 9 19:19:30.270673 kernel: audit: type=1400 audit(1707506370.182:803): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.190000 audit[3561]: AVC avc: denied { bpf } for pid=3561 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.190000 audit[3561]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=400011db38 a2=10 a3=0 items=0 ppid=3467 pid=3561 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:30.190000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3830306330633465303434366433356263373037383166323930666166 Feb 9 19:19:30.190000 audit[3561]: AVC avc: denied { perfmon } for pid=3561 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.190000 audit[3561]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=400011d5a0 a2=3c a3=0 items=0 ppid=3467 pid=3561 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:30.190000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3830306330633465303434366433356263373037383166323930666166 Feb 9 19:19:30.190000 audit[3561]: AVC avc: denied { bpf } for pid=3561 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.190000 audit[3561]: AVC avc: denied { bpf } for pid=3561 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.190000 audit[3561]: AVC avc: denied { bpf } for pid=3561 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.190000 audit[3561]: AVC avc: denied { perfmon } for pid=3561 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.190000 audit[3561]: AVC avc: denied { perfmon } for pid=3561 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.190000 audit[3561]: AVC avc: denied { perfmon } for pid=3561 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.190000 audit[3561]: AVC avc: denied { perfmon } for pid=3561 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.190000 audit[3561]: AVC avc: denied { perfmon } for pid=3561 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.190000 audit[3561]: AVC avc: denied { bpf } for pid=3561 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.190000 audit[3561]: AVC avc: denied { bpf } for pid=3561 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.190000 audit: BPF prog-id=105 op=LOAD Feb 9 19:19:30.190000 audit[3561]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=400011d8e0 a2=78 a3=0 items=0 ppid=3467 pid=3561 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:30.190000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3830306330633465303434366433356263373037383166323930666166 Feb 9 19:19:30.198000 audit[3561]: AVC avc: denied { bpf } for pid=3561 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.198000 audit[3561]: AVC avc: denied { bpf } for pid=3561 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.198000 audit[3561]: AVC avc: denied { perfmon } for pid=3561 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.198000 audit[3561]: AVC avc: denied { perfmon } for pid=3561 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.198000 audit[3561]: AVC avc: denied { perfmon } for pid=3561 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.198000 audit[3561]: AVC avc: denied { perfmon } for pid=3561 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.198000 audit[3561]: AVC avc: denied { perfmon } for pid=3561 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.198000 audit[3561]: AVC avc: denied { bpf } for pid=3561 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.198000 audit[3561]: AVC avc: denied { bpf } for pid=3561 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.198000 audit: BPF prog-id=106 op=LOAD Feb 9 19:19:30.198000 audit[3561]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=400011d670 a2=78 a3=0 items=0 ppid=3467 pid=3561 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:30.198000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3830306330633465303434366433356263373037383166323930666166 Feb 9 19:19:30.198000 audit: BPF prog-id=106 op=UNLOAD Feb 9 19:19:30.198000 audit: BPF prog-id=105 op=UNLOAD Feb 9 19:19:30.198000 audit[3561]: AVC avc: denied { bpf } for pid=3561 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.198000 audit[3561]: AVC avc: denied { bpf } for pid=3561 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.198000 audit[3561]: AVC avc: denied { bpf } for pid=3561 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.198000 audit[3561]: AVC avc: denied { perfmon } for pid=3561 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.198000 audit[3561]: AVC avc: denied { perfmon } for pid=3561 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.198000 audit[3561]: AVC avc: denied { perfmon } for pid=3561 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.198000 audit[3561]: AVC avc: denied { perfmon } for pid=3561 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.198000 audit[3561]: AVC avc: denied { perfmon } for pid=3561 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.198000 audit[3561]: AVC avc: denied { bpf } for pid=3561 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.198000 audit[3561]: AVC avc: denied { bpf } for pid=3561 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:30.198000 audit: BPF prog-id=107 op=LOAD Feb 9 19:19:30.198000 audit[3561]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=400011db40 a2=78 a3=0 items=0 ppid=3467 pid=3561 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:30.198000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3830306330633465303434366433356263373037383166323930666166 Feb 9 19:19:30.302071 env[1744]: time="2024-02-09T19:19:30.301998084Z" level=info msg="StartContainer for \"800c0c4e0446d35bc70781f290faf48a0d977c5f2b90c252ab87434fd26b4ca9\" returns successfully" Feb 9 19:19:30.970554 kubelet[2211]: E0209 19:19:30.970467 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:31.873747 env[1744]: time="2024-02-09T19:19:31.873669711Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node-driver-registrar:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:19:31.877064 env[1744]: time="2024-02-09T19:19:31.877002147Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:9dbda087e98c46610fb8629cf530f1fe49eee4b17d2afe455664ca446ec39d43,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:19:31.879946 env[1744]: time="2024-02-09T19:19:31.879896352Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/node-driver-registrar:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:19:31.882260 env[1744]: time="2024-02-09T19:19:31.882215926Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node-driver-registrar@sha256:45a7aba6020a7cf7b866cb8a8d481b30c97e9b3407e1459aaa65a5b4cc06633a,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:19:31.883111 env[1744]: time="2024-02-09T19:19:31.883069022Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node-driver-registrar:v3.27.0\" returns image reference \"sha256:9dbda087e98c46610fb8629cf530f1fe49eee4b17d2afe455664ca446ec39d43\"" Feb 9 19:19:31.886644 env[1744]: time="2024-02-09T19:19:31.886569300Z" level=info msg="CreateContainer within sandbox \"52d9e5a4fe38f5a21c6852b9e08cc7a49598e5666acca36d94a8bfc035a5e796\" for container &ContainerMetadata{Name:csi-node-driver-registrar,Attempt:0,}" Feb 9 19:19:31.945635 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1011169932.mount: Deactivated successfully. Feb 9 19:19:31.952815 env[1744]: time="2024-02-09T19:19:31.952754740Z" level=info msg="CreateContainer within sandbox \"52d9e5a4fe38f5a21c6852b9e08cc7a49598e5666acca36d94a8bfc035a5e796\" for &ContainerMetadata{Name:csi-node-driver-registrar,Attempt:0,} returns container id \"a200bcb2ddba0e85eb948de112833cbccea7570a393bf34dfea48709624cb7c8\"" Feb 9 19:19:31.954208 env[1744]: time="2024-02-09T19:19:31.954146873Z" level=info msg="StartContainer for \"a200bcb2ddba0e85eb948de112833cbccea7570a393bf34dfea48709624cb7c8\"" Feb 9 19:19:31.971812 kubelet[2211]: E0209 19:19:31.971608 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:31.991720 systemd[1]: Started cri-containerd-a200bcb2ddba0e85eb948de112833cbccea7570a393bf34dfea48709624cb7c8.scope. Feb 9 19:19:32.003900 systemd[1]: run-containerd-runc-k8s.io-a200bcb2ddba0e85eb948de112833cbccea7570a393bf34dfea48709624cb7c8-runc.GaZVLF.mount: Deactivated successfully. Feb 9 19:19:32.038000 audit[3616]: AVC avc: denied { perfmon } for pid=3616 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:32.038000 audit[3616]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=3166 pid=3616 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:32.038000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6132303062636232646462613065383565623934386465313132383333 Feb 9 19:19:32.038000 audit[3616]: AVC avc: denied { bpf } for pid=3616 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:32.038000 audit[3616]: AVC avc: denied { bpf } for pid=3616 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:32.038000 audit[3616]: AVC avc: denied { bpf } for pid=3616 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:32.038000 audit[3616]: AVC avc: denied { perfmon } for pid=3616 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:32.038000 audit[3616]: AVC avc: denied { perfmon } for pid=3616 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:32.038000 audit[3616]: AVC avc: denied { perfmon } for pid=3616 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:32.038000 audit[3616]: AVC avc: denied { perfmon } for pid=3616 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:32.038000 audit[3616]: AVC avc: denied { perfmon } for pid=3616 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:32.038000 audit[3616]: AVC avc: denied { bpf } for pid=3616 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:32.038000 audit[3616]: AVC avc: denied { bpf } for pid=3616 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:32.038000 audit: BPF prog-id=108 op=LOAD Feb 9 19:19:32.038000 audit[3616]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=3166 pid=3616 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:32.038000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6132303062636232646462613065383565623934386465313132383333 Feb 9 19:19:32.040000 audit[3616]: AVC avc: denied { bpf } for pid=3616 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:32.040000 audit[3616]: AVC avc: denied { bpf } for pid=3616 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:32.040000 audit[3616]: AVC avc: denied { perfmon } for pid=3616 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:32.040000 audit[3616]: AVC avc: denied { perfmon } for pid=3616 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:32.040000 audit[3616]: AVC avc: denied { perfmon } for pid=3616 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:32.040000 audit[3616]: AVC avc: denied { perfmon } for pid=3616 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:32.040000 audit[3616]: AVC avc: denied { perfmon } for pid=3616 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:32.040000 audit[3616]: AVC avc: denied { bpf } for pid=3616 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:32.040000 audit[3616]: AVC avc: denied { bpf } for pid=3616 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:32.040000 audit: BPF prog-id=109 op=LOAD Feb 9 19:19:32.040000 audit[3616]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=3166 pid=3616 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:32.040000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6132303062636232646462613065383565623934386465313132383333 Feb 9 19:19:32.041000 audit: BPF prog-id=109 op=UNLOAD Feb 9 19:19:32.041000 audit: BPF prog-id=108 op=UNLOAD Feb 9 19:19:32.041000 audit[3616]: AVC avc: denied { bpf } for pid=3616 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:32.041000 audit[3616]: AVC avc: denied { bpf } for pid=3616 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:32.041000 audit[3616]: AVC avc: denied { bpf } for pid=3616 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:32.041000 audit[3616]: AVC avc: denied { perfmon } for pid=3616 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:32.041000 audit[3616]: AVC avc: denied { perfmon } for pid=3616 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:32.041000 audit[3616]: AVC avc: denied { perfmon } for pid=3616 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:32.041000 audit[3616]: AVC avc: denied { perfmon } for pid=3616 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:32.041000 audit[3616]: AVC avc: denied { perfmon } for pid=3616 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:32.041000 audit[3616]: AVC avc: denied { bpf } for pid=3616 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:32.041000 audit[3616]: AVC avc: denied { bpf } for pid=3616 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:32.041000 audit: BPF prog-id=110 op=LOAD Feb 9 19:19:32.041000 audit[3616]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=3166 pid=3616 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:32.041000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6132303062636232646462613065383565623934386465313132383333 Feb 9 19:19:32.072023 env[1744]: time="2024-02-09T19:19:32.071923917Z" level=info msg="StartContainer for \"a200bcb2ddba0e85eb948de112833cbccea7570a393bf34dfea48709624cb7c8\" returns successfully" Feb 9 19:19:32.157998 kubelet[2211]: I0209 19:19:32.157853 2211 csi_plugin.go:99] kubernetes.io/csi: Trying to validate a new CSI Driver with name: csi.tigera.io endpoint: /var/lib/kubelet/plugins/csi.tigera.io/csi.sock versions: 1.0.0 Feb 9 19:19:32.157998 kubelet[2211]: I0209 19:19:32.157920 2211 csi_plugin.go:112] kubernetes.io/csi: Register new plugin with name: csi.tigera.io at endpoint: /var/lib/kubelet/plugins/csi.tigera.io/csi.sock Feb 9 19:19:32.404241 kubelet[2211]: I0209 19:19:32.404189 2211 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="default/nginx-deployment-845c78c8b9-mq8dw" podStartSLOduration=17.247059668 podCreationTimestamp="2024-02-09 19:19:08 +0000 UTC" firstStartedPulling="2024-02-09 19:19:22.91629654 +0000 UTC m=+42.260573033" lastFinishedPulling="2024-02-09 19:19:30.073350012 +0000 UTC m=+49.417626505" observedRunningTime="2024-02-09 19:19:30.39112929 +0000 UTC m=+49.735405795" watchObservedRunningTime="2024-02-09 19:19:32.40411314 +0000 UTC m=+51.748389633" Feb 9 19:19:32.972394 kubelet[2211]: E0209 19:19:32.972328 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:33.602812 kubelet[2211]: I0209 19:19:33.602770 2211 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="calico-system/csi-node-driver-cqn68" podStartSLOduration=40.129366081 podCreationTimestamp="2024-02-09 19:18:43 +0000 UTC" firstStartedPulling="2024-02-09 19:19:21.410179489 +0000 UTC m=+40.754455982" lastFinishedPulling="2024-02-09 19:19:31.883530654 +0000 UTC m=+51.227807135" observedRunningTime="2024-02-09 19:19:32.404606357 +0000 UTC m=+51.748882934" watchObservedRunningTime="2024-02-09 19:19:33.602717234 +0000 UTC m=+52.946993727" Feb 9 19:19:33.636000 audit[3680]: NETFILTER_CFG table=filter:70 family=2 entries=20 op=nft_register_rule pid=3680 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 19:19:33.636000 audit[3680]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=11292 a0=3 a1=ffffca2c8090 a2=0 a3=ffffa3e836c0 items=0 ppid=2427 pid=3680 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:33.636000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 19:19:33.637000 audit[3680]: NETFILTER_CFG table=nat:71 family=2 entries=20 op=nft_register_rule pid=3680 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 19:19:33.637000 audit[3680]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5484 a0=3 a1=ffffca2c8090 a2=0 a3=ffffa3e836c0 items=0 ppid=2427 pid=3680 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:33.637000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 19:19:33.661000 audit[3685]: NETFILTER_CFG table=filter:72 family=2 entries=32 op=nft_register_rule pid=3685 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 19:19:33.661000 audit[3685]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=11292 a0=3 a1=ffffd9fbbc70 a2=0 a3=ffff8ec8f6c0 items=0 ppid=2427 pid=3685 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:33.661000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 19:19:33.662000 audit[3685]: NETFILTER_CFG table=nat:73 family=2 entries=20 op=nft_register_rule pid=3685 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 19:19:33.662000 audit[3685]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5484 a0=3 a1=ffffd9fbbc70 a2=0 a3=ffff8ec8f6c0 items=0 ppid=2427 pid=3685 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:33.662000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 19:19:33.697666 kubelet[2211]: I0209 19:19:33.697626 2211 topology_manager.go:212] "Topology Admit Handler" Feb 9 19:19:33.707642 systemd[1]: Created slice kubepods-besteffort-pod85ac5140_75d6_4587_b248_77295a4d0da2.slice. Feb 9 19:19:33.829231 kubelet[2211]: I0209 19:19:33.829177 2211 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"data\" (UniqueName: \"kubernetes.io/empty-dir/85ac5140-75d6-4587-b248-77295a4d0da2-data\") pod \"nfs-server-provisioner-0\" (UID: \"85ac5140-75d6-4587-b248-77295a4d0da2\") " pod="default/nfs-server-provisioner-0" Feb 9 19:19:33.829598 kubelet[2211]: I0209 19:19:33.829570 2211 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-k7mfq\" (UniqueName: \"kubernetes.io/projected/85ac5140-75d6-4587-b248-77295a4d0da2-kube-api-access-k7mfq\") pod \"nfs-server-provisioner-0\" (UID: \"85ac5140-75d6-4587-b248-77295a4d0da2\") " pod="default/nfs-server-provisioner-0" Feb 9 19:19:33.973570 kubelet[2211]: E0209 19:19:33.973455 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:34.014398 env[1744]: time="2024-02-09T19:19:34.014328128Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nfs-server-provisioner-0,Uid:85ac5140-75d6-4587-b248-77295a4d0da2,Namespace:default,Attempt:0,}" Feb 9 19:19:34.257318 (udev-worker)[3682]: Network interface NamePolicy= disabled on kernel command line. Feb 9 19:19:34.259848 systemd-networkd[1547]: cali60e51b789ff: Link UP Feb 9 19:19:34.265689 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 9 19:19:34.266111 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali60e51b789ff: link becomes ready Feb 9 19:19:34.266249 systemd-networkd[1547]: cali60e51b789ff: Gained carrier Feb 9 19:19:34.289720 env[1744]: 2024-02-09 19:19:34.102 [INFO][3688] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.22.94-k8s-nfs--server--provisioner--0-eth0 nfs-server-provisioner- default 85ac5140-75d6-4587-b248-77295a4d0da2 1043 0 2024-02-09 19:19:33 +0000 UTC map[app:nfs-server-provisioner chart:nfs-server-provisioner-1.8.0 controller-revision-hash:nfs-server-provisioner-d5cbb7f57 heritage:Helm projectcalico.org/namespace:default projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:nfs-server-provisioner release:nfs-server-provisioner statefulset.kubernetes.io/pod-name:nfs-server-provisioner-0] map[] [] [] []} {k8s 172.31.22.94 nfs-server-provisioner-0 eth0 nfs-server-provisioner [] [] [kns.default ksa.default.nfs-server-provisioner] cali60e51b789ff [{nfs TCP 2049 0 } {nfs-udp UDP 2049 0 } {nlockmgr TCP 32803 0 } {nlockmgr-udp UDP 32803 0 } {mountd TCP 20048 0 } {mountd-udp UDP 20048 0 } {rquotad TCP 875 0 } {rquotad-udp UDP 875 0 } {rpcbind TCP 111 0 } {rpcbind-udp UDP 111 0 } {statd TCP 662 0 } {statd-udp UDP 662 0 }] []}} ContainerID="89d3b7b338bdd2761a05b3f3ea25dc08b6c4ed0412b73c45c5358be87c2f0812" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.22.94-k8s-nfs--server--provisioner--0-" Feb 9 19:19:34.289720 env[1744]: 2024-02-09 19:19:34.103 [INFO][3688] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="89d3b7b338bdd2761a05b3f3ea25dc08b6c4ed0412b73c45c5358be87c2f0812" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.22.94-k8s-nfs--server--provisioner--0-eth0" Feb 9 19:19:34.289720 env[1744]: 2024-02-09 19:19:34.149 [INFO][3699] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="89d3b7b338bdd2761a05b3f3ea25dc08b6c4ed0412b73c45c5358be87c2f0812" HandleID="k8s-pod-network.89d3b7b338bdd2761a05b3f3ea25dc08b6c4ed0412b73c45c5358be87c2f0812" Workload="172.31.22.94-k8s-nfs--server--provisioner--0-eth0" Feb 9 19:19:34.289720 env[1744]: 2024-02-09 19:19:34.175 [INFO][3699] ipam_plugin.go 268: Auto assigning IP ContainerID="89d3b7b338bdd2761a05b3f3ea25dc08b6c4ed0412b73c45c5358be87c2f0812" HandleID="k8s-pod-network.89d3b7b338bdd2761a05b3f3ea25dc08b6c4ed0412b73c45c5358be87c2f0812" Workload="172.31.22.94-k8s-nfs--server--provisioner--0-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x400027b990), Attrs:map[string]string{"namespace":"default", "node":"172.31.22.94", "pod":"nfs-server-provisioner-0", "timestamp":"2024-02-09 19:19:34.149093442 +0000 UTC"}, Hostname:"172.31.22.94", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 9 19:19:34.289720 env[1744]: 2024-02-09 19:19:34.175 [INFO][3699] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 19:19:34.289720 env[1744]: 2024-02-09 19:19:34.175 [INFO][3699] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 19:19:34.289720 env[1744]: 2024-02-09 19:19:34.175 [INFO][3699] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.22.94' Feb 9 19:19:34.289720 env[1744]: 2024-02-09 19:19:34.178 [INFO][3699] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.89d3b7b338bdd2761a05b3f3ea25dc08b6c4ed0412b73c45c5358be87c2f0812" host="172.31.22.94" Feb 9 19:19:34.289720 env[1744]: 2024-02-09 19:19:34.197 [INFO][3699] ipam.go 372: Looking up existing affinities for host host="172.31.22.94" Feb 9 19:19:34.289720 env[1744]: 2024-02-09 19:19:34.206 [INFO][3699] ipam.go 489: Trying affinity for 192.168.35.0/26 host="172.31.22.94" Feb 9 19:19:34.289720 env[1744]: 2024-02-09 19:19:34.209 [INFO][3699] ipam.go 155: Attempting to load block cidr=192.168.35.0/26 host="172.31.22.94" Feb 9 19:19:34.289720 env[1744]: 2024-02-09 19:19:34.218 [INFO][3699] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.35.0/26 host="172.31.22.94" Feb 9 19:19:34.289720 env[1744]: 2024-02-09 19:19:34.218 [INFO][3699] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.35.0/26 handle="k8s-pod-network.89d3b7b338bdd2761a05b3f3ea25dc08b6c4ed0412b73c45c5358be87c2f0812" host="172.31.22.94" Feb 9 19:19:34.289720 env[1744]: 2024-02-09 19:19:34.221 [INFO][3699] ipam.go 1682: Creating new handle: k8s-pod-network.89d3b7b338bdd2761a05b3f3ea25dc08b6c4ed0412b73c45c5358be87c2f0812 Feb 9 19:19:34.289720 env[1744]: 2024-02-09 19:19:34.228 [INFO][3699] ipam.go 1203: Writing block in order to claim IPs block=192.168.35.0/26 handle="k8s-pod-network.89d3b7b338bdd2761a05b3f3ea25dc08b6c4ed0412b73c45c5358be87c2f0812" host="172.31.22.94" Feb 9 19:19:34.289720 env[1744]: 2024-02-09 19:19:34.251 [INFO][3699] ipam.go 1216: Successfully claimed IPs: [192.168.35.3/26] block=192.168.35.0/26 handle="k8s-pod-network.89d3b7b338bdd2761a05b3f3ea25dc08b6c4ed0412b73c45c5358be87c2f0812" host="172.31.22.94" Feb 9 19:19:34.289720 env[1744]: 2024-02-09 19:19:34.251 [INFO][3699] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.35.3/26] handle="k8s-pod-network.89d3b7b338bdd2761a05b3f3ea25dc08b6c4ed0412b73c45c5358be87c2f0812" host="172.31.22.94" Feb 9 19:19:34.289720 env[1744]: 2024-02-09 19:19:34.251 [INFO][3699] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 19:19:34.289720 env[1744]: 2024-02-09 19:19:34.251 [INFO][3699] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.35.3/26] IPv6=[] ContainerID="89d3b7b338bdd2761a05b3f3ea25dc08b6c4ed0412b73c45c5358be87c2f0812" HandleID="k8s-pod-network.89d3b7b338bdd2761a05b3f3ea25dc08b6c4ed0412b73c45c5358be87c2f0812" Workload="172.31.22.94-k8s-nfs--server--provisioner--0-eth0" Feb 9 19:19:34.290985 env[1744]: 2024-02-09 19:19:34.253 [INFO][3688] k8s.go 385: Populated endpoint ContainerID="89d3b7b338bdd2761a05b3f3ea25dc08b6c4ed0412b73c45c5358be87c2f0812" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.22.94-k8s-nfs--server--provisioner--0-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.94-k8s-nfs--server--provisioner--0-eth0", GenerateName:"nfs-server-provisioner-", Namespace:"default", SelfLink:"", UID:"85ac5140-75d6-4587-b248-77295a4d0da2", ResourceVersion:"1043", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 19, 19, 33, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nfs-server-provisioner", "chart":"nfs-server-provisioner-1.8.0", "controller-revision-hash":"nfs-server-provisioner-d5cbb7f57", "heritage":"Helm", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"nfs-server-provisioner", "release":"nfs-server-provisioner", "statefulset.kubernetes.io/pod-name":"nfs-server-provisioner-0"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.94", ContainerID:"", Pod:"nfs-server-provisioner-0", Endpoint:"eth0", ServiceAccountName:"nfs-server-provisioner", IPNetworks:[]string{"192.168.35.3/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.nfs-server-provisioner"}, InterfaceName:"cali60e51b789ff", MAC:"", Ports:[]v3.WorkloadEndpointPort{v3.WorkloadEndpointPort{Name:"nfs", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nfs-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x296, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x296, HostPort:0x0, HostIP:""}}, AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 19:19:34.290985 env[1744]: 2024-02-09 19:19:34.254 [INFO][3688] k8s.go 386: Calico CNI using IPs: [192.168.35.3/32] ContainerID="89d3b7b338bdd2761a05b3f3ea25dc08b6c4ed0412b73c45c5358be87c2f0812" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.22.94-k8s-nfs--server--provisioner--0-eth0" Feb 9 19:19:34.290985 env[1744]: 2024-02-09 19:19:34.254 [INFO][3688] dataplane_linux.go 68: Setting the host side veth name to cali60e51b789ff ContainerID="89d3b7b338bdd2761a05b3f3ea25dc08b6c4ed0412b73c45c5358be87c2f0812" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.22.94-k8s-nfs--server--provisioner--0-eth0" Feb 9 19:19:34.290985 env[1744]: 2024-02-09 19:19:34.267 [INFO][3688] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="89d3b7b338bdd2761a05b3f3ea25dc08b6c4ed0412b73c45c5358be87c2f0812" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.22.94-k8s-nfs--server--provisioner--0-eth0" Feb 9 19:19:34.291367 env[1744]: 2024-02-09 19:19:34.267 [INFO][3688] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="89d3b7b338bdd2761a05b3f3ea25dc08b6c4ed0412b73c45c5358be87c2f0812" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.22.94-k8s-nfs--server--provisioner--0-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.94-k8s-nfs--server--provisioner--0-eth0", GenerateName:"nfs-server-provisioner-", Namespace:"default", SelfLink:"", UID:"85ac5140-75d6-4587-b248-77295a4d0da2", ResourceVersion:"1043", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 19, 19, 33, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nfs-server-provisioner", "chart":"nfs-server-provisioner-1.8.0", "controller-revision-hash":"nfs-server-provisioner-d5cbb7f57", "heritage":"Helm", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"nfs-server-provisioner", "release":"nfs-server-provisioner", "statefulset.kubernetes.io/pod-name":"nfs-server-provisioner-0"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.94", ContainerID:"89d3b7b338bdd2761a05b3f3ea25dc08b6c4ed0412b73c45c5358be87c2f0812", Pod:"nfs-server-provisioner-0", Endpoint:"eth0", ServiceAccountName:"nfs-server-provisioner", IPNetworks:[]string{"192.168.35.3/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.nfs-server-provisioner"}, InterfaceName:"cali60e51b789ff", MAC:"06:ad:b3:75:26:ec", Ports:[]v3.WorkloadEndpointPort{v3.WorkloadEndpointPort{Name:"nfs", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nfs-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x296, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x296, HostPort:0x0, HostIP:""}}, AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 19:19:34.291367 env[1744]: 2024-02-09 19:19:34.287 [INFO][3688] k8s.go 491: Wrote updated endpoint to datastore ContainerID="89d3b7b338bdd2761a05b3f3ea25dc08b6c4ed0412b73c45c5358be87c2f0812" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.22.94-k8s-nfs--server--provisioner--0-eth0" Feb 9 19:19:34.341473 env[1744]: time="2024-02-09T19:19:34.339233030Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 9 19:19:34.341473 env[1744]: time="2024-02-09T19:19:34.339517302Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 9 19:19:34.341473 env[1744]: time="2024-02-09T19:19:34.339582970Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 9 19:19:34.341473 env[1744]: time="2024-02-09T19:19:34.340042728Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/89d3b7b338bdd2761a05b3f3ea25dc08b6c4ed0412b73c45c5358be87c2f0812 pid=3726 runtime=io.containerd.runc.v2 Feb 9 19:19:34.350000 audit[3731]: NETFILTER_CFG table=filter:74 family=2 entries=38 op=nft_register_chain pid=3731 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 19:19:34.350000 audit[3731]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=19500 a0=3 a1=ffffd13da3f0 a2=0 a3=ffff8802afa8 items=0 ppid=3214 pid=3731 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:34.350000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 19:19:34.376436 systemd[1]: Started cri-containerd-89d3b7b338bdd2761a05b3f3ea25dc08b6c4ed0412b73c45c5358be87c2f0812.scope. Feb 9 19:19:34.405000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.405000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.405000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.405000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.405000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.405000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.405000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.405000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.405000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.406000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.406000 audit: BPF prog-id=111 op=LOAD Feb 9 19:19:34.408000 audit[3737]: AVC avc: denied { bpf } for pid=3737 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.408000 audit[3737]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000145b38 a2=10 a3=0 items=0 ppid=3726 pid=3737 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:34.408000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3839643362376233333862646432373631613035623366336561323564 Feb 9 19:19:34.408000 audit[3737]: AVC avc: denied { perfmon } for pid=3737 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.408000 audit[3737]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=3726 pid=3737 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:34.408000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3839643362376233333862646432373631613035623366336561323564 Feb 9 19:19:34.408000 audit[3737]: AVC avc: denied { bpf } for pid=3737 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.408000 audit[3737]: AVC avc: denied { bpf } for pid=3737 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.408000 audit[3737]: AVC avc: denied { bpf } for pid=3737 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.408000 audit[3737]: AVC avc: denied { perfmon } for pid=3737 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.408000 audit[3737]: AVC avc: denied { perfmon } for pid=3737 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.408000 audit[3737]: AVC avc: denied { perfmon } for pid=3737 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.408000 audit[3737]: AVC avc: denied { perfmon } for pid=3737 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.408000 audit[3737]: AVC avc: denied { perfmon } for pid=3737 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.408000 audit[3737]: AVC avc: denied { bpf } for pid=3737 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.408000 audit[3737]: AVC avc: denied { bpf } for pid=3737 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.408000 audit: BPF prog-id=112 op=LOAD Feb 9 19:19:34.408000 audit[3737]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=3726 pid=3737 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:34.408000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3839643362376233333862646432373631613035623366336561323564 Feb 9 19:19:34.408000 audit[3737]: AVC avc: denied { bpf } for pid=3737 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.408000 audit[3737]: AVC avc: denied { bpf } for pid=3737 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.408000 audit[3737]: AVC avc: denied { perfmon } for pid=3737 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.408000 audit[3737]: AVC avc: denied { perfmon } for pid=3737 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.408000 audit[3737]: AVC avc: denied { perfmon } for pid=3737 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.408000 audit[3737]: AVC avc: denied { perfmon } for pid=3737 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.408000 audit[3737]: AVC avc: denied { perfmon } for pid=3737 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.408000 audit[3737]: AVC avc: denied { bpf } for pid=3737 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.408000 audit[3737]: AVC avc: denied { bpf } for pid=3737 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.408000 audit: BPF prog-id=113 op=LOAD Feb 9 19:19:34.408000 audit[3737]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=3726 pid=3737 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:34.408000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3839643362376233333862646432373631613035623366336561323564 Feb 9 19:19:34.409000 audit: BPF prog-id=113 op=UNLOAD Feb 9 19:19:34.409000 audit: BPF prog-id=112 op=UNLOAD Feb 9 19:19:34.409000 audit[3737]: AVC avc: denied { bpf } for pid=3737 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.409000 audit[3737]: AVC avc: denied { bpf } for pid=3737 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.409000 audit[3737]: AVC avc: denied { bpf } for pid=3737 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.409000 audit[3737]: AVC avc: denied { perfmon } for pid=3737 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.409000 audit[3737]: AVC avc: denied { perfmon } for pid=3737 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.409000 audit[3737]: AVC avc: denied { perfmon } for pid=3737 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.409000 audit[3737]: AVC avc: denied { perfmon } for pid=3737 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.409000 audit[3737]: AVC avc: denied { perfmon } for pid=3737 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.409000 audit[3737]: AVC avc: denied { bpf } for pid=3737 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.409000 audit[3737]: AVC avc: denied { bpf } for pid=3737 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:34.409000 audit: BPF prog-id=114 op=LOAD Feb 9 19:19:34.409000 audit[3737]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=3726 pid=3737 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:34.409000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3839643362376233333862646432373631613035623366336561323564 Feb 9 19:19:34.452455 env[1744]: time="2024-02-09T19:19:34.452357135Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nfs-server-provisioner-0,Uid:85ac5140-75d6-4587-b248-77295a4d0da2,Namespace:default,Attempt:0,} returns sandbox id \"89d3b7b338bdd2761a05b3f3ea25dc08b6c4ed0412b73c45c5358be87c2f0812\"" Feb 9 19:19:34.455354 env[1744]: time="2024-02-09T19:19:34.455286164Z" level=info msg="PullImage \"registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8\"" Feb 9 19:19:34.974733 kubelet[2211]: E0209 19:19:34.974667 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:35.975796 kubelet[2211]: E0209 19:19:35.975732 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:36.268033 systemd-networkd[1547]: cali60e51b789ff: Gained IPv6LL Feb 9 19:19:36.975993 kubelet[2211]: E0209 19:19:36.975915 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:37.868566 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1102208923.mount: Deactivated successfully. Feb 9 19:19:37.977073 kubelet[2211]: E0209 19:19:37.977011 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:38.977471 kubelet[2211]: E0209 19:19:38.977384 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:39.120000 audit[3762]: NETFILTER_CFG table=filter:75 family=2 entries=33 op=nft_register_rule pid=3762 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 19:19:39.124683 kernel: kauditd_printk_skb: 162 callbacks suppressed Feb 9 19:19:39.124783 kernel: audit: type=1325 audit(1707506379.120:841): table=filter:75 family=2 entries=33 op=nft_register_rule pid=3762 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 19:19:39.120000 audit[3762]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=11996 a0=3 a1=ffffc3841510 a2=0 a3=ffff973b26c0 items=0 ppid=2427 pid=3762 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:39.144469 kernel: audit: type=1300 audit(1707506379.120:841): arch=c00000b7 syscall=211 success=yes exit=11996 a0=3 a1=ffffc3841510 a2=0 a3=ffff973b26c0 items=0 ppid=2427 pid=3762 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:39.120000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 19:19:39.156192 kernel: audit: type=1327 audit(1707506379.120:841): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 19:19:39.121000 audit[3762]: NETFILTER_CFG table=nat:76 family=2 entries=20 op=nft_register_rule pid=3762 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 19:19:39.166564 kernel: audit: type=1325 audit(1707506379.121:842): table=nat:76 family=2 entries=20 op=nft_register_rule pid=3762 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 19:19:39.121000 audit[3762]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5484 a0=3 a1=ffffc3841510 a2=0 a3=ffff973b26c0 items=0 ppid=2427 pid=3762 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:39.183425 kernel: audit: type=1300 audit(1707506379.121:842): arch=c00000b7 syscall=211 success=yes exit=5484 a0=3 a1=ffffc3841510 a2=0 a3=ffff973b26c0 items=0 ppid=2427 pid=3762 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:39.121000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 19:19:39.200870 kernel: audit: type=1327 audit(1707506379.121:842): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 19:19:39.201003 kubelet[2211]: I0209 19:19:39.197163 2211 topology_manager.go:212] "Topology Admit Handler" Feb 9 19:19:39.214264 systemd[1]: Created slice kubepods-besteffort-poda9d54b5f_d8ff_4b5b_8e52_09efd2209a30.slice. Feb 9 19:19:39.222838 kernel: audit: type=1325 audit(1707506379.206:843): table=filter:77 family=2 entries=34 op=nft_register_rule pid=3764 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 19:19:39.206000 audit[3764]: NETFILTER_CFG table=filter:77 family=2 entries=34 op=nft_register_rule pid=3764 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 19:19:39.236514 kernel: audit: type=1300 audit(1707506379.206:843): arch=c00000b7 syscall=211 success=yes exit=11996 a0=3 a1=ffffdf7e90d0 a2=0 a3=ffff853fc6c0 items=0 ppid=2427 pid=3764 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:39.206000 audit[3764]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=11996 a0=3 a1=ffffdf7e90d0 a2=0 a3=ffff853fc6c0 items=0 ppid=2427 pid=3764 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:39.206000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 19:19:39.244388 kernel: audit: type=1327 audit(1707506379.206:843): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 19:19:39.220000 audit[3764]: NETFILTER_CFG table=nat:78 family=2 entries=20 op=nft_register_rule pid=3764 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 19:19:39.250369 kernel: audit: type=1325 audit(1707506379.220:844): table=nat:78 family=2 entries=20 op=nft_register_rule pid=3764 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 19:19:39.220000 audit[3764]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5484 a0=3 a1=ffffdf7e90d0 a2=0 a3=ffff853fc6c0 items=0 ppid=2427 pid=3764 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:39.220000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 19:19:39.267745 kubelet[2211]: I0209 19:19:39.267681 2211 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"calico-apiserver-certs\" (UniqueName: \"kubernetes.io/secret/a9d54b5f-d8ff-4b5b-8e52-09efd2209a30-calico-apiserver-certs\") pod \"calico-apiserver-774dc986c8-hk6lc\" (UID: \"a9d54b5f-d8ff-4b5b-8e52-09efd2209a30\") " pod="calico-apiserver/calico-apiserver-774dc986c8-hk6lc" Feb 9 19:19:39.267910 kubelet[2211]: I0209 19:19:39.267789 2211 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-nv7v9\" (UniqueName: \"kubernetes.io/projected/a9d54b5f-d8ff-4b5b-8e52-09efd2209a30-kube-api-access-nv7v9\") pod \"calico-apiserver-774dc986c8-hk6lc\" (UID: \"a9d54b5f-d8ff-4b5b-8e52-09efd2209a30\") " pod="calico-apiserver/calico-apiserver-774dc986c8-hk6lc" Feb 9 19:19:39.368801 kubelet[2211]: E0209 19:19:39.368757 2211 secret.go:194] Couldn't get secret calico-apiserver/calico-apiserver-certs: secret "calico-apiserver-certs" not found Feb 9 19:19:39.369208 kubelet[2211]: E0209 19:19:39.369168 2211 nestedpendingoperations.go:348] Operation for "{volumeName:kubernetes.io/secret/a9d54b5f-d8ff-4b5b-8e52-09efd2209a30-calico-apiserver-certs podName:a9d54b5f-d8ff-4b5b-8e52-09efd2209a30 nodeName:}" failed. No retries permitted until 2024-02-09 19:19:39.869097991 +0000 UTC m=+59.213374460 (durationBeforeRetry 500ms). Error: MountVolume.SetUp failed for volume "calico-apiserver-certs" (UniqueName: "kubernetes.io/secret/a9d54b5f-d8ff-4b5b-8e52-09efd2209a30-calico-apiserver-certs") pod "calico-apiserver-774dc986c8-hk6lc" (UID: "a9d54b5f-d8ff-4b5b-8e52-09efd2209a30") : secret "calico-apiserver-certs" not found Feb 9 19:19:39.978008 kubelet[2211]: E0209 19:19:39.977950 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:40.126493 env[1744]: time="2024-02-09T19:19:40.126396151Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-apiserver-774dc986c8-hk6lc,Uid:a9d54b5f-d8ff-4b5b-8e52-09efd2209a30,Namespace:calico-apiserver,Attempt:0,}" Feb 9 19:19:40.665515 systemd-networkd[1547]: caliaba7aaf7355: Link UP Feb 9 19:19:40.671225 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 9 19:19:40.671826 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): caliaba7aaf7355: link becomes ready Feb 9 19:19:40.671859 systemd-networkd[1547]: caliaba7aaf7355: Gained carrier Feb 9 19:19:40.674077 (udev-worker)[3787]: Network interface NamePolicy= disabled on kernel command line. Feb 9 19:19:40.705133 env[1744]: 2024-02-09 19:19:40.478 [INFO][3769] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.22.94-k8s-calico--apiserver--774dc986c8--hk6lc-eth0 calico-apiserver-774dc986c8- calico-apiserver a9d54b5f-d8ff-4b5b-8e52-09efd2209a30 1106 0 2024-02-09 19:19:39 +0000 UTC map[apiserver:true app.kubernetes.io/name:calico-apiserver k8s-app:calico-apiserver pod-template-hash:774dc986c8 projectcalico.org/namespace:calico-apiserver projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:calico-apiserver] map[] [] [] []} {k8s 172.31.22.94 calico-apiserver-774dc986c8-hk6lc eth0 calico-apiserver [] [] [kns.calico-apiserver ksa.calico-apiserver.calico-apiserver] caliaba7aaf7355 [] []}} ContainerID="12e369831a4bbfd433b8e29f8794ab68f42588b9652a30acd009f43b49f535cd" Namespace="calico-apiserver" Pod="calico-apiserver-774dc986c8-hk6lc" WorkloadEndpoint="172.31.22.94-k8s-calico--apiserver--774dc986c8--hk6lc-" Feb 9 19:19:40.705133 env[1744]: 2024-02-09 19:19:40.478 [INFO][3769] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="12e369831a4bbfd433b8e29f8794ab68f42588b9652a30acd009f43b49f535cd" Namespace="calico-apiserver" Pod="calico-apiserver-774dc986c8-hk6lc" WorkloadEndpoint="172.31.22.94-k8s-calico--apiserver--774dc986c8--hk6lc-eth0" Feb 9 19:19:40.705133 env[1744]: 2024-02-09 19:19:40.533 [INFO][3781] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="12e369831a4bbfd433b8e29f8794ab68f42588b9652a30acd009f43b49f535cd" HandleID="k8s-pod-network.12e369831a4bbfd433b8e29f8794ab68f42588b9652a30acd009f43b49f535cd" Workload="172.31.22.94-k8s-calico--apiserver--774dc986c8--hk6lc-eth0" Feb 9 19:19:40.705133 env[1744]: 2024-02-09 19:19:40.565 [INFO][3781] ipam_plugin.go 268: Auto assigning IP ContainerID="12e369831a4bbfd433b8e29f8794ab68f42588b9652a30acd009f43b49f535cd" HandleID="k8s-pod-network.12e369831a4bbfd433b8e29f8794ab68f42588b9652a30acd009f43b49f535cd" Workload="172.31.22.94-k8s-calico--apiserver--774dc986c8--hk6lc-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x4000126080), Attrs:map[string]string{"namespace":"calico-apiserver", "node":"172.31.22.94", "pod":"calico-apiserver-774dc986c8-hk6lc", "timestamp":"2024-02-09 19:19:40.533632058 +0000 UTC"}, Hostname:"172.31.22.94", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 9 19:19:40.705133 env[1744]: 2024-02-09 19:19:40.566 [INFO][3781] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 19:19:40.705133 env[1744]: 2024-02-09 19:19:40.566 [INFO][3781] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 19:19:40.705133 env[1744]: 2024-02-09 19:19:40.566 [INFO][3781] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.22.94' Feb 9 19:19:40.705133 env[1744]: 2024-02-09 19:19:40.569 [INFO][3781] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.12e369831a4bbfd433b8e29f8794ab68f42588b9652a30acd009f43b49f535cd" host="172.31.22.94" Feb 9 19:19:40.705133 env[1744]: 2024-02-09 19:19:40.580 [INFO][3781] ipam.go 372: Looking up existing affinities for host host="172.31.22.94" Feb 9 19:19:40.705133 env[1744]: 2024-02-09 19:19:40.604 [INFO][3781] ipam.go 489: Trying affinity for 192.168.35.0/26 host="172.31.22.94" Feb 9 19:19:40.705133 env[1744]: 2024-02-09 19:19:40.612 [INFO][3781] ipam.go 155: Attempting to load block cidr=192.168.35.0/26 host="172.31.22.94" Feb 9 19:19:40.705133 env[1744]: 2024-02-09 19:19:40.618 [INFO][3781] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.35.0/26 host="172.31.22.94" Feb 9 19:19:40.705133 env[1744]: 2024-02-09 19:19:40.618 [INFO][3781] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.35.0/26 handle="k8s-pod-network.12e369831a4bbfd433b8e29f8794ab68f42588b9652a30acd009f43b49f535cd" host="172.31.22.94" Feb 9 19:19:40.705133 env[1744]: 2024-02-09 19:19:40.627 [INFO][3781] ipam.go 1682: Creating new handle: k8s-pod-network.12e369831a4bbfd433b8e29f8794ab68f42588b9652a30acd009f43b49f535cd Feb 9 19:19:40.705133 env[1744]: 2024-02-09 19:19:40.641 [INFO][3781] ipam.go 1203: Writing block in order to claim IPs block=192.168.35.0/26 handle="k8s-pod-network.12e369831a4bbfd433b8e29f8794ab68f42588b9652a30acd009f43b49f535cd" host="172.31.22.94" Feb 9 19:19:40.705133 env[1744]: 2024-02-09 19:19:40.658 [INFO][3781] ipam.go 1216: Successfully claimed IPs: [192.168.35.4/26] block=192.168.35.0/26 handle="k8s-pod-network.12e369831a4bbfd433b8e29f8794ab68f42588b9652a30acd009f43b49f535cd" host="172.31.22.94" Feb 9 19:19:40.705133 env[1744]: 2024-02-09 19:19:40.658 [INFO][3781] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.35.4/26] handle="k8s-pod-network.12e369831a4bbfd433b8e29f8794ab68f42588b9652a30acd009f43b49f535cd" host="172.31.22.94" Feb 9 19:19:40.705133 env[1744]: 2024-02-09 19:19:40.658 [INFO][3781] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 19:19:40.705133 env[1744]: 2024-02-09 19:19:40.659 [INFO][3781] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.35.4/26] IPv6=[] ContainerID="12e369831a4bbfd433b8e29f8794ab68f42588b9652a30acd009f43b49f535cd" HandleID="k8s-pod-network.12e369831a4bbfd433b8e29f8794ab68f42588b9652a30acd009f43b49f535cd" Workload="172.31.22.94-k8s-calico--apiserver--774dc986c8--hk6lc-eth0" Feb 9 19:19:40.706382 env[1744]: 2024-02-09 19:19:40.661 [INFO][3769] k8s.go 385: Populated endpoint ContainerID="12e369831a4bbfd433b8e29f8794ab68f42588b9652a30acd009f43b49f535cd" Namespace="calico-apiserver" Pod="calico-apiserver-774dc986c8-hk6lc" WorkloadEndpoint="172.31.22.94-k8s-calico--apiserver--774dc986c8--hk6lc-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.94-k8s-calico--apiserver--774dc986c8--hk6lc-eth0", GenerateName:"calico-apiserver-774dc986c8-", Namespace:"calico-apiserver", SelfLink:"", UID:"a9d54b5f-d8ff-4b5b-8e52-09efd2209a30", ResourceVersion:"1106", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 19, 19, 39, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"apiserver":"true", "app.kubernetes.io/name":"calico-apiserver", "k8s-app":"calico-apiserver", "pod-template-hash":"774dc986c8", "projectcalico.org/namespace":"calico-apiserver", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"calico-apiserver"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.94", ContainerID:"", Pod:"calico-apiserver-774dc986c8-hk6lc", Endpoint:"eth0", ServiceAccountName:"calico-apiserver", IPNetworks:[]string{"192.168.35.4/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-apiserver", "ksa.calico-apiserver.calico-apiserver"}, InterfaceName:"caliaba7aaf7355", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 19:19:40.706382 env[1744]: 2024-02-09 19:19:40.661 [INFO][3769] k8s.go 386: Calico CNI using IPs: [192.168.35.4/32] ContainerID="12e369831a4bbfd433b8e29f8794ab68f42588b9652a30acd009f43b49f535cd" Namespace="calico-apiserver" Pod="calico-apiserver-774dc986c8-hk6lc" WorkloadEndpoint="172.31.22.94-k8s-calico--apiserver--774dc986c8--hk6lc-eth0" Feb 9 19:19:40.706382 env[1744]: 2024-02-09 19:19:40.661 [INFO][3769] dataplane_linux.go 68: Setting the host side veth name to caliaba7aaf7355 ContainerID="12e369831a4bbfd433b8e29f8794ab68f42588b9652a30acd009f43b49f535cd" Namespace="calico-apiserver" Pod="calico-apiserver-774dc986c8-hk6lc" WorkloadEndpoint="172.31.22.94-k8s-calico--apiserver--774dc986c8--hk6lc-eth0" Feb 9 19:19:40.706382 env[1744]: 2024-02-09 19:19:40.675 [INFO][3769] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="12e369831a4bbfd433b8e29f8794ab68f42588b9652a30acd009f43b49f535cd" Namespace="calico-apiserver" Pod="calico-apiserver-774dc986c8-hk6lc" WorkloadEndpoint="172.31.22.94-k8s-calico--apiserver--774dc986c8--hk6lc-eth0" Feb 9 19:19:40.706382 env[1744]: 2024-02-09 19:19:40.676 [INFO][3769] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="12e369831a4bbfd433b8e29f8794ab68f42588b9652a30acd009f43b49f535cd" Namespace="calico-apiserver" Pod="calico-apiserver-774dc986c8-hk6lc" WorkloadEndpoint="172.31.22.94-k8s-calico--apiserver--774dc986c8--hk6lc-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.94-k8s-calico--apiserver--774dc986c8--hk6lc-eth0", GenerateName:"calico-apiserver-774dc986c8-", Namespace:"calico-apiserver", SelfLink:"", UID:"a9d54b5f-d8ff-4b5b-8e52-09efd2209a30", ResourceVersion:"1106", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 19, 19, 39, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"apiserver":"true", "app.kubernetes.io/name":"calico-apiserver", "k8s-app":"calico-apiserver", "pod-template-hash":"774dc986c8", "projectcalico.org/namespace":"calico-apiserver", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"calico-apiserver"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.94", ContainerID:"12e369831a4bbfd433b8e29f8794ab68f42588b9652a30acd009f43b49f535cd", Pod:"calico-apiserver-774dc986c8-hk6lc", Endpoint:"eth0", ServiceAccountName:"calico-apiserver", IPNetworks:[]string{"192.168.35.4/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-apiserver", "ksa.calico-apiserver.calico-apiserver"}, InterfaceName:"caliaba7aaf7355", MAC:"02:87:e7:75:59:10", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 19:19:40.706382 env[1744]: 2024-02-09 19:19:40.702 [INFO][3769] k8s.go 491: Wrote updated endpoint to datastore ContainerID="12e369831a4bbfd433b8e29f8794ab68f42588b9652a30acd009f43b49f535cd" Namespace="calico-apiserver" Pod="calico-apiserver-774dc986c8-hk6lc" WorkloadEndpoint="172.31.22.94-k8s-calico--apiserver--774dc986c8--hk6lc-eth0" Feb 9 19:19:40.766543 env[1744]: time="2024-02-09T19:19:40.766366537Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 9 19:19:40.766543 env[1744]: time="2024-02-09T19:19:40.766470030Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 9 19:19:40.766543 env[1744]: time="2024-02-09T19:19:40.766497847Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 9 19:19:40.767441 env[1744]: time="2024-02-09T19:19:40.767324135Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/12e369831a4bbfd433b8e29f8794ab68f42588b9652a30acd009f43b49f535cd pid=3816 runtime=io.containerd.runc.v2 Feb 9 19:19:40.781000 audit[3820]: NETFILTER_CFG table=filter:79 family=2 entries=55 op=nft_register_chain pid=3820 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 19:19:40.781000 audit[3820]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=28104 a0=3 a1=ffffd00a2930 a2=0 a3=ffff912c8fa8 items=0 ppid=3214 pid=3820 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:40.781000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 19:19:40.801117 systemd[1]: Started cri-containerd-12e369831a4bbfd433b8e29f8794ab68f42588b9652a30acd009f43b49f535cd.scope. Feb 9 19:19:40.838000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.838000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.838000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.838000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.838000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.838000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.838000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.838000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.838000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.839000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.839000 audit: BPF prog-id=115 op=LOAD Feb 9 19:19:40.839000 audit[3825]: AVC avc: denied { bpf } for pid=3825 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.839000 audit[3825]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000145b38 a2=10 a3=0 items=0 ppid=3816 pid=3825 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:40.839000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3132653336393833316134626266643433336238653239663837393461 Feb 9 19:19:40.839000 audit[3825]: AVC avc: denied { perfmon } for pid=3825 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.839000 audit[3825]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=3816 pid=3825 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:40.839000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3132653336393833316134626266643433336238653239663837393461 Feb 9 19:19:40.839000 audit[3825]: AVC avc: denied { bpf } for pid=3825 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.839000 audit[3825]: AVC avc: denied { bpf } for pid=3825 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.839000 audit[3825]: AVC avc: denied { bpf } for pid=3825 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.839000 audit[3825]: AVC avc: denied { perfmon } for pid=3825 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.839000 audit[3825]: AVC avc: denied { perfmon } for pid=3825 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.839000 audit[3825]: AVC avc: denied { perfmon } for pid=3825 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.839000 audit[3825]: AVC avc: denied { perfmon } for pid=3825 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.839000 audit[3825]: AVC avc: denied { perfmon } for pid=3825 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.839000 audit[3825]: AVC avc: denied { bpf } for pid=3825 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.839000 audit[3825]: AVC avc: denied { bpf } for pid=3825 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.839000 audit: BPF prog-id=116 op=LOAD Feb 9 19:19:40.839000 audit[3825]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=3816 pid=3825 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:40.839000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3132653336393833316134626266643433336238653239663837393461 Feb 9 19:19:40.840000 audit[3825]: AVC avc: denied { bpf } for pid=3825 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.840000 audit[3825]: AVC avc: denied { bpf } for pid=3825 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.840000 audit[3825]: AVC avc: denied { perfmon } for pid=3825 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.840000 audit[3825]: AVC avc: denied { perfmon } for pid=3825 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.840000 audit[3825]: AVC avc: denied { perfmon } for pid=3825 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.840000 audit[3825]: AVC avc: denied { perfmon } for pid=3825 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.840000 audit[3825]: AVC avc: denied { perfmon } for pid=3825 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.840000 audit[3825]: AVC avc: denied { bpf } for pid=3825 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.840000 audit[3825]: AVC avc: denied { bpf } for pid=3825 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.840000 audit: BPF prog-id=117 op=LOAD Feb 9 19:19:40.840000 audit[3825]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=3816 pid=3825 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:40.840000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3132653336393833316134626266643433336238653239663837393461 Feb 9 19:19:40.840000 audit: BPF prog-id=117 op=UNLOAD Feb 9 19:19:40.840000 audit: BPF prog-id=116 op=UNLOAD Feb 9 19:19:40.840000 audit[3825]: AVC avc: denied { bpf } for pid=3825 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.840000 audit[3825]: AVC avc: denied { bpf } for pid=3825 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.840000 audit[3825]: AVC avc: denied { bpf } for pid=3825 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.840000 audit[3825]: AVC avc: denied { perfmon } for pid=3825 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.840000 audit[3825]: AVC avc: denied { perfmon } for pid=3825 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.840000 audit[3825]: AVC avc: denied { perfmon } for pid=3825 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.840000 audit[3825]: AVC avc: denied { perfmon } for pid=3825 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.840000 audit[3825]: AVC avc: denied { perfmon } for pid=3825 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.840000 audit[3825]: AVC avc: denied { bpf } for pid=3825 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.840000 audit[3825]: AVC avc: denied { bpf } for pid=3825 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:40.840000 audit: BPF prog-id=118 op=LOAD Feb 9 19:19:40.840000 audit[3825]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=3816 pid=3825 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:40.840000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3132653336393833316134626266643433336238653239663837393461 Feb 9 19:19:40.898245 env[1744]: time="2024-02-09T19:19:40.898187141Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-apiserver-774dc986c8-hk6lc,Uid:a9d54b5f-d8ff-4b5b-8e52-09efd2209a30,Namespace:calico-apiserver,Attempt:0,} returns sandbox id \"12e369831a4bbfd433b8e29f8794ab68f42588b9652a30acd009f43b49f535cd\"" Feb 9 19:19:40.983351 kubelet[2211]: E0209 19:19:40.978684 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:41.932637 kubelet[2211]: E0209 19:19:41.932571 2211 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:41.978921 kubelet[2211]: E0209 19:19:41.978882 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:41.983921 env[1744]: time="2024-02-09T19:19:41.983868132Z" level=info msg="StopPodSandbox for \"4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687\"" Feb 9 19:19:42.076114 env[1744]: time="2024-02-09T19:19:42.076043283Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:19:42.087109 env[1744]: time="2024-02-09T19:19:42.087037534Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:5a42a519e0a8cf95c3c5f18f767c58c8c8b072aaea0a26e5e47a6f206c7df685,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:19:42.090630 env[1744]: time="2024-02-09T19:19:42.090573007Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:19:42.094203 env[1744]: time="2024-02-09T19:19:42.094148393Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/sig-storage/nfs-provisioner@sha256:c825f3d5e28bde099bd7a3daace28772d412c9157ad47fa752a9ad0baafc118d,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:19:42.097297 env[1744]: time="2024-02-09T19:19:42.095806462Z" level=info msg="PullImage \"registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8\" returns image reference \"sha256:5a42a519e0a8cf95c3c5f18f767c58c8c8b072aaea0a26e5e47a6f206c7df685\"" Feb 9 19:19:42.099391 env[1744]: time="2024-02-09T19:19:42.099332538Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/apiserver:v3.27.0\"" Feb 9 19:19:42.101752 env[1744]: time="2024-02-09T19:19:42.101693300Z" level=info msg="CreateContainer within sandbox \"89d3b7b338bdd2761a05b3f3ea25dc08b6c4ed0412b73c45c5358be87c2f0812\" for container &ContainerMetadata{Name:nfs-server-provisioner,Attempt:0,}" Feb 9 19:19:42.196274 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1615791274.mount: Deactivated successfully. Feb 9 19:19:42.214373 env[1744]: time="2024-02-09T19:19:42.211045926Z" level=info msg="CreateContainer within sandbox \"89d3b7b338bdd2761a05b3f3ea25dc08b6c4ed0412b73c45c5358be87c2f0812\" for &ContainerMetadata{Name:nfs-server-provisioner,Attempt:0,} returns container id \"f092ef339da3cf212da4a5ed85fb38d7c40baee43b51158ddf46fe149e636fd8\"" Feb 9 19:19:42.214680 env[1744]: time="2024-02-09T19:19:42.214616896Z" level=info msg="StartContainer for \"f092ef339da3cf212da4a5ed85fb38d7c40baee43b51158ddf46fe149e636fd8\"" Feb 9 19:19:42.227623 env[1744]: 2024-02-09 19:19:42.071 [WARNING][3866] k8s.go 542: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.94-k8s-csi--node--driver--cqn68-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"a6dae328-8341-4be4-ac60-ed961c923c62", ResourceVersion:"1019", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 19, 18, 43, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"86b88cf7c9", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.94", ContainerID:"52d9e5a4fe38f5a21c6852b9e08cc7a49598e5666acca36d94a8bfc035a5e796", Pod:"csi-node-driver-cqn68", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.35.1/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"cali4af51bbdf74", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 19:19:42.227623 env[1744]: 2024-02-09 19:19:42.071 [INFO][3866] k8s.go 578: Cleaning up netns ContainerID="4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" Feb 9 19:19:42.227623 env[1744]: 2024-02-09 19:19:42.072 [INFO][3866] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" iface="eth0" netns="" Feb 9 19:19:42.227623 env[1744]: 2024-02-09 19:19:42.072 [INFO][3866] k8s.go 585: Releasing IP address(es) ContainerID="4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" Feb 9 19:19:42.227623 env[1744]: 2024-02-09 19:19:42.072 [INFO][3866] utils.go 188: Calico CNI releasing IP address ContainerID="4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" Feb 9 19:19:42.227623 env[1744]: 2024-02-09 19:19:42.123 [INFO][3872] ipam_plugin.go 415: Releasing address using handleID ContainerID="4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" HandleID="k8s-pod-network.4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" Workload="172.31.22.94-k8s-csi--node--driver--cqn68-eth0" Feb 9 19:19:42.227623 env[1744]: 2024-02-09 19:19:42.184 [INFO][3872] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 19:19:42.227623 env[1744]: 2024-02-09 19:19:42.185 [INFO][3872] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 19:19:42.227623 env[1744]: 2024-02-09 19:19:42.205 [WARNING][3872] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" HandleID="k8s-pod-network.4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" Workload="172.31.22.94-k8s-csi--node--driver--cqn68-eth0" Feb 9 19:19:42.227623 env[1744]: 2024-02-09 19:19:42.205 [INFO][3872] ipam_plugin.go 443: Releasing address using workloadID ContainerID="4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" HandleID="k8s-pod-network.4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" Workload="172.31.22.94-k8s-csi--node--driver--cqn68-eth0" Feb 9 19:19:42.227623 env[1744]: 2024-02-09 19:19:42.210 [INFO][3872] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 19:19:42.227623 env[1744]: 2024-02-09 19:19:42.222 [INFO][3866] k8s.go 591: Teardown processing complete. ContainerID="4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" Feb 9 19:19:42.228831 env[1744]: time="2024-02-09T19:19:42.228777878Z" level=info msg="TearDown network for sandbox \"4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687\" successfully" Feb 9 19:19:42.228996 env[1744]: time="2024-02-09T19:19:42.228961823Z" level=info msg="StopPodSandbox for \"4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687\" returns successfully" Feb 9 19:19:42.230205 env[1744]: time="2024-02-09T19:19:42.230138634Z" level=info msg="RemovePodSandbox for \"4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687\"" Feb 9 19:19:42.230366 env[1744]: time="2024-02-09T19:19:42.230203977Z" level=info msg="Forcibly stopping sandbox \"4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687\"" Feb 9 19:19:42.293073 systemd[1]: Started cri-containerd-f092ef339da3cf212da4a5ed85fb38d7c40baee43b51158ddf46fe149e636fd8.scope. Feb 9 19:19:42.326000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.326000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.327000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.327000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.327000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.327000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.327000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.327000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.327000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.327000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.327000 audit: BPF prog-id=119 op=LOAD Feb 9 19:19:42.329000 audit[3896]: AVC avc: denied { bpf } for pid=3896 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.329000 audit[3896]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000145b38 a2=10 a3=0 items=0 ppid=3726 pid=3896 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:42.329000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6630393265663333396461336366323132646134613565643835666233 Feb 9 19:19:42.329000 audit[3896]: AVC avc: denied { perfmon } for pid=3896 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.329000 audit[3896]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=3726 pid=3896 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:42.329000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6630393265663333396461336366323132646134613565643835666233 Feb 9 19:19:42.330000 audit[3896]: AVC avc: denied { bpf } for pid=3896 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.330000 audit[3896]: AVC avc: denied { bpf } for pid=3896 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.330000 audit[3896]: AVC avc: denied { bpf } for pid=3896 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.330000 audit[3896]: AVC avc: denied { perfmon } for pid=3896 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.330000 audit[3896]: AVC avc: denied { perfmon } for pid=3896 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.330000 audit[3896]: AVC avc: denied { perfmon } for pid=3896 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.330000 audit[3896]: AVC avc: denied { perfmon } for pid=3896 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.330000 audit[3896]: AVC avc: denied { perfmon } for pid=3896 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.330000 audit[3896]: AVC avc: denied { bpf } for pid=3896 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.330000 audit[3896]: AVC avc: denied { bpf } for pid=3896 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.330000 audit: BPF prog-id=120 op=LOAD Feb 9 19:19:42.330000 audit[3896]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=3726 pid=3896 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:42.330000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6630393265663333396461336366323132646134613565643835666233 Feb 9 19:19:42.331000 audit[3896]: AVC avc: denied { bpf } for pid=3896 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.331000 audit[3896]: AVC avc: denied { bpf } for pid=3896 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.331000 audit[3896]: AVC avc: denied { perfmon } for pid=3896 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.331000 audit[3896]: AVC avc: denied { perfmon } for pid=3896 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.331000 audit[3896]: AVC avc: denied { perfmon } for pid=3896 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.331000 audit[3896]: AVC avc: denied { perfmon } for pid=3896 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.331000 audit[3896]: AVC avc: denied { perfmon } for pid=3896 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.331000 audit[3896]: AVC avc: denied { bpf } for pid=3896 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.331000 audit[3896]: AVC avc: denied { bpf } for pid=3896 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.331000 audit: BPF prog-id=121 op=LOAD Feb 9 19:19:42.331000 audit[3896]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=3726 pid=3896 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:42.331000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6630393265663333396461336366323132646134613565643835666233 Feb 9 19:19:42.333000 audit: BPF prog-id=121 op=UNLOAD Feb 9 19:19:42.333000 audit: BPF prog-id=120 op=UNLOAD Feb 9 19:19:42.333000 audit[3896]: AVC avc: denied { bpf } for pid=3896 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.333000 audit[3896]: AVC avc: denied { bpf } for pid=3896 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.333000 audit[3896]: AVC avc: denied { bpf } for pid=3896 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.333000 audit[3896]: AVC avc: denied { perfmon } for pid=3896 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.333000 audit[3896]: AVC avc: denied { perfmon } for pid=3896 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.333000 audit[3896]: AVC avc: denied { perfmon } for pid=3896 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.333000 audit[3896]: AVC avc: denied { perfmon } for pid=3896 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.333000 audit[3896]: AVC avc: denied { perfmon } for pid=3896 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.333000 audit[3896]: AVC avc: denied { bpf } for pid=3896 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.333000 audit[3896]: AVC avc: denied { bpf } for pid=3896 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:42.333000 audit: BPF prog-id=122 op=LOAD Feb 9 19:19:42.333000 audit[3896]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=3726 pid=3896 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:42.333000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6630393265663333396461336366323132646134613565643835666233 Feb 9 19:19:42.391794 env[1744]: time="2024-02-09T19:19:42.390498192Z" level=info msg="StartContainer for \"f092ef339da3cf212da4a5ed85fb38d7c40baee43b51158ddf46fe149e636fd8\" returns successfully" Feb 9 19:19:42.502000 audit[3953]: NETFILTER_CFG table=filter:80 family=2 entries=22 op=nft_register_rule pid=3953 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 19:19:42.502000 audit[3953]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=3548 a0=3 a1=fffffa342010 a2=0 a3=ffff83d5a6c0 items=0 ppid=2427 pid=3953 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:42.502000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 19:19:42.512801 env[1744]: 2024-02-09 19:19:42.398 [WARNING][3919] k8s.go 542: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.94-k8s-csi--node--driver--cqn68-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"a6dae328-8341-4be4-ac60-ed961c923c62", ResourceVersion:"1019", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 19, 18, 43, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"86b88cf7c9", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.94", ContainerID:"52d9e5a4fe38f5a21c6852b9e08cc7a49598e5666acca36d94a8bfc035a5e796", Pod:"csi-node-driver-cqn68", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.35.1/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"cali4af51bbdf74", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 19:19:42.512801 env[1744]: 2024-02-09 19:19:42.398 [INFO][3919] k8s.go 578: Cleaning up netns ContainerID="4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" Feb 9 19:19:42.512801 env[1744]: 2024-02-09 19:19:42.398 [INFO][3919] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" iface="eth0" netns="" Feb 9 19:19:42.512801 env[1744]: 2024-02-09 19:19:42.398 [INFO][3919] k8s.go 585: Releasing IP address(es) ContainerID="4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" Feb 9 19:19:42.512801 env[1744]: 2024-02-09 19:19:42.399 [INFO][3919] utils.go 188: Calico CNI releasing IP address ContainerID="4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" Feb 9 19:19:42.512801 env[1744]: 2024-02-09 19:19:42.453 [INFO][3945] ipam_plugin.go 415: Releasing address using handleID ContainerID="4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" HandleID="k8s-pod-network.4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" Workload="172.31.22.94-k8s-csi--node--driver--cqn68-eth0" Feb 9 19:19:42.512801 env[1744]: 2024-02-09 19:19:42.453 [INFO][3945] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 19:19:42.512801 env[1744]: 2024-02-09 19:19:42.453 [INFO][3945] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 19:19:42.512801 env[1744]: 2024-02-09 19:19:42.492 [WARNING][3945] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" HandleID="k8s-pod-network.4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" Workload="172.31.22.94-k8s-csi--node--driver--cqn68-eth0" Feb 9 19:19:42.512801 env[1744]: 2024-02-09 19:19:42.493 [INFO][3945] ipam_plugin.go 443: Releasing address using workloadID ContainerID="4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" HandleID="k8s-pod-network.4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" Workload="172.31.22.94-k8s-csi--node--driver--cqn68-eth0" Feb 9 19:19:42.512801 env[1744]: 2024-02-09 19:19:42.503 [INFO][3945] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 19:19:42.512801 env[1744]: 2024-02-09 19:19:42.509 [INFO][3919] k8s.go 591: Teardown processing complete. ContainerID="4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687" Feb 9 19:19:42.513738 env[1744]: time="2024-02-09T19:19:42.512973788Z" level=info msg="TearDown network for sandbox \"4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687\" successfully" Feb 9 19:19:42.517000 audit[3954]: AVC avc: denied { search } for pid=3954 comm="rpcbind" name="crypto" dev="proc" ino=19711 scontext=system_u:system_r:svirt_lxc_net_t:s0:c414,c520 tcontext=system_u:object_r:sysctl_crypto_t:s0 tclass=dir permissive=0 Feb 9 19:19:42.517000 audit[3954]: SYSCALL arch=c00000b7 syscall=56 success=no exit=-13 a0=ffffffffffffff9c a1=ffff847cf000 a2=0 a3=0 items=0 ppid=3925 pid=3954 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="rpcbind" exe="/usr/bin/rpcbind" subj=system_u:system_r:svirt_lxc_net_t:s0:c414,c520 key=(null) Feb 9 19:19:42.517000 audit: PROCTITLE proctitle=2F7573722F7362696E2F72706362696E64002D77 Feb 9 19:19:42.519347 env[1744]: time="2024-02-09T19:19:42.519265549Z" level=info msg="RemovePodSandbox \"4eee4dfd140c17e85617adf6d11ed2f21776c40c245544f119a51824cc1c9687\" returns successfully" Feb 9 19:19:42.520307 env[1744]: time="2024-02-09T19:19:42.520212129Z" level=info msg="StopPodSandbox for \"a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471\"" Feb 9 19:19:42.525000 audit[3953]: NETFILTER_CFG table=nat:81 family=2 entries=104 op=nft_register_chain pid=3953 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 19:19:42.525000 audit[3953]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=47436 a0=3 a1=fffffa342010 a2=0 a3=ffff83d5a6c0 items=0 ppid=2427 pid=3953 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:42.525000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 19:19:42.677000 audit[3984]: AVC avc: denied { search } for pid=3984 comm="dbus-daemon" name="crypto" dev="proc" ino=19711 scontext=system_u:system_r:svirt_lxc_net_t:s0:c414,c520 tcontext=system_u:object_r:sysctl_crypto_t:s0 tclass=dir permissive=0 Feb 9 19:19:42.677000 audit[3984]: SYSCALL arch=c00000b7 syscall=56 success=no exit=-13 a0=ffffffffffffff9c a1=ffffa6bbf000 a2=0 a3=0 items=0 ppid=3925 pid=3984 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="dbus-daemon" exe="/usr/bin/dbus-daemon" subj=system_u:system_r:svirt_lxc_net_t:s0:c414,c520 key=(null) Feb 9 19:19:42.677000 audit: PROCTITLE proctitle=646275732D6461656D6F6E002D2D73797374656D002D2D6E6F70696466696C65 Feb 9 19:19:42.682000 audit[3985]: AVC avc: denied { watch } for pid=3985 comm="dbus-daemon" path="/usr/share/dbus-1/system.d" dev="overlay" ino=537987 scontext=system_u:system_r:svirt_lxc_net_t:s0:c414,c520 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c414,c520 tclass=dir permissive=0 Feb 9 19:19:42.682000 audit[3985]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=6 a1=aaaaf9e64550 a2=2c8 a3=aaaaf9e52a60 items=0 ppid=3925 pid=3985 auid=4294967295 uid=81 gid=81 euid=81 suid=81 fsuid=81 egid=81 sgid=81 fsgid=81 tty=(none) ses=4294967295 comm="dbus-daemon" exe="/usr/bin/dbus-daemon" subj=system_u:system_r:svirt_lxc_net_t:s0:c414,c520 key=(null) Feb 9 19:19:42.682000 audit: PROCTITLE proctitle=646275732D6461656D6F6E002D2D73797374656D002D2D6E6F70696466696C65 Feb 9 19:19:42.696721 env[1744]: 2024-02-09 19:19:42.609 [WARNING][3969] k8s.go 542: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.94-k8s-nginx--deployment--845c78c8b9--mq8dw-eth0", GenerateName:"nginx-deployment-845c78c8b9-", Namespace:"default", SelfLink:"", UID:"ed2fe88b-21fc-4150-af4a-9cafe261183f", ResourceVersion:"1007", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 19, 19, 8, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"845c78c8b9", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.94", ContainerID:"8d6d0ee2f1793fa3d12fce39f3bf08b8fde8ddfe2cc54b4b6622188b4a9df596", Pod:"nginx-deployment-845c78c8b9-mq8dw", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.35.2/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali03c5e430856", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 19:19:42.696721 env[1744]: 2024-02-09 19:19:42.609 [INFO][3969] k8s.go 578: Cleaning up netns ContainerID="a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" Feb 9 19:19:42.696721 env[1744]: 2024-02-09 19:19:42.610 [INFO][3969] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" iface="eth0" netns="" Feb 9 19:19:42.696721 env[1744]: 2024-02-09 19:19:42.610 [INFO][3969] k8s.go 585: Releasing IP address(es) ContainerID="a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" Feb 9 19:19:42.696721 env[1744]: 2024-02-09 19:19:42.610 [INFO][3969] utils.go 188: Calico CNI releasing IP address ContainerID="a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" Feb 9 19:19:42.696721 env[1744]: 2024-02-09 19:19:42.647 [INFO][3978] ipam_plugin.go 415: Releasing address using handleID ContainerID="a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" HandleID="k8s-pod-network.a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" Workload="172.31.22.94-k8s-nginx--deployment--845c78c8b9--mq8dw-eth0" Feb 9 19:19:42.696721 env[1744]: 2024-02-09 19:19:42.670 [INFO][3978] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 19:19:42.696721 env[1744]: 2024-02-09 19:19:42.671 [INFO][3978] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 19:19:42.696721 env[1744]: 2024-02-09 19:19:42.688 [WARNING][3978] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" HandleID="k8s-pod-network.a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" Workload="172.31.22.94-k8s-nginx--deployment--845c78c8b9--mq8dw-eth0" Feb 9 19:19:42.696721 env[1744]: 2024-02-09 19:19:42.688 [INFO][3978] ipam_plugin.go 443: Releasing address using workloadID ContainerID="a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" HandleID="k8s-pod-network.a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" Workload="172.31.22.94-k8s-nginx--deployment--845c78c8b9--mq8dw-eth0" Feb 9 19:19:42.696721 env[1744]: 2024-02-09 19:19:42.692 [INFO][3978] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 19:19:42.696721 env[1744]: 2024-02-09 19:19:42.694 [INFO][3969] k8s.go 591: Teardown processing complete. ContainerID="a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" Feb 9 19:19:42.697685 env[1744]: time="2024-02-09T19:19:42.696764748Z" level=info msg="TearDown network for sandbox \"a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471\" successfully" Feb 9 19:19:42.697685 env[1744]: time="2024-02-09T19:19:42.696811538Z" level=info msg="StopPodSandbox for \"a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471\" returns successfully" Feb 9 19:19:42.697809 env[1744]: time="2024-02-09T19:19:42.697721169Z" level=info msg="RemovePodSandbox for \"a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471\"" Feb 9 19:19:42.697871 env[1744]: time="2024-02-09T19:19:42.697786608Z" level=info msg="Forcibly stopping sandbox \"a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471\"" Feb 9 19:19:42.698000 audit[3986]: AVC avc: denied { read } for pid=3986 comm="ganesha.nfsd" name="overcommit_memory" dev="proc" ino=20601 scontext=system_u:system_r:svirt_lxc_net_t:s0:c414,c520 tcontext=system_u:object_r:sysctl_vm_overcommit_t:s0 tclass=file permissive=0 Feb 9 19:19:42.698000 audit[3986]: SYSCALL arch=c00000b7 syscall=56 success=no exit=-13 a0=ffffff9c a1=ffffb597a570 a2=80000 a3=0 items=0 ppid=3925 pid=3986 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ganesha.nfsd" exe="/usr/local/bin/ganesha.nfsd" subj=system_u:system_r:svirt_lxc_net_t:s0:c414,c520 key=(null) Feb 9 19:19:42.698000 audit: PROCTITLE proctitle=67616E657368612E6E667364002D46002D4C002F6578706F72742F67616E657368612E6C6F67002D70002F7661722F72756E2F67616E657368612E706964002D66002F6578706F72742F7666732E636F6E66 Feb 9 19:19:42.700000 audit[3986]: AVC avc: denied { search } for pid=3986 comm="ganesha.nfsd" name="crypto" dev="proc" ino=19711 scontext=system_u:system_r:svirt_lxc_net_t:s0:c414,c520 tcontext=system_u:object_r:sysctl_crypto_t:s0 tclass=dir permissive=0 Feb 9 19:19:42.700000 audit[3986]: SYSCALL arch=c00000b7 syscall=56 success=no exit=-13 a0=ffffffffffffff9c a1=ffffb4d0f000 a2=0 a3=0 items=0 ppid=3925 pid=3986 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ganesha.nfsd" exe="/usr/local/bin/ganesha.nfsd" subj=system_u:system_r:svirt_lxc_net_t:s0:c414,c520 key=(null) Feb 9 19:19:42.700000 audit: PROCTITLE proctitle=67616E657368612E6E667364002D46002D4C002F6578706F72742F67616E657368612E6C6F67002D70002F7661722F72756E2F67616E657368612E706964002D66002F6578706F72742F7666732E636F6E66 Feb 9 19:19:42.731180 systemd-networkd[1547]: caliaba7aaf7355: Gained IPv6LL Feb 9 19:19:42.840828 env[1744]: 2024-02-09 19:19:42.769 [WARNING][4002] k8s.go 542: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.94-k8s-nginx--deployment--845c78c8b9--mq8dw-eth0", GenerateName:"nginx-deployment-845c78c8b9-", Namespace:"default", SelfLink:"", UID:"ed2fe88b-21fc-4150-af4a-9cafe261183f", ResourceVersion:"1007", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 19, 19, 8, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"845c78c8b9", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.94", ContainerID:"8d6d0ee2f1793fa3d12fce39f3bf08b8fde8ddfe2cc54b4b6622188b4a9df596", Pod:"nginx-deployment-845c78c8b9-mq8dw", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.35.2/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali03c5e430856", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 19:19:42.840828 env[1744]: 2024-02-09 19:19:42.770 [INFO][4002] k8s.go 578: Cleaning up netns ContainerID="a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" Feb 9 19:19:42.840828 env[1744]: 2024-02-09 19:19:42.770 [INFO][4002] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" iface="eth0" netns="" Feb 9 19:19:42.840828 env[1744]: 2024-02-09 19:19:42.770 [INFO][4002] k8s.go 585: Releasing IP address(es) ContainerID="a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" Feb 9 19:19:42.840828 env[1744]: 2024-02-09 19:19:42.770 [INFO][4002] utils.go 188: Calico CNI releasing IP address ContainerID="a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" Feb 9 19:19:42.840828 env[1744]: 2024-02-09 19:19:42.807 [INFO][4008] ipam_plugin.go 415: Releasing address using handleID ContainerID="a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" HandleID="k8s-pod-network.a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" Workload="172.31.22.94-k8s-nginx--deployment--845c78c8b9--mq8dw-eth0" Feb 9 19:19:42.840828 env[1744]: 2024-02-09 19:19:42.807 [INFO][4008] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 19:19:42.840828 env[1744]: 2024-02-09 19:19:42.808 [INFO][4008] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 19:19:42.840828 env[1744]: 2024-02-09 19:19:42.833 [WARNING][4008] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" HandleID="k8s-pod-network.a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" Workload="172.31.22.94-k8s-nginx--deployment--845c78c8b9--mq8dw-eth0" Feb 9 19:19:42.840828 env[1744]: 2024-02-09 19:19:42.834 [INFO][4008] ipam_plugin.go 443: Releasing address using workloadID ContainerID="a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" HandleID="k8s-pod-network.a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" Workload="172.31.22.94-k8s-nginx--deployment--845c78c8b9--mq8dw-eth0" Feb 9 19:19:42.840828 env[1744]: 2024-02-09 19:19:42.836 [INFO][4008] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 19:19:42.840828 env[1744]: 2024-02-09 19:19:42.838 [INFO][4002] k8s.go 591: Teardown processing complete. ContainerID="a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471" Feb 9 19:19:42.841864 env[1744]: time="2024-02-09T19:19:42.840874663Z" level=info msg="TearDown network for sandbox \"a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471\" successfully" Feb 9 19:19:42.845114 env[1744]: time="2024-02-09T19:19:42.845051733Z" level=info msg="RemovePodSandbox \"a9aa16dd92b7449b3ad6d06df794a0dee2af910db75be9bf6b7a8a4179118471\" returns successfully" Feb 9 19:19:42.979289 kubelet[2211]: E0209 19:19:42.979218 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:43.189931 systemd[1]: run-containerd-runc-k8s.io-f092ef339da3cf212da4a5ed85fb38d7c40baee43b51158ddf46fe149e636fd8-runc.l4jna7.mount: Deactivated successfully. Feb 9 19:19:43.381074 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount223483099.mount: Deactivated successfully. Feb 9 19:19:43.980348 kubelet[2211]: E0209 19:19:43.980283 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:44.981130 kubelet[2211]: E0209 19:19:44.981050 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:45.211651 env[1744]: time="2024-02-09T19:19:45.211592632Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/apiserver:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:19:45.215970 env[1744]: time="2024-02-09T19:19:45.215921930Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:24494ef6c7de0e2dcf21ad9fb6c94801c53f120443e256a5e1b54eccd57058a9,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:19:45.218628 env[1744]: time="2024-02-09T19:19:45.218566523Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/apiserver:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:19:45.221786 env[1744]: time="2024-02-09T19:19:45.221722578Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/apiserver@sha256:5ff0bdc8d0b2e9d7819703b18867f60f9153ed01da81e2bbfa22002abec9dc26,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:19:45.223010 env[1744]: time="2024-02-09T19:19:45.222968185Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/apiserver:v3.27.0\" returns image reference \"sha256:24494ef6c7de0e2dcf21ad9fb6c94801c53f120443e256a5e1b54eccd57058a9\"" Feb 9 19:19:45.227399 env[1744]: time="2024-02-09T19:19:45.227130220Z" level=info msg="CreateContainer within sandbox \"12e369831a4bbfd433b8e29f8794ab68f42588b9652a30acd009f43b49f535cd\" for container &ContainerMetadata{Name:calico-apiserver,Attempt:0,}" Feb 9 19:19:45.248520 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount4205268438.mount: Deactivated successfully. Feb 9 19:19:45.256241 env[1744]: time="2024-02-09T19:19:45.256179142Z" level=info msg="CreateContainer within sandbox \"12e369831a4bbfd433b8e29f8794ab68f42588b9652a30acd009f43b49f535cd\" for &ContainerMetadata{Name:calico-apiserver,Attempt:0,} returns container id \"b3bf91acaf7bb622b14b8ad3d030db2fc83bec3c78e02d3e237d7d4460b086b3\"" Feb 9 19:19:45.257491 env[1744]: time="2024-02-09T19:19:45.257376963Z" level=info msg="StartContainer for \"b3bf91acaf7bb622b14b8ad3d030db2fc83bec3c78e02d3e237d7d4460b086b3\"" Feb 9 19:19:45.298766 systemd[1]: run-containerd-runc-k8s.io-b3bf91acaf7bb622b14b8ad3d030db2fc83bec3c78e02d3e237d7d4460b086b3-runc.itKZlc.mount: Deactivated successfully. Feb 9 19:19:45.305713 systemd[1]: Started cri-containerd-b3bf91acaf7bb622b14b8ad3d030db2fc83bec3c78e02d3e237d7d4460b086b3.scope. Feb 9 19:19:45.338000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.341624 kernel: kauditd_printk_skb: 140 callbacks suppressed Feb 9 19:19:45.341731 kernel: audit: type=1400 audit(1707506385.338:889): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.338000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.355781 kernel: audit: type=1400 audit(1707506385.338:890): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.338000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.363463 kernel: audit: type=1400 audit(1707506385.338:891): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.338000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.372488 kernel: audit: type=1400 audit(1707506385.338:892): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.338000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.381349 kernel: audit: type=1400 audit(1707506385.338:893): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.338000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.391086 kernel: audit: type=1400 audit(1707506385.338:894): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.338000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.398798 kernel: audit: type=1400 audit(1707506385.338:895): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.338000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.406551 kernel: audit: type=1400 audit(1707506385.338:896): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.338000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.414047 kernel: audit: type=1400 audit(1707506385.338:897): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.341000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.421636 kernel: audit: type=1400 audit(1707506385.341:898): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.341000 audit: BPF prog-id=123 op=LOAD Feb 9 19:19:45.341000 audit[4023]: AVC avc: denied { bpf } for pid=4023 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.341000 audit[4023]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000195b38 a2=10 a3=0 items=0 ppid=3816 pid=4023 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:45.341000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6233626639316163616637626236323262313462386164336430333064 Feb 9 19:19:45.341000 audit[4023]: AVC avc: denied { perfmon } for pid=4023 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.341000 audit[4023]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=3816 pid=4023 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:45.341000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6233626639316163616637626236323262313462386164336430333064 Feb 9 19:19:45.341000 audit[4023]: AVC avc: denied { bpf } for pid=4023 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.341000 audit[4023]: AVC avc: denied { bpf } for pid=4023 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.341000 audit[4023]: AVC avc: denied { bpf } for pid=4023 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.341000 audit[4023]: AVC avc: denied { perfmon } for pid=4023 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.341000 audit[4023]: AVC avc: denied { perfmon } for pid=4023 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.341000 audit[4023]: AVC avc: denied { perfmon } for pid=4023 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.341000 audit[4023]: AVC avc: denied { perfmon } for pid=4023 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.341000 audit[4023]: AVC avc: denied { perfmon } for pid=4023 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.341000 audit[4023]: AVC avc: denied { bpf } for pid=4023 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.341000 audit[4023]: AVC avc: denied { bpf } for pid=4023 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.341000 audit: BPF prog-id=124 op=LOAD Feb 9 19:19:45.341000 audit[4023]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=3816 pid=4023 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:45.341000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6233626639316163616637626236323262313462386164336430333064 Feb 9 19:19:45.348000 audit[4023]: AVC avc: denied { bpf } for pid=4023 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.348000 audit[4023]: AVC avc: denied { bpf } for pid=4023 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.348000 audit[4023]: AVC avc: denied { perfmon } for pid=4023 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.348000 audit[4023]: AVC avc: denied { perfmon } for pid=4023 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.348000 audit[4023]: AVC avc: denied { perfmon } for pid=4023 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.348000 audit[4023]: AVC avc: denied { perfmon } for pid=4023 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.348000 audit[4023]: AVC avc: denied { perfmon } for pid=4023 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.348000 audit[4023]: AVC avc: denied { bpf } for pid=4023 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.348000 audit[4023]: AVC avc: denied { bpf } for pid=4023 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.348000 audit: BPF prog-id=125 op=LOAD Feb 9 19:19:45.348000 audit[4023]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=3816 pid=4023 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:45.348000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6233626639316163616637626236323262313462386164336430333064 Feb 9 19:19:45.355000 audit: BPF prog-id=125 op=UNLOAD Feb 9 19:19:45.355000 audit: BPF prog-id=124 op=UNLOAD Feb 9 19:19:45.355000 audit[4023]: AVC avc: denied { bpf } for pid=4023 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.355000 audit[4023]: AVC avc: denied { bpf } for pid=4023 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.355000 audit[4023]: AVC avc: denied { bpf } for pid=4023 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.355000 audit[4023]: AVC avc: denied { perfmon } for pid=4023 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.355000 audit[4023]: AVC avc: denied { perfmon } for pid=4023 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.355000 audit[4023]: AVC avc: denied { perfmon } for pid=4023 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.355000 audit[4023]: AVC avc: denied { perfmon } for pid=4023 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.355000 audit[4023]: AVC avc: denied { perfmon } for pid=4023 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.355000 audit[4023]: AVC avc: denied { bpf } for pid=4023 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.355000 audit[4023]: AVC avc: denied { bpf } for pid=4023 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:19:45.355000 audit: BPF prog-id=126 op=LOAD Feb 9 19:19:45.355000 audit[4023]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=3816 pid=4023 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:45.355000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6233626639316163616637626236323262313462386164336430333064 Feb 9 19:19:45.453602 env[1744]: time="2024-02-09T19:19:45.453518684Z" level=info msg="StartContainer for \"b3bf91acaf7bb622b14b8ad3d030db2fc83bec3c78e02d3e237d7d4460b086b3\" returns successfully" Feb 9 19:19:45.494000 audit[4052]: NETFILTER_CFG table=filter:82 family=2 entries=10 op=nft_register_rule pid=4052 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 19:19:45.494000 audit[4052]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=3548 a0=3 a1=ffffe1136d50 a2=0 a3=ffffa78af6c0 items=0 ppid=2427 pid=4052 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:45.494000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 19:19:45.500000 audit[4052]: NETFILTER_CFG table=nat:83 family=2 entries=44 op=nft_register_rule pid=4052 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 19:19:45.500000 audit[4052]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=14220 a0=3 a1=ffffe1136d50 a2=0 a3=ffffa78af6c0 items=0 ppid=2427 pid=4052 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:45.500000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 19:19:45.981938 kubelet[2211]: E0209 19:19:45.981876 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:46.463945 kubelet[2211]: I0209 19:19:46.463893 2211 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="default/nfs-server-provisioner-0" podStartSLOduration=5.820222919 podCreationTimestamp="2024-02-09 19:19:33 +0000 UTC" firstStartedPulling="2024-02-09 19:19:34.45426193 +0000 UTC m=+53.798538423" lastFinishedPulling="2024-02-09 19:19:42.09787903 +0000 UTC m=+61.442155511" observedRunningTime="2024-02-09 19:19:42.448024907 +0000 UTC m=+61.792301400" watchObservedRunningTime="2024-02-09 19:19:46.463840007 +0000 UTC m=+65.808116500" Feb 9 19:19:46.495000 audit[4058]: NETFILTER_CFG table=filter:84 family=2 entries=10 op=nft_register_rule pid=4058 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 19:19:46.495000 audit[4058]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=3548 a0=3 a1=ffffc8727b90 a2=0 a3=ffffaaf196c0 items=0 ppid=2427 pid=4058 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:46.495000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 19:19:46.500000 audit[4058]: NETFILTER_CFG table=nat:85 family=2 entries=44 op=nft_register_rule pid=4058 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 19:19:46.500000 audit[4058]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=14220 a0=3 a1=ffffc8727b90 a2=0 a3=ffffaaf196c0 items=0 ppid=2427 pid=4058 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:19:46.500000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 19:19:46.613000 audit[4034]: AVC avc: denied { watch } for pid=4034 comm="apiserver" path="/calico-apiserver-certs/..2024_02_09_19_19_39.2179023869/tls.crt" dev="tmpfs" ino=4 scontext=system_u:system_r:svirt_lxc_net_t:s0:c675,c829 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c675,c829 tclass=file permissive=0 Feb 9 19:19:46.613000 audit[4034]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=8 a1=4000cf6c40 a2=fc6 a3=0 items=0 ppid=3816 pid=4034 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="apiserver" exe="/code/apiserver" subj=system_u:system_r:svirt_lxc_net_t:s0:c675,c829 key=(null) Feb 9 19:19:46.613000 audit: PROCTITLE proctitle=2E2F617069736572766572002D2D7365637572652D706F72743D35343433002D2D746C732D707269766174652D6B65792D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C732E6B6579002D2D746C732D636572742D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C Feb 9 19:19:46.982752 kubelet[2211]: E0209 19:19:46.982711 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:47.984242 kubelet[2211]: E0209 19:19:47.984167 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:48.984591 kubelet[2211]: E0209 19:19:48.984553 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:49.985673 kubelet[2211]: E0209 19:19:49.985611 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:50.986746 kubelet[2211]: E0209 19:19:50.986675 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:51.987399 kubelet[2211]: E0209 19:19:51.987299 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:52.988180 kubelet[2211]: E0209 19:19:52.988115 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:53.988924 kubelet[2211]: E0209 19:19:53.988883 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:54.990471 kubelet[2211]: E0209 19:19:54.990397 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:55.991207 kubelet[2211]: E0209 19:19:55.991142 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:56.991913 kubelet[2211]: E0209 19:19:56.991848 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:57.992605 kubelet[2211]: E0209 19:19:57.992566 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:58.993600 kubelet[2211]: E0209 19:19:58.993560 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:19:59.994946 kubelet[2211]: E0209 19:19:59.994889 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:00.995850 kubelet[2211]: E0209 19:20:00.995807 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:01.932529 kubelet[2211]: E0209 19:20:01.932462 2211 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:01.996796 kubelet[2211]: E0209 19:20:01.996768 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:02.998507 kubelet[2211]: E0209 19:20:02.998463 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:03.495178 systemd[1]: run-containerd-runc-k8s.io-6905539977a419e29eff125506d1d6d0d98c865c459f5e96096a565e258da16f-runc.KCWByR.mount: Deactivated successfully. Feb 9 19:20:03.999946 kubelet[2211]: E0209 19:20:03.999909 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:05.001213 kubelet[2211]: E0209 19:20:05.001172 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:06.002163 kubelet[2211]: E0209 19:20:06.002104 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:07.003121 kubelet[2211]: E0209 19:20:07.003059 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:07.382723 kubelet[2211]: I0209 19:20:07.382675 2211 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="calico-apiserver/calico-apiserver-774dc986c8-hk6lc" podStartSLOduration=24.059605587 podCreationTimestamp="2024-02-09 19:19:39 +0000 UTC" firstStartedPulling="2024-02-09 19:19:40.900374571 +0000 UTC m=+60.244651040" lastFinishedPulling="2024-02-09 19:19:45.223393255 +0000 UTC m=+64.567669748" observedRunningTime="2024-02-09 19:19:46.464675279 +0000 UTC m=+65.808951796" watchObservedRunningTime="2024-02-09 19:20:07.382624295 +0000 UTC m=+86.726900776" Feb 9 19:20:07.382984 kubelet[2211]: I0209 19:20:07.382856 2211 topology_manager.go:212] "Topology Admit Handler" Feb 9 19:20:07.395831 systemd[1]: Created slice kubepods-besteffort-pod9c838027_0563_4609_885c_719fee43ef3c.slice. Feb 9 19:20:07.441253 kubelet[2211]: I0209 19:20:07.441211 2211 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-2g47k\" (UniqueName: \"kubernetes.io/projected/9c838027-0563-4609-885c-719fee43ef3c-kube-api-access-2g47k\") pod \"test-pod-1\" (UID: \"9c838027-0563-4609-885c-719fee43ef3c\") " pod="default/test-pod-1" Feb 9 19:20:07.441602 kubelet[2211]: I0209 19:20:07.441577 2211 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"pvc-aa74b0f7-7d54-4b7d-b4d3-676f9a0e7a38\" (UniqueName: \"kubernetes.io/nfs/9c838027-0563-4609-885c-719fee43ef3c-pvc-aa74b0f7-7d54-4b7d-b4d3-676f9a0e7a38\") pod \"test-pod-1\" (UID: \"9c838027-0563-4609-885c-719fee43ef3c\") " pod="default/test-pod-1" Feb 9 19:20:07.650441 kernel: Failed to create system directory netfs Feb 9 19:20:07.650611 kernel: kauditd_printk_skb: 62 callbacks suppressed Feb 9 19:20:07.650663 kernel: audit: type=1400 audit(1707506407.633:912): avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.650722 kernel: Failed to create system directory netfs Feb 9 19:20:07.650763 kernel: audit: type=1400 audit(1707506407.633:912): avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.650817 kernel: Failed to create system directory netfs Feb 9 19:20:07.633000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.633000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.633000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.660395 kernel: audit: type=1400 audit(1707506407.633:912): avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.660472 kernel: Failed to create system directory netfs Feb 9 19:20:07.633000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.675461 kernel: audit: type=1400 audit(1707506407.633:912): avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.682460 kernel: audit: type=1300 audit(1707506407.633:912): arch=c00000b7 syscall=105 success=yes exit=0 a0=aaaad9eac5e0 a1=12c14 a2=aaaad14fe028 a3=aaaad9e9d010 items=0 ppid=1706 pid=4116 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:20:07.633000 audit[4116]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=aaaad9eac5e0 a1=12c14 a2=aaaad14fe028 a3=aaaad9e9d010 items=0 ppid=1706 pid=4116 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:20:07.690462 kernel: audit: type=1327 audit(1707506407.633:912): proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Feb 9 19:20:07.633000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Feb 9 19:20:07.715255 kernel: Failed to create system directory fscache Feb 9 19:20:07.715396 kernel: audit: type=1400 audit(1707506407.680:913): avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.715475 kernel: Failed to create system directory fscache Feb 9 19:20:07.715518 kernel: audit: type=1400 audit(1707506407.680:913): avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.680000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.680000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.725288 kernel: Failed to create system directory fscache Feb 9 19:20:07.725349 kernel: audit: type=1400 audit(1707506407.680:913): avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.680000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.735302 kernel: Failed to create system directory fscache Feb 9 19:20:07.735354 kernel: audit: type=1400 audit(1707506407.680:913): avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.680000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.745357 kernel: Failed to create system directory fscache Feb 9 19:20:07.745463 kernel: Failed to create system directory fscache Feb 9 19:20:07.680000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.680000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.680000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.749162 kernel: Failed to create system directory fscache Feb 9 19:20:07.749233 kernel: Failed to create system directory fscache Feb 9 19:20:07.680000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.680000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.752933 kernel: Failed to create system directory fscache Feb 9 19:20:07.753015 kernel: Failed to create system directory fscache Feb 9 19:20:07.680000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.680000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.756671 kernel: Failed to create system directory fscache Feb 9 19:20:07.756745 kernel: Failed to create system directory fscache Feb 9 19:20:07.680000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.680000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.760374 kernel: Failed to create system directory fscache Feb 9 19:20:07.760465 kernel: Failed to create system directory fscache Feb 9 19:20:07.680000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.764460 kernel: FS-Cache: Loaded Feb 9 19:20:07.680000 audit[4116]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=aaaada0bf210 a1=4c344 a2=aaaad14fe028 a3=aaaad9e9d010 items=0 ppid=1706 pid=4116 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:20:07.680000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.797999 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.798084 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.798137 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.801688 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.801760 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.805322 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.805396 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.809032 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.809101 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.812712 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.812782 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.816377 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.816474 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.820078 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.820149 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.823755 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.823824 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.827404 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.827501 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.831121 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.831180 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.834849 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.834912 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.838481 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.838552 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.842143 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.842226 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.845830 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.845902 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.849487 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.849584 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.853148 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.853264 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.856862 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.856933 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.860519 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.860589 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.864182 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.864273 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.867882 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.867966 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.871533 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.871615 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.875218 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.875346 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.879092 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.879170 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.882623 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.882700 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.886365 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.886437 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.890075 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.890139 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.893770 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.893819 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.897433 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.897494 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.901103 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.901168 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.908666 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.908759 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.908800 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.908839 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.912180 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.912229 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.915871 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.915930 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.919530 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.919598 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.923217 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.923266 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.925244 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.928742 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.928814 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.932376 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.932458 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.936084 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.936148 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.939832 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.939907 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.941602 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.943502 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.947182 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.947268 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.948963 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.950882 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.952658 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.954584 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.956335 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.958259 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.961961 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.962047 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.965623 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.965701 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.967505 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.971176 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.971274 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.974870 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.974965 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.978523 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.978613 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.980265 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.982178 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.983952 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.985862 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.989588 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.989642 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.993240 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.993316 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.996963 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.997131 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.998974 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.000746 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.002644 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.003825 kubelet[2211]: E0209 19:20:08.003742 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.006340 kernel: Failed to create system directory sunrpc Feb 9 19:20:08.006444 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.010014 kernel: Failed to create system directory sunrpc Feb 9 19:20:08.010104 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.013690 kernel: Failed to create system directory sunrpc Feb 9 19:20:08.013779 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.015534 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.019191 kernel: Failed to create system directory sunrpc Feb 9 19:20:08.019280 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.022878 kernel: Failed to create system directory sunrpc Feb 9 19:20:08.022951 kernel: Failed to create system directory sunrpc Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:07.785000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.026554 kernel: Failed to create system directory sunrpc Feb 9 19:20:08.037290 kernel: RPC: Registered named UNIX socket transport module. Feb 9 19:20:08.037504 kernel: RPC: Registered udp transport module. Feb 9 19:20:08.037595 kernel: RPC: Registered tcp transport module. Feb 9 19:20:08.041555 kernel: RPC: Registered tcp NFSv4.1 backchannel transport module. Feb 9 19:20:07.785000 audit[4116]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=aaaada10b560 a1=fbb6c a2=aaaad14fe028 a3=aaaad9e9d010 items=6 ppid=1706 pid=4116 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:20:07.785000 audit: CWD cwd="/" Feb 9 19:20:07.785000 audit: PATH item=0 name=(null) inode=1 dev=00:07 mode=040700 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 19:20:07.785000 audit: PATH item=1 name=(null) inode=20195 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 19:20:07.785000 audit: PATH item=2 name=(null) inode=20195 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 19:20:07.785000 audit: PATH item=3 name=(null) inode=20196 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 19:20:07.785000 audit: PATH item=4 name=(null) inode=20195 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 19:20:07.785000 audit: PATH item=5 name=(null) inode=20197 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 19:20:07.785000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.080184 kernel: Failed to create system directory nfs Feb 9 19:20:08.080290 kernel: Failed to create system directory nfs Feb 9 19:20:08.080386 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.083632 kernel: Failed to create system directory nfs Feb 9 19:20:08.083708 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.087150 kernel: Failed to create system directory nfs Feb 9 19:20:08.087225 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.090656 kernel: Failed to create system directory nfs Feb 9 19:20:08.090730 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.094181 kernel: Failed to create system directory nfs Feb 9 19:20:08.094256 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.097698 kernel: Failed to create system directory nfs Feb 9 19:20:08.097792 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.101257 kernel: Failed to create system directory nfs Feb 9 19:20:08.101310 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.104836 kernel: Failed to create system directory nfs Feb 9 19:20:08.104937 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.108520 kernel: Failed to create system directory nfs Feb 9 19:20:08.108574 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.110277 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.114691 kernel: Failed to create system directory nfs Feb 9 19:20:08.114796 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.117394 kernel: Failed to create system directory nfs Feb 9 19:20:08.117563 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.119259 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.122749 kernel: Failed to create system directory nfs Feb 9 19:20:08.122836 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.124399 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.126233 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.127920 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.129728 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.131388 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.133218 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.134924 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.136735 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.138399 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.140231 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.141926 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.143747 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.145400 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.147234 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.148916 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.150726 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.152389 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.154220 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.157735 kernel: Failed to create system directory nfs Feb 9 19:20:08.157814 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.159397 kernel: Failed to create system directory nfs Feb 9 19:20:08.168148 kernel: Failed to create system directory nfs Feb 9 19:20:08.168281 kernel: Failed to create system directory nfs Feb 9 19:20:08.168325 kernel: Failed to create system directory nfs Feb 9 19:20:08.168365 kernel: Failed to create system directory nfs Feb 9 19:20:08.168404 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.169954 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.173464 kernel: Failed to create system directory nfs Feb 9 19:20:08.173556 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.175221 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.178694 kernel: Failed to create system directory nfs Feb 9 19:20:08.178770 kernel: Failed to create system directory nfs Feb 9 19:20:08.069000 audit[4116]: AVC avc: denied { confidentiality } for pid=4116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.200559 kernel: FS-Cache: Netfs 'nfs' registered for caching Feb 9 19:20:08.069000 audit[4116]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=aaaada237b40 a1=ae35c a2=aaaad14fe028 a3=aaaad9e9d010 items=0 ppid=1706 pid=4116 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:20:08.069000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.250850 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.250945 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.251041 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.254618 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.254763 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.258533 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.258612 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.262107 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.262248 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.265822 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.265946 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.269490 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.269634 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.273280 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.273329 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.276882 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.276932 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.280450 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.280499 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.284033 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.284122 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.287625 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.287699 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.291258 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.291306 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.294910 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.295017 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.298493 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.298563 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.300334 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.303935 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.303984 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.307545 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.307594 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.311101 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.311149 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.314685 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.314787 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.320089 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.320165 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.320207 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.323649 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.323725 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.327262 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.327351 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.330814 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.330929 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.332701 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.336308 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.336362 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.339894 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.339943 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.343474 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.343522 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.347065 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.347140 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.350622 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.350669 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.354181 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.354229 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.357790 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.357975 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.359558 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.361336 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.363125 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.364940 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.366734 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.368528 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.370275 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.372085 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.373866 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.375651 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.377440 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.381014 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.381091 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.384612 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.384662 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.388165 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.388240 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.391748 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.391822 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.395268 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.395342 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.398863 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.398950 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.402397 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.402480 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.405985 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.406060 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.409542 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.409615 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.413053 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.413126 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.238000 audit[4121]: AVC avc: denied { confidentiality } for pid=4121 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.416579 kernel: Failed to create system directory nfs4 Feb 9 19:20:08.627936 kernel: NFS: Registering the id_resolver key type Feb 9 19:20:08.628089 kernel: Key type id_resolver registered Feb 9 19:20:08.628139 kernel: Key type id_legacy registered Feb 9 19:20:08.238000 audit[4121]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=ffffa98bb010 a1=167c04 a2=aaaab0a4e028 a3=aaaaee905010 items=0 ppid=1706 pid=4121 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:20:08.238000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D006E66737634 Feb 9 19:20:08.638000 audit[4122]: AVC avc: denied { confidentiality } for pid=4122 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.638000 audit[4122]: AVC avc: denied { confidentiality } for pid=4122 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.646729 kernel: Failed to create system directory rpcgss Feb 9 19:20:08.646827 kernel: Failed to create system directory rpcgss Feb 9 19:20:08.638000 audit[4122]: AVC avc: denied { confidentiality } for pid=4122 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.648890 kernel: Failed to create system directory rpcgss Feb 9 19:20:08.638000 audit[4122]: AVC avc: denied { confidentiality } for pid=4122 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.650982 kernel: Failed to create system directory rpcgss Feb 9 19:20:08.638000 audit[4122]: AVC avc: denied { confidentiality } for pid=4122 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.653076 kernel: Failed to create system directory rpcgss Feb 9 19:20:08.638000 audit[4122]: AVC avc: denied { confidentiality } for pid=4122 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.655138 kernel: Failed to create system directory rpcgss Feb 9 19:20:08.655196 kernel: Failed to create system directory rpcgss Feb 9 19:20:08.638000 audit[4122]: AVC avc: denied { confidentiality } for pid=4122 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.638000 audit[4122]: AVC avc: denied { confidentiality } for pid=4122 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.658958 kernel: Failed to create system directory rpcgss Feb 9 19:20:08.659008 kernel: Failed to create system directory rpcgss Feb 9 19:20:08.638000 audit[4122]: AVC avc: denied { confidentiality } for pid=4122 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.638000 audit[4122]: AVC avc: denied { confidentiality } for pid=4122 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.662759 kernel: Failed to create system directory rpcgss Feb 9 19:20:08.662810 kernel: Failed to create system directory rpcgss Feb 9 19:20:08.638000 audit[4122]: AVC avc: denied { confidentiality } for pid=4122 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.638000 audit[4122]: AVC avc: denied { confidentiality } for pid=4122 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.666619 kernel: Failed to create system directory rpcgss Feb 9 19:20:08.666669 kernel: Failed to create system directory rpcgss Feb 9 19:20:08.638000 audit[4122]: AVC avc: denied { confidentiality } for pid=4122 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.638000 audit[4122]: AVC avc: denied { confidentiality } for pid=4122 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.670390 kernel: Failed to create system directory rpcgss Feb 9 19:20:08.670470 kernel: Failed to create system directory rpcgss Feb 9 19:20:08.638000 audit[4122]: AVC avc: denied { confidentiality } for pid=4122 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.638000 audit[4122]: AVC avc: denied { confidentiality } for pid=4122 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.674171 kernel: Failed to create system directory rpcgss Feb 9 19:20:08.674233 kernel: Failed to create system directory rpcgss Feb 9 19:20:08.638000 audit[4122]: AVC avc: denied { confidentiality } for pid=4122 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.638000 audit[4122]: AVC avc: denied { confidentiality } for pid=4122 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.677989 kernel: Failed to create system directory rpcgss Feb 9 19:20:08.678039 kernel: Failed to create system directory rpcgss Feb 9 19:20:08.638000 audit[4122]: AVC avc: denied { confidentiality } for pid=4122 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.638000 audit[4122]: AVC avc: denied { confidentiality } for pid=4122 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.681758 kernel: Failed to create system directory rpcgss Feb 9 19:20:08.681820 kernel: Failed to create system directory rpcgss Feb 9 19:20:08.638000 audit[4122]: AVC avc: denied { confidentiality } for pid=4122 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.638000 audit[4122]: AVC avc: denied { confidentiality } for pid=4122 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.685578 kernel: Failed to create system directory rpcgss Feb 9 19:20:08.685627 kernel: Failed to create system directory rpcgss Feb 9 19:20:08.638000 audit[4122]: AVC avc: denied { confidentiality } for pid=4122 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.638000 audit[4122]: AVC avc: denied { confidentiality } for pid=4122 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.689364 kernel: Failed to create system directory rpcgss Feb 9 19:20:08.689444 kernel: Failed to create system directory rpcgss Feb 9 19:20:08.638000 audit[4122]: AVC avc: denied { confidentiality } for pid=4122 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.638000 audit[4122]: AVC avc: denied { confidentiality } for pid=4122 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 19:20:08.693154 kernel: Failed to create system directory rpcgss Feb 9 19:20:08.638000 audit[4122]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=ffffaf103010 a1=3e09c a2=aaaaccaee028 a3=aaaad02e3010 items=0 ppid=1706 pid=4122 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:20:08.638000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D007270632D617574682D36 Feb 9 19:20:08.748264 nfsidmap[4131]: nss_getpwnam: name 'root@nfs-server-provisioner.default.svc.cluster.local' does not map into domain 'us-west-2.compute.internal' Feb 9 19:20:08.753200 nfsidmap[4132]: nss_name_to_gid: name 'root@nfs-server-provisioner.default.svc.cluster.local' does not map into domain 'us-west-2.compute.internal' Feb 9 19:20:08.767000 audit[1]: AVC avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2879 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 9 19:20:08.767000 audit[1]: AVC avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2879 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 9 19:20:08.767000 audit[1]: AVC avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2879 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 9 19:20:08.769000 audit[1939]: AVC avc: denied { watch_reads } for pid=1939 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2879 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 9 19:20:08.769000 audit[1939]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=e a1=aaaac9f57080 a2=10 a3=0 items=0 ppid=1 pid=1939 auid=4294967295 uid=500 gid=500 euid=500 suid=500 fsuid=500 egid=500 sgid=500 fsgid=500 tty=(none) ses=4294967295 comm="systemd" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:20:08.769000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D64002D2D75736572 Feb 9 19:20:08.769000 audit[1939]: AVC avc: denied { watch_reads } for pid=1939 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2879 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 9 19:20:08.769000 audit[1939]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=e a1=aaaac9f57080 a2=10 a3=0 items=0 ppid=1 pid=1939 auid=4294967295 uid=500 gid=500 euid=500 suid=500 fsuid=500 egid=500 sgid=500 fsgid=500 tty=(none) ses=4294967295 comm="systemd" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:20:08.769000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D64002D2D75736572 Feb 9 19:20:08.769000 audit[1939]: AVC avc: denied { watch_reads } for pid=1939 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2879 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 9 19:20:08.769000 audit[1939]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=e a1=aaaac9f57080 a2=10 a3=0 items=0 ppid=1 pid=1939 auid=4294967295 uid=500 gid=500 euid=500 suid=500 fsuid=500 egid=500 sgid=500 fsgid=500 tty=(none) ses=4294967295 comm="systemd" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:20:08.769000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D64002D2D75736572 Feb 9 19:20:08.901834 env[1744]: time="2024-02-09T19:20:08.901647035Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:test-pod-1,Uid:9c838027-0563-4609-885c-719fee43ef3c,Namespace:default,Attempt:0,}" Feb 9 19:20:09.005003 kubelet[2211]: E0209 19:20:09.004933 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:09.094374 (udev-worker)[4127]: Network interface NamePolicy= disabled on kernel command line. Feb 9 19:20:09.095481 systemd-networkd[1547]: cali5ec59c6bf6e: Link UP Feb 9 19:20:09.102107 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 9 19:20:09.102231 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali5ec59c6bf6e: link becomes ready Feb 9 19:20:09.102144 systemd-networkd[1547]: cali5ec59c6bf6e: Gained carrier Feb 9 19:20:09.125465 env[1744]: 2024-02-09 19:20:08.976 [INFO][4133] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.22.94-k8s-test--pod--1-eth0 default 9c838027-0563-4609-885c-719fee43ef3c 1217 0 2024-02-09 19:19:34 +0000 UTC map[projectcalico.org/namespace:default projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 172.31.22.94 test-pod-1 eth0 default [] [] [kns.default ksa.default.default] cali5ec59c6bf6e [] []}} ContainerID="7cb485f069ae0ac24cab0103f3b789a678884fc51762e661bd97578d0bf7ad45" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.22.94-k8s-test--pod--1-" Feb 9 19:20:09.125465 env[1744]: 2024-02-09 19:20:08.977 [INFO][4133] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="7cb485f069ae0ac24cab0103f3b789a678884fc51762e661bd97578d0bf7ad45" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.22.94-k8s-test--pod--1-eth0" Feb 9 19:20:09.125465 env[1744]: 2024-02-09 19:20:09.022 [INFO][4145] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="7cb485f069ae0ac24cab0103f3b789a678884fc51762e661bd97578d0bf7ad45" HandleID="k8s-pod-network.7cb485f069ae0ac24cab0103f3b789a678884fc51762e661bd97578d0bf7ad45" Workload="172.31.22.94-k8s-test--pod--1-eth0" Feb 9 19:20:09.125465 env[1744]: 2024-02-09 19:20:09.044 [INFO][4145] ipam_plugin.go 268: Auto assigning IP ContainerID="7cb485f069ae0ac24cab0103f3b789a678884fc51762e661bd97578d0bf7ad45" HandleID="k8s-pod-network.7cb485f069ae0ac24cab0103f3b789a678884fc51762e661bd97578d0bf7ad45" Workload="172.31.22.94-k8s-test--pod--1-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x40002b5840), Attrs:map[string]string{"namespace":"default", "node":"172.31.22.94", "pod":"test-pod-1", "timestamp":"2024-02-09 19:20:09.022725689 +0000 UTC"}, Hostname:"172.31.22.94", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 9 19:20:09.125465 env[1744]: 2024-02-09 19:20:09.044 [INFO][4145] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 19:20:09.125465 env[1744]: 2024-02-09 19:20:09.044 [INFO][4145] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 19:20:09.125465 env[1744]: 2024-02-09 19:20:09.044 [INFO][4145] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.22.94' Feb 9 19:20:09.125465 env[1744]: 2024-02-09 19:20:09.047 [INFO][4145] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.7cb485f069ae0ac24cab0103f3b789a678884fc51762e661bd97578d0bf7ad45" host="172.31.22.94" Feb 9 19:20:09.125465 env[1744]: 2024-02-09 19:20:09.052 [INFO][4145] ipam.go 372: Looking up existing affinities for host host="172.31.22.94" Feb 9 19:20:09.125465 env[1744]: 2024-02-09 19:20:09.060 [INFO][4145] ipam.go 489: Trying affinity for 192.168.35.0/26 host="172.31.22.94" Feb 9 19:20:09.125465 env[1744]: 2024-02-09 19:20:09.066 [INFO][4145] ipam.go 155: Attempting to load block cidr=192.168.35.0/26 host="172.31.22.94" Feb 9 19:20:09.125465 env[1744]: 2024-02-09 19:20:09.070 [INFO][4145] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.35.0/26 host="172.31.22.94" Feb 9 19:20:09.125465 env[1744]: 2024-02-09 19:20:09.070 [INFO][4145] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.35.0/26 handle="k8s-pod-network.7cb485f069ae0ac24cab0103f3b789a678884fc51762e661bd97578d0bf7ad45" host="172.31.22.94" Feb 9 19:20:09.125465 env[1744]: 2024-02-09 19:20:09.073 [INFO][4145] ipam.go 1682: Creating new handle: k8s-pod-network.7cb485f069ae0ac24cab0103f3b789a678884fc51762e661bd97578d0bf7ad45 Feb 9 19:20:09.125465 env[1744]: 2024-02-09 19:20:09.079 [INFO][4145] ipam.go 1203: Writing block in order to claim IPs block=192.168.35.0/26 handle="k8s-pod-network.7cb485f069ae0ac24cab0103f3b789a678884fc51762e661bd97578d0bf7ad45" host="172.31.22.94" Feb 9 19:20:09.125465 env[1744]: 2024-02-09 19:20:09.087 [INFO][4145] ipam.go 1216: Successfully claimed IPs: [192.168.35.5/26] block=192.168.35.0/26 handle="k8s-pod-network.7cb485f069ae0ac24cab0103f3b789a678884fc51762e661bd97578d0bf7ad45" host="172.31.22.94" Feb 9 19:20:09.125465 env[1744]: 2024-02-09 19:20:09.088 [INFO][4145] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.35.5/26] handle="k8s-pod-network.7cb485f069ae0ac24cab0103f3b789a678884fc51762e661bd97578d0bf7ad45" host="172.31.22.94" Feb 9 19:20:09.125465 env[1744]: 2024-02-09 19:20:09.088 [INFO][4145] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 19:20:09.125465 env[1744]: 2024-02-09 19:20:09.088 [INFO][4145] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.35.5/26] IPv6=[] ContainerID="7cb485f069ae0ac24cab0103f3b789a678884fc51762e661bd97578d0bf7ad45" HandleID="k8s-pod-network.7cb485f069ae0ac24cab0103f3b789a678884fc51762e661bd97578d0bf7ad45" Workload="172.31.22.94-k8s-test--pod--1-eth0" Feb 9 19:20:09.125465 env[1744]: 2024-02-09 19:20:09.090 [INFO][4133] k8s.go 385: Populated endpoint ContainerID="7cb485f069ae0ac24cab0103f3b789a678884fc51762e661bd97578d0bf7ad45" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.22.94-k8s-test--pod--1-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.94-k8s-test--pod--1-eth0", GenerateName:"", Namespace:"default", SelfLink:"", UID:"9c838027-0563-4609-885c-719fee43ef3c", ResourceVersion:"1217", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 19, 19, 34, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.94", ContainerID:"", Pod:"test-pod-1", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.35.5/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali5ec59c6bf6e", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 19:20:09.125465 env[1744]: 2024-02-09 19:20:09.091 [INFO][4133] k8s.go 386: Calico CNI using IPs: [192.168.35.5/32] ContainerID="7cb485f069ae0ac24cab0103f3b789a678884fc51762e661bd97578d0bf7ad45" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.22.94-k8s-test--pod--1-eth0" Feb 9 19:20:09.126918 env[1744]: 2024-02-09 19:20:09.091 [INFO][4133] dataplane_linux.go 68: Setting the host side veth name to cali5ec59c6bf6e ContainerID="7cb485f069ae0ac24cab0103f3b789a678884fc51762e661bd97578d0bf7ad45" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.22.94-k8s-test--pod--1-eth0" Feb 9 19:20:09.126918 env[1744]: 2024-02-09 19:20:09.103 [INFO][4133] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="7cb485f069ae0ac24cab0103f3b789a678884fc51762e661bd97578d0bf7ad45" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.22.94-k8s-test--pod--1-eth0" Feb 9 19:20:09.126918 env[1744]: 2024-02-09 19:20:09.104 [INFO][4133] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="7cb485f069ae0ac24cab0103f3b789a678884fc51762e661bd97578d0bf7ad45" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.22.94-k8s-test--pod--1-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.94-k8s-test--pod--1-eth0", GenerateName:"", Namespace:"default", SelfLink:"", UID:"9c838027-0563-4609-885c-719fee43ef3c", ResourceVersion:"1217", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 19, 19, 34, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.94", ContainerID:"7cb485f069ae0ac24cab0103f3b789a678884fc51762e661bd97578d0bf7ad45", Pod:"test-pod-1", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.35.5/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali5ec59c6bf6e", MAC:"9a:ad:73:0e:ef:2f", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 19:20:09.126918 env[1744]: 2024-02-09 19:20:09.119 [INFO][4133] k8s.go 491: Wrote updated endpoint to datastore ContainerID="7cb485f069ae0ac24cab0103f3b789a678884fc51762e661bd97578d0bf7ad45" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.22.94-k8s-test--pod--1-eth0" Feb 9 19:20:09.162289 env[1744]: time="2024-02-09T19:20:09.150739936Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 9 19:20:09.162289 env[1744]: time="2024-02-09T19:20:09.150805924Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 9 19:20:09.162289 env[1744]: time="2024-02-09T19:20:09.150831280Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 9 19:20:09.162289 env[1744]: time="2024-02-09T19:20:09.151058380Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/7cb485f069ae0ac24cab0103f3b789a678884fc51762e661bd97578d0bf7ad45 pid=4174 runtime=io.containerd.runc.v2 Feb 9 19:20:09.165000 audit[4184]: NETFILTER_CFG table=filter:86 family=2 entries=42 op=nft_register_chain pid=4184 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 19:20:09.165000 audit[4184]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=20268 a0=3 a1=ffffcd9a1140 a2=0 a3=ffff833befa8 items=0 ppid=3214 pid=4184 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:20:09.165000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 19:20:09.181439 systemd[1]: Started cri-containerd-7cb485f069ae0ac24cab0103f3b789a678884fc51762e661bd97578d0bf7ad45.scope. Feb 9 19:20:09.217000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.217000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.217000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.217000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.217000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.217000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.217000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.217000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.217000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.217000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.217000 audit: BPF prog-id=127 op=LOAD Feb 9 19:20:09.218000 audit[4185]: AVC avc: denied { bpf } for pid=4185 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.218000 audit[4185]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000145b38 a2=10 a3=0 items=0 ppid=4174 pid=4185 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:20:09.218000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3763623438356630363961653061633234636162303130336633623738 Feb 9 19:20:09.218000 audit[4185]: AVC avc: denied { perfmon } for pid=4185 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.218000 audit[4185]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=4174 pid=4185 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:20:09.218000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3763623438356630363961653061633234636162303130336633623738 Feb 9 19:20:09.218000 audit[4185]: AVC avc: denied { bpf } for pid=4185 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.218000 audit[4185]: AVC avc: denied { bpf } for pid=4185 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.218000 audit[4185]: AVC avc: denied { bpf } for pid=4185 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.218000 audit[4185]: AVC avc: denied { perfmon } for pid=4185 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.218000 audit[4185]: AVC avc: denied { perfmon } for pid=4185 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.218000 audit[4185]: AVC avc: denied { perfmon } for pid=4185 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.218000 audit[4185]: AVC avc: denied { perfmon } for pid=4185 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.218000 audit[4185]: AVC avc: denied { perfmon } for pid=4185 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.218000 audit[4185]: AVC avc: denied { bpf } for pid=4185 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.218000 audit[4185]: AVC avc: denied { bpf } for pid=4185 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.218000 audit: BPF prog-id=128 op=LOAD Feb 9 19:20:09.218000 audit[4185]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=4174 pid=4185 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:20:09.218000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3763623438356630363961653061633234636162303130336633623738 Feb 9 19:20:09.218000 audit[4185]: AVC avc: denied { bpf } for pid=4185 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.218000 audit[4185]: AVC avc: denied { bpf } for pid=4185 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.218000 audit[4185]: AVC avc: denied { perfmon } for pid=4185 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.218000 audit[4185]: AVC avc: denied { perfmon } for pid=4185 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.218000 audit[4185]: AVC avc: denied { perfmon } for pid=4185 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.218000 audit[4185]: AVC avc: denied { perfmon } for pid=4185 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.218000 audit[4185]: AVC avc: denied { perfmon } for pid=4185 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.218000 audit[4185]: AVC avc: denied { bpf } for pid=4185 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.218000 audit[4185]: AVC avc: denied { bpf } for pid=4185 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.218000 audit: BPF prog-id=129 op=LOAD Feb 9 19:20:09.218000 audit[4185]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=4174 pid=4185 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:20:09.218000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3763623438356630363961653061633234636162303130336633623738 Feb 9 19:20:09.219000 audit: BPF prog-id=129 op=UNLOAD Feb 9 19:20:09.219000 audit: BPF prog-id=128 op=UNLOAD Feb 9 19:20:09.219000 audit[4185]: AVC avc: denied { bpf } for pid=4185 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.219000 audit[4185]: AVC avc: denied { bpf } for pid=4185 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.219000 audit[4185]: AVC avc: denied { bpf } for pid=4185 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.219000 audit[4185]: AVC avc: denied { perfmon } for pid=4185 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.219000 audit[4185]: AVC avc: denied { perfmon } for pid=4185 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.219000 audit[4185]: AVC avc: denied { perfmon } for pid=4185 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.219000 audit[4185]: AVC avc: denied { perfmon } for pid=4185 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.219000 audit[4185]: AVC avc: denied { perfmon } for pid=4185 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.219000 audit[4185]: AVC avc: denied { bpf } for pid=4185 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.219000 audit[4185]: AVC avc: denied { bpf } for pid=4185 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.219000 audit: BPF prog-id=130 op=LOAD Feb 9 19:20:09.219000 audit[4185]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=4174 pid=4185 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:20:09.219000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3763623438356630363961653061633234636162303130336633623738 Feb 9 19:20:09.265795 env[1744]: time="2024-02-09T19:20:09.265713093Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:test-pod-1,Uid:9c838027-0563-4609-885c-719fee43ef3c,Namespace:default,Attempt:0,} returns sandbox id \"7cb485f069ae0ac24cab0103f3b789a678884fc51762e661bd97578d0bf7ad45\"" Feb 9 19:20:09.269228 env[1744]: time="2024-02-09T19:20:09.269181052Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\"" Feb 9 19:20:09.621127 env[1744]: time="2024-02-09T19:20:09.621065914Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:20:09.624327 env[1744]: time="2024-02-09T19:20:09.624268398Z" level=info msg="ImageUpdate event &ImageUpdate{Name:sha256:01bfff6bfbc6f0e8a890bad9e22c5392e6dbfd67def93467db6231d4be1b719b,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:20:09.627907 env[1744]: time="2024-02-09T19:20:09.627815857Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:20:09.631141 env[1744]: time="2024-02-09T19:20:09.631076192Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx@sha256:e34a272f01984c973b1e034e197c02f77dda18981038e3a54e957554ada4fec6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 19:20:09.632690 env[1744]: time="2024-02-09T19:20:09.632645850Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\" returns image reference \"sha256:01bfff6bfbc6f0e8a890bad9e22c5392e6dbfd67def93467db6231d4be1b719b\"" Feb 9 19:20:09.637442 env[1744]: time="2024-02-09T19:20:09.637369559Z" level=info msg="CreateContainer within sandbox \"7cb485f069ae0ac24cab0103f3b789a678884fc51762e661bd97578d0bf7ad45\" for container &ContainerMetadata{Name:test,Attempt:0,}" Feb 9 19:20:09.666435 env[1744]: time="2024-02-09T19:20:09.666337602Z" level=info msg="CreateContainer within sandbox \"7cb485f069ae0ac24cab0103f3b789a678884fc51762e661bd97578d0bf7ad45\" for &ContainerMetadata{Name:test,Attempt:0,} returns container id \"1da0b90a7dd5cbcda4a55af4fcf339f42683cdc2502dcbc34dd476baeeec2c73\"" Feb 9 19:20:09.667790 env[1744]: time="2024-02-09T19:20:09.667713880Z" level=info msg="StartContainer for \"1da0b90a7dd5cbcda4a55af4fcf339f42683cdc2502dcbc34dd476baeeec2c73\"" Feb 9 19:20:09.696605 systemd[1]: Started cri-containerd-1da0b90a7dd5cbcda4a55af4fcf339f42683cdc2502dcbc34dd476baeeec2c73.scope. Feb 9 19:20:09.724000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.724000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.724000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.724000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.724000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.724000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.724000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.724000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.724000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.725000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.725000 audit: BPF prog-id=131 op=LOAD Feb 9 19:20:09.726000 audit[4216]: AVC avc: denied { bpf } for pid=4216 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.726000 audit[4216]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000195b38 a2=10 a3=0 items=0 ppid=4174 pid=4216 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:20:09.726000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3164613062393061376464356362636461346135356166346663663333 Feb 9 19:20:09.727000 audit[4216]: AVC avc: denied { perfmon } for pid=4216 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.727000 audit[4216]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=4174 pid=4216 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:20:09.727000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3164613062393061376464356362636461346135356166346663663333 Feb 9 19:20:09.727000 audit[4216]: AVC avc: denied { bpf } for pid=4216 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.727000 audit[4216]: AVC avc: denied { bpf } for pid=4216 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.727000 audit[4216]: AVC avc: denied { bpf } for pid=4216 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.727000 audit[4216]: AVC avc: denied { perfmon } for pid=4216 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.727000 audit[4216]: AVC avc: denied { perfmon } for pid=4216 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.727000 audit[4216]: AVC avc: denied { perfmon } for pid=4216 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.727000 audit[4216]: AVC avc: denied { perfmon } for pid=4216 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.727000 audit[4216]: AVC avc: denied { perfmon } for pid=4216 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.727000 audit[4216]: AVC avc: denied { bpf } for pid=4216 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.727000 audit[4216]: AVC avc: denied { bpf } for pid=4216 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.727000 audit: BPF prog-id=132 op=LOAD Feb 9 19:20:09.727000 audit[4216]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=4174 pid=4216 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:20:09.727000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3164613062393061376464356362636461346135356166346663663333 Feb 9 19:20:09.727000 audit[4216]: AVC avc: denied { bpf } for pid=4216 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.727000 audit[4216]: AVC avc: denied { bpf } for pid=4216 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.727000 audit[4216]: AVC avc: denied { perfmon } for pid=4216 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.727000 audit[4216]: AVC avc: denied { perfmon } for pid=4216 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.727000 audit[4216]: AVC avc: denied { perfmon } for pid=4216 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.727000 audit[4216]: AVC avc: denied { perfmon } for pid=4216 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.727000 audit[4216]: AVC avc: denied { perfmon } for pid=4216 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.727000 audit[4216]: AVC avc: denied { bpf } for pid=4216 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.727000 audit[4216]: AVC avc: denied { bpf } for pid=4216 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.727000 audit: BPF prog-id=133 op=LOAD Feb 9 19:20:09.727000 audit[4216]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=4174 pid=4216 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:20:09.727000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3164613062393061376464356362636461346135356166346663663333 Feb 9 19:20:09.727000 audit: BPF prog-id=133 op=UNLOAD Feb 9 19:20:09.728000 audit: BPF prog-id=132 op=UNLOAD Feb 9 19:20:09.728000 audit[4216]: AVC avc: denied { bpf } for pid=4216 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.728000 audit[4216]: AVC avc: denied { bpf } for pid=4216 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.728000 audit[4216]: AVC avc: denied { bpf } for pid=4216 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.728000 audit[4216]: AVC avc: denied { perfmon } for pid=4216 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.728000 audit[4216]: AVC avc: denied { perfmon } for pid=4216 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.728000 audit[4216]: AVC avc: denied { perfmon } for pid=4216 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.728000 audit[4216]: AVC avc: denied { perfmon } for pid=4216 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.728000 audit[4216]: AVC avc: denied { perfmon } for pid=4216 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.728000 audit[4216]: AVC avc: denied { bpf } for pid=4216 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.728000 audit[4216]: AVC avc: denied { bpf } for pid=4216 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 19:20:09.728000 audit: BPF prog-id=134 op=LOAD Feb 9 19:20:09.728000 audit[4216]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=4174 pid=4216 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:20:09.728000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3164613062393061376464356362636461346135356166346663663333 Feb 9 19:20:09.772760 env[1744]: time="2024-02-09T19:20:09.772695923Z" level=info msg="StartContainer for \"1da0b90a7dd5cbcda4a55af4fcf339f42683cdc2502dcbc34dd476baeeec2c73\" returns successfully" Feb 9 19:20:10.006244 kubelet[2211]: E0209 19:20:10.006046 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:10.157919 systemd[1]: run-containerd-runc-k8s.io-b3bf91acaf7bb622b14b8ad3d030db2fc83bec3c78e02d3e237d7d4460b086b3-runc.FKsNfO.mount: Deactivated successfully. Feb 9 19:20:10.245000 audit[4285]: NETFILTER_CFG table=filter:87 family=2 entries=9 op=nft_register_rule pid=4285 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 19:20:10.245000 audit[4285]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=2844 a0=3 a1=fffff3b9ef10 a2=0 a3=ffff8ac236c0 items=0 ppid=2427 pid=4285 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:20:10.245000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 19:20:10.250000 audit[4285]: NETFILTER_CFG table=nat:88 family=2 entries=51 op=nft_register_chain pid=4285 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 19:20:10.250000 audit[4285]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=17716 a0=3 a1=fffff3b9ef10 a2=0 a3=ffff8ac236c0 items=0 ppid=2427 pid=4285 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:20:10.250000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 19:20:10.668000 audit[4287]: NETFILTER_CFG table=filter:89 family=2 entries=8 op=nft_register_rule pid=4287 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 19:20:10.668000 audit[4287]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=2844 a0=3 a1=fffff12e63f0 a2=0 a3=ffff894b66c0 items=0 ppid=2427 pid=4287 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:20:10.668000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 19:20:10.673000 audit[4287]: NETFILTER_CFG table=nat:90 family=2 entries=58 op=nft_register_chain pid=4287 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 19:20:10.673000 audit[4287]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=19604 a0=3 a1=fffff12e63f0 a2=0 a3=ffff894b66c0 items=0 ppid=2427 pid=4287 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 19:20:10.673000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 19:20:11.006685 kubelet[2211]: E0209 19:20:11.006543 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:11.018898 systemd-networkd[1547]: cali5ec59c6bf6e: Gained IPv6LL Feb 9 19:20:12.007511 kubelet[2211]: E0209 19:20:12.007461 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:13.008202 kubelet[2211]: E0209 19:20:13.008153 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:14.009380 kubelet[2211]: E0209 19:20:14.009324 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:15.010261 kubelet[2211]: E0209 19:20:15.010200 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:16.011158 kubelet[2211]: E0209 19:20:16.011094 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:17.012287 kubelet[2211]: E0209 19:20:17.012250 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:18.013851 kubelet[2211]: E0209 19:20:18.013782 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:19.013982 kubelet[2211]: E0209 19:20:19.013921 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:20.014440 kubelet[2211]: E0209 19:20:20.014376 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:21.015150 kubelet[2211]: E0209 19:20:21.015111 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:21.933133 kubelet[2211]: E0209 19:20:21.933093 2211 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:22.016437 kubelet[2211]: E0209 19:20:22.016377 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:23.017545 kubelet[2211]: E0209 19:20:23.017504 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:24.018914 kubelet[2211]: E0209 19:20:24.018863 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:25.020472 kubelet[2211]: E0209 19:20:25.020394 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:26.020872 kubelet[2211]: E0209 19:20:26.020835 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:27.021863 kubelet[2211]: E0209 19:20:27.021801 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:28.022567 kubelet[2211]: E0209 19:20:28.022529 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:29.023460 kubelet[2211]: E0209 19:20:29.023393 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:30.024759 kubelet[2211]: E0209 19:20:30.024694 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:31.026435 kubelet[2211]: E0209 19:20:31.026346 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:32.026822 kubelet[2211]: E0209 19:20:32.026785 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:33.028581 kubelet[2211]: E0209 19:20:33.028519 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:33.494781 systemd[1]: run-containerd-runc-k8s.io-6905539977a419e29eff125506d1d6d0d98c865c459f5e96096a565e258da16f-runc.drX2KH.mount: Deactivated successfully. Feb 9 19:20:34.029154 kubelet[2211]: E0209 19:20:34.029118 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:35.030724 kubelet[2211]: E0209 19:20:35.030684 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:35.770326 kubelet[2211]: E0209 19:20:35.770284 2211 controller.go:193] "Failed to update lease" err="Put \"https://172.31.25.191:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.22.94?timeout=10s\": net/http: request canceled (Client.Timeout exceeded while awaiting headers)" Feb 9 19:20:36.032794 kubelet[2211]: E0209 19:20:36.031867 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:37.032766 kubelet[2211]: E0209 19:20:37.032710 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:38.033761 kubelet[2211]: E0209 19:20:38.033722 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:39.034891 kubelet[2211]: E0209 19:20:39.034847 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:40.035366 kubelet[2211]: E0209 19:20:40.035327 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:40.153496 systemd[1]: run-containerd-runc-k8s.io-b3bf91acaf7bb622b14b8ad3d030db2fc83bec3c78e02d3e237d7d4460b086b3-runc.nW2kgL.mount: Deactivated successfully. Feb 9 19:20:41.036282 kubelet[2211]: E0209 19:20:41.036225 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:41.933332 kubelet[2211]: E0209 19:20:41.933279 2211 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:42.037035 kubelet[2211]: E0209 19:20:42.036984 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:43.038204 kubelet[2211]: E0209 19:20:43.038140 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:44.039316 kubelet[2211]: E0209 19:20:44.039267 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:45.040614 kubelet[2211]: E0209 19:20:45.040532 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:45.771729 kubelet[2211]: E0209 19:20:45.771590 2211 controller.go:193] "Failed to update lease" err="Put \"https://172.31.25.191:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.22.94?timeout=10s\": net/http: request canceled (Client.Timeout exceeded while awaiting headers)" Feb 9 19:20:46.041260 kubelet[2211]: E0209 19:20:46.041125 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:46.613000 audit[4034]: AVC avc: denied { watch } for pid=4034 comm="apiserver" path="/calico-apiserver-certs/..2024_02_09_19_19_39.2179023869/tls.crt" dev="tmpfs" ino=4 scontext=system_u:system_r:svirt_lxc_net_t:s0:c675,c829 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c675,c829 tclass=file permissive=0 Feb 9 19:20:46.617606 kernel: kauditd_printk_skb: 473 callbacks suppressed Feb 9 19:20:46.617715 kernel: audit: type=1400 audit(1707506446.613:965): avc: denied { watch } for pid=4034 comm="apiserver" path="/calico-apiserver-certs/..2024_02_09_19_19_39.2179023869/tls.crt" dev="tmpfs" ino=4 scontext=system_u:system_r:svirt_lxc_net_t:s0:c675,c829 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c675,c829 tclass=file permissive=0 Feb 9 19:20:46.613000 audit[4034]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=8 a1=40019e2540 a2=fc6 a3=0 items=0 ppid=3816 pid=4034 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="apiserver" exe="/code/apiserver" subj=system_u:system_r:svirt_lxc_net_t:s0:c675,c829 key=(null) Feb 9 19:20:46.639750 kernel: audit: type=1300 audit(1707506446.613:965): arch=c00000b7 syscall=27 success=no exit=-13 a0=8 a1=40019e2540 a2=fc6 a3=0 items=0 ppid=3816 pid=4034 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="apiserver" exe="/code/apiserver" subj=system_u:system_r:svirt_lxc_net_t:s0:c675,c829 key=(null) Feb 9 19:20:46.639828 kernel: audit: type=1327 audit(1707506446.613:965): proctitle=2E2F617069736572766572002D2D7365637572652D706F72743D35343433002D2D746C732D707269766174652D6B65792D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C732E6B6579002D2D746C732D636572742D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C Feb 9 19:20:46.613000 audit: PROCTITLE proctitle=2E2F617069736572766572002D2D7365637572652D706F72743D35343433002D2D746C732D707269766174652D6B65792D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C732E6B6579002D2D746C732D636572742D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C Feb 9 19:20:47.043159 kubelet[2211]: E0209 19:20:47.043021 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:48.043530 kubelet[2211]: E0209 19:20:48.043454 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:49.043741 kubelet[2211]: E0209 19:20:49.043671 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:50.044012 kubelet[2211]: E0209 19:20:50.043972 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:51.045236 kubelet[2211]: E0209 19:20:51.045197 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:52.047070 kubelet[2211]: E0209 19:20:52.047006 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:53.047433 kubelet[2211]: E0209 19:20:53.047369 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:54.048248 kubelet[2211]: E0209 19:20:54.048193 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:55.048962 kubelet[2211]: E0209 19:20:55.048900 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:55.772873 kubelet[2211]: E0209 19:20:55.772835 2211 controller.go:193] "Failed to update lease" err="Put \"https://172.31.25.191:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.22.94?timeout=10s\": net/http: request canceled (Client.Timeout exceeded while awaiting headers)" Feb 9 19:20:56.049562 kubelet[2211]: E0209 19:20:56.049501 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:57.050384 kubelet[2211]: E0209 19:20:57.050323 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:58.050895 kubelet[2211]: E0209 19:20:58.050833 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:20:58.140082 kubelet[2211]: E0209 19:20:58.140026 2211 controller.go:193] "Failed to update lease" err="Put \"https://172.31.25.191:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.22.94?timeout=10s\": unexpected EOF" Feb 9 19:20:58.140881 kubelet[2211]: E0209 19:20:58.140848 2211 controller.go:193] "Failed to update lease" err="Put \"https://172.31.25.191:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.22.94?timeout=10s\": dial tcp 172.31.25.191:6443: connect: connection refused" Feb 9 19:20:58.141126 kubelet[2211]: I0209 19:20:58.141085 2211 controller.go:116] "failed to update lease using latest lease, fallback to ensure lease" err="failed 5 attempts to update lease" Feb 9 19:20:58.141885 kubelet[2211]: E0209 19:20:58.141754 2211 controller.go:146] "Failed to ensure lease exists, will retry" err="Get \"https://172.31.25.191:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.22.94?timeout=10s\": dial tcp 172.31.25.191:6443: connect: connection refused" interval="200ms" Feb 9 19:20:58.343588 kubelet[2211]: E0209 19:20:58.343444 2211 controller.go:146] "Failed to ensure lease exists, will retry" err="Get \"https://172.31.25.191:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.22.94?timeout=10s\": dial tcp 172.31.25.191:6443: connect: connection refused" interval="400ms" Feb 9 19:20:58.744634 kubelet[2211]: E0209 19:20:58.744492 2211 controller.go:146] "Failed to ensure lease exists, will retry" err="Get \"https://172.31.25.191:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.22.94?timeout=10s\": dial tcp 172.31.25.191:6443: connect: connection refused" interval="800ms" Feb 9 19:20:59.052057 kubelet[2211]: E0209 19:20:59.052001 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:21:00.052178 kubelet[2211]: E0209 19:21:00.052119 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:21:01.052565 kubelet[2211]: E0209 19:21:01.052506 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:21:01.933110 kubelet[2211]: E0209 19:21:01.933047 2211 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:21:02.053538 kubelet[2211]: E0209 19:21:02.053477 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:21:03.053662 kubelet[2211]: E0209 19:21:03.053605 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:21:03.495700 systemd[1]: run-containerd-runc-k8s.io-6905539977a419e29eff125506d1d6d0d98c865c459f5e96096a565e258da16f-runc.tHh1hw.mount: Deactivated successfully. Feb 9 19:21:04.054173 kubelet[2211]: E0209 19:21:04.054128 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:21:05.055169 kubelet[2211]: E0209 19:21:05.055107 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:21:06.056060 kubelet[2211]: E0209 19:21:06.056008 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:21:07.056595 kubelet[2211]: E0209 19:21:07.056559 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:21:08.057971 kubelet[2211]: E0209 19:21:08.057912 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:21:09.058102 kubelet[2211]: E0209 19:21:09.058045 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:21:09.545976 kubelet[2211]: E0209 19:21:09.545554 2211 controller.go:146] "Failed to ensure lease exists, will retry" err="Get \"https://172.31.25.191:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.22.94?timeout=10s\": net/http: request canceled while waiting for connection (Client.Timeout exceeded while awaiting headers)" interval="1.6s" Feb 9 19:21:10.058649 kubelet[2211]: E0209 19:21:10.058595 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 19:21:10.154940 systemd[1]: run-containerd-runc-k8s.io-b3bf91acaf7bb622b14b8ad3d030db2fc83bec3c78e02d3e237d7d4460b086b3-runc.QhXgET.mount: Deactivated successfully. Feb 9 19:21:11.059161 kubelet[2211]: E0209 19:21:11.059098 2211 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests"