Feb 12 20:23:44.025720 kernel: Booting Linux on physical CPU 0x0000000000 [0x410fd083] Feb 12 20:23:44.025774 kernel: Linux version 5.15.148-flatcar (build@pony-truck.infra.kinvolk.io) (aarch64-cros-linux-gnu-gcc (Gentoo Hardened 11.3.1_p20221209 p3) 11.3.1 20221209, GNU ld (Gentoo 2.39 p5) 2.39.0) #1 SMP PREEMPT Mon Feb 12 18:07:00 -00 2024 Feb 12 20:23:44.025800 kernel: efi: EFI v2.70 by EDK II Feb 12 20:23:44.025815 kernel: efi: SMBIOS=0x7bed0000 SMBIOS 3.0=0x7beb0000 ACPI=0x786e0000 ACPI 2.0=0x786e0014 MEMATTR=0x7ac1aa98 MEMRESERVE=0x71a8cf98 Feb 12 20:23:44.025829 kernel: ACPI: Early table checksum verification disabled Feb 12 20:23:44.025842 kernel: ACPI: RSDP 0x00000000786E0014 000024 (v02 AMAZON) Feb 12 20:23:44.025858 kernel: ACPI: XSDT 0x00000000786D00E8 000064 (v01 AMAZON AMZNFACP 00000001 01000013) Feb 12 20:23:44.025872 kernel: ACPI: FACP 0x00000000786B0000 000114 (v06 AMAZON AMZNFACP 00000001 AMZN 00000001) Feb 12 20:23:44.025886 kernel: ACPI: DSDT 0x0000000078640000 00154F (v02 AMAZON AMZNDSDT 00000001 INTL 20160527) Feb 12 20:23:44.025900 kernel: ACPI: APIC 0x00000000786C0000 000108 (v04 AMAZON AMZNAPIC 00000001 AMZN 00000001) Feb 12 20:23:44.025918 kernel: ACPI: SPCR 0x00000000786A0000 000050 (v02 AMAZON AMZNSPCR 00000001 AMZN 00000001) Feb 12 20:23:44.025932 kernel: ACPI: GTDT 0x0000000078690000 000060 (v02 AMAZON AMZNGTDT 00000001 AMZN 00000001) Feb 12 20:23:44.025945 kernel: ACPI: MCFG 0x0000000078680000 00003C (v02 AMAZON AMZNMCFG 00000001 AMZN 00000001) Feb 12 20:23:44.025959 kernel: ACPI: SLIT 0x0000000078670000 00002D (v01 AMAZON AMZNSLIT 00000001 AMZN 00000001) Feb 12 20:23:44.025975 kernel: ACPI: IORT 0x0000000078660000 000078 (v01 AMAZON AMZNIORT 00000001 AMZN 00000001) Feb 12 20:23:44.025995 kernel: ACPI: PPTT 0x0000000078650000 0000EC (v01 AMAZON AMZNPPTT 00000001 AMZN 00000001) Feb 12 20:23:44.026010 kernel: ACPI: SPCR: console: uart,mmio,0x90a0000,115200 Feb 12 20:23:44.026024 kernel: earlycon: uart0 at MMIO 0x00000000090a0000 (options '115200') Feb 12 20:23:44.026038 kernel: printk: bootconsole [uart0] enabled Feb 12 20:23:44.026052 kernel: NUMA: Failed to initialise from firmware Feb 12 20:23:44.026067 kernel: NUMA: Faking a node at [mem 0x0000000040000000-0x00000004b5ffffff] Feb 12 20:23:44.026081 kernel: NUMA: NODE_DATA [mem 0x4b5841900-0x4b5846fff] Feb 12 20:23:44.026096 kernel: Zone ranges: Feb 12 20:23:44.026110 kernel: DMA [mem 0x0000000040000000-0x00000000ffffffff] Feb 12 20:23:44.026124 kernel: DMA32 empty Feb 12 20:23:44.026138 kernel: Normal [mem 0x0000000100000000-0x00000004b5ffffff] Feb 12 20:23:44.026157 kernel: Movable zone start for each node Feb 12 20:23:44.026171 kernel: Early memory node ranges Feb 12 20:23:44.026186 kernel: node 0: [mem 0x0000000040000000-0x00000000786effff] Feb 12 20:23:44.026200 kernel: node 0: [mem 0x00000000786f0000-0x000000007872ffff] Feb 12 20:23:44.031815 kernel: node 0: [mem 0x0000000078730000-0x000000007bbfffff] Feb 12 20:23:44.031834 kernel: node 0: [mem 0x000000007bc00000-0x000000007bfdffff] Feb 12 20:23:44.031850 kernel: node 0: [mem 0x000000007bfe0000-0x000000007fffffff] Feb 12 20:23:44.031865 kernel: node 0: [mem 0x0000000400000000-0x00000004b5ffffff] Feb 12 20:23:44.031879 kernel: Initmem setup node 0 [mem 0x0000000040000000-0x00000004b5ffffff] Feb 12 20:23:44.031894 kernel: On node 0, zone Normal: 8192 pages in unavailable ranges Feb 12 20:23:44.031909 kernel: psci: probing for conduit method from ACPI. Feb 12 20:23:44.031923 kernel: psci: PSCIv1.0 detected in firmware. Feb 12 20:23:44.031946 kernel: psci: Using standard PSCI v0.2 function IDs Feb 12 20:23:44.031961 kernel: psci: Trusted OS migration not required Feb 12 20:23:44.031982 kernel: psci: SMC Calling Convention v1.1 Feb 12 20:23:44.031998 kernel: ACPI: SRAT not present Feb 12 20:23:44.032014 kernel: percpu: Embedded 29 pages/cpu s79960 r8192 d30632 u118784 Feb 12 20:23:44.032033 kernel: pcpu-alloc: s79960 r8192 d30632 u118784 alloc=29*4096 Feb 12 20:23:44.032049 kernel: pcpu-alloc: [0] 0 [0] 1 Feb 12 20:23:44.032064 kernel: Detected PIPT I-cache on CPU0 Feb 12 20:23:44.032080 kernel: CPU features: detected: GIC system register CPU interface Feb 12 20:23:44.032095 kernel: CPU features: detected: Spectre-v2 Feb 12 20:23:44.032110 kernel: CPU features: detected: Spectre-v3a Feb 12 20:23:44.032125 kernel: CPU features: detected: Spectre-BHB Feb 12 20:23:44.032141 kernel: CPU features: kernel page table isolation forced ON by KASLR Feb 12 20:23:44.032156 kernel: CPU features: detected: Kernel page table isolation (KPTI) Feb 12 20:23:44.032172 kernel: CPU features: detected: ARM erratum 1742098 Feb 12 20:23:44.032187 kernel: CPU features: detected: ARM errata 1165522, 1319367, or 1530923 Feb 12 20:23:44.032206 kernel: Built 1 zonelists, mobility grouping on. Total pages: 991872 Feb 12 20:23:44.032221 kernel: Policy zone: Normal Feb 12 20:23:44.032239 kernel: Kernel command line: BOOT_IMAGE=/flatcar/vmlinuz-a mount.usr=/dev/mapper/usr verity.usr=PARTUUID=7130c94a-213a-4e5a-8e26-6cce9662f132 rootflags=rw mount.usrflags=ro consoleblank=0 root=LABEL=ROOT console=tty1 console=ttyS0,115200n8 earlycon flatcar.first_boot=detected acpi=force flatcar.oem.id=ec2 modprobe.blacklist=xen_fbfront net.ifnames=0 nvme_core.io_timeout=4294967295 verity.usrhash=0a07ee1673be713cb46dc1305004c8854c4690dc8835a87e3bc71aa6c6a62e40 Feb 12 20:23:44.032256 kernel: Unknown kernel command line parameters "BOOT_IMAGE=/flatcar/vmlinuz-a", will be passed to user space. Feb 12 20:23:44.032271 kernel: Dentry cache hash table entries: 524288 (order: 10, 4194304 bytes, linear) Feb 12 20:23:44.032286 kernel: Inode-cache hash table entries: 262144 (order: 9, 2097152 bytes, linear) Feb 12 20:23:44.032302 kernel: mem auto-init: stack:off, heap alloc:off, heap free:off Feb 12 20:23:44.032317 kernel: software IO TLB: mapped [mem 0x000000007c000000-0x0000000080000000] (64MB) Feb 12 20:23:44.032333 kernel: Memory: 3826316K/4030464K available (9792K kernel code, 2092K rwdata, 7556K rodata, 34688K init, 778K bss, 204148K reserved, 0K cma-reserved) Feb 12 20:23:44.032349 kernel: SLUB: HWalign=64, Order=0-3, MinObjects=0, CPUs=2, Nodes=1 Feb 12 20:23:44.032369 kernel: trace event string verifier disabled Feb 12 20:23:44.032384 kernel: rcu: Preemptible hierarchical RCU implementation. Feb 12 20:23:44.032400 kernel: rcu: RCU event tracing is enabled. Feb 12 20:23:44.032416 kernel: rcu: RCU restricting CPUs from NR_CPUS=512 to nr_cpu_ids=2. Feb 12 20:23:44.032431 kernel: Trampoline variant of Tasks RCU enabled. Feb 12 20:23:44.032447 kernel: Tracing variant of Tasks RCU enabled. Feb 12 20:23:44.032462 kernel: rcu: RCU calculated value of scheduler-enlistment delay is 100 jiffies. Feb 12 20:23:44.032478 kernel: rcu: Adjusting geometry for rcu_fanout_leaf=16, nr_cpu_ids=2 Feb 12 20:23:44.032493 kernel: NR_IRQS: 64, nr_irqs: 64, preallocated irqs: 0 Feb 12 20:23:44.032508 kernel: GICv3: 96 SPIs implemented Feb 12 20:23:44.032523 kernel: GICv3: 0 Extended SPIs implemented Feb 12 20:23:44.032538 kernel: GICv3: Distributor has no Range Selector support Feb 12 20:23:44.032558 kernel: Root IRQ handler: gic_handle_irq Feb 12 20:23:44.032573 kernel: GICv3: 16 PPIs implemented Feb 12 20:23:44.032588 kernel: GICv3: CPU0: found redistributor 0 region 0:0x0000000010200000 Feb 12 20:23:44.032603 kernel: ACPI: SRAT not present Feb 12 20:23:44.032617 kernel: ITS [mem 0x10080000-0x1009ffff] Feb 12 20:23:44.032633 kernel: ITS@0x0000000010080000: allocated 8192 Devices @4000a0000 (indirect, esz 8, psz 64K, shr 1) Feb 12 20:23:44.032648 kernel: ITS@0x0000000010080000: allocated 8192 Interrupt Collections @4000b0000 (flat, esz 8, psz 64K, shr 1) Feb 12 20:23:44.032664 kernel: GICv3: using LPI property table @0x00000004000c0000 Feb 12 20:23:44.032679 kernel: ITS: Using hypervisor restricted LPI range [128] Feb 12 20:23:44.032694 kernel: GICv3: CPU0: using allocated LPI pending table @0x00000004000d0000 Feb 12 20:23:44.032709 kernel: arch_timer: cp15 timer(s) running at 83.33MHz (virt). Feb 12 20:23:44.032728 kernel: clocksource: arch_sys_counter: mask: 0xffffffffffffff max_cycles: 0x13381ebeec, max_idle_ns: 440795203145 ns Feb 12 20:23:44.032744 kernel: sched_clock: 56 bits at 83MHz, resolution 12ns, wraps every 4398046511100ns Feb 12 20:23:44.032779 kernel: Console: colour dummy device 80x25 Feb 12 20:23:44.032797 kernel: printk: console [tty1] enabled Feb 12 20:23:44.032813 kernel: ACPI: Core revision 20210730 Feb 12 20:23:44.032830 kernel: Calibrating delay loop (skipped), value calculated using timer frequency.. 166.66 BogoMIPS (lpj=83333) Feb 12 20:23:44.032846 kernel: pid_max: default: 32768 minimum: 301 Feb 12 20:23:44.032862 kernel: LSM: Security Framework initializing Feb 12 20:23:44.032877 kernel: SELinux: Initializing. Feb 12 20:23:44.032893 kernel: Mount-cache hash table entries: 8192 (order: 4, 65536 bytes, linear) Feb 12 20:23:44.032915 kernel: Mountpoint-cache hash table entries: 8192 (order: 4, 65536 bytes, linear) Feb 12 20:23:44.032931 kernel: rcu: Hierarchical SRCU implementation. Feb 12 20:23:44.032946 kernel: Platform MSI: ITS@0x10080000 domain created Feb 12 20:23:44.032962 kernel: PCI/MSI: ITS@0x10080000 domain created Feb 12 20:23:44.032979 kernel: Remapping and enabling EFI services. Feb 12 20:23:44.032994 kernel: smp: Bringing up secondary CPUs ... Feb 12 20:23:44.033010 kernel: Detected PIPT I-cache on CPU1 Feb 12 20:23:44.033026 kernel: GICv3: CPU1: found redistributor 1 region 0:0x0000000010220000 Feb 12 20:23:44.033042 kernel: GICv3: CPU1: using allocated LPI pending table @0x00000004000e0000 Feb 12 20:23:44.033062 kernel: CPU1: Booted secondary processor 0x0000000001 [0x410fd083] Feb 12 20:23:44.033078 kernel: smp: Brought up 1 node, 2 CPUs Feb 12 20:23:44.033093 kernel: SMP: Total of 2 processors activated. Feb 12 20:23:44.033109 kernel: CPU features: detected: 32-bit EL0 Support Feb 12 20:23:44.033124 kernel: CPU features: detected: 32-bit EL1 Support Feb 12 20:23:44.033140 kernel: CPU features: detected: CRC32 instructions Feb 12 20:23:44.033156 kernel: CPU: All CPU(s) started at EL1 Feb 12 20:23:44.033171 kernel: alternatives: patching kernel code Feb 12 20:23:44.033186 kernel: devtmpfs: initialized Feb 12 20:23:44.033206 kernel: KASLR disabled due to lack of seed Feb 12 20:23:44.033222 kernel: clocksource: jiffies: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 1911260446275000 ns Feb 12 20:23:44.033238 kernel: futex hash table entries: 512 (order: 3, 32768 bytes, linear) Feb 12 20:23:44.033265 kernel: pinctrl core: initialized pinctrl subsystem Feb 12 20:23:44.033285 kernel: SMBIOS 3.0.0 present. Feb 12 20:23:44.033301 kernel: DMI: Amazon EC2 a1.large/, BIOS 1.0 11/1/2018 Feb 12 20:23:44.033317 kernel: NET: Registered PF_NETLINK/PF_ROUTE protocol family Feb 12 20:23:44.033333 kernel: DMA: preallocated 512 KiB GFP_KERNEL pool for atomic allocations Feb 12 20:23:44.033350 kernel: DMA: preallocated 512 KiB GFP_KERNEL|GFP_DMA pool for atomic allocations Feb 12 20:23:44.033366 kernel: DMA: preallocated 512 KiB GFP_KERNEL|GFP_DMA32 pool for atomic allocations Feb 12 20:23:44.033382 kernel: audit: initializing netlink subsys (disabled) Feb 12 20:23:44.033399 kernel: audit: type=2000 audit(0.249:1): state=initialized audit_enabled=0 res=1 Feb 12 20:23:44.033420 kernel: thermal_sys: Registered thermal governor 'step_wise' Feb 12 20:23:44.033436 kernel: cpuidle: using governor menu Feb 12 20:23:44.033452 kernel: hw-breakpoint: found 6 breakpoint and 4 watchpoint registers. Feb 12 20:23:44.033468 kernel: ASID allocator initialised with 32768 entries Feb 12 20:23:44.033484 kernel: ACPI: bus type PCI registered Feb 12 20:23:44.033505 kernel: acpiphp: ACPI Hot Plug PCI Controller Driver version: 0.5 Feb 12 20:23:44.033521 kernel: Serial: AMBA PL011 UART driver Feb 12 20:23:44.033537 kernel: HugeTLB registered 1.00 GiB page size, pre-allocated 0 pages Feb 12 20:23:44.033554 kernel: HugeTLB registered 32.0 MiB page size, pre-allocated 0 pages Feb 12 20:23:44.033570 kernel: HugeTLB registered 2.00 MiB page size, pre-allocated 0 pages Feb 12 20:23:44.033586 kernel: HugeTLB registered 64.0 KiB page size, pre-allocated 0 pages Feb 12 20:23:44.033602 kernel: cryptd: max_cpu_qlen set to 1000 Feb 12 20:23:44.033618 kernel: alg: No test for fips(ansi_cprng) (fips_ansi_cprng) Feb 12 20:23:44.033634 kernel: ACPI: Added _OSI(Module Device) Feb 12 20:23:44.033654 kernel: ACPI: Added _OSI(Processor Device) Feb 12 20:23:44.033670 kernel: ACPI: Added _OSI(3.0 _SCP Extensions) Feb 12 20:23:44.033686 kernel: ACPI: Added _OSI(Processor Aggregator Device) Feb 12 20:23:44.033703 kernel: ACPI: Added _OSI(Linux-Dell-Video) Feb 12 20:23:44.033719 kernel: ACPI: Added _OSI(Linux-Lenovo-NV-HDMI-Audio) Feb 12 20:23:44.033735 kernel: ACPI: Added _OSI(Linux-HPI-Hybrid-Graphics) Feb 12 20:23:44.033767 kernel: ACPI: 1 ACPI AML tables successfully acquired and loaded Feb 12 20:23:44.033789 kernel: ACPI: Interpreter enabled Feb 12 20:23:44.033805 kernel: ACPI: Using GIC for interrupt routing Feb 12 20:23:44.033827 kernel: ACPI: MCFG table detected, 1 entries Feb 12 20:23:44.033844 kernel: ACPI: PCI Root Bridge [PCI0] (domain 0000 [bus 00-0f]) Feb 12 20:23:44.034147 kernel: acpi PNP0A08:00: _OSC: OS supports [ExtendedConfig ASPM ClockPM Segments MSI HPX-Type3] Feb 12 20:23:44.034349 kernel: acpi PNP0A08:00: _OSC: platform does not support [LTR] Feb 12 20:23:44.034545 kernel: acpi PNP0A08:00: _OSC: OS now controls [PCIeHotplug PME AER PCIeCapability] Feb 12 20:23:44.034782 kernel: acpi PNP0A08:00: ECAM area [mem 0x20000000-0x20ffffff] reserved by PNP0C02:00 Feb 12 20:23:44.034988 kernel: acpi PNP0A08:00: ECAM at [mem 0x20000000-0x20ffffff] for [bus 00-0f] Feb 12 20:23:44.035016 kernel: ACPI: Remapped I/O 0x000000001fff0000 to [io 0x0000-0xffff window] Feb 12 20:23:44.035034 kernel: acpiphp: Slot [1] registered Feb 12 20:23:44.035050 kernel: acpiphp: Slot [2] registered Feb 12 20:23:44.035067 kernel: acpiphp: Slot [3] registered Feb 12 20:23:44.035083 kernel: acpiphp: Slot [4] registered Feb 12 20:23:44.035099 kernel: acpiphp: Slot [5] registered Feb 12 20:23:44.035116 kernel: acpiphp: Slot [6] registered Feb 12 20:23:44.035132 kernel: acpiphp: Slot [7] registered Feb 12 20:23:44.035148 kernel: acpiphp: Slot [8] registered Feb 12 20:23:44.035168 kernel: acpiphp: Slot [9] registered Feb 12 20:23:44.035184 kernel: acpiphp: Slot [10] registered Feb 12 20:23:44.035200 kernel: acpiphp: Slot [11] registered Feb 12 20:23:44.035216 kernel: acpiphp: Slot [12] registered Feb 12 20:23:44.035232 kernel: acpiphp: Slot [13] registered Feb 12 20:23:44.035248 kernel: acpiphp: Slot [14] registered Feb 12 20:23:44.035264 kernel: acpiphp: Slot [15] registered Feb 12 20:23:44.035280 kernel: acpiphp: Slot [16] registered Feb 12 20:23:44.035296 kernel: acpiphp: Slot [17] registered Feb 12 20:23:44.035312 kernel: acpiphp: Slot [18] registered Feb 12 20:23:44.035333 kernel: acpiphp: Slot [19] registered Feb 12 20:23:44.035348 kernel: acpiphp: Slot [20] registered Feb 12 20:23:44.035364 kernel: acpiphp: Slot [21] registered Feb 12 20:23:44.035380 kernel: acpiphp: Slot [22] registered Feb 12 20:23:44.035397 kernel: acpiphp: Slot [23] registered Feb 12 20:23:44.044833 kernel: acpiphp: Slot [24] registered Feb 12 20:23:44.044863 kernel: acpiphp: Slot [25] registered Feb 12 20:23:44.044881 kernel: acpiphp: Slot [26] registered Feb 12 20:23:44.044898 kernel: acpiphp: Slot [27] registered Feb 12 20:23:44.044924 kernel: acpiphp: Slot [28] registered Feb 12 20:23:44.044941 kernel: acpiphp: Slot [29] registered Feb 12 20:23:44.044958 kernel: acpiphp: Slot [30] registered Feb 12 20:23:44.044974 kernel: acpiphp: Slot [31] registered Feb 12 20:23:44.044990 kernel: PCI host bridge to bus 0000:00 Feb 12 20:23:44.045253 kernel: pci_bus 0000:00: root bus resource [mem 0x80000000-0xffffffff window] Feb 12 20:23:44.045441 kernel: pci_bus 0000:00: root bus resource [io 0x0000-0xffff window] Feb 12 20:23:44.045623 kernel: pci_bus 0000:00: root bus resource [mem 0x400000000000-0x407fffffffff window] Feb 12 20:23:44.049791 kernel: pci_bus 0000:00: root bus resource [bus 00-0f] Feb 12 20:23:44.050074 kernel: pci 0000:00:00.0: [1d0f:0200] type 00 class 0x060000 Feb 12 20:23:44.050298 kernel: pci 0000:00:01.0: [1d0f:8250] type 00 class 0x070003 Feb 12 20:23:44.050533 kernel: pci 0000:00:01.0: reg 0x10: [mem 0x80118000-0x80118fff] Feb 12 20:23:44.050878 kernel: pci 0000:00:04.0: [1d0f:8061] type 00 class 0x010802 Feb 12 20:23:44.051098 kernel: pci 0000:00:04.0: reg 0x10: [mem 0x80114000-0x80117fff] Feb 12 20:23:44.051311 kernel: pci 0000:00:04.0: PME# supported from D0 D1 D2 D3hot D3cold Feb 12 20:23:44.051550 kernel: pci 0000:00:05.0: [1d0f:ec20] type 00 class 0x020000 Feb 12 20:23:44.051801 kernel: pci 0000:00:05.0: reg 0x10: [mem 0x80110000-0x80113fff] Feb 12 20:23:44.052050 kernel: pci 0000:00:05.0: reg 0x18: [mem 0x80000000-0x800fffff pref] Feb 12 20:23:44.052266 kernel: pci 0000:00:05.0: reg 0x20: [mem 0x80100000-0x8010ffff] Feb 12 20:23:44.052471 kernel: pci 0000:00:05.0: PME# supported from D0 D1 D2 D3hot D3cold Feb 12 20:23:44.052675 kernel: pci 0000:00:05.0: BAR 2: assigned [mem 0x80000000-0x800fffff pref] Feb 12 20:23:44.060008 kernel: pci 0000:00:05.0: BAR 4: assigned [mem 0x80100000-0x8010ffff] Feb 12 20:23:44.060244 kernel: pci 0000:00:04.0: BAR 0: assigned [mem 0x80110000-0x80113fff] Feb 12 20:23:44.060448 kernel: pci 0000:00:05.0: BAR 0: assigned [mem 0x80114000-0x80117fff] Feb 12 20:23:44.060676 kernel: pci 0000:00:01.0: BAR 0: assigned [mem 0x80118000-0x80118fff] Feb 12 20:23:44.060907 kernel: pci_bus 0000:00: resource 4 [mem 0x80000000-0xffffffff window] Feb 12 20:23:44.061094 kernel: pci_bus 0000:00: resource 5 [io 0x0000-0xffff window] Feb 12 20:23:44.061278 kernel: pci_bus 0000:00: resource 6 [mem 0x400000000000-0x407fffffffff window] Feb 12 20:23:44.061310 kernel: ACPI: PCI: Interrupt link GSI0 configured for IRQ 35 Feb 12 20:23:44.061328 kernel: ACPI: PCI: Interrupt link GSI1 configured for IRQ 36 Feb 12 20:23:44.061345 kernel: ACPI: PCI: Interrupt link GSI2 configured for IRQ 37 Feb 12 20:23:44.061362 kernel: ACPI: PCI: Interrupt link GSI3 configured for IRQ 38 Feb 12 20:23:44.061379 kernel: iommu: Default domain type: Translated Feb 12 20:23:44.061396 kernel: iommu: DMA domain TLB invalidation policy: strict mode Feb 12 20:23:44.061413 kernel: vgaarb: loaded Feb 12 20:23:44.061430 kernel: pps_core: LinuxPPS API ver. 1 registered Feb 12 20:23:44.061448 kernel: pps_core: Software ver. 5.3.6 - Copyright 2005-2007 Rodolfo Giometti Feb 12 20:23:44.061469 kernel: PTP clock support registered Feb 12 20:23:44.061486 kernel: Registered efivars operations Feb 12 20:23:44.061502 kernel: clocksource: Switched to clocksource arch_sys_counter Feb 12 20:23:44.061518 kernel: VFS: Disk quotas dquot_6.6.0 Feb 12 20:23:44.061535 kernel: VFS: Dquot-cache hash table entries: 512 (order 0, 4096 bytes) Feb 12 20:23:44.061551 kernel: pnp: PnP ACPI init Feb 12 20:23:44.068380 kernel: system 00:00: [mem 0x20000000-0x2fffffff] could not be reserved Feb 12 20:23:44.068432 kernel: pnp: PnP ACPI: found 1 devices Feb 12 20:23:44.068450 kernel: NET: Registered PF_INET protocol family Feb 12 20:23:44.068477 kernel: IP idents hash table entries: 65536 (order: 7, 524288 bytes, linear) Feb 12 20:23:44.068494 kernel: tcp_listen_portaddr_hash hash table entries: 2048 (order: 3, 32768 bytes, linear) Feb 12 20:23:44.068511 kernel: Table-perturb hash table entries: 65536 (order: 6, 262144 bytes, linear) Feb 12 20:23:44.068527 kernel: TCP established hash table entries: 32768 (order: 6, 262144 bytes, linear) Feb 12 20:23:44.068544 kernel: TCP bind hash table entries: 32768 (order: 7, 524288 bytes, linear) Feb 12 20:23:44.068561 kernel: TCP: Hash tables configured (established 32768 bind 32768) Feb 12 20:23:44.068577 kernel: UDP hash table entries: 2048 (order: 4, 65536 bytes, linear) Feb 12 20:23:44.068593 kernel: UDP-Lite hash table entries: 2048 (order: 4, 65536 bytes, linear) Feb 12 20:23:44.068610 kernel: NET: Registered PF_UNIX/PF_LOCAL protocol family Feb 12 20:23:44.068632 kernel: PCI: CLS 0 bytes, default 64 Feb 12 20:23:44.068648 kernel: hw perfevents: enabled with armv8_pmuv3_0 PMU driver, 3 counters available Feb 12 20:23:44.068665 kernel: kvm [1]: HYP mode not available Feb 12 20:23:44.068681 kernel: Initialise system trusted keyrings Feb 12 20:23:44.068698 kernel: workingset: timestamp_bits=39 max_order=20 bucket_order=0 Feb 12 20:23:44.068714 kernel: Key type asymmetric registered Feb 12 20:23:44.068731 kernel: Asymmetric key parser 'x509' registered Feb 12 20:23:44.068747 kernel: Block layer SCSI generic (bsg) driver version 0.4 loaded (major 249) Feb 12 20:23:44.069601 kernel: io scheduler mq-deadline registered Feb 12 20:23:44.069628 kernel: io scheduler kyber registered Feb 12 20:23:44.069645 kernel: io scheduler bfq registered Feb 12 20:23:44.069997 kernel: pl061_gpio ARMH0061:00: PL061 GPIO chip registered Feb 12 20:23:44.070029 kernel: input: Power Button as /devices/LNXSYSTM:00/LNXSYBUS:00/PNP0C0C:00/input/input0 Feb 12 20:23:44.070047 kernel: ACPI: button: Power Button [PWRB] Feb 12 20:23:44.070064 kernel: Serial: 8250/16550 driver, 4 ports, IRQ sharing enabled Feb 12 20:23:44.070082 kernel: ACPI: \_SB_.PCI0.GSI2: Enabled at IRQ 37 Feb 12 20:23:44.070300 kernel: serial 0000:00:01.0: enabling device (0010 -> 0012) Feb 12 20:23:44.070331 kernel: printk: console [ttyS0] disabled Feb 12 20:23:44.070349 kernel: 0000:00:01.0: ttyS0 at MMIO 0x80118000 (irq = 14, base_baud = 115200) is a 16550A Feb 12 20:23:44.070365 kernel: printk: console [ttyS0] enabled Feb 12 20:23:44.070381 kernel: printk: bootconsole [uart0] disabled Feb 12 20:23:44.070398 kernel: thunder_xcv, ver 1.0 Feb 12 20:23:44.070414 kernel: thunder_bgx, ver 1.0 Feb 12 20:23:44.070430 kernel: nicpf, ver 1.0 Feb 12 20:23:44.070446 kernel: nicvf, ver 1.0 Feb 12 20:23:44.070679 kernel: rtc-efi rtc-efi.0: registered as rtc0 Feb 12 20:23:44.071709 kernel: rtc-efi rtc-efi.0: setting system clock to 2024-02-12T20:23:43 UTC (1707769423) Feb 12 20:23:44.071744 kernel: hid: raw HID events driver (C) Jiri Kosina Feb 12 20:23:44.071787 kernel: NET: Registered PF_INET6 protocol family Feb 12 20:23:44.071806 kernel: Segment Routing with IPv6 Feb 12 20:23:44.071823 kernel: In-situ OAM (IOAM) with IPv6 Feb 12 20:23:44.071840 kernel: NET: Registered PF_PACKET protocol family Feb 12 20:23:44.071856 kernel: Key type dns_resolver registered Feb 12 20:23:44.071873 kernel: registered taskstats version 1 Feb 12 20:23:44.071897 kernel: Loading compiled-in X.509 certificates Feb 12 20:23:44.071914 kernel: Loaded X.509 cert 'Kinvolk GmbH: Module signing key for 5.15.148-flatcar: c8c3faa6fd8ae0112832fff0e3d0e58448a7eb6c' Feb 12 20:23:44.071931 kernel: Key type .fscrypt registered Feb 12 20:23:44.071947 kernel: Key type fscrypt-provisioning registered Feb 12 20:23:44.071963 kernel: ima: No TPM chip found, activating TPM-bypass! Feb 12 20:23:44.071980 kernel: ima: Allocated hash algorithm: sha1 Feb 12 20:23:44.071996 kernel: ima: No architecture policies found Feb 12 20:23:44.072012 kernel: Freeing unused kernel memory: 34688K Feb 12 20:23:44.072029 kernel: Run /init as init process Feb 12 20:23:44.072049 kernel: with arguments: Feb 12 20:23:44.072066 kernel: /init Feb 12 20:23:44.072082 kernel: with environment: Feb 12 20:23:44.072098 kernel: HOME=/ Feb 12 20:23:44.072115 kernel: TERM=linux Feb 12 20:23:44.072131 kernel: BOOT_IMAGE=/flatcar/vmlinuz-a Feb 12 20:23:44.072152 systemd[1]: systemd 252 running in system mode (+PAM +AUDIT +SELINUX -APPARMOR +IMA +SMACK +SECCOMP +GCRYPT -GNUTLS +OPENSSL -ACL +BLKID +CURL -ELFUTILS -FIDO2 +IDN2 -IDN +IPTC +KMOD +LIBCRYPTSETUP +LIBFDISK +PCRE2 -PWQUALITY -P11KIT -QRENCODE -TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD -BPF_FRAMEWORK -XKBCOMMON +UTMP +SYSVINIT default-hierarchy=unified) Feb 12 20:23:44.072173 systemd[1]: Detected virtualization amazon. Feb 12 20:23:44.072196 systemd[1]: Detected architecture arm64. Feb 12 20:23:44.072214 systemd[1]: Running in initrd. Feb 12 20:23:44.072251 systemd[1]: No hostname configured, using default hostname. Feb 12 20:23:44.072270 systemd[1]: Hostname set to . Feb 12 20:23:44.072289 systemd[1]: Initializing machine ID from VM UUID. Feb 12 20:23:44.072308 systemd[1]: Queued start job for default target initrd.target. Feb 12 20:23:44.072326 systemd[1]: Started systemd-ask-password-console.path. Feb 12 20:23:44.072345 systemd[1]: Reached target cryptsetup.target. Feb 12 20:23:44.072369 systemd[1]: Reached target paths.target. Feb 12 20:23:44.072387 systemd[1]: Reached target slices.target. Feb 12 20:23:44.072404 systemd[1]: Reached target swap.target. Feb 12 20:23:44.072422 systemd[1]: Reached target timers.target. Feb 12 20:23:44.072440 systemd[1]: Listening on iscsid.socket. Feb 12 20:23:44.072458 systemd[1]: Listening on iscsiuio.socket. Feb 12 20:23:44.072476 systemd[1]: Listening on systemd-journald-audit.socket. Feb 12 20:23:44.072494 systemd[1]: Listening on systemd-journald-dev-log.socket. Feb 12 20:23:44.072516 systemd[1]: Listening on systemd-journald.socket. Feb 12 20:23:44.072534 systemd[1]: Listening on systemd-networkd.socket. Feb 12 20:23:44.072551 systemd[1]: Listening on systemd-udevd-control.socket. Feb 12 20:23:44.072569 systemd[1]: Listening on systemd-udevd-kernel.socket. Feb 12 20:23:44.072587 systemd[1]: Reached target sockets.target. Feb 12 20:23:44.072604 systemd[1]: Starting kmod-static-nodes.service... Feb 12 20:23:44.072622 systemd[1]: Finished network-cleanup.service. Feb 12 20:23:44.072640 systemd[1]: Starting systemd-fsck-usr.service... Feb 12 20:23:44.072657 systemd[1]: Starting systemd-journald.service... Feb 12 20:23:44.072679 systemd[1]: Starting systemd-modules-load.service... Feb 12 20:23:44.072697 systemd[1]: Starting systemd-resolved.service... Feb 12 20:23:44.072715 systemd[1]: Starting systemd-vconsole-setup.service... Feb 12 20:23:44.072733 systemd[1]: Finished kmod-static-nodes.service. Feb 12 20:23:44.072766 systemd[1]: Finished systemd-fsck-usr.service. Feb 12 20:23:44.072790 systemd[1]: Finished systemd-vconsole-setup.service. Feb 12 20:23:44.072808 systemd[1]: Starting dracut-cmdline-ask.service... Feb 12 20:23:44.072826 systemd[1]: Starting systemd-tmpfiles-setup-dev.service... Feb 12 20:23:44.072844 systemd[1]: Finished systemd-tmpfiles-setup-dev.service. Feb 12 20:23:44.072867 systemd[1]: Finished dracut-cmdline-ask.service. Feb 12 20:23:44.072885 kernel: audit: type=1130 audit(1707769424.027:2): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:44.072904 systemd[1]: Starting dracut-cmdline.service... Feb 12 20:23:44.072922 kernel: bridge: filtering via arp/ip/ip6tables is no longer available by default. Update your scripts to load br_netfilter if you need this. Feb 12 20:23:44.072943 systemd-journald[309]: Journal started Feb 12 20:23:44.073036 systemd-journald[309]: Runtime Journal (/run/log/journal/ec22b3cfbc523381e746e6de43cb690f) is 8.0M, max 75.4M, 67.4M free. Feb 12 20:23:44.027000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:43.996862 systemd-modules-load[310]: Inserted module 'overlay' Feb 12 20:23:44.078588 systemd[1]: Started systemd-journald.service. Feb 12 20:23:44.078628 kernel: audit: type=1130 audit(1707769424.077:3): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:44.077000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:44.057917 systemd-resolved[311]: Positive Trust Anchors: Feb 12 20:23:44.057931 systemd-resolved[311]: . IN DS 20326 8 2 e06d44b80b8f1d39a95c0b0d7c65d08458e880409bbc683457104237c7f8ec8d Feb 12 20:23:44.057984 systemd-resolved[311]: Negative trust anchors: home.arpa 10.in-addr.arpa 16.172.in-addr.arpa 17.172.in-addr.arpa 18.172.in-addr.arpa 19.172.in-addr.arpa 20.172.in-addr.arpa 21.172.in-addr.arpa 22.172.in-addr.arpa 23.172.in-addr.arpa 24.172.in-addr.arpa 25.172.in-addr.arpa 26.172.in-addr.arpa 27.172.in-addr.arpa 28.172.in-addr.arpa 29.172.in-addr.arpa 30.172.in-addr.arpa 31.172.in-addr.arpa 168.192.in-addr.arpa d.f.ip6.arpa corp home internal intranet lan local private test Feb 12 20:23:44.112367 dracut-cmdline[326]: dracut-dracut-053 Feb 12 20:23:44.116627 systemd-modules-load[310]: Inserted module 'br_netfilter' Feb 12 20:23:44.118537 kernel: Bridge firewalling registered Feb 12 20:23:44.119642 dracut-cmdline[326]: Using kernel command line parameters: rd.driver.pre=btrfs BOOT_IMAGE=/flatcar/vmlinuz-a mount.usr=/dev/mapper/usr verity.usr=PARTUUID=7130c94a-213a-4e5a-8e26-6cce9662f132 rootflags=rw mount.usrflags=ro consoleblank=0 root=LABEL=ROOT console=tty1 console=ttyS0,115200n8 earlycon flatcar.first_boot=detected acpi=force flatcar.oem.id=ec2 modprobe.blacklist=xen_fbfront net.ifnames=0 nvme_core.io_timeout=4294967295 verity.usrhash=0a07ee1673be713cb46dc1305004c8854c4690dc8835a87e3bc71aa6c6a62e40 Feb 12 20:23:44.155771 kernel: SCSI subsystem initialized Feb 12 20:23:44.170778 kernel: device-mapper: core: CONFIG_IMA_DISABLE_HTABLE is disabled. Duplicate IMA measurements will not be recorded in the IMA log. Feb 12 20:23:44.173778 kernel: device-mapper: uevent: version 1.0.3 Feb 12 20:23:44.180591 kernel: device-mapper: ioctl: 4.45.0-ioctl (2021-03-22) initialised: dm-devel@redhat.com Feb 12 20:23:44.183624 systemd-modules-load[310]: Inserted module 'dm_multipath' Feb 12 20:23:44.188077 systemd[1]: Finished systemd-modules-load.service. Feb 12 20:23:44.188000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:44.200915 kernel: audit: type=1130 audit(1707769424.188:4): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:44.201399 systemd[1]: Starting systemd-sysctl.service... Feb 12 20:23:44.225374 systemd[1]: Finished systemd-sysctl.service. Feb 12 20:23:44.246989 kernel: audit: type=1130 audit(1707769424.223:5): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:44.223000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:44.309793 kernel: Loading iSCSI transport class v2.0-870. Feb 12 20:23:44.323888 kernel: iscsi: registered transport (tcp) Feb 12 20:23:44.348057 kernel: iscsi: registered transport (qla4xxx) Feb 12 20:23:44.348128 kernel: QLogic iSCSI HBA Driver Feb 12 20:23:44.531324 systemd-resolved[311]: Defaulting to hostname 'linux'. Feb 12 20:23:44.534473 kernel: random: crng init done Feb 12 20:23:44.534649 systemd[1]: Started systemd-resolved.service. Feb 12 20:23:44.547214 kernel: audit: type=1130 audit(1707769424.535:6): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:44.535000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:44.536652 systemd[1]: Reached target nss-lookup.target. Feb 12 20:23:44.566479 systemd[1]: Finished dracut-cmdline.service. Feb 12 20:23:44.567000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:44.571082 systemd[1]: Starting dracut-pre-udev.service... Feb 12 20:23:44.581951 kernel: audit: type=1130 audit(1707769424.567:7): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:44.638798 kernel: raid6: neonx8 gen() 6423 MB/s Feb 12 20:23:44.656799 kernel: raid6: neonx8 xor() 4534 MB/s Feb 12 20:23:44.674796 kernel: raid6: neonx4 gen() 6527 MB/s Feb 12 20:23:44.692799 kernel: raid6: neonx4 xor() 4633 MB/s Feb 12 20:23:44.710794 kernel: raid6: neonx2 gen() 5755 MB/s Feb 12 20:23:44.728799 kernel: raid6: neonx2 xor() 4382 MB/s Feb 12 20:23:44.746787 kernel: raid6: neonx1 gen() 4486 MB/s Feb 12 20:23:44.764796 kernel: raid6: neonx1 xor() 3582 MB/s Feb 12 20:23:44.782798 kernel: raid6: int64x8 gen() 3440 MB/s Feb 12 20:23:44.800800 kernel: raid6: int64x8 xor() 2045 MB/s Feb 12 20:23:44.818796 kernel: raid6: int64x4 gen() 3839 MB/s Feb 12 20:23:44.836796 kernel: raid6: int64x4 xor() 2158 MB/s Feb 12 20:23:44.854787 kernel: raid6: int64x2 gen() 3618 MB/s Feb 12 20:23:44.872793 kernel: raid6: int64x2 xor() 1916 MB/s Feb 12 20:23:44.890787 kernel: raid6: int64x1 gen() 2759 MB/s Feb 12 20:23:44.910376 kernel: raid6: int64x1 xor() 1436 MB/s Feb 12 20:23:44.910431 kernel: raid6: using algorithm neonx4 gen() 6527 MB/s Feb 12 20:23:44.910456 kernel: raid6: .... xor() 4633 MB/s, rmw enabled Feb 12 20:23:44.912203 kernel: raid6: using neon recovery algorithm Feb 12 20:23:44.930795 kernel: xor: measuring software checksum speed Feb 12 20:23:44.933789 kernel: 8regs : 9350 MB/sec Feb 12 20:23:44.936784 kernel: 32regs : 11102 MB/sec Feb 12 20:23:44.940382 kernel: arm64_neon : 9604 MB/sec Feb 12 20:23:44.940414 kernel: xor: using function: 32regs (11102 MB/sec) Feb 12 20:23:45.030803 kernel: Btrfs loaded, crc32c=crc32c-generic, zoned=no, fsverity=no Feb 12 20:23:45.047868 systemd[1]: Finished dracut-pre-udev.service. Feb 12 20:23:45.047000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-udev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:45.056000 audit: BPF prog-id=7 op=LOAD Feb 12 20:23:45.061265 kernel: audit: type=1130 audit(1707769425.047:8): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-udev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:45.061322 kernel: audit: type=1334 audit(1707769425.056:9): prog-id=7 op=LOAD Feb 12 20:23:45.059307 systemd[1]: Starting systemd-udevd.service... Feb 12 20:23:45.065548 kernel: audit: type=1334 audit(1707769425.056:10): prog-id=8 op=LOAD Feb 12 20:23:45.056000 audit: BPF prog-id=8 op=LOAD Feb 12 20:23:45.091292 systemd-udevd[507]: Using default interface naming scheme 'v252'. Feb 12 20:23:45.102220 systemd[1]: Started systemd-udevd.service. Feb 12 20:23:45.110092 systemd[1]: Starting dracut-pre-trigger.service... Feb 12 20:23:45.105000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:45.142269 dracut-pre-trigger[519]: rd.md=0: removing MD RAID activation Feb 12 20:23:45.204381 systemd[1]: Finished dracut-pre-trigger.service. Feb 12 20:23:45.204000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:45.207774 systemd[1]: Starting systemd-udev-trigger.service... Feb 12 20:23:45.320427 systemd[1]: Finished systemd-udev-trigger.service. Feb 12 20:23:45.321000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:45.436506 kernel: ACPI: \_SB_.PCI0.GSI1: Enabled at IRQ 36 Feb 12 20:23:45.436573 kernel: ena 0000:00:05.0: enabling device (0010 -> 0012) Feb 12 20:23:45.450762 kernel: ena 0000:00:05.0: ENA device version: 0.10 Feb 12 20:23:45.451072 kernel: ena 0000:00:05.0: ENA controller version: 0.0.1 implementation version 1 Feb 12 20:23:45.460788 kernel: ena 0000:00:05.0: Elastic Network Adapter (ENA) found at mem 80114000, mac addr 06:e0:64:80:72:83 Feb 12 20:23:45.461098 kernel: ACPI: \_SB_.PCI0.GSI0: Enabled at IRQ 35 Feb 12 20:23:45.463830 (udev-worker)[565]: Network interface NamePolicy= disabled on kernel command line. Feb 12 20:23:45.467930 kernel: nvme nvme0: pci function 0000:00:04.0 Feb 12 20:23:45.476781 kernel: nvme nvme0: 2/0/0 default/read/poll queues Feb 12 20:23:45.485949 kernel: GPT:Primary header thinks Alt. header is not at the end of the disk. Feb 12 20:23:45.486014 kernel: GPT:9289727 != 16777215 Feb 12 20:23:45.488407 kernel: GPT:Alternate GPT header not at the end of the disk. Feb 12 20:23:45.489828 kernel: GPT:9289727 != 16777215 Feb 12 20:23:45.491788 kernel: GPT: Use GNU Parted to correct GPT errors. Feb 12 20:23:45.493414 kernel: nvme0n1: p1 p2 p3 p4 p6 p7 p9 Feb 12 20:23:45.589805 kernel: BTRFS: device label OEM devid 1 transid 12 /dev/nvme0n1p6 scanned by (udev-worker) (554) Feb 12 20:23:45.620920 systemd[1]: Found device dev-disk-by\x2dlabel-EFI\x2dSYSTEM.device. Feb 12 20:23:45.663526 systemd[1]: Found device dev-disk-by\x2dlabel-OEM.device. Feb 12 20:23:45.693399 systemd[1]: Found device dev-disk-by\x2dpartlabel-USR\x2dA.device. Feb 12 20:23:45.697496 systemd[1]: Found device dev-disk-by\x2dpartuuid-7130c94a\x2d213a\x2d4e5a\x2d8e26\x2d6cce9662f132.device. Feb 12 20:23:45.720305 systemd[1]: Found device dev-disk-by\x2dlabel-ROOT.device. Feb 12 20:23:45.743192 systemd[1]: Starting disk-uuid.service... Feb 12 20:23:45.755148 disk-uuid[668]: Primary Header is updated. Feb 12 20:23:45.755148 disk-uuid[668]: Secondary Entries is updated. Feb 12 20:23:45.755148 disk-uuid[668]: Secondary Header is updated. Feb 12 20:23:45.764803 kernel: nvme0n1: p1 p2 p3 p4 p6 p7 p9 Feb 12 20:23:45.773787 kernel: nvme0n1: p1 p2 p3 p4 p6 p7 p9 Feb 12 20:23:46.778788 kernel: nvme0n1: p1 p2 p3 p4 p6 p7 p9 Feb 12 20:23:46.782355 disk-uuid[669]: The operation has completed successfully. Feb 12 20:23:46.938128 systemd[1]: disk-uuid.service: Deactivated successfully. Feb 12 20:23:46.938000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=disk-uuid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:46.940000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=disk-uuid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:46.938366 systemd[1]: Finished disk-uuid.service. Feb 12 20:23:46.973083 systemd[1]: Starting verity-setup.service... Feb 12 20:23:47.037787 kernel: device-mapper: verity: sha256 using implementation "sha256-ce" Feb 12 20:23:47.116523 systemd[1]: Found device dev-mapper-usr.device. Feb 12 20:23:47.122452 systemd[1]: Mounting sysusr-usr.mount... Feb 12 20:23:47.127121 systemd[1]: Finished verity-setup.service. Feb 12 20:23:47.127000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=verity-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:47.210469 kernel: EXT4-fs (dm-0): mounted filesystem without journal. Opts: norecovery. Quota mode: none. Feb 12 20:23:47.210348 systemd[1]: Mounted sysusr-usr.mount. Feb 12 20:23:47.212220 systemd[1]: afterburn-network-kargs.service was skipped because no trigger condition checks were met. Feb 12 20:23:47.218086 systemd[1]: Starting ignition-setup.service... Feb 12 20:23:47.228157 systemd[1]: Starting parse-ip-for-networkd.service... Feb 12 20:23:47.248084 kernel: BTRFS info (device nvme0n1p6): using crc32c (crc32c-generic) checksum algorithm Feb 12 20:23:47.248155 kernel: BTRFS info (device nvme0n1p6): using free space tree Feb 12 20:23:47.250375 kernel: BTRFS info (device nvme0n1p6): has skinny extents Feb 12 20:23:47.257809 kernel: BTRFS info (device nvme0n1p6): enabling ssd optimizations Feb 12 20:23:47.275392 systemd[1]: mnt-oem.mount: Deactivated successfully. Feb 12 20:23:47.306795 systemd[1]: Finished ignition-setup.service. Feb 12 20:23:47.308000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:47.311436 systemd[1]: Starting ignition-fetch-offline.service... Feb 12 20:23:47.379238 systemd[1]: Finished parse-ip-for-networkd.service. Feb 12 20:23:47.379000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=parse-ip-for-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:47.381000 audit: BPF prog-id=9 op=LOAD Feb 12 20:23:47.384456 systemd[1]: Starting systemd-networkd.service... Feb 12 20:23:47.434054 systemd-networkd[1097]: lo: Link UP Feb 12 20:23:47.434080 systemd-networkd[1097]: lo: Gained carrier Feb 12 20:23:47.438348 systemd-networkd[1097]: Enumeration completed Feb 12 20:23:47.438537 systemd[1]: Started systemd-networkd.service. Feb 12 20:23:47.442343 systemd-networkd[1097]: eth0: Configuring with /usr/lib/systemd/network/zz-default.network. Feb 12 20:23:47.440000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:47.446136 systemd[1]: Reached target network.target. Feb 12 20:23:47.451057 systemd[1]: Starting iscsiuio.service... Feb 12 20:23:47.454880 systemd-networkd[1097]: eth0: Link UP Feb 12 20:23:47.454894 systemd-networkd[1097]: eth0: Gained carrier Feb 12 20:23:47.466417 systemd[1]: Started iscsiuio.service. Feb 12 20:23:47.466000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsiuio comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:47.469716 systemd[1]: Starting iscsid.service... Feb 12 20:23:47.482803 iscsid[1102]: iscsid: can't open InitiatorName configuration file /etc/iscsi/initiatorname.iscsi Feb 12 20:23:47.482803 iscsid[1102]: iscsid: Warning: InitiatorName file /etc/iscsi/initiatorname.iscsi does not exist or does not contain a properly formatted InitiatorName. If using software iscsi (iscsi_tcp or ib_iser) or partial offload (bnx2i or cxgbi iscsi), you may not be able to log Feb 12 20:23:47.482803 iscsid[1102]: into or discover targets. Please create a file /etc/iscsi/initiatorname.iscsi that contains a sting with the format: InitiatorName=iqn.yyyy-mm.[:identifier]. Feb 12 20:23:47.482803 iscsid[1102]: Example: InitiatorName=iqn.2001-04.com.redhat:fc6. Feb 12 20:23:47.482803 iscsid[1102]: If using hardware iscsi like qla4xxx this message can be ignored. Feb 12 20:23:47.482803 iscsid[1102]: iscsid: can't open InitiatorAlias configuration file /etc/iscsi/initiatorname.iscsi Feb 12 20:23:47.482803 iscsid[1102]: iscsid: can't open iscsid.safe_logout configuration file /etc/iscsi/iscsid.conf Feb 12 20:23:47.483000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:47.471910 systemd-networkd[1097]: eth0: DHCPv4 address 172.31.20.28/20, gateway 172.31.16.1 acquired from 172.31.16.1 Feb 12 20:23:47.482859 systemd[1]: Started iscsid.service. Feb 12 20:23:47.487505 systemd[1]: Starting dracut-initqueue.service... Feb 12 20:23:47.538867 systemd[1]: Finished dracut-initqueue.service. Feb 12 20:23:47.537000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:47.540174 systemd[1]: Reached target remote-fs-pre.target. Feb 12 20:23:47.540443 systemd[1]: Reached target remote-cryptsetup.target. Feb 12 20:23:47.562000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:47.541019 systemd[1]: Reached target remote-fs.target. Feb 12 20:23:47.542675 systemd[1]: Starting dracut-pre-mount.service... Feb 12 20:23:47.559259 systemd[1]: Finished dracut-pre-mount.service. Feb 12 20:23:47.996451 ignition[1043]: Ignition 2.14.0 Feb 12 20:23:47.996483 ignition[1043]: Stage: fetch-offline Feb 12 20:23:47.996847 ignition[1043]: reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 12 20:23:47.996910 ignition[1043]: parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 12 20:23:48.018482 ignition[1043]: no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 12 20:23:48.021257 ignition[1043]: Ignition finished successfully Feb 12 20:23:48.024519 systemd[1]: Finished ignition-fetch-offline.service. Feb 12 20:23:48.050550 kernel: kauditd_printk_skb: 14 callbacks suppressed Feb 12 20:23:48.050592 kernel: audit: type=1130 audit(1707769428.022:25): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:48.022000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:48.042711 ignition[1121]: Ignition 2.14.0 Feb 12 20:23:48.027918 systemd[1]: Starting ignition-fetch.service... Feb 12 20:23:48.042773 ignition[1121]: Stage: fetch Feb 12 20:23:48.043180 ignition[1121]: reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 12 20:23:48.043262 ignition[1121]: parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 12 20:23:48.077767 ignition[1121]: no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 12 20:23:48.080146 ignition[1121]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 12 20:23:48.088735 ignition[1121]: INFO : PUT result: OK Feb 12 20:23:48.092416 ignition[1121]: DEBUG : parsed url from cmdline: "" Feb 12 20:23:48.092416 ignition[1121]: INFO : no config URL provided Feb 12 20:23:48.092416 ignition[1121]: INFO : reading system config file "/usr/lib/ignition/user.ign" Feb 12 20:23:48.098457 ignition[1121]: INFO : no config at "/usr/lib/ignition/user.ign" Feb 12 20:23:48.098457 ignition[1121]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 12 20:23:48.098457 ignition[1121]: INFO : PUT result: OK Feb 12 20:23:48.104545 ignition[1121]: INFO : GET http://169.254.169.254/2019-10-01/user-data: attempt #1 Feb 12 20:23:48.107191 ignition[1121]: INFO : GET result: OK Feb 12 20:23:48.108782 ignition[1121]: DEBUG : parsing config with SHA512: 575aeae6b20d93e73374819a38273aa4037d66cbbb24d7c1d470007f3ed384bb318b61079b077a52b32ed7ad3859cdb251cce3870386c45ab5353e71af9834d4 Feb 12 20:23:48.143235 unknown[1121]: fetched base config from "system" Feb 12 20:23:48.143267 unknown[1121]: fetched base config from "system" Feb 12 20:23:48.143283 unknown[1121]: fetched user config from "aws" Feb 12 20:23:48.149406 ignition[1121]: fetch: fetch complete Feb 12 20:23:48.149435 ignition[1121]: fetch: fetch passed Feb 12 20:23:48.149556 ignition[1121]: Ignition finished successfully Feb 12 20:23:48.155185 systemd[1]: Finished ignition-fetch.service. Feb 12 20:23:48.167346 kernel: audit: type=1130 audit(1707769428.155:26): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:48.155000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:48.158301 systemd[1]: Starting ignition-kargs.service... Feb 12 20:23:48.181946 ignition[1127]: Ignition 2.14.0 Feb 12 20:23:48.181976 ignition[1127]: Stage: kargs Feb 12 20:23:48.182277 ignition[1127]: reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 12 20:23:48.182331 ignition[1127]: parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 12 20:23:48.194961 ignition[1127]: no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 12 20:23:48.197410 ignition[1127]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 12 20:23:48.199978 ignition[1127]: INFO : PUT result: OK Feb 12 20:23:48.205028 ignition[1127]: kargs: kargs passed Feb 12 20:23:48.205142 ignition[1127]: Ignition finished successfully Feb 12 20:23:48.209819 systemd[1]: Finished ignition-kargs.service. Feb 12 20:23:48.213081 systemd[1]: Starting ignition-disks.service... Feb 12 20:23:48.209000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:48.229389 ignition[1133]: Ignition 2.14.0 Feb 12 20:23:48.229407 ignition[1133]: Stage: disks Feb 12 20:23:48.229719 ignition[1133]: reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 12 20:23:48.229886 ignition[1133]: parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 12 20:23:48.239785 kernel: audit: type=1130 audit(1707769428.209:27): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:48.245169 ignition[1133]: no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 12 20:23:48.247799 ignition[1133]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 12 20:23:48.251850 ignition[1133]: INFO : PUT result: OK Feb 12 20:23:48.257077 ignition[1133]: disks: disks passed Feb 12 20:23:48.258713 ignition[1133]: Ignition finished successfully Feb 12 20:23:48.262095 systemd[1]: Finished ignition-disks.service. Feb 12 20:23:48.287558 kernel: audit: type=1130 audit(1707769428.260:28): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:48.260000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:48.263494 systemd[1]: Reached target initrd-root-device.target. Feb 12 20:23:48.264383 systemd[1]: Reached target local-fs-pre.target. Feb 12 20:23:48.265162 systemd[1]: Reached target local-fs.target. Feb 12 20:23:48.265479 systemd[1]: Reached target sysinit.target. Feb 12 20:23:48.266154 systemd[1]: Reached target basic.target. Feb 12 20:23:48.268195 systemd[1]: Starting systemd-fsck-root.service... Feb 12 20:23:48.336447 systemd-fsck[1141]: ROOT: clean, 602/553520 files, 56014/553472 blocks Feb 12 20:23:48.345564 systemd[1]: Finished systemd-fsck-root.service. Feb 12 20:23:48.346000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:48.350317 systemd[1]: Mounting sysroot.mount... Feb 12 20:23:48.358566 kernel: audit: type=1130 audit(1707769428.346:29): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:48.376792 kernel: EXT4-fs (nvme0n1p9): mounted filesystem with ordered data mode. Opts: (null). Quota mode: none. Feb 12 20:23:48.378573 systemd[1]: Mounted sysroot.mount. Feb 12 20:23:48.381700 systemd[1]: Reached target initrd-root-fs.target. Feb 12 20:23:48.388006 systemd[1]: Mounting sysroot-usr.mount... Feb 12 20:23:48.392157 systemd[1]: flatcar-metadata-hostname.service was skipped because no trigger condition checks were met. Feb 12 20:23:48.392549 systemd[1]: ignition-remount-sysroot.service was skipped because of an unmet condition check (ConditionPathIsReadWrite=!/sysroot). Feb 12 20:23:48.392609 systemd[1]: Reached target ignition-diskful.target. Feb 12 20:23:48.404167 systemd[1]: Mounted sysroot-usr.mount. Feb 12 20:23:48.418703 systemd[1]: Mounting sysroot-usr-share-oem.mount... Feb 12 20:23:48.423901 systemd[1]: Starting initrd-setup-root.service... Feb 12 20:23:48.445864 kernel: BTRFS: device label OEM devid 1 transid 14 /dev/nvme0n1p6 scanned by mount (1158) Feb 12 20:23:48.448280 initrd-setup-root[1163]: cut: /sysroot/etc/passwd: No such file or directory Feb 12 20:23:48.453619 kernel: BTRFS info (device nvme0n1p6): using crc32c (crc32c-generic) checksum algorithm Feb 12 20:23:48.453658 kernel: BTRFS info (device nvme0n1p6): using free space tree Feb 12 20:23:48.453683 kernel: BTRFS info (device nvme0n1p6): has skinny extents Feb 12 20:23:48.465793 kernel: BTRFS info (device nvme0n1p6): enabling ssd optimizations Feb 12 20:23:48.471039 systemd[1]: Mounted sysroot-usr-share-oem.mount. Feb 12 20:23:48.475808 initrd-setup-root[1189]: cut: /sysroot/etc/group: No such file or directory Feb 12 20:23:48.483970 initrd-setup-root[1197]: cut: /sysroot/etc/shadow: No such file or directory Feb 12 20:23:48.492860 initrd-setup-root[1205]: cut: /sysroot/etc/gshadow: No such file or directory Feb 12 20:23:48.673086 systemd-networkd[1097]: eth0: Gained IPv6LL Feb 12 20:23:48.751433 systemd[1]: Finished initrd-setup-root.service. Feb 12 20:23:48.753000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:48.756117 systemd[1]: Starting ignition-mount.service... Feb 12 20:23:48.765849 kernel: audit: type=1130 audit(1707769428.753:30): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:48.766726 systemd[1]: Starting sysroot-boot.service... Feb 12 20:23:48.778668 systemd[1]: sysusr-usr-share-oem.mount: Deactivated successfully. Feb 12 20:23:48.778879 systemd[1]: sysroot-usr-share-oem.mount: Deactivated successfully. Feb 12 20:23:48.811252 systemd[1]: Finished sysroot-boot.service. Feb 12 20:23:48.818334 ignition[1225]: INFO : Ignition 2.14.0 Feb 12 20:23:48.818334 ignition[1225]: INFO : Stage: mount Feb 12 20:23:48.818334 ignition[1225]: INFO : reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 12 20:23:48.818334 ignition[1225]: DEBUG : parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 12 20:23:48.837065 kernel: audit: type=1130 audit(1707769428.823:31): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:48.823000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:48.843780 ignition[1225]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 12 20:23:48.846404 ignition[1225]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 12 20:23:48.849866 ignition[1225]: INFO : PUT result: OK Feb 12 20:23:48.855290 ignition[1225]: INFO : mount: mount passed Feb 12 20:23:48.858837 ignition[1225]: INFO : Ignition finished successfully Feb 12 20:23:48.861979 systemd[1]: Finished ignition-mount.service. Feb 12 20:23:48.864000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:48.866482 systemd[1]: Starting ignition-files.service... Feb 12 20:23:48.876043 kernel: audit: type=1130 audit(1707769428.864:32): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:48.882665 systemd[1]: Mounting sysroot-usr-share-oem.mount... Feb 12 20:23:48.899790 kernel: BTRFS: device label OEM devid 1 transid 15 /dev/nvme0n1p6 scanned by mount (1233) Feb 12 20:23:48.905989 kernel: BTRFS info (device nvme0n1p6): using crc32c (crc32c-generic) checksum algorithm Feb 12 20:23:48.906033 kernel: BTRFS info (device nvme0n1p6): using free space tree Feb 12 20:23:48.906058 kernel: BTRFS info (device nvme0n1p6): has skinny extents Feb 12 20:23:48.914797 kernel: BTRFS info (device nvme0n1p6): enabling ssd optimizations Feb 12 20:23:48.919086 systemd[1]: Mounted sysroot-usr-share-oem.mount. Feb 12 20:23:48.938336 ignition[1252]: INFO : Ignition 2.14.0 Feb 12 20:23:48.938336 ignition[1252]: INFO : Stage: files Feb 12 20:23:48.941966 ignition[1252]: INFO : reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 12 20:23:48.941966 ignition[1252]: DEBUG : parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 12 20:23:48.954969 ignition[1252]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 12 20:23:48.957625 ignition[1252]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 12 20:23:48.960746 ignition[1252]: INFO : PUT result: OK Feb 12 20:23:48.966021 ignition[1252]: DEBUG : files: compiled without relabeling support, skipping Feb 12 20:23:48.970152 ignition[1252]: INFO : files: ensureUsers: op(1): [started] creating or modifying user "core" Feb 12 20:23:48.970152 ignition[1252]: DEBUG : files: ensureUsers: op(1): executing: "usermod" "--root" "/sysroot" "core" Feb 12 20:23:49.011042 ignition[1252]: INFO : files: ensureUsers: op(1): [finished] creating or modifying user "core" Feb 12 20:23:49.015004 ignition[1252]: INFO : files: ensureUsers: op(2): [started] adding ssh keys to user "core" Feb 12 20:23:49.015004 ignition[1252]: INFO : files: ensureUsers: op(2): [finished] adding ssh keys to user "core" Feb 12 20:23:49.013879 unknown[1252]: wrote ssh authorized keys file for user: core Feb 12 20:23:49.022534 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(3): [started] writing file "/sysroot/opt/cni-plugins-linux-arm64-v1.3.0.tgz" Feb 12 20:23:49.022534 ignition[1252]: INFO : GET https://github.com/containernetworking/plugins/releases/download/v1.3.0/cni-plugins-linux-arm64-v1.3.0.tgz: attempt #1 Feb 12 20:23:49.373333 ignition[1252]: INFO : GET result: OK Feb 12 20:23:49.966406 ignition[1252]: DEBUG : file matches expected sum of: b2b7fb74f1b3cb8928f49e5bf9d4bc686e057e837fac3caf1b366d54757921dba80d70cc010399b274d136e8dee9a25b1ad87cdfdc4ffcf42cf88f3e8f99587a Feb 12 20:23:49.971174 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(3): [finished] writing file "/sysroot/opt/cni-plugins-linux-arm64-v1.3.0.tgz" Feb 12 20:23:49.971174 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(4): [started] writing file "/sysroot/opt/crictl-v1.27.0-linux-arm64.tar.gz" Feb 12 20:23:49.978962 ignition[1252]: INFO : GET https://github.com/kubernetes-sigs/cri-tools/releases/download/v1.27.0/crictl-v1.27.0-linux-arm64.tar.gz: attempt #1 Feb 12 20:23:50.240667 ignition[1252]: INFO : GET result: OK Feb 12 20:23:50.493134 ignition[1252]: DEBUG : file matches expected sum of: db062e43351a63347871e7094115be2ae3853afcd346d47f7b51141da8c3202c2df58d2e17359322f632abcb37474fd7fdb3b7aadbc5cfd5cf6d3bad040b6251 Feb 12 20:23:50.498214 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(4): [finished] writing file "/sysroot/opt/crictl-v1.27.0-linux-arm64.tar.gz" Feb 12 20:23:50.498214 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(5): [started] writing file "/sysroot/etc/eks/bootstrap.sh" Feb 12 20:23:50.498214 ignition[1252]: INFO : oem config not found in "/usr/share/oem", looking on oem partition Feb 12 20:23:50.520367 ignition[1252]: INFO : op(1): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3230714509" Feb 12 20:23:50.520367 ignition[1252]: CRITICAL : op(1): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3230714509": device or resource busy Feb 12 20:23:50.520367 ignition[1252]: ERROR : failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem3230714509", trying btrfs: device or resource busy Feb 12 20:23:50.520367 ignition[1252]: INFO : op(2): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3230714509" Feb 12 20:23:50.535196 kernel: BTRFS info: devid 1 device path /dev/nvme0n1p6 changed to /dev/disk/by-label/OEM scanned by ignition (1254) Feb 12 20:23:50.535230 ignition[1252]: INFO : op(2): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3230714509" Feb 12 20:23:50.550067 ignition[1252]: INFO : op(3): [started] unmounting "/mnt/oem3230714509" Feb 12 20:23:50.552525 ignition[1252]: INFO : op(3): [finished] unmounting "/mnt/oem3230714509" Feb 12 20:23:50.554774 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(5): [finished] writing file "/sysroot/etc/eks/bootstrap.sh" Feb 12 20:23:50.554774 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(6): [started] writing file "/sysroot/opt/bin/kubeadm" Feb 12 20:23:50.554774 ignition[1252]: INFO : GET https://dl.k8s.io/release/v1.27.2/bin/linux/arm64/kubeadm: attempt #1 Feb 12 20:23:50.566199 systemd[1]: mnt-oem3230714509.mount: Deactivated successfully. Feb 12 20:23:50.683272 ignition[1252]: INFO : GET result: OK Feb 12 20:23:51.319717 ignition[1252]: DEBUG : file matches expected sum of: 45b3100984c979ba0f1c0df8f4211474c2d75ebe916e677dff5fc8e3b3697cf7a953da94e356f39684cc860dff6878b772b7514c55651c2f866d9efeef23f970 Feb 12 20:23:51.324862 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(6): [finished] writing file "/sysroot/opt/bin/kubeadm" Feb 12 20:23:51.324862 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(7): [started] writing file "/sysroot/opt/bin/kubelet" Feb 12 20:23:51.324862 ignition[1252]: INFO : GET https://dl.k8s.io/release/v1.27.2/bin/linux/arm64/kubelet: attempt #1 Feb 12 20:23:51.391190 ignition[1252]: INFO : GET result: OK Feb 12 20:23:52.577564 ignition[1252]: DEBUG : file matches expected sum of: 71857ff499ae135fa478e1827a0ed8865e578a8d2b1e25876e914fd0beba03733801c0654bcd4c0567bafeb16887dafb2dbbe8d1116e6ea28dcd8366c142d348 Feb 12 20:23:52.583204 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(7): [finished] writing file "/sysroot/opt/bin/kubelet" Feb 12 20:23:52.583204 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(8): [started] writing file "/sysroot/home/core/install.sh" Feb 12 20:23:52.583204 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(8): [finished] writing file "/sysroot/home/core/install.sh" Feb 12 20:23:52.583204 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(9): [started] writing file "/sysroot/etc/docker/daemon.json" Feb 12 20:23:52.583204 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(9): [finished] writing file "/sysroot/etc/docker/daemon.json" Feb 12 20:23:52.583204 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(a): [started] writing file "/sysroot/etc/flatcar/update.conf" Feb 12 20:23:52.603718 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(a): [finished] writing file "/sysroot/etc/flatcar/update.conf" Feb 12 20:23:52.603718 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(b): [started] writing file "/sysroot/etc/amazon/ssm/amazon-ssm-agent.json" Feb 12 20:23:52.603718 ignition[1252]: INFO : oem config not found in "/usr/share/oem", looking on oem partition Feb 12 20:23:52.626893 ignition[1252]: INFO : op(4): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3997873424" Feb 12 20:23:52.626893 ignition[1252]: CRITICAL : op(4): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3997873424": device or resource busy Feb 12 20:23:52.626893 ignition[1252]: ERROR : failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem3997873424", trying btrfs: device or resource busy Feb 12 20:23:52.626893 ignition[1252]: INFO : op(5): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3997873424" Feb 12 20:23:52.626893 ignition[1252]: INFO : op(5): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3997873424" Feb 12 20:23:52.626893 ignition[1252]: INFO : op(6): [started] unmounting "/mnt/oem3997873424" Feb 12 20:23:52.626893 ignition[1252]: INFO : op(6): [finished] unmounting "/mnt/oem3997873424" Feb 12 20:23:52.626893 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(b): [finished] writing file "/sysroot/etc/amazon/ssm/amazon-ssm-agent.json" Feb 12 20:23:52.626893 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(c): [started] writing file "/sysroot/etc/amazon/ssm/seelog.xml" Feb 12 20:23:52.626893 ignition[1252]: INFO : oem config not found in "/usr/share/oem", looking on oem partition Feb 12 20:23:52.662437 systemd[1]: mnt-oem3997873424.mount: Deactivated successfully. Feb 12 20:23:52.680950 ignition[1252]: INFO : op(7): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem43644715" Feb 12 20:23:52.683912 ignition[1252]: CRITICAL : op(7): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem43644715": device or resource busy Feb 12 20:23:52.683912 ignition[1252]: ERROR : failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem43644715", trying btrfs: device or resource busy Feb 12 20:23:52.683912 ignition[1252]: INFO : op(8): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem43644715" Feb 12 20:23:52.683912 ignition[1252]: INFO : op(8): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem43644715" Feb 12 20:23:52.696263 ignition[1252]: INFO : op(9): [started] unmounting "/mnt/oem43644715" Feb 12 20:23:52.696263 ignition[1252]: INFO : op(9): [finished] unmounting "/mnt/oem43644715" Feb 12 20:23:52.696263 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(c): [finished] writing file "/sysroot/etc/amazon/ssm/seelog.xml" Feb 12 20:23:52.704110 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(d): [started] writing file "/sysroot/etc/systemd/system/nvidia.service" Feb 12 20:23:52.704110 ignition[1252]: INFO : oem config not found in "/usr/share/oem", looking on oem partition Feb 12 20:23:52.723329 ignition[1252]: INFO : op(a): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3982276871" Feb 12 20:23:52.723329 ignition[1252]: CRITICAL : op(a): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3982276871": device or resource busy Feb 12 20:23:52.723329 ignition[1252]: ERROR : failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem3982276871", trying btrfs: device or resource busy Feb 12 20:23:52.723329 ignition[1252]: INFO : op(b): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3982276871" Feb 12 20:23:52.723329 ignition[1252]: INFO : op(b): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3982276871" Feb 12 20:23:52.723329 ignition[1252]: INFO : op(c): [started] unmounting "/mnt/oem3982276871" Feb 12 20:23:52.740959 ignition[1252]: INFO : op(c): [finished] unmounting "/mnt/oem3982276871" Feb 12 20:23:52.740959 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(d): [finished] writing file "/sysroot/etc/systemd/system/nvidia.service" Feb 12 20:23:52.740959 ignition[1252]: INFO : files: op(e): [started] processing unit "nvidia.service" Feb 12 20:23:52.740959 ignition[1252]: INFO : files: op(e): [finished] processing unit "nvidia.service" Feb 12 20:23:52.740959 ignition[1252]: INFO : files: op(f): [started] processing unit "coreos-metadata-sshkeys@.service" Feb 12 20:23:52.740959 ignition[1252]: INFO : files: op(f): [finished] processing unit "coreos-metadata-sshkeys@.service" Feb 12 20:23:52.740959 ignition[1252]: INFO : files: op(10): [started] processing unit "amazon-ssm-agent.service" Feb 12 20:23:52.740959 ignition[1252]: INFO : files: op(10): op(11): [started] writing unit "amazon-ssm-agent.service" at "/sysroot/etc/systemd/system/amazon-ssm-agent.service" Feb 12 20:23:52.740959 ignition[1252]: INFO : files: op(10): op(11): [finished] writing unit "amazon-ssm-agent.service" at "/sysroot/etc/systemd/system/amazon-ssm-agent.service" Feb 12 20:23:52.740959 ignition[1252]: INFO : files: op(10): [finished] processing unit "amazon-ssm-agent.service" Feb 12 20:23:52.740959 ignition[1252]: INFO : files: op(12): [started] processing unit "prepare-cni-plugins.service" Feb 12 20:23:52.740959 ignition[1252]: INFO : files: op(12): op(13): [started] writing unit "prepare-cni-plugins.service" at "/sysroot/etc/systemd/system/prepare-cni-plugins.service" Feb 12 20:23:52.777187 ignition[1252]: INFO : files: op(12): op(13): [finished] writing unit "prepare-cni-plugins.service" at "/sysroot/etc/systemd/system/prepare-cni-plugins.service" Feb 12 20:23:52.777187 ignition[1252]: INFO : files: op(12): [finished] processing unit "prepare-cni-plugins.service" Feb 12 20:23:52.777187 ignition[1252]: INFO : files: op(14): [started] processing unit "prepare-critools.service" Feb 12 20:23:52.777187 ignition[1252]: INFO : files: op(14): op(15): [started] writing unit "prepare-critools.service" at "/sysroot/etc/systemd/system/prepare-critools.service" Feb 12 20:23:52.777187 ignition[1252]: INFO : files: op(14): op(15): [finished] writing unit "prepare-critools.service" at "/sysroot/etc/systemd/system/prepare-critools.service" Feb 12 20:23:52.777187 ignition[1252]: INFO : files: op(14): [finished] processing unit "prepare-critools.service" Feb 12 20:23:52.777187 ignition[1252]: INFO : files: op(16): [started] setting preset to enabled for "nvidia.service" Feb 12 20:23:52.777187 ignition[1252]: INFO : files: op(16): [finished] setting preset to enabled for "nvidia.service" Feb 12 20:23:52.777187 ignition[1252]: INFO : files: op(17): [started] setting preset to enabled for "coreos-metadata-sshkeys@.service " Feb 12 20:23:52.777187 ignition[1252]: INFO : files: op(17): [finished] setting preset to enabled for "coreos-metadata-sshkeys@.service " Feb 12 20:23:52.777187 ignition[1252]: INFO : files: op(18): [started] setting preset to enabled for "amazon-ssm-agent.service" Feb 12 20:23:52.777187 ignition[1252]: INFO : files: op(18): [finished] setting preset to enabled for "amazon-ssm-agent.service" Feb 12 20:23:52.777187 ignition[1252]: INFO : files: op(19): [started] setting preset to enabled for "prepare-cni-plugins.service" Feb 12 20:23:52.777187 ignition[1252]: INFO : files: op(19): [finished] setting preset to enabled for "prepare-cni-plugins.service" Feb 12 20:23:52.777187 ignition[1252]: INFO : files: op(1a): [started] setting preset to enabled for "prepare-critools.service" Feb 12 20:23:52.777187 ignition[1252]: INFO : files: op(1a): [finished] setting preset to enabled for "prepare-critools.service" Feb 12 20:23:52.834823 ignition[1252]: INFO : files: createResultFile: createFiles: op(1b): [started] writing file "/sysroot/etc/.ignition-result.json" Feb 12 20:23:52.834823 ignition[1252]: INFO : files: createResultFile: createFiles: op(1b): [finished] writing file "/sysroot/etc/.ignition-result.json" Feb 12 20:23:52.834823 ignition[1252]: INFO : files: files passed Feb 12 20:23:52.834823 ignition[1252]: INFO : Ignition finished successfully Feb 12 20:23:52.865092 kernel: audit: type=1130 audit(1707769432.848:33): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:52.848000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:52.839289 systemd[1]: Finished ignition-files.service. Feb 12 20:23:52.869521 systemd[1]: Starting initrd-setup-root-after-ignition.service... Feb 12 20:23:52.873987 systemd[1]: torcx-profile-populate.service was skipped because of an unmet condition check (ConditionPathExists=/sysroot/etc/torcx/next-profile). Feb 12 20:23:52.877639 systemd[1]: Starting ignition-quench.service... Feb 12 20:23:52.885603 systemd[1]: ignition-quench.service: Deactivated successfully. Feb 12 20:23:52.888037 systemd[1]: Finished ignition-quench.service. Feb 12 20:23:52.889000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:52.889000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:52.899806 kernel: audit: type=1130 audit(1707769432.889:34): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:52.914521 initrd-setup-root-after-ignition[1277]: grep: /sysroot/etc/flatcar/enabled-sysext.conf: No such file or directory Feb 12 20:23:52.918748 systemd[1]: Finished initrd-setup-root-after-ignition.service. Feb 12 20:23:52.920000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:52.922700 systemd[1]: Reached target ignition-complete.target. Feb 12 20:23:52.927364 systemd[1]: Starting initrd-parse-etc.service... Feb 12 20:23:52.957101 systemd[1]: initrd-parse-etc.service: Deactivated successfully. Feb 12 20:23:52.959162 systemd[1]: Finished initrd-parse-etc.service. Feb 12 20:23:52.959000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:52.960000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:52.962729 systemd[1]: Reached target initrd-fs.target. Feb 12 20:23:52.965718 systemd[1]: Reached target initrd.target. Feb 12 20:23:52.971492 systemd[1]: dracut-mount.service was skipped because no trigger condition checks were met. Feb 12 20:23:52.975618 systemd[1]: Starting dracut-pre-pivot.service... Feb 12 20:23:52.999143 systemd[1]: Finished dracut-pre-pivot.service. Feb 12 20:23:53.000000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.003911 systemd[1]: Starting initrd-cleanup.service... Feb 12 20:23:53.025056 systemd[1]: Stopped target nss-lookup.target. Feb 12 20:23:53.028617 systemd[1]: Stopped target remote-cryptsetup.target. Feb 12 20:23:53.032605 systemd[1]: Stopped target timers.target. Feb 12 20:23:53.032947 systemd[1]: dracut-pre-pivot.service: Deactivated successfully. Feb 12 20:23:53.036000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.033180 systemd[1]: Stopped dracut-pre-pivot.service. Feb 12 20:23:53.038213 systemd[1]: Stopped target initrd.target. Feb 12 20:23:53.041863 systemd[1]: Stopped target basic.target. Feb 12 20:23:53.043558 systemd[1]: Stopped target ignition-complete.target. Feb 12 20:23:53.046969 systemd[1]: Stopped target ignition-diskful.target. Feb 12 20:23:53.050423 systemd[1]: Stopped target initrd-root-device.target. Feb 12 20:23:53.052517 systemd[1]: Stopped target remote-fs.target. Feb 12 20:23:53.099880 kernel: kauditd_printk_skb: 6 callbacks suppressed Feb 12 20:23:53.099933 kernel: audit: type=1131 audit(1707769433.085:41): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.085000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.071574 systemd[1]: Stopped target remote-fs-pre.target. Feb 12 20:23:53.110791 kernel: audit: type=1131 audit(1707769433.100:42): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.100000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.074853 systemd[1]: Stopped target sysinit.target. Feb 12 20:23:53.122176 kernel: audit: type=1131 audit(1707769433.111:43): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.111000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.077712 systemd[1]: Stopped target local-fs.target. Feb 12 20:23:53.080386 systemd[1]: Stopped target local-fs-pre.target. Feb 12 20:23:53.124000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.083007 systemd[1]: Stopped target swap.target. Feb 12 20:23:53.135908 kernel: audit: type=1131 audit(1707769433.124:44): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.084672 systemd[1]: dracut-pre-mount.service: Deactivated successfully. Feb 12 20:23:53.084943 systemd[1]: Stopped dracut-pre-mount.service. Feb 12 20:23:53.096387 systemd[1]: Stopped target cryptsetup.target. Feb 12 20:23:53.098276 systemd[1]: dracut-initqueue.service: Deactivated successfully. Feb 12 20:23:53.099879 systemd[1]: Stopped dracut-initqueue.service. Feb 12 20:23:53.102204 systemd[1]: initrd-setup-root-after-ignition.service: Deactivated successfully. Feb 12 20:23:53.102436 systemd[1]: Stopped initrd-setup-root-after-ignition.service. Feb 12 20:23:53.113187 systemd[1]: ignition-files.service: Deactivated successfully. Feb 12 20:23:53.113397 systemd[1]: Stopped ignition-files.service. Feb 12 20:23:53.158000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.152366 systemd[1]: Stopping ignition-mount.service... Feb 12 20:23:53.187245 kernel: audit: type=1131 audit(1707769433.158:45): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.187286 kernel: audit: type=1131 audit(1707769433.167:46): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.167000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.155478 systemd[1]: Stopping sysroot-boot.service... Feb 12 20:23:53.157044 systemd[1]: systemd-udev-trigger.service: Deactivated successfully. Feb 12 20:23:53.157366 systemd[1]: Stopped systemd-udev-trigger.service. Feb 12 20:23:53.159517 systemd[1]: dracut-pre-trigger.service: Deactivated successfully. Feb 12 20:23:53.159738 systemd[1]: Stopped dracut-pre-trigger.service. Feb 12 20:23:53.196610 ignition[1290]: INFO : Ignition 2.14.0 Feb 12 20:23:53.196610 ignition[1290]: INFO : Stage: umount Feb 12 20:23:53.196610 ignition[1290]: INFO : reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 12 20:23:53.196610 ignition[1290]: DEBUG : parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 12 20:23:53.213979 kernel: audit: type=1130 audit(1707769433.176:47): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.176000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.175253 systemd[1]: initrd-cleanup.service: Deactivated successfully. Feb 12 20:23:53.175460 systemd[1]: Finished initrd-cleanup.service. Feb 12 20:23:53.226180 ignition[1290]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 12 20:23:53.235952 kernel: audit: type=1131 audit(1707769433.176:48): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.176000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.236671 ignition[1290]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 12 20:23:53.240162 ignition[1290]: INFO : PUT result: OK Feb 12 20:23:53.250210 ignition[1290]: INFO : umount: umount passed Feb 12 20:23:53.252186 ignition[1290]: INFO : Ignition finished successfully Feb 12 20:23:53.256648 systemd[1]: sysroot-boot.mount: Deactivated successfully. Feb 12 20:23:53.259382 systemd[1]: ignition-mount.service: Deactivated successfully. Feb 12 20:23:53.261397 systemd[1]: Stopped ignition-mount.service. Feb 12 20:23:53.263000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.264865 systemd[1]: ignition-disks.service: Deactivated successfully. Feb 12 20:23:53.273853 kernel: audit: type=1131 audit(1707769433.263:49): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.264962 systemd[1]: Stopped ignition-disks.service. Feb 12 20:23:53.275000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.277288 systemd[1]: ignition-kargs.service: Deactivated successfully. Feb 12 20:23:53.286517 kernel: audit: type=1131 audit(1707769433.275:50): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.277442 systemd[1]: Stopped ignition-kargs.service. Feb 12 20:23:53.288000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.289957 systemd[1]: ignition-fetch.service: Deactivated successfully. Feb 12 20:23:53.290061 systemd[1]: Stopped ignition-fetch.service. Feb 12 20:23:53.292000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.293352 systemd[1]: Stopped target network.target. Feb 12 20:23:53.297944 systemd[1]: ignition-fetch-offline.service: Deactivated successfully. Feb 12 20:23:53.298051 systemd[1]: Stopped ignition-fetch-offline.service. Feb 12 20:23:53.300000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.303303 systemd[1]: Stopped target paths.target. Feb 12 20:23:53.305126 systemd[1]: systemd-ask-password-console.path: Deactivated successfully. Feb 12 20:23:53.309810 systemd[1]: Stopped systemd-ask-password-console.path. Feb 12 20:23:53.313237 systemd[1]: Stopped target slices.target. Feb 12 20:23:53.316026 systemd[1]: Stopped target sockets.target. Feb 12 20:23:53.319129 systemd[1]: iscsid.socket: Deactivated successfully. Feb 12 20:23:53.319211 systemd[1]: Closed iscsid.socket. Feb 12 20:23:53.323547 systemd[1]: iscsiuio.socket: Deactivated successfully. Feb 12 20:23:53.323636 systemd[1]: Closed iscsiuio.socket. Feb 12 20:23:53.326793 systemd[1]: ignition-setup.service: Deactivated successfully. Feb 12 20:23:53.328151 systemd[1]: Stopped ignition-setup.service. Feb 12 20:23:53.330000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.333225 systemd[1]: Stopping systemd-networkd.service... Feb 12 20:23:53.336611 systemd[1]: Stopping systemd-resolved.service... Feb 12 20:23:53.337828 systemd-networkd[1097]: eth0: DHCPv6 lease lost Feb 12 20:23:53.340338 systemd[1]: systemd-networkd.service: Deactivated successfully. Feb 12 20:23:53.340544 systemd[1]: Stopped systemd-networkd.service. Feb 12 20:23:53.348000 audit: BPF prog-id=9 op=UNLOAD Feb 12 20:23:53.348000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.350348 systemd[1]: systemd-resolved.service: Deactivated successfully. Feb 12 20:23:53.352491 systemd[1]: Stopped systemd-resolved.service. Feb 12 20:23:53.353000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.355000 audit: BPF prog-id=6 op=UNLOAD Feb 12 20:23:53.357235 systemd[1]: systemd-networkd.socket: Deactivated successfully. Feb 12 20:23:53.357339 systemd[1]: Closed systemd-networkd.socket. Feb 12 20:23:53.366835 systemd[1]: Stopping network-cleanup.service... Feb 12 20:23:53.369977 systemd[1]: parse-ip-for-networkd.service: Deactivated successfully. Feb 12 20:23:53.370118 systemd[1]: Stopped parse-ip-for-networkd.service. Feb 12 20:23:53.373000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=parse-ip-for-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.376725 systemd[1]: systemd-sysctl.service: Deactivated successfully. Feb 12 20:23:53.377000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.379000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.376845 systemd[1]: Stopped systemd-sysctl.service. Feb 12 20:23:53.378775 systemd[1]: systemd-modules-load.service: Deactivated successfully. Feb 12 20:23:53.379120 systemd[1]: Stopped systemd-modules-load.service. Feb 12 20:23:53.382649 systemd[1]: Stopping systemd-udevd.service... Feb 12 20:23:53.394094 systemd[1]: network-cleanup.service: Deactivated successfully. Feb 12 20:23:53.394421 systemd[1]: Stopped network-cleanup.service. Feb 12 20:23:53.401000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=network-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.403306 systemd[1]: systemd-udevd.service: Deactivated successfully. Feb 12 20:23:53.405601 systemd[1]: Stopped systemd-udevd.service. Feb 12 20:23:53.407000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.408907 systemd[1]: systemd-udevd-control.socket: Deactivated successfully. Feb 12 20:23:53.409009 systemd[1]: Closed systemd-udevd-control.socket. Feb 12 20:23:53.414421 systemd[1]: systemd-udevd-kernel.socket: Deactivated successfully. Feb 12 20:23:53.414538 systemd[1]: Closed systemd-udevd-kernel.socket. Feb 12 20:23:53.420278 systemd[1]: dracut-pre-udev.service: Deactivated successfully. Feb 12 20:23:53.420409 systemd[1]: Stopped dracut-pre-udev.service. Feb 12 20:23:53.422000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-udev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.425430 systemd[1]: dracut-cmdline.service: Deactivated successfully. Feb 12 20:23:53.425529 systemd[1]: Stopped dracut-cmdline.service. Feb 12 20:23:53.429000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.430682 systemd[1]: dracut-cmdline-ask.service: Deactivated successfully. Feb 12 20:23:53.430794 systemd[1]: Stopped dracut-cmdline-ask.service. Feb 12 20:23:53.436000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.439513 systemd[1]: Starting initrd-udevadm-cleanup-db.service... Feb 12 20:23:53.447000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.441412 systemd[1]: systemd-tmpfiles-setup-dev.service: Deactivated successfully. Feb 12 20:23:53.441544 systemd[1]: Stopped systemd-tmpfiles-setup-dev.service. Feb 12 20:23:53.453208 systemd[1]: kmod-static-nodes.service: Deactivated successfully. Feb 12 20:23:53.453313 systemd[1]: Stopped kmod-static-nodes.service. Feb 12 20:23:53.464713 systemd[1]: systemd-vconsole-setup.service: Deactivated successfully. Feb 12 20:23:53.463000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.464849 systemd[1]: Stopped systemd-vconsole-setup.service. Feb 12 20:23:53.469000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.472934 systemd[1]: initrd-udevadm-cleanup-db.service: Deactivated successfully. Feb 12 20:23:53.473000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-udevadm-cleanup-db comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.473000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-udevadm-cleanup-db comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.473137 systemd[1]: Finished initrd-udevadm-cleanup-db.service. Feb 12 20:23:53.554245 systemd[1]: sysroot-boot.service: Deactivated successfully. Feb 12 20:23:53.555218 systemd[1]: Stopped sysroot-boot.service. Feb 12 20:23:53.556000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.558510 systemd[1]: Reached target initrd-switch-root.target. Feb 12 20:23:53.563431 systemd[1]: initrd-setup-root.service: Deactivated successfully. Feb 12 20:23:53.564378 systemd[1]: Stopped initrd-setup-root.service. Feb 12 20:23:53.562000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.570297 systemd[1]: Starting initrd-switch-root.service... Feb 12 20:23:53.587679 systemd[1]: Switching root. Feb 12 20:23:53.616490 iscsid[1102]: iscsid shutting down. Feb 12 20:23:53.618154 systemd-journald[309]: Received SIGTERM from PID 1 (systemd). Feb 12 20:23:53.618233 systemd-journald[309]: Journal stopped Feb 12 20:23:59.321257 kernel: SELinux: Class mctp_socket not defined in policy. Feb 12 20:23:59.321397 kernel: SELinux: Class anon_inode not defined in policy. Feb 12 20:23:59.321436 kernel: SELinux: the above unknown classes and permissions will be allowed Feb 12 20:23:59.321465 kernel: SELinux: policy capability network_peer_controls=1 Feb 12 20:23:59.321496 kernel: SELinux: policy capability open_perms=1 Feb 12 20:23:59.321527 kernel: SELinux: policy capability extended_socket_class=1 Feb 12 20:23:59.321557 kernel: SELinux: policy capability always_check_network=0 Feb 12 20:23:59.321588 kernel: SELinux: policy capability cgroup_seclabel=1 Feb 12 20:23:59.321619 kernel: SELinux: policy capability nnp_nosuid_transition=1 Feb 12 20:23:59.321650 kernel: SELinux: policy capability genfs_seclabel_symlinks=0 Feb 12 20:23:59.321679 kernel: SELinux: policy capability ioctl_skip_cloexec=0 Feb 12 20:23:59.321714 systemd[1]: Successfully loaded SELinux policy in 128.596ms. Feb 12 20:23:59.323258 systemd[1]: Relabelled /dev, /dev/shm, /run, /sys/fs/cgroup in 20ms. Feb 12 20:23:59.323326 systemd[1]: systemd 252 running in system mode (+PAM +AUDIT +SELINUX -APPARMOR +IMA +SMACK +SECCOMP +GCRYPT -GNUTLS +OPENSSL -ACL +BLKID +CURL -ELFUTILS -FIDO2 +IDN2 -IDN +IPTC +KMOD +LIBCRYPTSETUP +LIBFDISK +PCRE2 -PWQUALITY -P11KIT -QRENCODE -TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD -BPF_FRAMEWORK -XKBCOMMON +UTMP +SYSVINIT default-hierarchy=unified) Feb 12 20:23:59.323361 systemd[1]: Detected virtualization amazon. Feb 12 20:23:59.323393 systemd[1]: Detected architecture arm64. Feb 12 20:23:59.323430 systemd[1]: Detected first boot. Feb 12 20:23:59.323464 systemd[1]: Initializing machine ID from VM UUID. Feb 12 20:23:59.323499 kernel: SELinux: Context system_u:object_r:container_file_t:s0:c1022,c1023 is not valid (left unmapped). Feb 12 20:23:59.323531 systemd[1]: Populated /etc with preset unit settings. Feb 12 20:23:59.323565 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Feb 12 20:23:59.323603 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Feb 12 20:23:59.323639 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Feb 12 20:23:59.323671 kernel: kauditd_printk_skb: 39 callbacks suppressed Feb 12 20:23:59.323702 kernel: audit: type=1334 audit(1707769438.908:83): prog-id=12 op=LOAD Feb 12 20:23:59.323732 kernel: audit: type=1334 audit(1707769438.911:84): prog-id=3 op=UNLOAD Feb 12 20:23:59.323791 kernel: audit: type=1334 audit(1707769438.913:85): prog-id=13 op=LOAD Feb 12 20:23:59.323825 kernel: audit: type=1334 audit(1707769438.916:86): prog-id=14 op=LOAD Feb 12 20:23:59.323855 kernel: audit: type=1334 audit(1707769438.916:87): prog-id=4 op=UNLOAD Feb 12 20:23:59.323883 kernel: audit: type=1334 audit(1707769438.916:88): prog-id=5 op=UNLOAD Feb 12 20:23:59.323914 kernel: audit: type=1334 audit(1707769438.918:89): prog-id=15 op=LOAD Feb 12 20:23:59.323954 systemd[1]: iscsiuio.service: Deactivated successfully. Feb 12 20:23:59.323985 kernel: audit: type=1334 audit(1707769438.918:90): prog-id=12 op=UNLOAD Feb 12 20:23:59.324016 systemd[1]: Stopped iscsiuio.service. Feb 12 20:23:59.324046 kernel: audit: type=1334 audit(1707769438.921:91): prog-id=16 op=LOAD Feb 12 20:23:59.324081 kernel: audit: type=1334 audit(1707769438.923:92): prog-id=17 op=LOAD Feb 12 20:23:59.324109 systemd[1]: iscsid.service: Deactivated successfully. Feb 12 20:23:59.324143 systemd[1]: Stopped iscsid.service. Feb 12 20:23:59.324176 systemd[1]: initrd-switch-root.service: Deactivated successfully. Feb 12 20:23:59.324207 systemd[1]: Stopped initrd-switch-root.service. Feb 12 20:23:59.324239 systemd[1]: systemd-journald.service: Scheduled restart job, restart counter is at 1. Feb 12 20:23:59.324276 systemd[1]: Created slice system-addon\x2dconfig.slice. Feb 12 20:23:59.324312 systemd[1]: Created slice system-addon\x2drun.slice. Feb 12 20:23:59.324343 systemd[1]: Created slice system-coreos\x2dmetadata\x2dsshkeys.slice. Feb 12 20:23:59.324377 systemd[1]: Created slice system-getty.slice. Feb 12 20:23:59.324406 systemd[1]: Created slice system-modprobe.slice. Feb 12 20:23:59.324438 systemd[1]: Created slice system-serial\x2dgetty.slice. Feb 12 20:23:59.324470 systemd[1]: Created slice system-system\x2dcloudinit.slice. Feb 12 20:23:59.324500 systemd[1]: Created slice system-systemd\x2dfsck.slice. Feb 12 20:23:59.324532 systemd[1]: Created slice user.slice. Feb 12 20:23:59.324564 systemd[1]: Started systemd-ask-password-console.path. Feb 12 20:23:59.324598 systemd[1]: Started systemd-ask-password-wall.path. Feb 12 20:23:59.324630 systemd[1]: Set up automount boot.automount. Feb 12 20:23:59.324661 systemd[1]: Set up automount proc-sys-fs-binfmt_misc.automount. Feb 12 20:23:59.324691 systemd[1]: Stopped target initrd-switch-root.target. Feb 12 20:23:59.324724 systemd[1]: Stopped target initrd-fs.target. Feb 12 20:23:59.324771 systemd[1]: Stopped target initrd-root-fs.target. Feb 12 20:23:59.324807 systemd[1]: Reached target integritysetup.target. Feb 12 20:23:59.324837 systemd[1]: Reached target remote-cryptsetup.target. Feb 12 20:23:59.324870 systemd[1]: Reached target remote-fs.target. Feb 12 20:23:59.324906 systemd[1]: Reached target slices.target. Feb 12 20:23:59.324939 systemd[1]: Reached target swap.target. Feb 12 20:23:59.324974 systemd[1]: Reached target torcx.target. Feb 12 20:23:59.325004 systemd[1]: Reached target veritysetup.target. Feb 12 20:23:59.325037 systemd[1]: Listening on systemd-coredump.socket. Feb 12 20:23:59.325066 systemd[1]: Listening on systemd-initctl.socket. Feb 12 20:23:59.325096 systemd[1]: Listening on systemd-networkd.socket. Feb 12 20:23:59.325127 systemd[1]: Listening on systemd-udevd-control.socket. Feb 12 20:23:59.325157 systemd[1]: Listening on systemd-udevd-kernel.socket. Feb 12 20:23:59.325186 systemd[1]: Listening on systemd-userdbd.socket. Feb 12 20:23:59.325222 systemd[1]: Mounting dev-hugepages.mount... Feb 12 20:23:59.325251 systemd[1]: Mounting dev-mqueue.mount... Feb 12 20:23:59.325379 systemd[1]: Mounting media.mount... Feb 12 20:23:59.325413 systemd[1]: Mounting sys-kernel-debug.mount... Feb 12 20:23:59.325442 systemd[1]: Mounting sys-kernel-tracing.mount... Feb 12 20:23:59.325475 systemd[1]: Mounting tmp.mount... Feb 12 20:23:59.325504 systemd[1]: Starting flatcar-tmpfiles.service... Feb 12 20:23:59.325534 systemd[1]: ignition-delete-config.service was skipped because no trigger condition checks were met. Feb 12 20:23:59.325564 systemd[1]: Starting kmod-static-nodes.service... Feb 12 20:23:59.325600 systemd[1]: Starting modprobe@configfs.service... Feb 12 20:23:59.325630 systemd[1]: Starting modprobe@dm_mod.service... Feb 12 20:23:59.327240 systemd[1]: Starting modprobe@drm.service... Feb 12 20:23:59.327287 systemd[1]: Starting modprobe@efi_pstore.service... Feb 12 20:23:59.327318 systemd[1]: Starting modprobe@fuse.service... Feb 12 20:23:59.327351 systemd[1]: Starting modprobe@loop.service... Feb 12 20:23:59.327384 systemd[1]: setup-nsswitch.service was skipped because of an unmet condition check (ConditionPathExists=!/etc/nsswitch.conf). Feb 12 20:23:59.327415 systemd[1]: systemd-fsck-root.service: Deactivated successfully. Feb 12 20:23:59.327448 systemd[1]: Stopped systemd-fsck-root.service. Feb 12 20:23:59.328025 systemd[1]: systemd-fsck-usr.service: Deactivated successfully. Feb 12 20:23:59.328076 systemd[1]: Stopped systemd-fsck-usr.service. Feb 12 20:23:59.328137 systemd[1]: Stopped systemd-journald.service. Feb 12 20:23:59.328296 kernel: loop: module loaded Feb 12 20:23:59.328338 kernel: fuse: init (API version 7.34) Feb 12 20:23:59.328371 systemd[1]: Starting systemd-journald.service... Feb 12 20:23:59.328404 systemd[1]: Starting systemd-modules-load.service... Feb 12 20:23:59.328435 systemd[1]: Starting systemd-network-generator.service... Feb 12 20:23:59.328496 systemd[1]: Starting systemd-remount-fs.service... Feb 12 20:23:59.328536 systemd[1]: Starting systemd-udev-trigger.service... Feb 12 20:23:59.328568 systemd[1]: verity-setup.service: Deactivated successfully. Feb 12 20:23:59.328600 systemd[1]: Stopped verity-setup.service. Feb 12 20:23:59.328630 systemd[1]: Mounted dev-hugepages.mount. Feb 12 20:23:59.328659 systemd[1]: Mounted dev-mqueue.mount. Feb 12 20:23:59.328688 systemd[1]: Mounted media.mount. Feb 12 20:23:59.328717 systemd[1]: Mounted sys-kernel-debug.mount. Feb 12 20:23:59.328747 systemd[1]: Mounted sys-kernel-tracing.mount. Feb 12 20:23:59.328813 systemd[1]: Mounted tmp.mount. Feb 12 20:23:59.328845 systemd[1]: Finished kmod-static-nodes.service. Feb 12 20:23:59.328875 systemd[1]: modprobe@configfs.service: Deactivated successfully. Feb 12 20:23:59.328905 systemd[1]: Finished modprobe@configfs.service. Feb 12 20:23:59.328935 systemd[1]: modprobe@dm_mod.service: Deactivated successfully. Feb 12 20:23:59.328968 systemd[1]: Finished modprobe@dm_mod.service. Feb 12 20:23:59.329019 systemd[1]: modprobe@drm.service: Deactivated successfully. Feb 12 20:23:59.329052 systemd[1]: Finished modprobe@drm.service. Feb 12 20:23:59.329086 systemd-journald[1404]: Journal started Feb 12 20:23:59.329196 systemd-journald[1404]: Runtime Journal (/run/log/journal/ec22b3cfbc523381e746e6de43cb690f) is 8.0M, max 75.4M, 67.4M free. Feb 12 20:23:54.374000 audit: MAC_POLICY_LOAD auid=4294967295 ses=4294967295 lsm=selinux res=1 Feb 12 20:23:54.539000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=1 Feb 12 20:23:54.539000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=1 Feb 12 20:23:54.539000 audit: BPF prog-id=10 op=LOAD Feb 12 20:23:54.539000 audit: BPF prog-id=10 op=UNLOAD Feb 12 20:23:54.539000 audit: BPF prog-id=11 op=LOAD Feb 12 20:23:54.539000 audit: BPF prog-id=11 op=UNLOAD Feb 12 20:23:54.764000 audit[1325]: AVC avc: denied { associate } for pid=1325 comm="torcx-generator" name="docker" dev="tmpfs" ino=2 scontext=system_u:object_r:unlabeled_t:s0 tcontext=system_u:object_r:tmpfs_t:s0 tclass=filesystem permissive=1 srawcon="system_u:object_r:container_file_t:s0:c1022,c1023" Feb 12 20:23:54.764000 audit[1325]: SYSCALL arch=c00000b7 syscall=5 success=yes exit=0 a0=40001458ac a1=40000c6de0 a2=40000cd0c0 a3=32 items=0 ppid=1308 pid=1325 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="torcx-generator" exe="/usr/lib/systemd/system-generators/torcx-generator" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:23:54.764000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D2D67656E657261746F72732F746F7263782D67656E657261746F72002F72756E2F73797374656D642F67656E657261746F72002F72756E2F73797374656D642F67656E657261746F722E6561726C79002F72756E2F73797374656D642F67656E657261746F722E6C61 Feb 12 20:23:54.768000 audit[1325]: AVC avc: denied { associate } for pid=1325 comm="torcx-generator" name="bin" scontext=system_u:object_r:unlabeled_t:s0 tcontext=system_u:object_r:tmpfs_t:s0 tclass=filesystem permissive=1 Feb 12 20:23:54.768000 audit[1325]: SYSCALL arch=c00000b7 syscall=34 success=yes exit=0 a0=ffffffffffffff9c a1=4000145985 a2=1ed a3=0 items=2 ppid=1308 pid=1325 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="torcx-generator" exe="/usr/lib/systemd/system-generators/torcx-generator" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:23:54.768000 audit: CWD cwd="/" Feb 12 20:23:59.334470 systemd[1]: Started systemd-journald.service. Feb 12 20:23:54.768000 audit: PATH item=0 name=(null) inode=2 dev=00:1c mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:unlabeled_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:23:54.768000 audit: PATH item=1 name=(null) inode=3 dev=00:1c mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:unlabeled_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:23:54.768000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D2D67656E657261746F72732F746F7263782D67656E657261746F72002F72756E2F73797374656D642F67656E657261746F72002F72756E2F73797374656D642F67656E657261746F722E6561726C79002F72756E2F73797374656D642F67656E657261746F722E6C61 Feb 12 20:23:58.908000 audit: BPF prog-id=12 op=LOAD Feb 12 20:23:58.911000 audit: BPF prog-id=3 op=UNLOAD Feb 12 20:23:58.913000 audit: BPF prog-id=13 op=LOAD Feb 12 20:23:58.916000 audit: BPF prog-id=14 op=LOAD Feb 12 20:23:58.916000 audit: BPF prog-id=4 op=UNLOAD Feb 12 20:23:58.916000 audit: BPF prog-id=5 op=UNLOAD Feb 12 20:23:58.918000 audit: BPF prog-id=15 op=LOAD Feb 12 20:23:58.918000 audit: BPF prog-id=12 op=UNLOAD Feb 12 20:23:58.921000 audit: BPF prog-id=16 op=LOAD Feb 12 20:23:58.923000 audit: BPF prog-id=17 op=LOAD Feb 12 20:23:58.923000 audit: BPF prog-id=13 op=UNLOAD Feb 12 20:23:58.923000 audit: BPF prog-id=14 op=UNLOAD Feb 12 20:23:58.926000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:58.935000 audit: BPF prog-id=15 op=UNLOAD Feb 12 20:23:58.942000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=iscsiuio comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:58.948000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=iscsid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:58.956000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=initrd-switch-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:58.956000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=initrd-switch-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.204000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.211000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck-usr comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.216000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.216000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.217000 audit: BPF prog-id=18 op=LOAD Feb 12 20:23:59.218000 audit: BPF prog-id=19 op=LOAD Feb 12 20:23:59.218000 audit: BPF prog-id=20 op=LOAD Feb 12 20:23:59.218000 audit: BPF prog-id=16 op=UNLOAD Feb 12 20:23:59.218000 audit: BPF prog-id=17 op=UNLOAD Feb 12 20:23:59.269000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=verity-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.302000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.309000 audit: CONFIG_CHANGE op=set audit_enabled=1 old=1 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 res=1 Feb 12 20:23:59.309000 audit[1404]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=60 a0=6 a1=ffffd7055510 a2=4000 a3=1 items=0 ppid=1 pid=1404 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="systemd-journal" exe="/usr/lib/systemd/systemd-journald" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:23:59.309000 audit: PROCTITLE proctitle="/usr/lib/systemd/systemd-journald" Feb 12 20:23:59.311000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@configfs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.311000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@configfs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.320000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.320000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.330000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@drm comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.330000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@drm comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.335000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.339000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.339000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:58.905112 systemd[1]: Queued start job for default target multi-user.target. Feb 12 20:23:59.342000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@fuse comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.342000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@fuse comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.345000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.345000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:54.753304 /usr/lib/systemd/system-generators/torcx-generator[1325]: time="2024-02-12T20:23:54Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.2 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.2 /var/lib/torcx/store]" Feb 12 20:23:59.348000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:58.927639 systemd[1]: systemd-journald.service: Deactivated successfully. Feb 12 20:23:54.753958 /usr/lib/systemd/system-generators/torcx-generator[1325]: time="2024-02-12T20:23:54Z" level=debug msg="profile found" name=docker-1.12-no path=/usr/share/torcx/profiles/docker-1.12-no.json Feb 12 20:23:59.337606 systemd[1]: modprobe@efi_pstore.service: Deactivated successfully. Feb 12 20:23:54.754011 /usr/lib/systemd/system-generators/torcx-generator[1325]: time="2024-02-12T20:23:54Z" level=debug msg="profile found" name=vendor path=/usr/share/torcx/profiles/vendor.json Feb 12 20:23:59.339096 systemd[1]: Finished modprobe@efi_pstore.service. Feb 12 20:23:54.754078 /usr/lib/systemd/system-generators/torcx-generator[1325]: time="2024-02-12T20:23:54Z" level=info msg="no vendor profile selected by /etc/flatcar/docker-1.12" Feb 12 20:23:59.341670 systemd[1]: modprobe@fuse.service: Deactivated successfully. Feb 12 20:23:54.754105 /usr/lib/systemd/system-generators/torcx-generator[1325]: time="2024-02-12T20:23:54Z" level=debug msg="skipped missing lower profile" missing profile=oem Feb 12 20:23:59.342000 systemd[1]: Finished modprobe@fuse.service. Feb 12 20:23:54.754169 /usr/lib/systemd/system-generators/torcx-generator[1325]: time="2024-02-12T20:23:54Z" level=warning msg="no next profile: unable to read profile file: open /etc/torcx/next-profile: no such file or directory" Feb 12 20:23:59.344351 systemd[1]: modprobe@loop.service: Deactivated successfully. Feb 12 20:23:54.754201 /usr/lib/systemd/system-generators/torcx-generator[1325]: time="2024-02-12T20:23:54Z" level=debug msg="apply configuration parsed" lower profiles (vendor/oem)="[vendor]" upper profile (user)= Feb 12 20:23:59.344818 systemd[1]: Finished modprobe@loop.service. Feb 12 20:23:54.754647 /usr/lib/systemd/system-generators/torcx-generator[1325]: time="2024-02-12T20:23:54Z" level=debug msg="mounted tmpfs" target=/run/torcx/unpack Feb 12 20:23:59.356000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-network-generator comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.347293 systemd[1]: Finished systemd-modules-load.service. Feb 12 20:23:54.754737 /usr/lib/systemd/system-generators/torcx-generator[1325]: time="2024-02-12T20:23:54Z" level=debug msg="profile found" name=docker-1.12-no path=/usr/share/torcx/profiles/docker-1.12-no.json Feb 12 20:23:59.355031 systemd[1]: Finished systemd-network-generator.service. Feb 12 20:23:54.754802 /usr/lib/systemd/system-generators/torcx-generator[1325]: time="2024-02-12T20:23:54Z" level=debug msg="profile found" name=vendor path=/usr/share/torcx/profiles/vendor.json Feb 12 20:23:54.755682 /usr/lib/systemd/system-generators/torcx-generator[1325]: time="2024-02-12T20:23:54Z" level=debug msg="new archive/reference added to cache" format=tgz name=docker path="/usr/share/torcx/store/docker:20.10.torcx.tgz" reference=20.10 Feb 12 20:23:54.755796 /usr/lib/systemd/system-generators/torcx-generator[1325]: time="2024-02-12T20:23:54Z" level=debug msg="new archive/reference added to cache" format=tgz name=docker path="/usr/share/torcx/store/docker:com.coreos.cl.torcx.tgz" reference=com.coreos.cl Feb 12 20:23:54.755844 /usr/lib/systemd/system-generators/torcx-generator[1325]: time="2024-02-12T20:23:54Z" level=info msg="store skipped" err="open /usr/share/oem/torcx/store/3510.3.2: no such file or directory" path=/usr/share/oem/torcx/store/3510.3.2 Feb 12 20:23:54.755884 /usr/lib/systemd/system-generators/torcx-generator[1325]: time="2024-02-12T20:23:54Z" level=info msg="store skipped" err="open /usr/share/oem/torcx/store: no such file or directory" path=/usr/share/oem/torcx/store Feb 12 20:23:54.755930 /usr/lib/systemd/system-generators/torcx-generator[1325]: time="2024-02-12T20:23:54Z" level=info msg="store skipped" err="open /var/lib/torcx/store/3510.3.2: no such file or directory" path=/var/lib/torcx/store/3510.3.2 Feb 12 20:23:54.755968 /usr/lib/systemd/system-generators/torcx-generator[1325]: time="2024-02-12T20:23:54Z" level=info msg="store skipped" err="open /var/lib/torcx/store: no such file or directory" path=/var/lib/torcx/store Feb 12 20:23:57.971693 /usr/lib/systemd/system-generators/torcx-generator[1325]: time="2024-02-12T20:23:57Z" level=debug msg="image unpacked" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Feb 12 20:23:57.972254 /usr/lib/systemd/system-generators/torcx-generator[1325]: time="2024-02-12T20:23:57Z" level=debug msg="binaries propagated" assets="[/bin/containerd /bin/containerd-shim /bin/ctr /bin/docker /bin/docker-containerd /bin/docker-containerd-shim /bin/docker-init /bin/docker-proxy /bin/docker-runc /bin/dockerd /bin/runc /bin/tini]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Feb 12 20:23:59.361000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-remount-fs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.361096 systemd[1]: Finished systemd-remount-fs.service. Feb 12 20:23:57.972486 /usr/lib/systemd/system-generators/torcx-generator[1325]: time="2024-02-12T20:23:57Z" level=debug msg="networkd units propagated" assets="[/lib/systemd/network/50-docker.network /lib/systemd/network/90-docker-veth.network]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Feb 12 20:23:57.972969 /usr/lib/systemd/system-generators/torcx-generator[1325]: time="2024-02-12T20:23:57Z" level=debug msg="systemd units propagated" assets="[/lib/systemd/system/containerd.service /lib/systemd/system/docker.service /lib/systemd/system/docker.socket /lib/systemd/system/sockets.target.wants /lib/systemd/system/multi-user.target.wants]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Feb 12 20:23:57.973098 /usr/lib/systemd/system-generators/torcx-generator[1325]: time="2024-02-12T20:23:57Z" level=debug msg="profile applied" sealed profile=/run/torcx/profile.json upper profile= Feb 12 20:23:57.973278 /usr/lib/systemd/system-generators/torcx-generator[1325]: time="2024-02-12T20:23:57Z" level=debug msg="system state sealed" content="[TORCX_LOWER_PROFILES=\"vendor\" TORCX_UPPER_PROFILE=\"\" TORCX_PROFILE_PATH=\"/run/torcx/profile.json\" TORCX_BINDIR=\"/run/torcx/bin\" TORCX_UNPACKDIR=\"/run/torcx/unpack\"]" path=/run/metadata/torcx Feb 12 20:23:59.364629 systemd[1]: Reached target network-pre.target. Feb 12 20:23:59.369429 systemd[1]: Mounting sys-fs-fuse-connections.mount... Feb 12 20:23:59.374374 systemd[1]: Mounting sys-kernel-config.mount... Feb 12 20:23:59.376983 systemd[1]: remount-root.service was skipped because of an unmet condition check (ConditionPathIsReadWrite=!/). Feb 12 20:23:59.382233 systemd[1]: Starting systemd-hwdb-update.service... Feb 12 20:23:59.386149 systemd[1]: Starting systemd-journal-flush.service... Feb 12 20:23:59.388012 systemd[1]: systemd-pstore.service was skipped because of an unmet condition check (ConditionDirectoryNotEmpty=/sys/fs/pstore). Feb 12 20:23:59.390284 systemd[1]: Starting systemd-random-seed.service... Feb 12 20:23:59.393093 systemd[1]: systemd-repart.service was skipped because no trigger condition checks were met. Feb 12 20:23:59.395490 systemd[1]: Starting systemd-sysctl.service... Feb 12 20:23:59.403073 systemd[1]: Mounted sys-fs-fuse-connections.mount. Feb 12 20:23:59.405144 systemd[1]: Mounted sys-kernel-config.mount. Feb 12 20:23:59.431653 systemd-journald[1404]: Time spent on flushing to /var/log/journal/ec22b3cfbc523381e746e6de43cb690f is 74.720ms for 1149 entries. Feb 12 20:23:59.431653 systemd-journald[1404]: System Journal (/var/log/journal/ec22b3cfbc523381e746e6de43cb690f) is 8.0M, max 195.6M, 187.6M free. Feb 12 20:23:59.554970 systemd-journald[1404]: Received client request to flush runtime journal. Feb 12 20:23:59.447000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-random-seed comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.467000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.516000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=flatcar-tmpfiles comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.446459 systemd[1]: Finished systemd-random-seed.service. Feb 12 20:23:59.448627 systemd[1]: Reached target first-boot-complete.target. Feb 12 20:23:59.466476 systemd[1]: Finished systemd-sysctl.service. Feb 12 20:23:59.516083 systemd[1]: Finished flatcar-tmpfiles.service. Feb 12 20:23:59.520868 systemd[1]: Starting systemd-sysusers.service... Feb 12 20:23:59.557097 systemd[1]: Finished systemd-journal-flush.service. Feb 12 20:23:59.557000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journal-flush comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.584151 systemd[1]: Finished systemd-udev-trigger.service. Feb 12 20:23:59.584000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.588249 systemd[1]: Starting systemd-udev-settle.service... Feb 12 20:23:59.608604 udevadm[1444]: systemd-udev-settle.service is deprecated. Please fix lvm2-activation.service, lvm2-activation-early.service not to pull it in. Feb 12 20:23:59.617622 systemd[1]: Finished systemd-sysusers.service. Feb 12 20:23:59.618000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysusers comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.621886 systemd[1]: Starting systemd-tmpfiles-setup-dev.service... Feb 12 20:23:59.736125 systemd[1]: Finished systemd-tmpfiles-setup-dev.service. Feb 12 20:23:59.737000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:00.372572 systemd[1]: Finished systemd-hwdb-update.service. Feb 12 20:24:00.374000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-hwdb-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:00.375000 audit: BPF prog-id=21 op=LOAD Feb 12 20:24:00.375000 audit: BPF prog-id=22 op=LOAD Feb 12 20:24:00.375000 audit: BPF prog-id=7 op=UNLOAD Feb 12 20:24:00.375000 audit: BPF prog-id=8 op=UNLOAD Feb 12 20:24:00.378523 systemd[1]: Starting systemd-udevd.service... Feb 12 20:24:00.416268 systemd-udevd[1447]: Using default interface naming scheme 'v252'. Feb 12 20:24:00.483366 systemd[1]: Started systemd-udevd.service. Feb 12 20:24:00.484000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:00.486000 audit: BPF prog-id=23 op=LOAD Feb 12 20:24:00.489152 systemd[1]: Starting systemd-networkd.service... Feb 12 20:24:00.495000 audit: BPF prog-id=24 op=LOAD Feb 12 20:24:00.495000 audit: BPF prog-id=25 op=LOAD Feb 12 20:24:00.495000 audit: BPF prog-id=26 op=LOAD Feb 12 20:24:00.498878 systemd[1]: Starting systemd-userdbd.service... Feb 12 20:24:00.583214 systemd[1]: Started systemd-userdbd.service. Feb 12 20:24:00.583000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-userdbd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:00.587776 systemd[1]: Condition check resulted in dev-ttyS0.device being skipped. Feb 12 20:24:00.602477 (udev-worker)[1467]: Network interface NamePolicy= disabled on kernel command line. Feb 12 20:24:00.772548 systemd-networkd[1456]: lo: Link UP Feb 12 20:24:00.772569 systemd-networkd[1456]: lo: Gained carrier Feb 12 20:24:00.773593 systemd-networkd[1456]: Enumeration completed Feb 12 20:24:00.774000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:00.773816 systemd[1]: Started systemd-networkd.service. Feb 12 20:24:00.773832 systemd-networkd[1456]: eth0: Configuring with /usr/lib/systemd/network/zz-default.network. Feb 12 20:24:00.778328 systemd[1]: Starting systemd-networkd-wait-online.service... Feb 12 20:24:00.787898 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 12 20:24:00.786444 systemd-networkd[1456]: eth0: Link UP Feb 12 20:24:00.786744 systemd-networkd[1456]: eth0: Gained carrier Feb 12 20:24:00.802971 systemd-networkd[1456]: eth0: DHCPv4 address 172.31.20.28/20, gateway 172.31.16.1 acquired from 172.31.16.1 Feb 12 20:24:00.846858 kernel: BTRFS info: devid 1 device path /dev/disk/by-label/OEM changed to /dev/nvme0n1p6 scanned by (udev-worker) (1463) Feb 12 20:24:00.968427 systemd[1]: Found device dev-disk-by\x2dlabel-OEM.device. Feb 12 20:24:00.971166 systemd[1]: Finished systemd-udev-settle.service. Feb 12 20:24:00.971000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udev-settle comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:00.975736 systemd[1]: Starting lvm2-activation-early.service... Feb 12 20:24:01.010727 lvm[1566]: WARNING: Failed to connect to lvmetad. Falling back to device scanning. Feb 12 20:24:01.050485 systemd[1]: Finished lvm2-activation-early.service. Feb 12 20:24:01.052684 systemd[1]: Reached target cryptsetup.target. Feb 12 20:24:01.050000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=lvm2-activation-early comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:01.057087 systemd[1]: Starting lvm2-activation.service... Feb 12 20:24:01.065249 lvm[1567]: WARNING: Failed to connect to lvmetad. Falling back to device scanning. Feb 12 20:24:01.101481 systemd[1]: Finished lvm2-activation.service. Feb 12 20:24:01.102000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=lvm2-activation comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:01.103856 systemd[1]: Reached target local-fs-pre.target. Feb 12 20:24:01.105977 systemd[1]: var-lib-machines.mount was skipped because of an unmet condition check (ConditionPathExists=/var/lib/machines.raw). Feb 12 20:24:01.106047 systemd[1]: Reached target local-fs.target. Feb 12 20:24:01.107913 systemd[1]: Reached target machines.target. Feb 12 20:24:01.111922 systemd[1]: Starting ldconfig.service... Feb 12 20:24:01.114386 systemd[1]: systemd-binfmt.service was skipped because no trigger condition checks were met. Feb 12 20:24:01.114538 systemd[1]: systemd-boot-system-token.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/LoaderFeatures-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Feb 12 20:24:01.117074 systemd[1]: Starting systemd-boot-update.service... Feb 12 20:24:01.121710 systemd[1]: Starting systemd-fsck@dev-disk-by\x2dlabel-OEM.service... Feb 12 20:24:01.126725 systemd[1]: Starting systemd-machine-id-commit.service... Feb 12 20:24:01.129247 systemd[1]: systemd-sysext.service was skipped because no trigger condition checks were met. Feb 12 20:24:01.129403 systemd[1]: ensure-sysext.service was skipped because no trigger condition checks were met. Feb 12 20:24:01.132154 systemd[1]: Starting systemd-tmpfiles-setup.service... Feb 12 20:24:01.149631 systemd[1]: boot.automount: Got automount request for /boot, triggered by 1569 (bootctl) Feb 12 20:24:01.152033 systemd[1]: Starting systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM.service... Feb 12 20:24:01.165844 systemd-tmpfiles[1572]: /usr/lib/tmpfiles.d/legacy.conf:13: Duplicate line for path "/run/lock", ignoring. Feb 12 20:24:01.171565 systemd-tmpfiles[1572]: /usr/lib/tmpfiles.d/provision.conf:20: Duplicate line for path "/root", ignoring. Feb 12 20:24:01.186910 systemd-tmpfiles[1572]: /usr/lib/tmpfiles.d/systemd.conf:29: Duplicate line for path "/var/lib/systemd", ignoring. Feb 12 20:24:01.197000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck@dev-disk-by\x2dlabel-OEM comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:01.199561 systemd[1]: Finished systemd-fsck@dev-disk-by\x2dlabel-OEM.service. Feb 12 20:24:01.303409 systemd-fsck[1577]: fsck.fat 4.2 (2021-01-31) Feb 12 20:24:01.303409 systemd-fsck[1577]: /dev/nvme0n1p1: 236 files, 113719/258078 clusters Feb 12 20:24:01.307973 systemd[1]: Finished systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM.service. Feb 12 20:24:01.309000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:01.312962 systemd[1]: Mounting boot.mount... Feb 12 20:24:01.328059 systemd[1]: Mounted boot.mount. Feb 12 20:24:01.359779 systemd[1]: Finished systemd-boot-update.service. Feb 12 20:24:01.360000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-boot-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:01.548444 systemd[1]: Finished systemd-tmpfiles-setup.service. Feb 12 20:24:01.549000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-tmpfiles-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:01.553120 systemd[1]: Starting audit-rules.service... Feb 12 20:24:01.557646 systemd[1]: Starting clean-ca-certificates.service... Feb 12 20:24:01.566000 audit: BPF prog-id=27 op=LOAD Feb 12 20:24:01.564125 systemd[1]: Starting systemd-journal-catalog-update.service... Feb 12 20:24:01.574000 audit: BPF prog-id=28 op=LOAD Feb 12 20:24:01.573321 systemd[1]: Starting systemd-resolved.service... Feb 12 20:24:01.580146 systemd[1]: Starting systemd-timesyncd.service... Feb 12 20:24:01.585459 systemd[1]: Starting systemd-update-utmp.service... Feb 12 20:24:01.614802 systemd[1]: Finished clean-ca-certificates.service. Feb 12 20:24:01.615000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=clean-ca-certificates comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:01.617252 systemd[1]: update-ca-certificates.service was skipped because of an unmet condition check (ConditionPathIsSymbolicLink=!/etc/ssl/certs/ca-certificates.crt). Feb 12 20:24:01.620000 audit[1597]: SYSTEM_BOOT pid=1597 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg=' comm="systemd-update-utmp" exe="/usr/lib/systemd/systemd-update-utmp" hostname=? addr=? terminal=? res=success' Feb 12 20:24:01.627892 systemd[1]: Finished systemd-update-utmp.service. Feb 12 20:24:01.628000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-update-utmp comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:01.755241 systemd[1]: Started systemd-timesyncd.service. Feb 12 20:24:01.756000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-timesyncd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:01.757170 systemd[1]: Reached target time-set.target. Feb 12 20:24:01.792938 systemd-networkd[1456]: eth0: Gained IPv6LL Feb 12 20:24:01.795989 systemd[1]: Finished systemd-networkd-wait-online.service. Feb 12 20:24:01.796000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-networkd-wait-online comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:01.798707 systemd-resolved[1595]: Positive Trust Anchors: Feb 12 20:24:01.798735 systemd-resolved[1595]: . IN DS 20326 8 2 e06d44b80b8f1d39a95c0b0d7c65d08458e880409bbc683457104237c7f8ec8d Feb 12 20:24:01.798811 systemd-resolved[1595]: Negative trust anchors: home.arpa 10.in-addr.arpa 16.172.in-addr.arpa 17.172.in-addr.arpa 18.172.in-addr.arpa 19.172.in-addr.arpa 20.172.in-addr.arpa 21.172.in-addr.arpa 22.172.in-addr.arpa 23.172.in-addr.arpa 24.172.in-addr.arpa 25.172.in-addr.arpa 26.172.in-addr.arpa 27.172.in-addr.arpa 28.172.in-addr.arpa 29.172.in-addr.arpa 30.172.in-addr.arpa 31.172.in-addr.arpa 168.192.in-addr.arpa d.f.ip6.arpa corp home internal intranet lan local private test Feb 12 20:24:01.854138 systemd[1]: Finished systemd-journal-catalog-update.service. Feb 12 20:24:01.855000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journal-catalog-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:01.877695 systemd-timesyncd[1596]: Contacted time server 192.245.12.21:123 (0.flatcar.pool.ntp.org). Feb 12 20:24:01.877969 systemd-timesyncd[1596]: Initial clock synchronization to Mon 2024-02-12 20:24:01.942592 UTC. Feb 12 20:24:01.942000 audit: CONFIG_CHANGE auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=add_rule key=(null) list=5 res=1 Feb 12 20:24:01.942000 audit[1613]: SYSCALL arch=c00000b7 syscall=206 success=yes exit=1056 a0=3 a1=ffffe0d26b60 a2=420 a3=0 items=0 ppid=1591 pid=1613 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:01.942000 audit: PROCTITLE proctitle=2F7362696E2F617564697463746C002D52002F6574632F61756469742F61756469742E72756C6573 Feb 12 20:24:01.945513 augenrules[1613]: No rules Feb 12 20:24:01.947472 systemd[1]: Finished audit-rules.service. Feb 12 20:24:02.026501 systemd-resolved[1595]: Defaulting to hostname 'linux'. Feb 12 20:24:02.030184 systemd[1]: Started systemd-resolved.service. Feb 12 20:24:02.032133 systemd[1]: Reached target network.target. Feb 12 20:24:02.033920 systemd[1]: Reached target network-online.target. Feb 12 20:24:02.035784 systemd[1]: Reached target nss-lookup.target. Feb 12 20:24:02.110359 systemd[1]: etc-machine\x2did.mount: Deactivated successfully. Feb 12 20:24:02.111485 systemd[1]: Finished systemd-machine-id-commit.service. Feb 12 20:24:02.403451 ldconfig[1568]: /sbin/ldconfig: /lib/ld.so.conf is not an ELF file - it has the wrong magic bytes at the start. Feb 12 20:24:02.409469 systemd[1]: Finished ldconfig.service. Feb 12 20:24:02.414397 systemd[1]: Starting systemd-update-done.service... Feb 12 20:24:02.427891 systemd[1]: Finished systemd-update-done.service. Feb 12 20:24:02.432092 systemd[1]: Reached target sysinit.target. Feb 12 20:24:02.434027 systemd[1]: Started motdgen.path. Feb 12 20:24:02.435871 systemd[1]: Started user-cloudinit@var-lib-flatcar\x2dinstall-user_data.path. Feb 12 20:24:02.438558 systemd[1]: Started logrotate.timer. Feb 12 20:24:02.440410 systemd[1]: Started mdadm.timer. Feb 12 20:24:02.441952 systemd[1]: Started systemd-tmpfiles-clean.timer. Feb 12 20:24:02.443861 systemd[1]: update-engine-stub.timer was skipped because of an unmet condition check (ConditionPathExists=/usr/.noupdate). Feb 12 20:24:02.443927 systemd[1]: Reached target paths.target. Feb 12 20:24:02.445475 systemd[1]: Reached target timers.target. Feb 12 20:24:02.448871 systemd[1]: Listening on dbus.socket. Feb 12 20:24:02.452389 systemd[1]: Starting docker.socket... Feb 12 20:24:02.458735 systemd[1]: Listening on sshd.socket. Feb 12 20:24:02.460566 systemd[1]: systemd-pcrphase-sysinit.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/StubPcrKernelImage-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Feb 12 20:24:02.461470 systemd[1]: Listening on docker.socket. Feb 12 20:24:02.463250 systemd[1]: Reached target sockets.target. Feb 12 20:24:02.465028 systemd[1]: Reached target basic.target. Feb 12 20:24:02.466812 systemd[1]: addon-config@usr-share-oem.service was skipped because no trigger condition checks were met. Feb 12 20:24:02.466881 systemd[1]: addon-run@usr-share-oem.service was skipped because no trigger condition checks were met. Feb 12 20:24:02.469142 systemd[1]: Started amazon-ssm-agent.service. Feb 12 20:24:02.473399 systemd[1]: Starting containerd.service... Feb 12 20:24:02.479396 systemd[1]: Starting coreos-metadata-sshkeys@core.service... Feb 12 20:24:02.505821 systemd[1]: Starting dbus.service... Feb 12 20:24:02.510610 systemd[1]: Starting enable-oem-cloudinit.service... Feb 12 20:24:02.515651 systemd[1]: Starting extend-filesystems.service... Feb 12 20:24:02.517445 systemd[1]: flatcar-setup-environment.service was skipped because of an unmet condition check (ConditionPathExists=/usr/share/oem/bin/flatcar-setup-environment). Feb 12 20:24:02.520025 systemd[1]: Starting motdgen.service... Feb 12 20:24:02.528078 systemd[1]: Started nvidia.service. Feb 12 20:24:02.532424 systemd[1]: Starting prepare-cni-plugins.service... Feb 12 20:24:02.538160 systemd[1]: Starting prepare-critools.service... Feb 12 20:24:02.542379 systemd[1]: Starting ssh-key-proc-cmdline.service... Feb 12 20:24:02.546518 systemd[1]: Starting sshd-keygen.service... Feb 12 20:24:02.557819 systemd[1]: Starting systemd-logind.service... Feb 12 20:24:02.559995 systemd[1]: systemd-pcrphase.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/StubPcrKernelImage-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Feb 12 20:24:02.560128 systemd[1]: tcsd.service was skipped because of an unmet condition check (ConditionPathExists=/dev/tpm0). Feb 12 20:24:02.618554 tar[1638]: ./ Feb 12 20:24:02.618554 tar[1638]: ./loopback Feb 12 20:24:02.561153 systemd[1]: cgroup compatibility translation between legacy and unified hierarchy settings activated. See cgroup-compat debug messages for details. Feb 12 20:24:02.564417 systemd[1]: Starting update-engine.service... Feb 12 20:24:02.569729 systemd[1]: Starting update-ssh-keys-after-ignition.service... Feb 12 20:24:02.625567 systemd[1]: enable-oem-cloudinit.service: Skipped due to 'exec-condition'. Feb 12 20:24:02.651209 jq[1625]: false Feb 12 20:24:02.651405 jq[1636]: true Feb 12 20:24:02.625952 systemd[1]: Condition check resulted in enable-oem-cloudinit.service being skipped. Feb 12 20:24:02.626593 systemd[1]: ssh-key-proc-cmdline.service: Deactivated successfully. Feb 12 20:24:02.626925 systemd[1]: Finished ssh-key-proc-cmdline.service. Feb 12 20:24:02.702005 jq[1648]: true Feb 12 20:24:02.708192 tar[1642]: crictl Feb 12 20:24:02.730633 dbus-daemon[1624]: [system] SELinux support is enabled Feb 12 20:24:02.737574 systemd[1]: Started dbus.service. Feb 12 20:24:02.742592 systemd[1]: system-cloudinit@usr-share-oem-cloud\x2dconfig.yml.service was skipped because of an unmet condition check (ConditionFileNotEmpty=/usr/share/oem/cloud-config.yml). Feb 12 20:24:02.742649 systemd[1]: Reached target system-config.target. Feb 12 20:24:02.744927 systemd[1]: user-cloudinit-proc-cmdline.service was skipped because of an unmet condition check (ConditionKernelCommandLine=cloud-config-url). Feb 12 20:24:02.744966 systemd[1]: Reached target user-config.target. Feb 12 20:24:02.805738 dbus-daemon[1624]: [system] Activating via systemd: service name='org.freedesktop.hostname1' unit='dbus-org.freedesktop.hostname1.service' requested by ':1.3' (uid=244 pid=1456 comm="/usr/lib/systemd/systemd-networkd" label="system_u:system_r:kernel_t:s0") Feb 12 20:24:02.812062 systemd[1]: Starting systemd-hostnamed.service... Feb 12 20:24:02.840687 extend-filesystems[1626]: Found nvme0n1 Feb 12 20:24:02.843755 extend-filesystems[1626]: Found nvme0n1p1 Feb 12 20:24:02.851953 extend-filesystems[1626]: Found nvme0n1p2 Feb 12 20:24:02.860320 extend-filesystems[1626]: Found nvme0n1p3 Feb 12 20:24:02.862099 extend-filesystems[1626]: Found usr Feb 12 20:24:02.863630 extend-filesystems[1626]: Found nvme0n1p4 Feb 12 20:24:02.870345 extend-filesystems[1626]: Found nvme0n1p6 Feb 12 20:24:02.878903 extend-filesystems[1626]: Found nvme0n1p7 Feb 12 20:24:02.882267 systemd[1]: motdgen.service: Deactivated successfully. Feb 12 20:24:02.882672 systemd[1]: Finished motdgen.service. Feb 12 20:24:02.888499 update_engine[1634]: I0212 20:24:02.888051 1634 main.cc:92] Flatcar Update Engine starting Feb 12 20:24:02.889172 extend-filesystems[1626]: Found nvme0n1p9 Feb 12 20:24:02.892347 extend-filesystems[1626]: Checking size of /dev/nvme0n1p9 Feb 12 20:24:02.896789 systemd[1]: Started update-engine.service. Feb 12 20:24:02.904111 update_engine[1634]: I0212 20:24:02.897650 1634 update_check_scheduler.cc:74] Next update check in 8m8s Feb 12 20:24:02.901643 systemd[1]: Started locksmithd.service. Feb 12 20:24:02.942754 amazon-ssm-agent[1621]: 2024/02/12 20:24:02 Failed to load instance info from vault. RegistrationKey does not exist. Feb 12 20:24:02.954970 bash[1686]: Updated "/home/core/.ssh/authorized_keys" Feb 12 20:24:02.956719 systemd[1]: Finished update-ssh-keys-after-ignition.service. Feb 12 20:24:02.962917 extend-filesystems[1626]: Resized partition /dev/nvme0n1p9 Feb 12 20:24:02.968855 amazon-ssm-agent[1621]: Initializing new seelog logger Feb 12 20:24:02.968855 amazon-ssm-agent[1621]: New Seelog Logger Creation Complete Feb 12 20:24:02.968855 amazon-ssm-agent[1621]: 2024/02/12 20:24:02 Found config file at /etc/amazon/ssm/amazon-ssm-agent.json. Feb 12 20:24:02.968855 amazon-ssm-agent[1621]: Applying config override from /etc/amazon/ssm/amazon-ssm-agent.json. Feb 12 20:24:02.968855 amazon-ssm-agent[1621]: 2024/02/12 20:24:02 processing appconfig overrides Feb 12 20:24:02.975671 extend-filesystems[1694]: resize2fs 1.46.5 (30-Dec-2021) Feb 12 20:24:03.064599 systemd-logind[1633]: Watching system buttons on /dev/input/event0 (Power Button) Feb 12 20:24:03.079577 systemd-logind[1633]: New seat seat0. Feb 12 20:24:03.085390 systemd[1]: Started systemd-logind.service. Feb 12 20:24:03.099255 tar[1638]: ./bandwidth Feb 12 20:24:03.119810 kernel: EXT4-fs (nvme0n1p9): resizing filesystem from 553472 to 1489915 blocks Feb 12 20:24:03.132912 systemd[1]: nvidia.service: Deactivated successfully. Feb 12 20:24:03.168911 kernel: EXT4-fs (nvme0n1p9): resized filesystem to 1489915 Feb 12 20:24:03.190715 extend-filesystems[1694]: Filesystem at /dev/nvme0n1p9 is mounted on /; on-line resizing required Feb 12 20:24:03.190715 extend-filesystems[1694]: old_desc_blocks = 1, new_desc_blocks = 1 Feb 12 20:24:03.190715 extend-filesystems[1694]: The filesystem on /dev/nvme0n1p9 is now 1489915 (4k) blocks long. Feb 12 20:24:03.211460 extend-filesystems[1626]: Resized filesystem in /dev/nvme0n1p9 Feb 12 20:24:03.214790 systemd[1]: extend-filesystems.service: Deactivated successfully. Feb 12 20:24:03.215175 systemd[1]: Finished extend-filesystems.service. Feb 12 20:24:03.336484 env[1644]: time="2024-02-12T20:24:03.334995269Z" level=info msg="starting containerd" revision=92b3a9d6f1b3bcc6dc74875cfdea653fe39f09c2 version=1.6.16 Feb 12 20:24:03.403800 tar[1638]: ./ptp Feb 12 20:24:03.435733 dbus-daemon[1624]: [system] Successfully activated service 'org.freedesktop.hostname1' Feb 12 20:24:03.436069 systemd[1]: Started systemd-hostnamed.service. Feb 12 20:24:03.440065 dbus-daemon[1624]: [system] Activating via systemd: service name='org.freedesktop.PolicyKit1' unit='polkit.service' requested by ':1.6' (uid=0 pid=1667 comm="/usr/lib/systemd/systemd-hostnamed" label="system_u:system_r:kernel_t:s0") Feb 12 20:24:03.444924 systemd[1]: Starting polkit.service... Feb 12 20:24:03.491333 polkitd[1741]: Started polkitd version 121 Feb 12 20:24:03.498240 coreos-metadata[1623]: Feb 12 20:24:03.496 INFO Putting http://169.254.169.254/latest/api/token: Attempt #1 Feb 12 20:24:03.502062 coreos-metadata[1623]: Feb 12 20:24:03.501 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/public-keys: Attempt #1 Feb 12 20:24:03.503145 coreos-metadata[1623]: Feb 12 20:24:03.503 INFO Fetch successful Feb 12 20:24:03.503145 coreos-metadata[1623]: Feb 12 20:24:03.503 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/public-keys/0/openssh-key: Attempt #1 Feb 12 20:24:03.504103 coreos-metadata[1623]: Feb 12 20:24:03.504 INFO Fetch successful Feb 12 20:24:03.507623 unknown[1623]: wrote ssh authorized keys file for user: core Feb 12 20:24:03.520063 polkitd[1741]: Loading rules from directory /etc/polkit-1/rules.d Feb 12 20:24:03.520185 polkitd[1741]: Loading rules from directory /usr/share/polkit-1/rules.d Feb 12 20:24:03.523356 polkitd[1741]: Finished loading, compiling and executing 2 rules Feb 12 20:24:03.525152 dbus-daemon[1624]: [system] Successfully activated service 'org.freedesktop.PolicyKit1' Feb 12 20:24:03.525424 systemd[1]: Started polkit.service. Feb 12 20:24:03.529901 polkitd[1741]: Acquired the name org.freedesktop.PolicyKit1 on the system bus Feb 12 20:24:03.532616 update-ssh-keys[1757]: Updated "/home/core/.ssh/authorized_keys" Feb 12 20:24:03.533514 systemd[1]: Finished coreos-metadata-sshkeys@core.service. Feb 12 20:24:03.557920 systemd-hostnamed[1667]: Hostname set to (transient) Feb 12 20:24:03.558567 systemd-resolved[1595]: System hostname changed to 'ip-172-31-20-28'. Feb 12 20:24:03.571951 env[1644]: time="2024-02-12T20:24:03.571889439Z" level=info msg="loading plugin \"io.containerd.content.v1.content\"..." type=io.containerd.content.v1 Feb 12 20:24:03.582278 env[1644]: time="2024-02-12T20:24:03.582216894Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.aufs\"..." type=io.containerd.snapshotter.v1 Feb 12 20:24:03.585278 env[1644]: time="2024-02-12T20:24:03.585209870Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.aufs\"..." error="aufs is not supported (modprobe aufs failed: exit status 1 \"modprobe: FATAL: Module aufs not found in directory /lib/modules/5.15.148-flatcar\\n\"): skip plugin" type=io.containerd.snapshotter.v1 Feb 12 20:24:03.585463 env[1644]: time="2024-02-12T20:24:03.585431783Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.btrfs\"..." type=io.containerd.snapshotter.v1 Feb 12 20:24:03.588290 env[1644]: time="2024-02-12T20:24:03.588227876Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.btrfs\"..." error="path /var/lib/containerd/io.containerd.snapshotter.v1.btrfs (ext4) must be a btrfs filesystem to be used with the btrfs snapshotter: skip plugin" type=io.containerd.snapshotter.v1 Feb 12 20:24:03.589073 env[1644]: time="2024-02-12T20:24:03.589025924Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.devmapper\"..." type=io.containerd.snapshotter.v1 Feb 12 20:24:03.589249 env[1644]: time="2024-02-12T20:24:03.589216716Z" level=warning msg="failed to load plugin io.containerd.snapshotter.v1.devmapper" error="devmapper not configured" Feb 12 20:24:03.589363 env[1644]: time="2024-02-12T20:24:03.589333111Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.native\"..." type=io.containerd.snapshotter.v1 Feb 12 20:24:03.589691 env[1644]: time="2024-02-12T20:24:03.589657290Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.overlayfs\"..." type=io.containerd.snapshotter.v1 Feb 12 20:24:03.590347 env[1644]: time="2024-02-12T20:24:03.590307473Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.zfs\"..." type=io.containerd.snapshotter.v1 Feb 12 20:24:03.590723 env[1644]: time="2024-02-12T20:24:03.590684767Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.zfs\"..." error="path /var/lib/containerd/io.containerd.snapshotter.v1.zfs must be a zfs filesystem to be used with the zfs snapshotter: skip plugin" type=io.containerd.snapshotter.v1 Feb 12 20:24:03.593677 env[1644]: time="2024-02-12T20:24:03.593617558Z" level=info msg="loading plugin \"io.containerd.metadata.v1.bolt\"..." type=io.containerd.metadata.v1 Feb 12 20:24:03.594037 env[1644]: time="2024-02-12T20:24:03.593999022Z" level=warning msg="could not use snapshotter devmapper in metadata plugin" error="devmapper not configured" Feb 12 20:24:03.596540 env[1644]: time="2024-02-12T20:24:03.596465485Z" level=info msg="metadata content store policy set" policy=shared Feb 12 20:24:03.606793 env[1644]: time="2024-02-12T20:24:03.606712295Z" level=info msg="loading plugin \"io.containerd.differ.v1.walking\"..." type=io.containerd.differ.v1 Feb 12 20:24:03.607066 env[1644]: time="2024-02-12T20:24:03.607029162Z" level=info msg="loading plugin \"io.containerd.event.v1.exchange\"..." type=io.containerd.event.v1 Feb 12 20:24:03.607213 env[1644]: time="2024-02-12T20:24:03.607177317Z" level=info msg="loading plugin \"io.containerd.gc.v1.scheduler\"..." type=io.containerd.gc.v1 Feb 12 20:24:03.607437 env[1644]: time="2024-02-12T20:24:03.607381331Z" level=info msg="loading plugin \"io.containerd.service.v1.introspection-service\"..." type=io.containerd.service.v1 Feb 12 20:24:03.607739 env[1644]: time="2024-02-12T20:24:03.607695479Z" level=info msg="loading plugin \"io.containerd.service.v1.containers-service\"..." type=io.containerd.service.v1 Feb 12 20:24:03.607937 env[1644]: time="2024-02-12T20:24:03.607905209Z" level=info msg="loading plugin \"io.containerd.service.v1.content-service\"..." type=io.containerd.service.v1 Feb 12 20:24:03.608069 env[1644]: time="2024-02-12T20:24:03.608037387Z" level=info msg="loading plugin \"io.containerd.service.v1.diff-service\"..." type=io.containerd.service.v1 Feb 12 20:24:03.608732 env[1644]: time="2024-02-12T20:24:03.608670397Z" level=info msg="loading plugin \"io.containerd.service.v1.images-service\"..." type=io.containerd.service.v1 Feb 12 20:24:03.608948 env[1644]: time="2024-02-12T20:24:03.608917495Z" level=info msg="loading plugin \"io.containerd.service.v1.leases-service\"..." type=io.containerd.service.v1 Feb 12 20:24:03.609073 env[1644]: time="2024-02-12T20:24:03.609044404Z" level=info msg="loading plugin \"io.containerd.service.v1.namespaces-service\"..." type=io.containerd.service.v1 Feb 12 20:24:03.609195 env[1644]: time="2024-02-12T20:24:03.609164727Z" level=info msg="loading plugin \"io.containerd.service.v1.snapshots-service\"..." type=io.containerd.service.v1 Feb 12 20:24:03.609360 env[1644]: time="2024-02-12T20:24:03.609329451Z" level=info msg="loading plugin \"io.containerd.runtime.v1.linux\"..." type=io.containerd.runtime.v1 Feb 12 20:24:03.609673 env[1644]: time="2024-02-12T20:24:03.609643974Z" level=info msg="loading plugin \"io.containerd.runtime.v2.task\"..." type=io.containerd.runtime.v2 Feb 12 20:24:03.609981 env[1644]: time="2024-02-12T20:24:03.609951149Z" level=info msg="loading plugin \"io.containerd.monitor.v1.cgroups\"..." type=io.containerd.monitor.v1 Feb 12 20:24:03.610687 env[1644]: time="2024-02-12T20:24:03.610654677Z" level=info msg="loading plugin \"io.containerd.service.v1.tasks-service\"..." type=io.containerd.service.v1 Feb 12 20:24:03.610845 env[1644]: time="2024-02-12T20:24:03.610815219Z" level=info msg="loading plugin \"io.containerd.grpc.v1.introspection\"..." type=io.containerd.grpc.v1 Feb 12 20:24:03.611006 env[1644]: time="2024-02-12T20:24:03.610947023Z" level=info msg="loading plugin \"io.containerd.internal.v1.restart\"..." type=io.containerd.internal.v1 Feb 12 20:24:03.611245 env[1644]: time="2024-02-12T20:24:03.611214678Z" level=info msg="loading plugin \"io.containerd.grpc.v1.containers\"..." type=io.containerd.grpc.v1 Feb 12 20:24:03.614120 env[1644]: time="2024-02-12T20:24:03.614064334Z" level=info msg="loading plugin \"io.containerd.grpc.v1.content\"..." type=io.containerd.grpc.v1 Feb 12 20:24:03.614362 env[1644]: time="2024-02-12T20:24:03.614328726Z" level=info msg="loading plugin \"io.containerd.grpc.v1.diff\"..." type=io.containerd.grpc.v1 Feb 12 20:24:03.614511 env[1644]: time="2024-02-12T20:24:03.614480181Z" level=info msg="loading plugin \"io.containerd.grpc.v1.events\"..." type=io.containerd.grpc.v1 Feb 12 20:24:03.614654 env[1644]: time="2024-02-12T20:24:03.614623369Z" level=info msg="loading plugin \"io.containerd.grpc.v1.healthcheck\"..." type=io.containerd.grpc.v1 Feb 12 20:24:03.614815 env[1644]: time="2024-02-12T20:24:03.614782981Z" level=info msg="loading plugin \"io.containerd.grpc.v1.images\"..." type=io.containerd.grpc.v1 Feb 12 20:24:03.614961 env[1644]: time="2024-02-12T20:24:03.614931595Z" level=info msg="loading plugin \"io.containerd.grpc.v1.leases\"..." type=io.containerd.grpc.v1 Feb 12 20:24:03.615106 env[1644]: time="2024-02-12T20:24:03.615076402Z" level=info msg="loading plugin \"io.containerd.grpc.v1.namespaces\"..." type=io.containerd.grpc.v1 Feb 12 20:24:03.615252 env[1644]: time="2024-02-12T20:24:03.615223047Z" level=info msg="loading plugin \"io.containerd.internal.v1.opt\"..." type=io.containerd.internal.v1 Feb 12 20:24:03.615637 env[1644]: time="2024-02-12T20:24:03.615604221Z" level=info msg="loading plugin \"io.containerd.grpc.v1.snapshots\"..." type=io.containerd.grpc.v1 Feb 12 20:24:03.618675 env[1644]: time="2024-02-12T20:24:03.618631821Z" level=info msg="loading plugin \"io.containerd.grpc.v1.tasks\"..." type=io.containerd.grpc.v1 Feb 12 20:24:03.618858 env[1644]: time="2024-02-12T20:24:03.618828028Z" level=info msg="loading plugin \"io.containerd.grpc.v1.version\"..." type=io.containerd.grpc.v1 Feb 12 20:24:03.618981 env[1644]: time="2024-02-12T20:24:03.618951444Z" level=info msg="loading plugin \"io.containerd.tracing.processor.v1.otlp\"..." type=io.containerd.tracing.processor.v1 Feb 12 20:24:03.619124 env[1644]: time="2024-02-12T20:24:03.619091007Z" level=info msg="skip loading plugin \"io.containerd.tracing.processor.v1.otlp\"..." error="no OpenTelemetry endpoint: skip plugin" type=io.containerd.tracing.processor.v1 Feb 12 20:24:03.619269 env[1644]: time="2024-02-12T20:24:03.619239730Z" level=info msg="loading plugin \"io.containerd.internal.v1.tracing\"..." type=io.containerd.internal.v1 Feb 12 20:24:03.619399 env[1644]: time="2024-02-12T20:24:03.619368331Z" level=error msg="failed to initialize a tracing processor \"otlp\"" error="no OpenTelemetry endpoint: skip plugin" Feb 12 20:24:03.619552 env[1644]: time="2024-02-12T20:24:03.619522939Z" level=info msg="loading plugin \"io.containerd.grpc.v1.cri\"..." type=io.containerd.grpc.v1 Feb 12 20:24:03.620107 env[1644]: time="2024-02-12T20:24:03.619994343Z" level=info msg="Start cri plugin with config {PluginConfig:{ContainerdConfig:{Snapshotter:overlayfs DefaultRuntimeName:runc DefaultRuntime:{Type: Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0} UntrustedWorkloadRuntime:{Type: Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0} Runtimes:map[runc:{Type:io.containerd.runc.v2 Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[SystemdCgroup:true] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0}] NoPivot:false DisableSnapshotAnnotations:true DiscardUnpackedLayers:false IgnoreRdtNotEnabledErrors:false} CniConfig:{NetworkPluginBinDir:/opt/cni/bin NetworkPluginConfDir:/etc/cni/net.d NetworkPluginMaxConfNum:1 NetworkPluginConfTemplate: IPPreference:} Registry:{ConfigPath: Mirrors:map[] Configs:map[] Auths:map[] Headers:map[]} ImageDecryption:{KeyModel:node} DisableTCPService:true StreamServerAddress:127.0.0.1 StreamServerPort:0 StreamIdleTimeout:4h0m0s EnableSelinux:true SelinuxCategoryRange:1024 SandboxImage:registry.k8s.io/pause:3.6 StatsCollectPeriod:10 SystemdCgroup:false EnableTLSStreaming:false X509KeyPairStreaming:{TLSCertFile: TLSKeyFile:} MaxContainerLogLineSize:16384 DisableCgroup:false DisableApparmor:false RestrictOOMScoreAdj:false MaxConcurrentDownloads:3 DisableProcMount:false UnsetSeccompProfile: TolerateMissingHugetlbController:true DisableHugetlbController:true DeviceOwnershipFromSecurityContext:false IgnoreImageDefinedVolumes:false NetNSMountsUnderStateDir:false EnableUnprivilegedPorts:false EnableUnprivilegedICMP:false} ContainerdRootDir:/var/lib/containerd ContainerdEndpoint:/run/containerd/containerd.sock RootDir:/var/lib/containerd/io.containerd.grpc.v1.cri StateDir:/run/containerd/io.containerd.grpc.v1.cri}" Feb 12 20:24:03.621029 env[1644]: time="2024-02-12T20:24:03.620523515Z" level=info msg="Connect containerd service" Feb 12 20:24:03.621029 env[1644]: time="2024-02-12T20:24:03.620599278Z" level=info msg="Get image filesystem path \"/var/lib/containerd/io.containerd.snapshotter.v1.overlayfs\"" Feb 12 20:24:03.634711 env[1644]: time="2024-02-12T20:24:03.634654926Z" level=error msg="failed to load cni during init, please check CRI plugin status before setting up network for pods" error="cni config load failed: no network config found in /etc/cni/net.d: cni plugin not initialized: failed to load cni config" Feb 12 20:24:03.635354 env[1644]: time="2024-02-12T20:24:03.635316130Z" level=info msg=serving... address=/run/containerd/containerd.sock.ttrpc Feb 12 20:24:03.638601 env[1644]: time="2024-02-12T20:24:03.638567674Z" level=info msg=serving... address=/run/containerd/containerd.sock Feb 12 20:24:03.638909 systemd[1]: Started containerd.service. Feb 12 20:24:03.642408 env[1644]: time="2024-02-12T20:24:03.642363134Z" level=info msg="containerd successfully booted in 0.573678s" Feb 12 20:24:03.645213 env[1644]: time="2024-02-12T20:24:03.644993076Z" level=info msg="Start subscribing containerd event" Feb 12 20:24:03.645523 env[1644]: time="2024-02-12T20:24:03.645465205Z" level=info msg="Start recovering state" Feb 12 20:24:03.646153 env[1644]: time="2024-02-12T20:24:03.646079470Z" level=info msg="Start event monitor" Feb 12 20:24:03.646265 env[1644]: time="2024-02-12T20:24:03.646160261Z" level=info msg="Start snapshots syncer" Feb 12 20:24:03.646265 env[1644]: time="2024-02-12T20:24:03.646189182Z" level=info msg="Start cni network conf syncer for default" Feb 12 20:24:03.646265 env[1644]: time="2024-02-12T20:24:03.646218247Z" level=info msg="Start streaming server" Feb 12 20:24:03.701900 tar[1638]: ./vlan Feb 12 20:24:03.889824 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO Create new startup processor Feb 12 20:24:03.890073 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [LongRunningPluginsManager] registered plugins: {} Feb 12 20:24:03.890146 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO Initializing bookkeeping folders Feb 12 20:24:03.890146 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO removing the completed state files Feb 12 20:24:03.890270 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO Initializing bookkeeping folders for long running plugins Feb 12 20:24:03.890270 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO Initializing replies folder for MDS reply requests that couldn't reach the service Feb 12 20:24:03.890270 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO Initializing healthcheck folders for long running plugins Feb 12 20:24:03.890270 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO Initializing locations for inventory plugin Feb 12 20:24:03.890496 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO Initializing default location for custom inventory Feb 12 20:24:03.890496 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO Initializing default location for file inventory Feb 12 20:24:03.890496 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO Initializing default location for role inventory Feb 12 20:24:03.890496 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO Init the cloudwatchlogs publisher Feb 12 20:24:03.890496 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [instanceID=i-078c8d37f2990e626] Successfully loaded platform independent plugin aws:configurePackage Feb 12 20:24:03.890496 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [instanceID=i-078c8d37f2990e626] Successfully loaded platform independent plugin aws:downloadContent Feb 12 20:24:03.890496 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [instanceID=i-078c8d37f2990e626] Successfully loaded platform independent plugin aws:runDocument Feb 12 20:24:03.890496 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [instanceID=i-078c8d37f2990e626] Successfully loaded platform independent plugin aws:softwareInventory Feb 12 20:24:03.890914 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [instanceID=i-078c8d37f2990e626] Successfully loaded platform independent plugin aws:runPowerShellScript Feb 12 20:24:03.890914 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [instanceID=i-078c8d37f2990e626] Successfully loaded platform independent plugin aws:updateSsmAgent Feb 12 20:24:03.890914 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [instanceID=i-078c8d37f2990e626] Successfully loaded platform independent plugin aws:configureDocker Feb 12 20:24:03.890914 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [instanceID=i-078c8d37f2990e626] Successfully loaded platform independent plugin aws:runDockerAction Feb 12 20:24:03.890914 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [instanceID=i-078c8d37f2990e626] Successfully loaded platform independent plugin aws:refreshAssociation Feb 12 20:24:03.890914 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [instanceID=i-078c8d37f2990e626] Successfully loaded platform dependent plugin aws:runShellScript Feb 12 20:24:03.890914 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO Starting Agent: amazon-ssm-agent - v2.3.1319.0 Feb 12 20:24:03.890914 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO OS: linux, Arch: arm64 Feb 12 20:24:03.901987 tar[1638]: ./host-device Feb 12 20:24:03.912119 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [MessagingDeliveryService] Starting document processing engine... Feb 12 20:24:03.920996 amazon-ssm-agent[1621]: datastore file /var/lib/amazon/ssm/i-078c8d37f2990e626/longrunningplugins/datastore/store doesn't exist - no long running plugins to execute Feb 12 20:24:04.012886 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [MessagingDeliveryService] [EngineProcessor] Starting Feb 12 20:24:04.081153 tar[1638]: ./tuning Feb 12 20:24:04.105520 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [MessagingDeliveryService] [EngineProcessor] Initial processing Feb 12 20:24:04.173557 tar[1638]: ./vrf Feb 12 20:24:04.200036 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [MessagingDeliveryService] Starting message polling Feb 12 20:24:04.273335 tar[1638]: ./sbr Feb 12 20:24:04.294844 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [MessagingDeliveryService] Starting send replies to MDS Feb 12 20:24:04.364943 tar[1638]: ./tap Feb 12 20:24:04.389788 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [instanceID=i-078c8d37f2990e626] Starting association polling Feb 12 20:24:04.441261 tar[1638]: ./dhcp Feb 12 20:24:04.484987 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [MessagingDeliveryService] [Association] [EngineProcessor] Starting Feb 12 20:24:04.580289 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [MessagingDeliveryService] [Association] Launching response handler Feb 12 20:24:04.675889 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [MessagingDeliveryService] [Association] [EngineProcessor] Initial processing Feb 12 20:24:04.687873 systemd[1]: Finished prepare-critools.service. Feb 12 20:24:04.692463 tar[1638]: ./static Feb 12 20:24:04.741663 tar[1638]: ./firewall Feb 12 20:24:04.771598 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [MessagingDeliveryService] [Association] Initializing association scheduling service Feb 12 20:24:04.814207 tar[1638]: ./macvlan Feb 12 20:24:04.867665 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [MessagingDeliveryService] [Association] Association scheduling service initialized Feb 12 20:24:04.880174 tar[1638]: ./dummy Feb 12 20:24:04.944442 tar[1638]: ./bridge Feb 12 20:24:04.963836 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [HealthCheck] HealthCheck reporting agent health. Feb 12 20:24:05.015833 tar[1638]: ./ipvlan Feb 12 20:24:05.060266 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [MessageGatewayService] Starting session document processing engine... Feb 12 20:24:05.079693 tar[1638]: ./portmap Feb 12 20:24:05.140772 tar[1638]: ./host-local Feb 12 20:24:05.156738 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [MessageGatewayService] [EngineProcessor] Starting Feb 12 20:24:05.215404 systemd[1]: Finished prepare-cni-plugins.service. Feb 12 20:24:05.253693 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [MessageGatewayService] SSM Agent is trying to setup control channel for Session Manager module. Feb 12 20:24:05.257478 locksmithd[1682]: locksmithd starting currentOperation="UPDATE_STATUS_IDLE" strategy="reboot" Feb 12 20:24:05.350662 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [MessageGatewayService] Setting up websocket for controlchannel for instance: i-078c8d37f2990e626, requestId: 45311d64-e33d-40c8-9a30-281e9190fc02 Feb 12 20:24:05.448042 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [OfflineService] Starting document processing engine... Feb 12 20:24:05.545517 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [OfflineService] [EngineProcessor] Starting Feb 12 20:24:05.643021 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [OfflineService] [EngineProcessor] Initial processing Feb 12 20:24:05.740750 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [OfflineService] Starting message polling Feb 12 20:24:05.838959 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [OfflineService] Starting send replies to MDS Feb 12 20:24:05.937160 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [LongRunningPluginsManager] starting long running plugin manager Feb 12 20:24:06.035576 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [LongRunningPluginsManager] there aren't any long running plugin to execute Feb 12 20:24:06.134203 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [MessageGatewayService] listening reply. Feb 12 20:24:06.232880 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [LongRunningPluginsManager] There are no long running plugins currently getting executed - skipping their healthcheck Feb 12 20:24:06.331848 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [StartupProcessor] Executing startup processor tasks Feb 12 20:24:06.431001 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [StartupProcessor] Write to serial port: Amazon SSM Agent v2.3.1319.0 is running Feb 12 20:24:06.530242 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [StartupProcessor] Write to serial port: OsProductName: Flatcar Container Linux by Kinvolk Feb 12 20:24:06.629860 amazon-ssm-agent[1621]: 2024-02-12 20:24:03 INFO [StartupProcessor] Write to serial port: OsVersion: 3510.3.2 Feb 12 20:24:06.729660 amazon-ssm-agent[1621]: 2024-02-12 20:24:04 INFO [MessageGatewayService] Opening websocket connection to: wss://ssmmessages.us-west-2.amazonaws.com/v1/control-channel/i-078c8d37f2990e626?role=subscribe&stream=input Feb 12 20:24:06.829504 amazon-ssm-agent[1621]: 2024-02-12 20:24:04 INFO [MessageGatewayService] Successfully opened websocket connection to: wss://ssmmessages.us-west-2.amazonaws.com/v1/control-channel/i-078c8d37f2990e626?role=subscribe&stream=input Feb 12 20:24:06.929651 amazon-ssm-agent[1621]: 2024-02-12 20:24:04 INFO [MessageGatewayService] Starting receiving message from control channel Feb 12 20:24:07.029995 amazon-ssm-agent[1621]: 2024-02-12 20:24:04 INFO [MessageGatewayService] [EngineProcessor] Initial processing Feb 12 20:24:07.494670 sshd_keygen[1661]: ssh-keygen: generating new host keys: RSA ECDSA ED25519 Feb 12 20:24:07.531663 systemd[1]: Finished sshd-keygen.service. Feb 12 20:24:07.536325 systemd[1]: Starting issuegen.service... Feb 12 20:24:07.547125 systemd[1]: issuegen.service: Deactivated successfully. Feb 12 20:24:07.547488 systemd[1]: Finished issuegen.service. Feb 12 20:24:07.552119 systemd[1]: Starting systemd-user-sessions.service... Feb 12 20:24:07.566714 systemd[1]: Finished systemd-user-sessions.service. Feb 12 20:24:07.571509 systemd[1]: Started getty@tty1.service. Feb 12 20:24:07.575898 systemd[1]: Started serial-getty@ttyS0.service. Feb 12 20:24:07.578129 systemd[1]: Reached target getty.target. Feb 12 20:24:07.579948 systemd[1]: Reached target multi-user.target. Feb 12 20:24:07.584383 systemd[1]: Starting systemd-update-utmp-runlevel.service... Feb 12 20:24:07.600029 systemd[1]: systemd-update-utmp-runlevel.service: Deactivated successfully. Feb 12 20:24:07.600407 systemd[1]: Finished systemd-update-utmp-runlevel.service. Feb 12 20:24:07.602739 systemd[1]: Startup finished in 1.160s (kernel) + 10.638s (initrd) + 13.369s (userspace) = 25.168s. Feb 12 20:24:11.535995 systemd[1]: Created slice system-sshd.slice. Feb 12 20:24:11.539390 systemd[1]: Started sshd@0-172.31.20.28:22-147.75.109.163:53010.service. Feb 12 20:24:11.718730 sshd[1835]: Accepted publickey for core from 147.75.109.163 port 53010 ssh2: RSA SHA256:ecUhSIJgyplxxRcBUTSxTp+B0aPr5wgDdA3tvIID0Hc Feb 12 20:24:11.723327 sshd[1835]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 12 20:24:11.740609 systemd[1]: Created slice user-500.slice. Feb 12 20:24:11.742931 systemd[1]: Starting user-runtime-dir@500.service... Feb 12 20:24:11.750908 systemd-logind[1633]: New session 1 of user core. Feb 12 20:24:11.761835 systemd[1]: Finished user-runtime-dir@500.service. Feb 12 20:24:11.765096 systemd[1]: Starting user@500.service... Feb 12 20:24:11.771628 (systemd)[1838]: pam_unix(systemd-user:session): session opened for user core(uid=500) by (uid=0) Feb 12 20:24:11.948415 systemd[1838]: Queued start job for default target default.target. Feb 12 20:24:11.949496 systemd[1838]: Reached target paths.target. Feb 12 20:24:11.949550 systemd[1838]: Reached target sockets.target. Feb 12 20:24:11.949583 systemd[1838]: Reached target timers.target. Feb 12 20:24:11.949613 systemd[1838]: Reached target basic.target. Feb 12 20:24:11.949707 systemd[1838]: Reached target default.target. Feb 12 20:24:11.949803 systemd[1838]: Startup finished in 165ms. Feb 12 20:24:11.950702 systemd[1]: Started user@500.service. Feb 12 20:24:11.952807 systemd[1]: Started session-1.scope. Feb 12 20:24:12.101449 systemd[1]: Started sshd@1-172.31.20.28:22-147.75.109.163:53018.service. Feb 12 20:24:12.278556 sshd[1847]: Accepted publickey for core from 147.75.109.163 port 53018 ssh2: RSA SHA256:ecUhSIJgyplxxRcBUTSxTp+B0aPr5wgDdA3tvIID0Hc Feb 12 20:24:12.281195 sshd[1847]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 12 20:24:12.289897 systemd-logind[1633]: New session 2 of user core. Feb 12 20:24:12.290948 systemd[1]: Started session-2.scope. Feb 12 20:24:12.420816 sshd[1847]: pam_unix(sshd:session): session closed for user core Feb 12 20:24:12.426221 systemd-logind[1633]: Session 2 logged out. Waiting for processes to exit. Feb 12 20:24:12.426834 systemd[1]: sshd@1-172.31.20.28:22-147.75.109.163:53018.service: Deactivated successfully. Feb 12 20:24:12.428081 systemd[1]: session-2.scope: Deactivated successfully. Feb 12 20:24:12.429553 systemd-logind[1633]: Removed session 2. Feb 12 20:24:12.450554 systemd[1]: Started sshd@2-172.31.20.28:22-147.75.109.163:53034.service. Feb 12 20:24:12.629628 sshd[1853]: Accepted publickey for core from 147.75.109.163 port 53034 ssh2: RSA SHA256:ecUhSIJgyplxxRcBUTSxTp+B0aPr5wgDdA3tvIID0Hc Feb 12 20:24:12.631298 sshd[1853]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 12 20:24:12.640081 systemd-logind[1633]: New session 3 of user core. Feb 12 20:24:12.640347 systemd[1]: Started session-3.scope. Feb 12 20:24:12.766478 sshd[1853]: pam_unix(sshd:session): session closed for user core Feb 12 20:24:12.770472 systemd[1]: session-3.scope: Deactivated successfully. Feb 12 20:24:12.771609 systemd-logind[1633]: Session 3 logged out. Waiting for processes to exit. Feb 12 20:24:12.772108 systemd[1]: sshd@2-172.31.20.28:22-147.75.109.163:53034.service: Deactivated successfully. Feb 12 20:24:12.774727 systemd-logind[1633]: Removed session 3. Feb 12 20:24:12.795403 systemd[1]: Started sshd@3-172.31.20.28:22-147.75.109.163:53036.service. Feb 12 20:24:12.975401 sshd[1859]: Accepted publickey for core from 147.75.109.163 port 53036 ssh2: RSA SHA256:ecUhSIJgyplxxRcBUTSxTp+B0aPr5wgDdA3tvIID0Hc Feb 12 20:24:12.977098 sshd[1859]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 12 20:24:12.985692 systemd[1]: Started session-4.scope. Feb 12 20:24:12.986470 systemd-logind[1633]: New session 4 of user core. Feb 12 20:24:13.121165 sshd[1859]: pam_unix(sshd:session): session closed for user core Feb 12 20:24:13.126906 systemd[1]: sshd@3-172.31.20.28:22-147.75.109.163:53036.service: Deactivated successfully. Feb 12 20:24:13.127546 systemd-logind[1633]: Session 4 logged out. Waiting for processes to exit. Feb 12 20:24:13.128131 systemd[1]: session-4.scope: Deactivated successfully. Feb 12 20:24:13.130120 systemd-logind[1633]: Removed session 4. Feb 12 20:24:13.148019 systemd[1]: Started sshd@4-172.31.20.28:22-147.75.109.163:53048.service. Feb 12 20:24:13.322825 sshd[1865]: Accepted publickey for core from 147.75.109.163 port 53048 ssh2: RSA SHA256:ecUhSIJgyplxxRcBUTSxTp+B0aPr5wgDdA3tvIID0Hc Feb 12 20:24:13.325293 sshd[1865]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 12 20:24:13.333229 systemd-logind[1633]: New session 5 of user core. Feb 12 20:24:13.334181 systemd[1]: Started session-5.scope. Feb 12 20:24:13.451130 sudo[1868]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/sbin/setenforce 1 Feb 12 20:24:13.451659 sudo[1868]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Feb 12 20:24:13.468059 dbus-daemon[1624]: avc: received setenforce notice (enforcing=1) Feb 12 20:24:13.470821 sudo[1868]: pam_unix(sudo:session): session closed for user root Feb 12 20:24:13.495147 sshd[1865]: pam_unix(sshd:session): session closed for user core Feb 12 20:24:13.500675 systemd[1]: session-5.scope: Deactivated successfully. Feb 12 20:24:13.501959 systemd[1]: sshd@4-172.31.20.28:22-147.75.109.163:53048.service: Deactivated successfully. Feb 12 20:24:13.503634 systemd-logind[1633]: Session 5 logged out. Waiting for processes to exit. Feb 12 20:24:13.505602 systemd-logind[1633]: Removed session 5. Feb 12 20:24:13.527856 systemd[1]: Started sshd@5-172.31.20.28:22-147.75.109.163:53056.service. Feb 12 20:24:13.711055 sshd[1872]: Accepted publickey for core from 147.75.109.163 port 53056 ssh2: RSA SHA256:ecUhSIJgyplxxRcBUTSxTp+B0aPr5wgDdA3tvIID0Hc Feb 12 20:24:13.713800 sshd[1872]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 12 20:24:13.724472 systemd[1]: Started session-6.scope. Feb 12 20:24:13.725828 systemd-logind[1633]: New session 6 of user core. Feb 12 20:24:13.836624 sudo[1876]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/bin/rm -rf /etc/audit/rules.d/80-selinux.rules /etc/audit/rules.d/99-default.rules Feb 12 20:24:13.837244 sudo[1876]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Feb 12 20:24:13.843270 sudo[1876]: pam_unix(sudo:session): session closed for user root Feb 12 20:24:13.852642 sudo[1875]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/bin/systemctl restart audit-rules Feb 12 20:24:13.853648 sudo[1875]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Feb 12 20:24:13.871053 systemd[1]: Stopping audit-rules.service... Feb 12 20:24:13.879324 kernel: kauditd_printk_skb: 75 callbacks suppressed Feb 12 20:24:13.879439 kernel: audit: type=1305 audit(1707769453.872:164): auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=remove_rule key=(null) list=5 res=1 Feb 12 20:24:13.872000 audit: CONFIG_CHANGE auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=remove_rule key=(null) list=5 res=1 Feb 12 20:24:13.876379 systemd[1]: audit-rules.service: Deactivated successfully. Feb 12 20:24:13.879720 auditctl[1879]: No rules Feb 12 20:24:13.876738 systemd[1]: Stopped audit-rules.service. Feb 12 20:24:13.872000 audit[1879]: SYSCALL arch=c00000b7 syscall=206 success=yes exit=1056 a0=3 a1=ffffd61724d0 a2=420 a3=0 items=0 ppid=1 pid=1879 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:13.883946 systemd[1]: Starting audit-rules.service... Feb 12 20:24:13.891437 kernel: audit: type=1300 audit(1707769453.872:164): arch=c00000b7 syscall=206 success=yes exit=1056 a0=3 a1=ffffd61724d0 a2=420 a3=0 items=0 ppid=1 pid=1879 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:13.891546 kernel: audit: type=1327 audit(1707769453.872:164): proctitle=2F7362696E2F617564697463746C002D44 Feb 12 20:24:13.872000 audit: PROCTITLE proctitle=2F7362696E2F617564697463746C002D44 Feb 12 20:24:13.874000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:13.902778 kernel: audit: type=1131 audit(1707769453.874:165): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:13.923263 augenrules[1896]: No rules Feb 12 20:24:13.924802 systemd[1]: Finished audit-rules.service. Feb 12 20:24:13.924000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:13.934136 sudo[1875]: pam_unix(sudo:session): session closed for user root Feb 12 20:24:13.933000 audit[1875]: USER_END pid=1875 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 12 20:24:13.944327 kernel: audit: type=1130 audit(1707769453.924:166): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:13.944436 kernel: audit: type=1106 audit(1707769453.933:167): pid=1875 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 12 20:24:13.933000 audit[1875]: CRED_DISP pid=1875 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 12 20:24:13.953275 kernel: audit: type=1104 audit(1707769453.933:168): pid=1875 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 12 20:24:13.968121 sshd[1872]: pam_unix(sshd:session): session closed for user core Feb 12 20:24:13.970000 audit[1872]: USER_END pid=1872 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:24:13.974207 systemd[1]: sshd@5-172.31.20.28:22-147.75.109.163:53056.service: Deactivated successfully. Feb 12 20:24:13.975418 systemd[1]: session-6.scope: Deactivated successfully. Feb 12 20:24:13.977249 systemd-logind[1633]: Session 6 logged out. Waiting for processes to exit. Feb 12 20:24:13.978784 systemd-logind[1633]: Removed session 6. Feb 12 20:24:13.970000 audit[1872]: CRED_DISP pid=1872 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:24:13.994457 kernel: audit: type=1106 audit(1707769453.970:169): pid=1872 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:24:13.994559 kernel: audit: type=1104 audit(1707769453.970:170): pid=1872 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:24:13.973000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@5-172.31.20.28:22-147.75.109.163:53056 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:14.004929 systemd[1]: Started sshd@6-172.31.20.28:22-147.75.109.163:53060.service. Feb 12 20:24:14.005000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@6-172.31.20.28:22-147.75.109.163:53060 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:14.010873 kernel: audit: type=1131 audit(1707769453.973:171): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@5-172.31.20.28:22-147.75.109.163:53056 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:14.181000 audit[1903]: USER_ACCT pid=1903 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_access,pam_unix,pam_faillock,pam_permit acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:24:14.183989 sshd[1903]: Accepted publickey for core from 147.75.109.163 port 53060 ssh2: RSA SHA256:ecUhSIJgyplxxRcBUTSxTp+B0aPr5wgDdA3tvIID0Hc Feb 12 20:24:14.183000 audit[1903]: CRED_ACQ pid=1903 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:24:14.184000 audit[1903]: SYSCALL arch=c00000b7 syscall=64 success=yes exit=3 a0=5 a1=fffff29e2740 a2=3 a3=1 items=0 ppid=1 pid=1903 auid=500 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=7 comm="sshd" exe="/usr/sbin/sshd" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:14.184000 audit: PROCTITLE proctitle=737368643A20636F7265205B707269765D Feb 12 20:24:14.186495 sshd[1903]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 12 20:24:14.195178 systemd[1]: Started session-7.scope. Feb 12 20:24:14.195966 systemd-logind[1633]: New session 7 of user core. Feb 12 20:24:14.203000 audit[1903]: USER_START pid=1903 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:24:14.206000 audit[1905]: CRED_ACQ pid=1905 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:24:14.304000 audit[1906]: USER_ACCT pid=1906 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_unix,pam_faillock,pam_permit acct="core" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 12 20:24:14.305653 sudo[1906]: core : PWD=/home/core ; USER=root ; COMMAND=/home/core/install.sh Feb 12 20:24:14.305000 audit[1906]: CRED_REFR pid=1906 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 12 20:24:14.306855 sudo[1906]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Feb 12 20:24:14.309000 audit[1906]: USER_START pid=1906 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 12 20:24:14.953737 systemd[1]: Reloading. Feb 12 20:24:15.084987 /usr/lib/systemd/system-generators/torcx-generator[1938]: time="2024-02-12T20:24:15Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.2 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.2 /var/lib/torcx/store]" Feb 12 20:24:15.085580 /usr/lib/systemd/system-generators/torcx-generator[1938]: time="2024-02-12T20:24:15Z" level=info msg="torcx already run" Feb 12 20:24:15.239693 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Feb 12 20:24:15.239738 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Feb 12 20:24:15.284568 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Feb 12 20:24:15.431000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.431000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.431000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.431000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.431000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.431000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.431000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.431000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.431000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.431000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.431000 audit: BPF prog-id=37 op=LOAD Feb 12 20:24:15.432000 audit: BPF prog-id=32 op=UNLOAD Feb 12 20:24:15.432000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.432000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.432000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.432000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.432000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.432000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.432000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.432000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.432000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.432000 audit: BPF prog-id=38 op=LOAD Feb 12 20:24:15.432000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.432000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.432000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.432000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.432000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.432000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.432000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.432000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.432000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.432000 audit: BPF prog-id=39 op=LOAD Feb 12 20:24:15.432000 audit: BPF prog-id=33 op=UNLOAD Feb 12 20:24:15.432000 audit: BPF prog-id=34 op=UNLOAD Feb 12 20:24:15.434000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.434000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.434000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.435000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.435000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.435000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.435000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.435000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.435000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.435000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.435000 audit: BPF prog-id=40 op=LOAD Feb 12 20:24:15.435000 audit: BPF prog-id=29 op=UNLOAD Feb 12 20:24:15.435000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.435000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.435000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.435000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.435000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.435000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.435000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.435000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.435000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.435000 audit: BPF prog-id=41 op=LOAD Feb 12 20:24:15.435000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.435000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.435000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.435000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.435000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.435000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.435000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.435000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.436000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.436000 audit: BPF prog-id=42 op=LOAD Feb 12 20:24:15.436000 audit: BPF prog-id=30 op=UNLOAD Feb 12 20:24:15.436000 audit: BPF prog-id=31 op=UNLOAD Feb 12 20:24:15.438000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.438000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.438000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.438000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.438000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.438000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.438000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.438000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.438000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.438000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.438000 audit: BPF prog-id=43 op=LOAD Feb 12 20:24:15.439000 audit: BPF prog-id=27 op=UNLOAD Feb 12 20:24:15.442000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.442000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.442000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.442000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.442000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.442000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.442000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.442000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.442000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.442000 audit: BPF prog-id=44 op=LOAD Feb 12 20:24:15.442000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.443000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.443000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.443000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.443000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.443000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.443000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.443000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.443000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.443000 audit: BPF prog-id=45 op=LOAD Feb 12 20:24:15.443000 audit: BPF prog-id=21 op=UNLOAD Feb 12 20:24:15.443000 audit: BPF prog-id=22 op=UNLOAD Feb 12 20:24:15.447000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.447000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.447000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.447000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.447000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.447000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.447000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.447000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.447000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.447000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.447000 audit: BPF prog-id=46 op=LOAD Feb 12 20:24:15.447000 audit: BPF prog-id=18 op=UNLOAD Feb 12 20:24:15.447000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.447000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.447000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.447000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.448000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.448000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.448000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.448000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.448000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.448000 audit: BPF prog-id=47 op=LOAD Feb 12 20:24:15.448000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.448000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.448000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.448000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.448000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.448000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.448000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.448000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.448000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.448000 audit: BPF prog-id=48 op=LOAD Feb 12 20:24:15.448000 audit: BPF prog-id=19 op=UNLOAD Feb 12 20:24:15.448000 audit: BPF prog-id=20 op=UNLOAD Feb 12 20:24:15.448000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.448000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.448000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.448000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.448000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.448000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.448000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.448000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.448000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.449000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.449000 audit: BPF prog-id=49 op=LOAD Feb 12 20:24:15.449000 audit: BPF prog-id=24 op=UNLOAD Feb 12 20:24:15.449000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.449000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.449000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.449000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.449000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.449000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.449000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.449000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.449000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.449000 audit: BPF prog-id=50 op=LOAD Feb 12 20:24:15.449000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.449000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.449000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.449000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.449000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.449000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.449000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.449000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.449000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.449000 audit: BPF prog-id=51 op=LOAD Feb 12 20:24:15.449000 audit: BPF prog-id=25 op=UNLOAD Feb 12 20:24:15.449000 audit: BPF prog-id=26 op=UNLOAD Feb 12 20:24:15.453000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.453000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.453000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.453000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.453000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.453000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.453000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.453000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.453000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.453000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.453000 audit: BPF prog-id=52 op=LOAD Feb 12 20:24:15.453000 audit: BPF prog-id=23 op=UNLOAD Feb 12 20:24:15.456000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.456000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.456000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.456000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.456000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.456000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.456000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.456000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.456000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.456000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.456000 audit: BPF prog-id=53 op=LOAD Feb 12 20:24:15.456000 audit: BPF prog-id=35 op=UNLOAD Feb 12 20:24:15.457000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.457000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.457000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.457000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.457000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.457000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.457000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.457000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.457000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.458000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:15.458000 audit: BPF prog-id=54 op=LOAD Feb 12 20:24:15.458000 audit: BPF prog-id=28 op=UNLOAD Feb 12 20:24:15.476000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:15.477331 systemd[1]: Started kubelet.service. Feb 12 20:24:15.506081 systemd[1]: Starting coreos-metadata.service... Feb 12 20:24:15.598875 kubelet[1991]: E0212 20:24:15.598798 1991 run.go:74] "command failed" err="failed to load kubelet config file, error: failed to load Kubelet config file /var/lib/kubelet/config.yaml, error failed to read kubelet config file \"/var/lib/kubelet/config.yaml\", error: open /var/lib/kubelet/config.yaml: no such file or directory, path: /var/lib/kubelet/config.yaml" Feb 12 20:24:15.603114 systemd[1]: kubelet.service: Main process exited, code=exited, status=1/FAILURE Feb 12 20:24:15.603000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=failed' Feb 12 20:24:15.603475 systemd[1]: kubelet.service: Failed with result 'exit-code'. Feb 12 20:24:15.672668 amazon-ssm-agent[1621]: 2024-02-12 20:24:15 INFO [MessagingDeliveryService] [Association] No associations on boot. Requerying for associations after 30 seconds. Feb 12 20:24:15.684406 coreos-metadata[1998]: Feb 12 20:24:15.684 INFO Putting http://169.254.169.254/latest/api/token: Attempt #1 Feb 12 20:24:15.685414 coreos-metadata[1998]: Feb 12 20:24:15.685 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/instance-id: Attempt #1 Feb 12 20:24:15.686169 coreos-metadata[1998]: Feb 12 20:24:15.686 INFO Fetch successful Feb 12 20:24:15.686169 coreos-metadata[1998]: Feb 12 20:24:15.686 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/instance-type: Attempt #1 Feb 12 20:24:15.686945 coreos-metadata[1998]: Feb 12 20:24:15.686 INFO Fetch successful Feb 12 20:24:15.687034 coreos-metadata[1998]: Feb 12 20:24:15.686 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/local-ipv4: Attempt #1 Feb 12 20:24:15.687653 coreos-metadata[1998]: Feb 12 20:24:15.687 INFO Fetch successful Feb 12 20:24:15.687775 coreos-metadata[1998]: Feb 12 20:24:15.687 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/public-ipv4: Attempt #1 Feb 12 20:24:15.688303 coreos-metadata[1998]: Feb 12 20:24:15.688 INFO Fetch successful Feb 12 20:24:15.688419 coreos-metadata[1998]: Feb 12 20:24:15.688 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/placement/availability-zone: Attempt #1 Feb 12 20:24:15.689511 coreos-metadata[1998]: Feb 12 20:24:15.689 INFO Fetch successful Feb 12 20:24:15.689632 coreos-metadata[1998]: Feb 12 20:24:15.689 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/hostname: Attempt #1 Feb 12 20:24:15.690282 coreos-metadata[1998]: Feb 12 20:24:15.690 INFO Fetch successful Feb 12 20:24:15.690369 coreos-metadata[1998]: Feb 12 20:24:15.690 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/public-hostname: Attempt #1 Feb 12 20:24:15.690947 coreos-metadata[1998]: Feb 12 20:24:15.690 INFO Fetch successful Feb 12 20:24:15.691029 coreos-metadata[1998]: Feb 12 20:24:15.690 INFO Fetching http://169.254.169.254/2019-10-01/dynamic/instance-identity/document: Attempt #1 Feb 12 20:24:15.691997 coreos-metadata[1998]: Feb 12 20:24:15.691 INFO Fetch successful Feb 12 20:24:15.706580 systemd[1]: Finished coreos-metadata.service. Feb 12 20:24:15.706000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=coreos-metadata comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:16.223482 systemd[1]: Stopped kubelet.service. Feb 12 20:24:16.223000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:16.223000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:16.253969 systemd[1]: Reloading. Feb 12 20:24:16.366602 /usr/lib/systemd/system-generators/torcx-generator[2056]: time="2024-02-12T20:24:16Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.2 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.2 /var/lib/torcx/store]" Feb 12 20:24:16.367217 /usr/lib/systemd/system-generators/torcx-generator[2056]: time="2024-02-12T20:24:16Z" level=info msg="torcx already run" Feb 12 20:24:16.546738 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Feb 12 20:24:16.546792 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Feb 12 20:24:16.592413 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Feb 12 20:24:16.741000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.741000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.741000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.741000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.741000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.741000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.741000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.741000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.741000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.741000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.741000 audit: BPF prog-id=55 op=LOAD Feb 12 20:24:16.741000 audit: BPF prog-id=37 op=UNLOAD Feb 12 20:24:16.741000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.741000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.741000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.741000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.741000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.741000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.741000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.741000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.741000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.741000 audit: BPF prog-id=56 op=LOAD Feb 12 20:24:16.741000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.741000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.741000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.741000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.741000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.741000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.741000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.741000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.741000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.741000 audit: BPF prog-id=57 op=LOAD Feb 12 20:24:16.742000 audit: BPF prog-id=38 op=UNLOAD Feb 12 20:24:16.742000 audit: BPF prog-id=39 op=UNLOAD Feb 12 20:24:16.744000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.744000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.744000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.744000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.744000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.744000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.744000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.744000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.744000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.745000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.745000 audit: BPF prog-id=58 op=LOAD Feb 12 20:24:16.745000 audit: BPF prog-id=40 op=UNLOAD Feb 12 20:24:16.745000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.745000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.745000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.745000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.745000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.745000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.745000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.745000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.745000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.745000 audit: BPF prog-id=59 op=LOAD Feb 12 20:24:16.745000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.745000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.745000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.745000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.745000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.745000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.745000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.745000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.745000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.745000 audit: BPF prog-id=60 op=LOAD Feb 12 20:24:16.745000 audit: BPF prog-id=41 op=UNLOAD Feb 12 20:24:16.745000 audit: BPF prog-id=42 op=UNLOAD Feb 12 20:24:16.748000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.748000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.748000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.748000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.748000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.748000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.748000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.748000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.748000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.748000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.748000 audit: BPF prog-id=61 op=LOAD Feb 12 20:24:16.748000 audit: BPF prog-id=43 op=UNLOAD Feb 12 20:24:16.751000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.751000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.751000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.751000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.751000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.751000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.751000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.751000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.752000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.752000 audit: BPF prog-id=62 op=LOAD Feb 12 20:24:16.752000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.752000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.752000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.752000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.752000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.752000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.752000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.752000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.752000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.752000 audit: BPF prog-id=63 op=LOAD Feb 12 20:24:16.752000 audit: BPF prog-id=44 op=UNLOAD Feb 12 20:24:16.752000 audit: BPF prog-id=45 op=UNLOAD Feb 12 20:24:16.756000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.756000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.756000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.756000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.756000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.756000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.756000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.756000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.756000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.756000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.756000 audit: BPF prog-id=64 op=LOAD Feb 12 20:24:16.756000 audit: BPF prog-id=46 op=UNLOAD Feb 12 20:24:16.756000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.756000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.756000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.756000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.756000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.756000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.756000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.756000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.756000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.756000 audit: BPF prog-id=65 op=LOAD Feb 12 20:24:16.756000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.756000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.756000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.756000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.756000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.756000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.756000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.756000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.756000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.756000 audit: BPF prog-id=66 op=LOAD Feb 12 20:24:16.756000 audit: BPF prog-id=47 op=UNLOAD Feb 12 20:24:16.756000 audit: BPF prog-id=48 op=UNLOAD Feb 12 20:24:16.757000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.757000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.757000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.757000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.757000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.757000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.757000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.757000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.757000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.757000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.757000 audit: BPF prog-id=67 op=LOAD Feb 12 20:24:16.757000 audit: BPF prog-id=49 op=UNLOAD Feb 12 20:24:16.758000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.758000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.758000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.758000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.758000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.758000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.758000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.758000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.758000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.758000 audit: BPF prog-id=68 op=LOAD Feb 12 20:24:16.758000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.758000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.758000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.758000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.758000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.758000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.758000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.758000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.758000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.758000 audit: BPF prog-id=69 op=LOAD Feb 12 20:24:16.758000 audit: BPF prog-id=50 op=UNLOAD Feb 12 20:24:16.758000 audit: BPF prog-id=51 op=UNLOAD Feb 12 20:24:16.761000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.761000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.761000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.761000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.761000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.761000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.761000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.761000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.761000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.762000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.762000 audit: BPF prog-id=70 op=LOAD Feb 12 20:24:16.762000 audit: BPF prog-id=52 op=UNLOAD Feb 12 20:24:16.765000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.765000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.765000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.765000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.765000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.765000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.765000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.765000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.765000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.765000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.765000 audit: BPF prog-id=71 op=LOAD Feb 12 20:24:16.765000 audit: BPF prog-id=53 op=UNLOAD Feb 12 20:24:16.766000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.766000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.766000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.766000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.766000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.766000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.766000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.766000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.766000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.766000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:16.766000 audit: BPF prog-id=72 op=LOAD Feb 12 20:24:16.766000 audit: BPF prog-id=54 op=UNLOAD Feb 12 20:24:16.793892 systemd[1]: Started kubelet.service. Feb 12 20:24:16.793000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:16.897810 kubelet[2113]: Flag --container-runtime-endpoint has been deprecated, This parameter should be set via the config file specified by the Kubelet's --config flag. See https://kubernetes.io/docs/tasks/administer-cluster/kubelet-config-file/ for more information. Feb 12 20:24:16.897810 kubelet[2113]: Flag --pod-infra-container-image has been deprecated, will be removed in a future release. Image garbage collector will get sandbox image information from CRI. Feb 12 20:24:16.897810 kubelet[2113]: Flag --volume-plugin-dir has been deprecated, This parameter should be set via the config file specified by the Kubelet's --config flag. See https://kubernetes.io/docs/tasks/administer-cluster/kubelet-config-file/ for more information. Feb 12 20:24:16.897810 kubelet[2113]: I0212 20:24:16.889616 2113 server.go:199] "--pod-infra-container-image will not be pruned by the image garbage collector in kubelet and should also be set in the remote runtime" Feb 12 20:24:18.234527 kubelet[2113]: I0212 20:24:18.234486 2113 server.go:415] "Kubelet version" kubeletVersion="v1.27.2" Feb 12 20:24:18.235311 kubelet[2113]: I0212 20:24:18.235282 2113 server.go:417] "Golang settings" GOGC="" GOMAXPROCS="" GOTRACEBACK="" Feb 12 20:24:18.235776 kubelet[2113]: I0212 20:24:18.235727 2113 server.go:837] "Client rotation is on, will bootstrap in background" Feb 12 20:24:18.242476 kubelet[2113]: W0212 20:24:18.242439 2113 machine.go:65] Cannot read vendor id correctly, set empty. Feb 12 20:24:18.243870 kubelet[2113]: I0212 20:24:18.243822 2113 server.go:662] "--cgroups-per-qos enabled, but --cgroup-root was not specified. defaulting to /" Feb 12 20:24:18.244699 kubelet[2113]: I0212 20:24:18.244645 2113 container_manager_linux.go:266] "Container manager verified user specified cgroup-root exists" cgroupRoot=[] Feb 12 20:24:18.245116 kubelet[2113]: I0212 20:24:18.244064 2113 dynamic_cafile_content.go:157] "Starting controller" name="client-ca-bundle::/etc/kubernetes/pki/ca.crt" Feb 12 20:24:18.245261 kubelet[2113]: I0212 20:24:18.245084 2113 container_manager_linux.go:271] "Creating Container Manager object based on Node Config" nodeConfig={RuntimeCgroupsName: SystemCgroupsName: KubeletCgroupsName: KubeletOOMScoreAdj:-999 ContainerRuntime: CgroupsPerQOS:true CgroupRoot:/ CgroupDriver:systemd KubeletRootDir:/var/lib/kubelet ProtectKernelDefaults:false NodeAllocatableConfig:{KubeReservedCgroupName: SystemReservedCgroupName: ReservedSystemCPUs: EnforceNodeAllocatable:map[pods:{}] KubeReserved:map[] SystemReserved:map[] HardEvictionThresholds:[{Signal:memory.available Operator:LessThan Value:{Quantity:100Mi Percentage:0} GracePeriod:0s MinReclaim:} {Signal:nodefs.available Operator:LessThan Value:{Quantity: Percentage:0.1} GracePeriod:0s MinReclaim:} {Signal:nodefs.inodesFree Operator:LessThan Value:{Quantity: Percentage:0.05} GracePeriod:0s MinReclaim:} {Signal:imagefs.available Operator:LessThan Value:{Quantity: Percentage:0.15} GracePeriod:0s MinReclaim:}]} QOSReserved:map[] CPUManagerPolicy:none CPUManagerPolicyOptions:map[] TopologyManagerScope:container CPUManagerReconcilePeriod:10s ExperimentalMemoryManagerPolicy:None ExperimentalMemoryManagerReservedMemory:[] PodPidsLimit:-1 EnforceCPULimits:true CPUCFSQuotaPeriod:100ms TopologyManagerPolicy:none ExperimentalTopologyManagerPolicyOptions:map[]} Feb 12 20:24:18.245515 kubelet[2113]: I0212 20:24:18.245485 2113 topology_manager.go:136] "Creating topology manager with policy per scope" topologyPolicyName="none" topologyScopeName="container" Feb 12 20:24:18.245658 kubelet[2113]: I0212 20:24:18.245637 2113 container_manager_linux.go:302] "Creating device plugin manager" Feb 12 20:24:18.245993 kubelet[2113]: I0212 20:24:18.245971 2113 state_mem.go:36] "Initialized new in-memory state store" Feb 12 20:24:18.256910 kubelet[2113]: I0212 20:24:18.256870 2113 kubelet.go:405] "Attempting to sync node with API server" Feb 12 20:24:18.256910 kubelet[2113]: I0212 20:24:18.256916 2113 kubelet.go:298] "Adding static pod path" path="/etc/kubernetes/manifests" Feb 12 20:24:18.257159 kubelet[2113]: I0212 20:24:18.256968 2113 kubelet.go:309] "Adding apiserver pod source" Feb 12 20:24:18.257159 kubelet[2113]: I0212 20:24:18.256992 2113 apiserver.go:42] "Waiting for node sync before watching apiserver pods" Feb 12 20:24:18.258424 kubelet[2113]: E0212 20:24:18.258099 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:18.258651 kubelet[2113]: E0212 20:24:18.257951 2113 file.go:98] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:18.259013 kubelet[2113]: I0212 20:24:18.258965 2113 kuberuntime_manager.go:257] "Container runtime initialized" containerRuntime="containerd" version="1.6.16" apiVersion="v1" Feb 12 20:24:18.259594 kubelet[2113]: W0212 20:24:18.259513 2113 probe.go:268] Flexvolume plugin directory at /opt/libexec/kubernetes/kubelet-plugins/volume/exec/ does not exist. Recreating. Feb 12 20:24:18.260669 kubelet[2113]: I0212 20:24:18.260619 2113 server.go:1168] "Started kubelet" Feb 12 20:24:18.262847 kubelet[2113]: E0212 20:24:18.262806 2113 cri_stats_provider.go:455] "Failed to get the info of the filesystem with mountpoint" err="unable to find data in memory cache" mountpoint="/var/lib/containerd/io.containerd.snapshotter.v1.overlayfs" Feb 12 20:24:18.263119 kubelet[2113]: E0212 20:24:18.263087 2113 kubelet.go:1400] "Image garbage collection failed once. Stats initialization may not have completed yet" err="invalid capacity 0 on image filesystem" Feb 12 20:24:18.263000 audit[2113]: AVC avc: denied { mac_admin } for pid=2113 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:18.263000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Feb 12 20:24:18.263000 audit[2113]: SYSCALL arch=c00000b7 syscall=5 success=no exit=-22 a0=4000d43350 a1=4000c44a38 a2=4000d43320 a3=25 items=0 ppid=1 pid=2113 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:18.263000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Feb 12 20:24:18.263000 audit[2113]: AVC avc: denied { mac_admin } for pid=2113 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:18.263000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Feb 12 20:24:18.263000 audit[2113]: SYSCALL arch=c00000b7 syscall=5 success=no exit=-22 a0=4000e1ac40 a1=4000c44a50 a2=4000d433e0 a3=25 items=0 ppid=1 pid=2113 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:18.263000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Feb 12 20:24:18.265282 kubelet[2113]: I0212 20:24:18.264513 2113 kubelet.go:1355] "Unprivileged containerized plugins might not work, could not set selinux context on plugin registration dir" path="/var/lib/kubelet/plugins_registry" err="setxattr /var/lib/kubelet/plugins_registry: invalid argument" Feb 12 20:24:18.265282 kubelet[2113]: I0212 20:24:18.264623 2113 kubelet.go:1359] "Unprivileged containerized plugins might not work, could not set selinux context on plugins dir" path="/var/lib/kubelet/plugins" err="setxattr /var/lib/kubelet/plugins: invalid argument" Feb 12 20:24:18.265282 kubelet[2113]: I0212 20:24:18.264789 2113 fs_resource_analyzer.go:67] "Starting FS ResourceAnalyzer" Feb 12 20:24:18.269980 kubelet[2113]: I0212 20:24:18.269940 2113 server.go:162] "Starting to listen" address="0.0.0.0" port=10250 Feb 12 20:24:18.271415 kubelet[2113]: I0212 20:24:18.271381 2113 server.go:461] "Adding debug handlers to kubelet server" Feb 12 20:24:18.273551 kubelet[2113]: I0212 20:24:18.273511 2113 ratelimit.go:65] "Setting rate limiting for podresources endpoint" qps=100 burstTokens=10 Feb 12 20:24:18.280549 kubelet[2113]: I0212 20:24:18.280497 2113 volume_manager.go:284] "Starting Kubelet Volume Manager" Feb 12 20:24:18.281327 kubelet[2113]: I0212 20:24:18.281282 2113 desired_state_of_world_populator.go:145] "Desired state populator starts to run" Feb 12 20:24:18.314812 kubelet[2113]: E0212 20:24:18.314572 2113 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.20.28.17b337462de20a64", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.20.28", UID:"172.31.20.28", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"Starting", Message:"Starting kubelet.", Source:v1.EventSource{Component:"kubelet", Host:"172.31.20.28"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 24, 18, 260576868, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 24, 18, 260576868, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:24:18.315000 audit[2126]: NETFILTER_CFG table=mangle:2 family=2 entries=2 op=nft_register_chain pid=2126 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:18.315000 audit[2126]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=136 a0=3 a1=fffffdc34430 a2=0 a3=1 items=0 ppid=2113 pid=2126 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:18.315000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D49505441424C45532D48494E54002D74006D616E676C65 Feb 12 20:24:18.317579 kubelet[2113]: W0212 20:24:18.315190 2113 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.Service: services is forbidden: User "system:anonymous" cannot list resource "services" in API group "" at the cluster scope Feb 12 20:24:18.317858 kubelet[2113]: E0212 20:24:18.317823 2113 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.Service: failed to list *v1.Service: services is forbidden: User "system:anonymous" cannot list resource "services" in API group "" at the cluster scope Feb 12 20:24:18.318006 kubelet[2113]: E0212 20:24:18.315291 2113 controller.go:146] "Failed to ensure lease exists, will retry" err="leases.coordination.k8s.io \"172.31.20.28\" is forbidden: User \"system:anonymous\" cannot get resource \"leases\" in API group \"coordination.k8s.io\" in the namespace \"kube-node-lease\"" interval="200ms" Feb 12 20:24:18.318142 kubelet[2113]: W0212 20:24:18.315371 2113 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.CSIDriver: csidrivers.storage.k8s.io is forbidden: User "system:anonymous" cannot list resource "csidrivers" in API group "storage.k8s.io" at the cluster scope Feb 12 20:24:18.318361 kubelet[2113]: E0212 20:24:18.318339 2113 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.CSIDriver: failed to list *v1.CSIDriver: csidrivers.storage.k8s.io is forbidden: User "system:anonymous" cannot list resource "csidrivers" in API group "storage.k8s.io" at the cluster scope Feb 12 20:24:18.318491 kubelet[2113]: W0212 20:24:18.315423 2113 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.Node: nodes "172.31.20.28" is forbidden: User "system:anonymous" cannot list resource "nodes" in API group "" at the cluster scope Feb 12 20:24:18.318650 kubelet[2113]: E0212 20:24:18.318628 2113 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.Node: failed to list *v1.Node: nodes "172.31.20.28" is forbidden: User "system:anonymous" cannot list resource "nodes" in API group "" at the cluster scope Feb 12 20:24:18.319275 kubelet[2113]: E0212 20:24:18.319129 2113 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.20.28.17b337462e07ece6", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.20.28", UID:"172.31.20.28", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"InvalidDiskCapacity", Message:"invalid capacity 0 on image filesystem", Source:v1.EventSource{Component:"kubelet", Host:"172.31.20.28"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 24, 18, 263059686, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 24, 18, 263059686, time.Local), Count:1, Type:"Warning", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:24:18.324000 audit[2131]: NETFILTER_CFG table=filter:3 family=2 entries=2 op=nft_register_chain pid=2131 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:18.324000 audit[2131]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=132 a0=3 a1=ffffc93217e0 a2=0 a3=1 items=0 ppid=2113 pid=2131 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:18.324000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4649524557414C4C002D740066696C746572 Feb 12 20:24:18.337992 kubelet[2113]: I0212 20:24:18.337944 2113 cpu_manager.go:214] "Starting CPU manager" policy="none" Feb 12 20:24:18.337992 kubelet[2113]: I0212 20:24:18.337983 2113 cpu_manager.go:215] "Reconciling" reconcilePeriod="10s" Feb 12 20:24:18.338283 kubelet[2113]: I0212 20:24:18.338016 2113 state_mem.go:36] "Initialized new in-memory state store" Feb 12 20:24:18.338705 kubelet[2113]: E0212 20:24:18.338572 2113 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.20.28.17b337463269d520", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.20.28", UID:"172.31.20.28", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 172.31.20.28 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"172.31.20.28"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 24, 18, 336584992, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 24, 18, 336584992, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:24:18.341561 kubelet[2113]: E0212 20:24:18.341427 2113 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.20.28.17b33746326a0a32", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.20.28", UID:"172.31.20.28", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 172.31.20.28 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"172.31.20.28"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 24, 18, 336598578, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 24, 18, 336598578, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:24:18.343443 kubelet[2113]: I0212 20:24:18.343392 2113 policy_none.go:49] "None policy: Start" Feb 12 20:24:18.343984 kubelet[2113]: E0212 20:24:18.343122 2113 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.20.28.17b33746326a1d02", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.20.28", UID:"172.31.20.28", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 172.31.20.28 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"172.31.20.28"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 24, 18, 336603394, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 24, 18, 336603394, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:24:18.345000 kubelet[2113]: I0212 20:24:18.344966 2113 memory_manager.go:169] "Starting memorymanager" policy="None" Feb 12 20:24:18.345225 kubelet[2113]: I0212 20:24:18.345203 2113 state_mem.go:35] "Initializing new in-memory state store" Feb 12 20:24:18.357777 systemd[1]: Created slice kubepods.slice. Feb 12 20:24:18.330000 audit[2133]: NETFILTER_CFG table=filter:4 family=2 entries=2 op=nft_register_chain pid=2133 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:18.330000 audit[2133]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=312 a0=3 a1=ffffdd2f9ef0 a2=0 a3=1 items=0 ppid=2113 pid=2133 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:18.330000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6A004B5542452D4649524557414C4C Feb 12 20:24:18.370021 systemd[1]: Created slice kubepods-burstable.slice. Feb 12 20:24:18.375893 systemd[1]: Created slice kubepods-besteffort.slice. Feb 12 20:24:18.374000 audit[2138]: NETFILTER_CFG table=filter:5 family=2 entries=2 op=nft_register_chain pid=2138 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:18.374000 audit[2138]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=312 a0=3 a1=fffff9ee22b0 a2=0 a3=1 items=0 ppid=2113 pid=2138 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:18.374000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6A004B5542452D4649524557414C4C Feb 12 20:24:18.381719 kubelet[2113]: I0212 20:24:18.381663 2113 kubelet_node_status.go:70] "Attempting to register node" node="172.31.20.28" Feb 12 20:24:18.384990 kubelet[2113]: I0212 20:24:18.384949 2113 manager.go:455] "Failed to read data from checkpoint" checkpoint="kubelet_internal_checkpoint" err="checkpoint is not found" Feb 12 20:24:18.385000 audit[2113]: AVC avc: denied { mac_admin } for pid=2113 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:18.385000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Feb 12 20:24:18.385000 audit[2113]: SYSCALL arch=c00000b7 syscall=5 success=no exit=-22 a0=4000fa1050 a1=4000f97a88 a2=4000fa1020 a3=25 items=0 ppid=1 pid=2113 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:18.385000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Feb 12 20:24:18.386883 kubelet[2113]: I0212 20:24:18.386679 2113 server.go:88] "Unprivileged containerized plugins might not work. Could not set selinux context on socket dir" path="/var/lib/kubelet/device-plugins/" err="setxattr /var/lib/kubelet/device-plugins/: invalid argument" Feb 12 20:24:18.388516 kubelet[2113]: E0212 20:24:18.385520 2113 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.20.28.17b337463269d520", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.20.28", UID:"172.31.20.28", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 172.31.20.28 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"172.31.20.28"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 24, 18, 336584992, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 24, 18, 381589570, time.Local), Count:2, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.20.28.17b337463269d520" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:24:18.389852 kubelet[2113]: E0212 20:24:18.385655 2113 kubelet_node_status.go:92] "Unable to register node with API server" err="nodes is forbidden: User \"system:anonymous\" cannot create resource \"nodes\" in API group \"\" at the cluster scope" node="172.31.20.28" Feb 12 20:24:18.390051 kubelet[2113]: I0212 20:24:18.389205 2113 plugin_manager.go:118] "Starting Kubelet Plugin Manager" Feb 12 20:24:18.391127 kubelet[2113]: E0212 20:24:18.391094 2113 eviction_manager.go:262] "Eviction manager: failed to get summary stats" err="failed to get node info: node \"172.31.20.28\" not found" Feb 12 20:24:18.392057 kubelet[2113]: E0212 20:24:18.391729 2113 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.20.28.17b33746326a0a32", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.20.28", UID:"172.31.20.28", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 172.31.20.28 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"172.31.20.28"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 24, 18, 336598578, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 24, 18, 381610218, time.Local), Count:2, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.20.28.17b33746326a0a32" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:24:18.394413 kubelet[2113]: E0212 20:24:18.394274 2113 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.20.28.17b33746326a1d02", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.20.28", UID:"172.31.20.28", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 172.31.20.28 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"172.31.20.28"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 24, 18, 336603394, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 24, 18, 381623394, time.Local), Count:2, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.20.28.17b33746326a1d02" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:24:18.397604 kubelet[2113]: E0212 20:24:18.397430 2113 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.20.28.17b3374635a9f75a", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.20.28", UID:"172.31.20.28", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeAllocatableEnforced", Message:"Updated Node Allocatable limit across pods", Source:v1.EventSource{Component:"kubelet", Host:"172.31.20.28"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 24, 18, 391119706, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 24, 18, 391119706, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:24:18.441000 audit[2143]: NETFILTER_CFG table=filter:6 family=2 entries=1 op=nft_register_rule pid=2143 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:18.441000 audit[2143]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=924 a0=3 a1=ffffeceb69c0 a2=0 a3=1 items=0 ppid=2113 pid=2143 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:18.441000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D41004B5542452D4649524557414C4C002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E7400626C6F636B20696E636F6D696E67206C6F63616C6E657420636F6E6E656374696F6E73002D2D647374003132372E302E302E302F38 Feb 12 20:24:18.443897 kubelet[2113]: I0212 20:24:18.443859 2113 kubelet_network_linux.go:63] "Initialized iptables rules." protocol=IPv4 Feb 12 20:24:18.444000 audit[2144]: NETFILTER_CFG table=mangle:7 family=10 entries=2 op=nft_register_chain pid=2144 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:18.444000 audit[2144]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=136 a0=3 a1=ffffedb28d20 a2=0 a3=1 items=0 ppid=2113 pid=2144 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:18.444000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D49505441424C45532D48494E54002D74006D616E676C65 Feb 12 20:24:18.445974 kubelet[2113]: I0212 20:24:18.445934 2113 kubelet_network_linux.go:63] "Initialized iptables rules." protocol=IPv6 Feb 12 20:24:18.446092 kubelet[2113]: I0212 20:24:18.445986 2113 status_manager.go:207] "Starting to sync pod status with apiserver" Feb 12 20:24:18.446092 kubelet[2113]: I0212 20:24:18.446037 2113 kubelet.go:2257] "Starting kubelet main sync loop" Feb 12 20:24:18.446214 kubelet[2113]: E0212 20:24:18.446122 2113 kubelet.go:2281] "Skipping pod synchronization" err="PLEG is not healthy: pleg has yet to be successful" Feb 12 20:24:18.446000 audit[2145]: NETFILTER_CFG table=mangle:8 family=2 entries=1 op=nft_register_chain pid=2145 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:18.446000 audit[2145]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffdf885420 a2=0 a3=1 items=0 ppid=2113 pid=2145 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:18.446000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006D616E676C65 Feb 12 20:24:18.448411 kubelet[2113]: W0212 20:24:18.448365 2113 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.RuntimeClass: runtimeclasses.node.k8s.io is forbidden: User "system:anonymous" cannot list resource "runtimeclasses" in API group "node.k8s.io" at the cluster scope Feb 12 20:24:18.448584 kubelet[2113]: E0212 20:24:18.448423 2113 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.RuntimeClass: failed to list *v1.RuntimeClass: runtimeclasses.node.k8s.io is forbidden: User "system:anonymous" cannot list resource "runtimeclasses" in API group "node.k8s.io" at the cluster scope Feb 12 20:24:18.449000 audit[2146]: NETFILTER_CFG table=mangle:9 family=10 entries=1 op=nft_register_chain pid=2146 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:18.449000 audit[2146]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffde05ef30 a2=0 a3=1 items=0 ppid=2113 pid=2146 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:18.449000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006D616E676C65 Feb 12 20:24:18.450000 audit[2147]: NETFILTER_CFG table=nat:10 family=2 entries=2 op=nft_register_chain pid=2147 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:18.450000 audit[2147]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=128 a0=3 a1=ffffd29deac0 a2=0 a3=1 items=0 ppid=2113 pid=2147 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:18.450000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006E6174 Feb 12 20:24:18.451000 audit[2148]: NETFILTER_CFG table=nat:11 family=10 entries=2 op=nft_register_chain pid=2148 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:18.451000 audit[2148]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=128 a0=3 a1=fffffd077750 a2=0 a3=1 items=0 ppid=2113 pid=2148 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:18.451000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006E6174 Feb 12 20:24:18.454000 audit[2149]: NETFILTER_CFG table=filter:12 family=2 entries=1 op=nft_register_chain pid=2149 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:18.454000 audit[2149]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffc894ee50 a2=0 a3=1 items=0 ppid=2113 pid=2149 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:18.454000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D740066696C746572 Feb 12 20:24:18.454000 audit[2150]: NETFILTER_CFG table=filter:13 family=10 entries=2 op=nft_register_chain pid=2150 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:18.454000 audit[2150]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=136 a0=3 a1=ffffd8623670 a2=0 a3=1 items=0 ppid=2113 pid=2150 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:18.454000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D740066696C746572 Feb 12 20:24:18.527830 kubelet[2113]: E0212 20:24:18.520838 2113 controller.go:146] "Failed to ensure lease exists, will retry" err="leases.coordination.k8s.io \"172.31.20.28\" is forbidden: User \"system:anonymous\" cannot get resource \"leases\" in API group \"coordination.k8s.io\" in the namespace \"kube-node-lease\"" interval="400ms" Feb 12 20:24:18.592542 kubelet[2113]: I0212 20:24:18.592507 2113 kubelet_node_status.go:70] "Attempting to register node" node="172.31.20.28" Feb 12 20:24:18.596910 kubelet[2113]: E0212 20:24:18.596863 2113 kubelet_node_status.go:92] "Unable to register node with API server" err="nodes is forbidden: User \"system:anonymous\" cannot create resource \"nodes\" in API group \"\" at the cluster scope" node="172.31.20.28" Feb 12 20:24:18.597138 kubelet[2113]: E0212 20:24:18.597007 2113 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.20.28.17b337463269d520", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.20.28", UID:"172.31.20.28", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 172.31.20.28 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"172.31.20.28"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 24, 18, 336584992, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 24, 18, 592446809, time.Local), Count:3, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.20.28.17b337463269d520" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:24:18.598915 kubelet[2113]: E0212 20:24:18.598813 2113 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.20.28.17b33746326a0a32", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.20.28", UID:"172.31.20.28", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 172.31.20.28 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"172.31.20.28"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 24, 18, 336598578, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 24, 18, 592454748, time.Local), Count:3, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.20.28.17b33746326a0a32" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:24:18.601358 kubelet[2113]: E0212 20:24:18.601267 2113 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.20.28.17b33746326a1d02", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.20.28", UID:"172.31.20.28", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 172.31.20.28 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"172.31.20.28"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 24, 18, 336603394, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 24, 18, 592459661, time.Local), Count:3, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.20.28.17b33746326a1d02" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:24:18.931161 kubelet[2113]: E0212 20:24:18.931019 2113 controller.go:146] "Failed to ensure lease exists, will retry" err="leases.coordination.k8s.io \"172.31.20.28\" is forbidden: User \"system:anonymous\" cannot get resource \"leases\" in API group \"coordination.k8s.io\" in the namespace \"kube-node-lease\"" interval="800ms" Feb 12 20:24:18.998839 kubelet[2113]: I0212 20:24:18.998793 2113 kubelet_node_status.go:70] "Attempting to register node" node="172.31.20.28" Feb 12 20:24:19.001587 kubelet[2113]: E0212 20:24:19.001522 2113 kubelet_node_status.go:92] "Unable to register node with API server" err="nodes is forbidden: User \"system:anonymous\" cannot create resource \"nodes\" in API group \"\" at the cluster scope" node="172.31.20.28" Feb 12 20:24:19.001799 kubelet[2113]: E0212 20:24:19.001506 2113 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.20.28.17b337463269d520", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.20.28", UID:"172.31.20.28", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 172.31.20.28 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"172.31.20.28"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 24, 18, 336584992, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 24, 18, 998721877, time.Local), Count:4, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.20.28.17b337463269d520" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:24:19.005885 kubelet[2113]: E0212 20:24:19.005772 2113 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.20.28.17b33746326a0a32", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.20.28", UID:"172.31.20.28", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 172.31.20.28 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"172.31.20.28"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 24, 18, 336598578, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 24, 18, 998736891, time.Local), Count:4, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.20.28.17b33746326a0a32" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:24:19.010823 kubelet[2113]: E0212 20:24:19.010692 2113 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.20.28.17b33746326a1d02", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.20.28", UID:"172.31.20.28", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 172.31.20.28 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"172.31.20.28"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 24, 18, 336603394, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 24, 18, 998741816, time.Local), Count:4, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.20.28.17b33746326a1d02" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:24:19.245830 kubelet[2113]: I0212 20:24:19.244825 2113 transport.go:147] "Certificate rotation detected, shutting down client connections to start using new credentials" Feb 12 20:24:19.259116 kubelet[2113]: E0212 20:24:19.259084 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:19.707638 kubelet[2113]: E0212 20:24:19.707458 2113 csi_plugin.go:295] Failed to initialize CSINode: error updating CSINode annotation: timed out waiting for the condition; caused by: nodes "172.31.20.28" not found Feb 12 20:24:19.738671 kubelet[2113]: E0212 20:24:19.738635 2113 nodelease.go:49] "Failed to get node when trying to set owner ref to the node lease" err="nodes \"172.31.20.28\" not found" node="172.31.20.28" Feb 12 20:24:19.804493 kubelet[2113]: I0212 20:24:19.804027 2113 kubelet_node_status.go:70] "Attempting to register node" node="172.31.20.28" Feb 12 20:24:19.823646 kubelet[2113]: I0212 20:24:19.823589 2113 kubelet_node_status.go:73] "Successfully registered node" node="172.31.20.28" Feb 12 20:24:19.854222 kubelet[2113]: I0212 20:24:19.854171 2113 kuberuntime_manager.go:1460] "Updating runtime config through cri with podcidr" CIDR="192.168.1.0/24" Feb 12 20:24:19.854797 env[1644]: time="2024-02-12T20:24:19.854678356Z" level=info msg="No cni config template is specified, wait for other system components to drop the config." Feb 12 20:24:19.855938 kubelet[2113]: I0212 20:24:19.855905 2113 kubelet_network.go:61] "Updating Pod CIDR" originalPodCIDR="" newPodCIDR="192.168.1.0/24" Feb 12 20:24:20.258821 kubelet[2113]: I0212 20:24:20.258719 2113 apiserver.go:52] "Watching apiserver" Feb 12 20:24:20.259896 kubelet[2113]: E0212 20:24:20.259863 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:20.263459 kubelet[2113]: I0212 20:24:20.263403 2113 topology_manager.go:212] "Topology Admit Handler" Feb 12 20:24:20.263695 kubelet[2113]: I0212 20:24:20.263632 2113 topology_manager.go:212] "Topology Admit Handler" Feb 12 20:24:20.263873 kubelet[2113]: I0212 20:24:20.263840 2113 topology_manager.go:212] "Topology Admit Handler" Feb 12 20:24:20.264334 kubelet[2113]: E0212 20:24:20.264303 2113 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-wrwvz" podUID=9822be3a-c300-4397-bd25-d44111e8e8f3 Feb 12 20:24:20.275201 systemd[1]: Created slice kubepods-besteffort-pod09d1a26a_6487_4cbc_a0d0_af45521faf88.slice. Feb 12 20:24:20.283144 kubelet[2113]: I0212 20:24:20.283096 2113 desired_state_of_world_populator.go:153] "Finished populating initial desired state of world" Feb 12 20:24:20.290366 systemd[1]: Created slice kubepods-besteffort-poda9f12355_88f0_48cf_9899_09640c3109ba.slice. Feb 12 20:24:20.291966 kubelet[2113]: I0212 20:24:20.291909 2113 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-6wc2n\" (UniqueName: \"kubernetes.io/projected/09d1a26a-6487-4cbc-a0d0-af45521faf88-kube-api-access-6wc2n\") pod \"kube-proxy-hh9g6\" (UID: \"09d1a26a-6487-4cbc-a0d0-af45521faf88\") " pod="kube-system/kube-proxy-hh9g6" Feb 12 20:24:20.293454 kubelet[2113]: I0212 20:24:20.293402 2113 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"tigera-ca-bundle\" (UniqueName: \"kubernetes.io/configmap/a9f12355-88f0-48cf-9899-09640c3109ba-tigera-ca-bundle\") pod \"calico-node-mhm9v\" (UID: \"a9f12355-88f0-48cf-9899-09640c3109ba\") " pod="calico-system/calico-node-mhm9v" Feb 12 20:24:20.293579 kubelet[2113]: I0212 20:24:20.293500 2113 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"varrun\" (UniqueName: \"kubernetes.io/host-path/9822be3a-c300-4397-bd25-d44111e8e8f3-varrun\") pod \"csi-node-driver-wrwvz\" (UID: \"9822be3a-c300-4397-bd25-d44111e8e8f3\") " pod="calico-system/csi-node-driver-wrwvz" Feb 12 20:24:20.293579 kubelet[2113]: I0212 20:24:20.293574 2113 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kubelet-dir\" (UniqueName: \"kubernetes.io/host-path/9822be3a-c300-4397-bd25-d44111e8e8f3-kubelet-dir\") pod \"csi-node-driver-wrwvz\" (UID: \"9822be3a-c300-4397-bd25-d44111e8e8f3\") " pod="calico-system/csi-node-driver-wrwvz" Feb 12 20:24:20.293714 kubelet[2113]: I0212 20:24:20.293634 2113 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-8xlsb\" (UniqueName: \"kubernetes.io/projected/9822be3a-c300-4397-bd25-d44111e8e8f3-kube-api-access-8xlsb\") pod \"csi-node-driver-wrwvz\" (UID: \"9822be3a-c300-4397-bd25-d44111e8e8f3\") " pod="calico-system/csi-node-driver-wrwvz" Feb 12 20:24:20.293829 kubelet[2113]: I0212 20:24:20.293743 2113 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"lib-modules\" (UniqueName: \"kubernetes.io/host-path/09d1a26a-6487-4cbc-a0d0-af45521faf88-lib-modules\") pod \"kube-proxy-hh9g6\" (UID: \"09d1a26a-6487-4cbc-a0d0-af45521faf88\") " pod="kube-system/kube-proxy-hh9g6" Feb 12 20:24:20.293993 kubelet[2113]: I0212 20:24:20.293808 2113 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-proxy\" (UniqueName: \"kubernetes.io/configmap/09d1a26a-6487-4cbc-a0d0-af45521faf88-kube-proxy\") pod \"kube-proxy-hh9g6\" (UID: \"09d1a26a-6487-4cbc-a0d0-af45521faf88\") " pod="kube-system/kube-proxy-hh9g6" Feb 12 20:24:20.293993 kubelet[2113]: I0212 20:24:20.293883 2113 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"xtables-lock\" (UniqueName: \"kubernetes.io/host-path/a9f12355-88f0-48cf-9899-09640c3109ba-xtables-lock\") pod \"calico-node-mhm9v\" (UID: \"a9f12355-88f0-48cf-9899-09640c3109ba\") " pod="calico-system/calico-node-mhm9v" Feb 12 20:24:20.293993 kubelet[2113]: I0212 20:24:20.293954 2113 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"policysync\" (UniqueName: \"kubernetes.io/host-path/a9f12355-88f0-48cf-9899-09640c3109ba-policysync\") pod \"calico-node-mhm9v\" (UID: \"a9f12355-88f0-48cf-9899-09640c3109ba\") " pod="calico-system/calico-node-mhm9v" Feb 12 20:24:20.294161 kubelet[2113]: I0212 20:24:20.294026 2113 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-log-dir\" (UniqueName: \"kubernetes.io/host-path/a9f12355-88f0-48cf-9899-09640c3109ba-cni-log-dir\") pod \"calico-node-mhm9v\" (UID: \"a9f12355-88f0-48cf-9899-09640c3109ba\") " pod="calico-system/calico-node-mhm9v" Feb 12 20:24:20.294161 kubelet[2113]: I0212 20:24:20.294102 2113 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-xmgxb\" (UniqueName: \"kubernetes.io/projected/a9f12355-88f0-48cf-9899-09640c3109ba-kube-api-access-xmgxb\") pod \"calico-node-mhm9v\" (UID: \"a9f12355-88f0-48cf-9899-09640c3109ba\") " pod="calico-system/calico-node-mhm9v" Feb 12 20:24:20.294287 kubelet[2113]: I0212 20:24:20.294188 2113 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"socket-dir\" (UniqueName: \"kubernetes.io/host-path/9822be3a-c300-4397-bd25-d44111e8e8f3-socket-dir\") pod \"csi-node-driver-wrwvz\" (UID: \"9822be3a-c300-4397-bd25-d44111e8e8f3\") " pod="calico-system/csi-node-driver-wrwvz" Feb 12 20:24:20.294347 kubelet[2113]: I0212 20:24:20.294303 2113 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"xtables-lock\" (UniqueName: \"kubernetes.io/host-path/09d1a26a-6487-4cbc-a0d0-af45521faf88-xtables-lock\") pod \"kube-proxy-hh9g6\" (UID: \"09d1a26a-6487-4cbc-a0d0-af45521faf88\") " pod="kube-system/kube-proxy-hh9g6" Feb 12 20:24:20.294408 kubelet[2113]: I0212 20:24:20.294373 2113 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"lib-modules\" (UniqueName: \"kubernetes.io/host-path/a9f12355-88f0-48cf-9899-09640c3109ba-lib-modules\") pod \"calico-node-mhm9v\" (UID: \"a9f12355-88f0-48cf-9899-09640c3109ba\") " pod="calico-system/calico-node-mhm9v" Feb 12 20:24:20.294473 kubelet[2113]: I0212 20:24:20.294421 2113 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"var-run-calico\" (UniqueName: \"kubernetes.io/host-path/a9f12355-88f0-48cf-9899-09640c3109ba-var-run-calico\") pod \"calico-node-mhm9v\" (UID: \"a9f12355-88f0-48cf-9899-09640c3109ba\") " pod="calico-system/calico-node-mhm9v" Feb 12 20:24:20.294549 kubelet[2113]: I0212 20:24:20.294494 2113 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"var-lib-calico\" (UniqueName: \"kubernetes.io/host-path/a9f12355-88f0-48cf-9899-09640c3109ba-var-lib-calico\") pod \"calico-node-mhm9v\" (UID: \"a9f12355-88f0-48cf-9899-09640c3109ba\") " pod="calico-system/calico-node-mhm9v" Feb 12 20:24:20.294617 kubelet[2113]: I0212 20:24:20.294573 2113 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-bin-dir\" (UniqueName: \"kubernetes.io/host-path/a9f12355-88f0-48cf-9899-09640c3109ba-cni-bin-dir\") pod \"calico-node-mhm9v\" (UID: \"a9f12355-88f0-48cf-9899-09640c3109ba\") " pod="calico-system/calico-node-mhm9v" Feb 12 20:24:20.294734 kubelet[2113]: I0212 20:24:20.294681 2113 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"flexvol-driver-host\" (UniqueName: \"kubernetes.io/host-path/a9f12355-88f0-48cf-9899-09640c3109ba-flexvol-driver-host\") pod \"calico-node-mhm9v\" (UID: \"a9f12355-88f0-48cf-9899-09640c3109ba\") " pod="calico-system/calico-node-mhm9v" Feb 12 20:24:20.294874 kubelet[2113]: I0212 20:24:20.294794 2113 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"node-certs\" (UniqueName: \"kubernetes.io/secret/a9f12355-88f0-48cf-9899-09640c3109ba-node-certs\") pod \"calico-node-mhm9v\" (UID: \"a9f12355-88f0-48cf-9899-09640c3109ba\") " pod="calico-system/calico-node-mhm9v" Feb 12 20:24:20.294963 kubelet[2113]: I0212 20:24:20.294903 2113 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-net-dir\" (UniqueName: \"kubernetes.io/host-path/a9f12355-88f0-48cf-9899-09640c3109ba-cni-net-dir\") pod \"calico-node-mhm9v\" (UID: \"a9f12355-88f0-48cf-9899-09640c3109ba\") " pod="calico-system/calico-node-mhm9v" Feb 12 20:24:20.295156 kubelet[2113]: I0212 20:24:20.295117 2113 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"registration-dir\" (UniqueName: \"kubernetes.io/host-path/9822be3a-c300-4397-bd25-d44111e8e8f3-registration-dir\") pod \"csi-node-driver-wrwvz\" (UID: \"9822be3a-c300-4397-bd25-d44111e8e8f3\") " pod="calico-system/csi-node-driver-wrwvz" Feb 12 20:24:20.295443 kubelet[2113]: I0212 20:24:20.295175 2113 reconciler.go:41] "Reconciler: start to sync state" Feb 12 20:24:20.347195 kernel: kauditd_printk_skb: 477 callbacks suppressed Feb 12 20:24:20.347350 kernel: audit: type=1106 audit(1707769460.342:614): pid=1906 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 12 20:24:20.342000 audit[1906]: USER_END pid=1906 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 12 20:24:20.343497 sudo[1906]: pam_unix(sudo:session): session closed for user root Feb 12 20:24:20.345000 audit[1906]: CRED_DISP pid=1906 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 12 20:24:20.362714 kernel: audit: type=1104 audit(1707769460.345:615): pid=1906 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 12 20:24:20.369832 sshd[1903]: pam_unix(sshd:session): session closed for user core Feb 12 20:24:20.371000 audit[1903]: USER_END pid=1903 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:24:20.384870 systemd[1]: sshd@6-172.31.20.28:22-147.75.109.163:53060.service: Deactivated successfully. Feb 12 20:24:20.386191 systemd[1]: session-7.scope: Deactivated successfully. Feb 12 20:24:20.371000 audit[1903]: CRED_DISP pid=1903 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:24:20.388629 systemd-logind[1633]: Session 7 logged out. Waiting for processes to exit. Feb 12 20:24:20.390229 systemd-logind[1633]: Removed session 7. Feb 12 20:24:20.396043 kernel: audit: type=1106 audit(1707769460.371:616): pid=1903 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:24:20.396171 kernel: audit: type=1104 audit(1707769460.371:617): pid=1903 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:24:20.408688 kernel: audit: type=1131 audit(1707769460.384:618): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@6-172.31.20.28:22-147.75.109.163:53060 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:20.384000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@6-172.31.20.28:22-147.75.109.163:53060 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:20.417242 kubelet[2113]: E0212 20:24:20.417194 2113 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:20.417425 kubelet[2113]: W0212 20:24:20.417396 2113 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:20.417582 kubelet[2113]: E0212 20:24:20.417558 2113 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:20.420063 kubelet[2113]: E0212 20:24:20.420026 2113 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:20.420260 kubelet[2113]: W0212 20:24:20.420229 2113 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:20.420405 kubelet[2113]: E0212 20:24:20.420381 2113 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:20.420979 kubelet[2113]: E0212 20:24:20.420946 2113 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:20.421171 kubelet[2113]: W0212 20:24:20.421130 2113 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:20.421319 kubelet[2113]: E0212 20:24:20.421289 2113 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:20.422016 kubelet[2113]: E0212 20:24:20.421981 2113 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:20.422208 kubelet[2113]: W0212 20:24:20.422177 2113 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:20.422360 kubelet[2113]: E0212 20:24:20.422333 2113 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:20.425107 kubelet[2113]: E0212 20:24:20.425068 2113 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:20.425300 kubelet[2113]: W0212 20:24:20.425272 2113 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:20.425430 kubelet[2113]: E0212 20:24:20.425407 2113 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:20.426043 kubelet[2113]: E0212 20:24:20.426009 2113 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:20.426223 kubelet[2113]: W0212 20:24:20.426194 2113 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:20.426414 kubelet[2113]: E0212 20:24:20.426377 2113 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:20.426942 kubelet[2113]: E0212 20:24:20.426916 2113 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:20.427073 kubelet[2113]: W0212 20:24:20.427049 2113 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:20.427201 kubelet[2113]: E0212 20:24:20.427180 2113 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:20.427577 kubelet[2113]: E0212 20:24:20.427549 2113 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:20.427670 kubelet[2113]: W0212 20:24:20.427576 2113 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:20.427670 kubelet[2113]: E0212 20:24:20.427616 2113 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:20.428011 kubelet[2113]: E0212 20:24:20.427983 2113 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:20.428094 kubelet[2113]: W0212 20:24:20.428011 2113 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:20.428094 kubelet[2113]: E0212 20:24:20.428048 2113 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:20.428412 kubelet[2113]: E0212 20:24:20.428386 2113 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:20.428483 kubelet[2113]: W0212 20:24:20.428412 2113 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:20.428483 kubelet[2113]: E0212 20:24:20.428439 2113 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:20.428785 kubelet[2113]: E0212 20:24:20.428729 2113 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:20.428870 kubelet[2113]: W0212 20:24:20.428772 2113 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:20.428870 kubelet[2113]: E0212 20:24:20.428824 2113 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:20.429192 kubelet[2113]: E0212 20:24:20.429165 2113 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:20.429268 kubelet[2113]: W0212 20:24:20.429191 2113 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:20.429268 kubelet[2113]: E0212 20:24:20.429219 2113 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:20.472335 kubelet[2113]: E0212 20:24:20.472290 2113 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:20.472335 kubelet[2113]: W0212 20:24:20.472328 2113 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:20.472565 kubelet[2113]: E0212 20:24:20.472366 2113 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:20.492134 kubelet[2113]: E0212 20:24:20.492097 2113 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:20.492460 kubelet[2113]: W0212 20:24:20.492407 2113 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:20.492692 kubelet[2113]: E0212 20:24:20.492667 2113 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:20.496065 kubelet[2113]: E0212 20:24:20.496023 2113 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:20.496065 kubelet[2113]: W0212 20:24:20.496056 2113 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:20.496261 kubelet[2113]: E0212 20:24:20.496091 2113 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:20.587636 env[1644]: time="2024-02-12T20:24:20.587470315Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:kube-proxy-hh9g6,Uid:09d1a26a-6487-4cbc-a0d0-af45521faf88,Namespace:kube-system,Attempt:0,}" Feb 12 20:24:20.606344 env[1644]: time="2024-02-12T20:24:20.606258612Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-node-mhm9v,Uid:a9f12355-88f0-48cf-9899-09640c3109ba,Namespace:calico-system,Attempt:0,}" Feb 12 20:24:21.192345 env[1644]: time="2024-02-12T20:24:21.192283700Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:21.195623 env[1644]: time="2024-02-12T20:24:21.195553042Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:21.203048 env[1644]: time="2024-02-12T20:24:21.202992858Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:7d46a07936af93fcce097459055f93ab07331509aa55f4a2a90d95a3ace1850e,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:21.206382 env[1644]: time="2024-02-12T20:24:21.206308142Z" level=info msg="ImageUpdate event &ImageUpdate{Name:sha256:7d46a07936af93fcce097459055f93ab07331509aa55f4a2a90d95a3ace1850e,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:21.210714 env[1644]: time="2024-02-12T20:24:21.210666272Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:21.216886 env[1644]: time="2024-02-12T20:24:21.216833341Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:21.218523 env[1644]: time="2024-02-12T20:24:21.218475217Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/pause@sha256:3d380ca8864549e74af4b29c10f9cb0956236dfb01c40ca076fb6c37253234db,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:21.220450 env[1644]: time="2024-02-12T20:24:21.220386894Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause@sha256:3d380ca8864549e74af4b29c10f9cb0956236dfb01c40ca076fb6c37253234db,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:21.250892 env[1644]: time="2024-02-12T20:24:21.248874251Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 12 20:24:21.250892 env[1644]: time="2024-02-12T20:24:21.248937880Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 12 20:24:21.250892 env[1644]: time="2024-02-12T20:24:21.248971526Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 12 20:24:21.250892 env[1644]: time="2024-02-12T20:24:21.249248592Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/c67a4061177baccafe39c57f6a3151c29c729576ed70f9089fe6998aaaf60263 pid=2190 runtime=io.containerd.runc.v2 Feb 12 20:24:21.255236 env[1644]: time="2024-02-12T20:24:21.253512870Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 12 20:24:21.255236 env[1644]: time="2024-02-12T20:24:21.253644499Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 12 20:24:21.255236 env[1644]: time="2024-02-12T20:24:21.253674026Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 12 20:24:21.255236 env[1644]: time="2024-02-12T20:24:21.255065156Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/04cb4b1b3d661890728523957a3385892d8d18badcaaf418a550ccda008f199a pid=2189 runtime=io.containerd.runc.v2 Feb 12 20:24:21.260899 kubelet[2113]: E0212 20:24:21.260830 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:21.284636 systemd[1]: Started cri-containerd-c67a4061177baccafe39c57f6a3151c29c729576ed70f9089fe6998aaaf60263.scope. Feb 12 20:24:21.300660 systemd[1]: Started cri-containerd-04cb4b1b3d661890728523957a3385892d8d18badcaaf418a550ccda008f199a.scope. Feb 12 20:24:21.335000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.351801 kernel: audit: type=1400 audit(1707769461.335:619): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.351918 kernel: audit: type=1400 audit(1707769461.335:620): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.335000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.335000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.361493 kernel: audit: type=1400 audit(1707769461.335:621): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.335000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.372795 kernel: audit: type=1400 audit(1707769461.335:622): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.372944 kernel: audit: audit_backlog=65 > audit_backlog_limit=64 Feb 12 20:24:21.335000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.335000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.335000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.335000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.335000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.343000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.343000 audit: BPF prog-id=73 op=LOAD Feb 12 20:24:21.343000 audit[2207]: AVC avc: denied { bpf } for pid=2207 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.343000 audit[2207]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=40001bdb38 a2=10 a3=0 items=0 ppid=2189 pid=2207 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:21.343000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3034636234623162336436363138393037323835323339353761333338 Feb 12 20:24:21.343000 audit[2207]: AVC avc: denied { perfmon } for pid=2207 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.343000 audit[2207]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001bd5a0 a2=3c a3=0 items=0 ppid=2189 pid=2207 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:21.343000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3034636234623162336436363138393037323835323339353761333338 Feb 12 20:24:21.343000 audit[2207]: AVC avc: denied { bpf } for pid=2207 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.343000 audit[2207]: AVC avc: denied { bpf } for pid=2207 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.343000 audit[2207]: AVC avc: denied { bpf } for pid=2207 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.343000 audit[2207]: AVC avc: denied { perfmon } for pid=2207 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.343000 audit[2207]: AVC avc: denied { perfmon } for pid=2207 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.343000 audit[2207]: AVC avc: denied { perfmon } for pid=2207 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.343000 audit[2207]: AVC avc: denied { perfmon } for pid=2207 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.343000 audit[2207]: AVC avc: denied { perfmon } for pid=2207 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.343000 audit[2207]: AVC avc: denied { bpf } for pid=2207 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.343000 audit[2207]: AVC avc: denied { bpf } for pid=2207 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.343000 audit: BPF prog-id=74 op=LOAD Feb 12 20:24:21.343000 audit[2207]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001bd8e0 a2=78 a3=0 items=0 ppid=2189 pid=2207 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:21.343000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3034636234623162336436363138393037323835323339353761333338 Feb 12 20:24:21.351000 audit[2207]: AVC avc: denied { bpf } for pid=2207 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.351000 audit[2207]: AVC avc: denied { bpf } for pid=2207 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.351000 audit[2207]: AVC avc: denied { perfmon } for pid=2207 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.351000 audit[2207]: AVC avc: denied { perfmon } for pid=2207 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.351000 audit[2207]: AVC avc: denied { perfmon } for pid=2207 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.351000 audit[2207]: AVC avc: denied { perfmon } for pid=2207 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.351000 audit[2207]: AVC avc: denied { perfmon } for pid=2207 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.351000 audit[2207]: AVC avc: denied { bpf } for pid=2207 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.351000 audit[2207]: AVC avc: denied { bpf } for pid=2207 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.351000 audit: BPF prog-id=75 op=LOAD Feb 12 20:24:21.351000 audit[2207]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=40001bd670 a2=78 a3=0 items=0 ppid=2189 pid=2207 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:21.351000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3034636234623162336436363138393037323835323339353761333338 Feb 12 20:24:21.351000 audit: BPF prog-id=75 op=UNLOAD Feb 12 20:24:21.351000 audit: BPF prog-id=74 op=UNLOAD Feb 12 20:24:21.351000 audit[2207]: AVC avc: denied { bpf } for pid=2207 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.351000 audit[2207]: AVC avc: denied { bpf } for pid=2207 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.351000 audit[2207]: AVC avc: denied { bpf } for pid=2207 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.351000 audit[2207]: AVC avc: denied { perfmon } for pid=2207 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.351000 audit[2207]: AVC avc: denied { perfmon } for pid=2207 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.351000 audit[2207]: AVC avc: denied { perfmon } for pid=2207 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.351000 audit[2207]: AVC avc: denied { perfmon } for pid=2207 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.351000 audit[2207]: AVC avc: denied { perfmon } for pid=2207 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.351000 audit[2207]: AVC avc: denied { bpf } for pid=2207 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.351000 audit[2207]: AVC avc: denied { bpf } for pid=2207 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.351000 audit: BPF prog-id=76 op=LOAD Feb 12 20:24:21.351000 audit[2207]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001bdb40 a2=78 a3=0 items=0 ppid=2189 pid=2207 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:21.351000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3034636234623162336436363138393037323835323339353761333338 Feb 12 20:24:21.362000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.362000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.362000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.362000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.362000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.362000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.362000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.408336 env[1644]: time="2024-02-12T20:24:21.408261471Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-node-mhm9v,Uid:a9f12355-88f0-48cf-9899-09640c3109ba,Namespace:calico-system,Attempt:0,} returns sandbox id \"04cb4b1b3d661890728523957a3385892d8d18badcaaf418a550ccda008f199a\"" Feb 12 20:24:21.411865 env[1644]: time="2024-02-12T20:24:21.411796905Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.0\"" Feb 12 20:24:21.422409 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2660847742.mount: Deactivated successfully. Feb 12 20:24:21.437724 env[1644]: time="2024-02-12T20:24:21.437644616Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:kube-proxy-hh9g6,Uid:09d1a26a-6487-4cbc-a0d0-af45521faf88,Namespace:kube-system,Attempt:0,} returns sandbox id \"c67a4061177baccafe39c57f6a3151c29c729576ed70f9089fe6998aaaf60263\"" Feb 12 20:24:22.261007 kubelet[2113]: E0212 20:24:22.260950 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:22.446805 kubelet[2113]: E0212 20:24:22.446730 2113 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-wrwvz" podUID=9822be3a-c300-4397-bd25-d44111e8e8f3 Feb 12 20:24:22.889316 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1416520809.mount: Deactivated successfully. Feb 12 20:24:23.035395 env[1644]: time="2024-02-12T20:24:23.035327897Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:23.038892 env[1644]: time="2024-02-12T20:24:23.038843215Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:cbddd33ed55a4a5c129e8f09945d426860425b9778d9402efe7bcefea7990a57,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:23.041988 env[1644]: time="2024-02-12T20:24:23.041942457Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:23.043815 env[1644]: time="2024-02-12T20:24:23.043733427Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol@sha256:b05edbd1f80db4ada229e6001a666a7dd36bb6ab617143684fb3d28abfc4b71e,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:23.044674 env[1644]: time="2024-02-12T20:24:23.044631794Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.0\" returns image reference \"sha256:cbddd33ed55a4a5c129e8f09945d426860425b9778d9402efe7bcefea7990a57\"" Feb 12 20:24:23.046931 env[1644]: time="2024-02-12T20:24:23.046882254Z" level=info msg="PullImage \"registry.k8s.io/kube-proxy:v1.27.10\"" Feb 12 20:24:23.050212 env[1644]: time="2024-02-12T20:24:23.050116910Z" level=info msg="CreateContainer within sandbox \"04cb4b1b3d661890728523957a3385892d8d18badcaaf418a550ccda008f199a\" for container &ContainerMetadata{Name:flexvol-driver,Attempt:0,}" Feb 12 20:24:23.078100 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3018316694.mount: Deactivated successfully. Feb 12 20:24:23.085162 env[1644]: time="2024-02-12T20:24:23.085086300Z" level=info msg="CreateContainer within sandbox \"04cb4b1b3d661890728523957a3385892d8d18badcaaf418a550ccda008f199a\" for &ContainerMetadata{Name:flexvol-driver,Attempt:0,} returns container id \"e19e9dbe5b958926a3c8b7c032f8d169e29458dc17ddb901ecbd63b435cd5ba1\"" Feb 12 20:24:23.086921 env[1644]: time="2024-02-12T20:24:23.086872455Z" level=info msg="StartContainer for \"e19e9dbe5b958926a3c8b7c032f8d169e29458dc17ddb901ecbd63b435cd5ba1\"" Feb 12 20:24:23.124455 systemd[1]: Started cri-containerd-e19e9dbe5b958926a3c8b7c032f8d169e29458dc17ddb901ecbd63b435cd5ba1.scope. Feb 12 20:24:23.161000 audit[2267]: AVC avc: denied { perfmon } for pid=2267 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:23.161000 audit[2267]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=2189 pid=2267 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:23.161000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6531396539646265356239353839323661336338623763303332663864 Feb 12 20:24:23.162000 audit[2267]: AVC avc: denied { bpf } for pid=2267 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:23.162000 audit[2267]: AVC avc: denied { bpf } for pid=2267 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:23.162000 audit[2267]: AVC avc: denied { bpf } for pid=2267 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:23.162000 audit[2267]: AVC avc: denied { perfmon } for pid=2267 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:23.162000 audit[2267]: AVC avc: denied { perfmon } for pid=2267 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:23.162000 audit[2267]: AVC avc: denied { perfmon } for pid=2267 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:23.162000 audit[2267]: AVC avc: denied { perfmon } for pid=2267 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:23.162000 audit[2267]: AVC avc: denied { perfmon } for pid=2267 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:23.162000 audit[2267]: AVC avc: denied { bpf } for pid=2267 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:23.162000 audit[2267]: AVC avc: denied { bpf } for pid=2267 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:23.162000 audit: BPF prog-id=81 op=LOAD Feb 12 20:24:23.162000 audit[2267]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=2189 pid=2267 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:23.162000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6531396539646265356239353839323661336338623763303332663864 Feb 12 20:24:23.164000 audit[2267]: AVC avc: denied { bpf } for pid=2267 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:23.164000 audit[2267]: AVC avc: denied { bpf } for pid=2267 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:23.164000 audit[2267]: AVC avc: denied { perfmon } for pid=2267 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:23.164000 audit[2267]: AVC avc: denied { perfmon } for pid=2267 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:23.164000 audit[2267]: AVC avc: denied { perfmon } for pid=2267 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:23.164000 audit[2267]: AVC avc: denied { perfmon } for pid=2267 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:23.164000 audit[2267]: AVC avc: denied { perfmon } for pid=2267 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:23.164000 audit[2267]: AVC avc: denied { bpf } for pid=2267 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:23.164000 audit[2267]: AVC avc: denied { bpf } for pid=2267 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:23.164000 audit: BPF prog-id=82 op=LOAD Feb 12 20:24:23.164000 audit[2267]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=2189 pid=2267 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:23.164000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6531396539646265356239353839323661336338623763303332663864 Feb 12 20:24:23.166000 audit: BPF prog-id=82 op=UNLOAD Feb 12 20:24:23.166000 audit: BPF prog-id=81 op=UNLOAD Feb 12 20:24:23.166000 audit[2267]: AVC avc: denied { bpf } for pid=2267 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:23.166000 audit[2267]: AVC avc: denied { bpf } for pid=2267 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:23.166000 audit[2267]: AVC avc: denied { bpf } for pid=2267 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:23.166000 audit[2267]: AVC avc: denied { perfmon } for pid=2267 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:23.166000 audit[2267]: AVC avc: denied { perfmon } for pid=2267 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:23.166000 audit[2267]: AVC avc: denied { perfmon } for pid=2267 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:23.166000 audit[2267]: AVC avc: denied { perfmon } for pid=2267 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:23.166000 audit[2267]: AVC avc: denied { perfmon } for pid=2267 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:23.166000 audit[2267]: AVC avc: denied { bpf } for pid=2267 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:23.166000 audit[2267]: AVC avc: denied { bpf } for pid=2267 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:23.166000 audit: BPF prog-id=83 op=LOAD Feb 12 20:24:23.166000 audit[2267]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=2189 pid=2267 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:23.166000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6531396539646265356239353839323661336338623763303332663864 Feb 12 20:24:23.203797 env[1644]: time="2024-02-12T20:24:23.198791128Z" level=info msg="StartContainer for \"e19e9dbe5b958926a3c8b7c032f8d169e29458dc17ddb901ecbd63b435cd5ba1\" returns successfully" Feb 12 20:24:23.212642 systemd[1]: cri-containerd-e19e9dbe5b958926a3c8b7c032f8d169e29458dc17ddb901ecbd63b435cd5ba1.scope: Deactivated successfully. Feb 12 20:24:23.214000 audit: BPF prog-id=83 op=UNLOAD Feb 12 20:24:23.261646 kubelet[2113]: E0212 20:24:23.261586 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:23.333255 env[1644]: time="2024-02-12T20:24:23.333186895Z" level=info msg="shim disconnected" id=e19e9dbe5b958926a3c8b7c032f8d169e29458dc17ddb901ecbd63b435cd5ba1 Feb 12 20:24:23.333578 env[1644]: time="2024-02-12T20:24:23.333541130Z" level=warning msg="cleaning up after shim disconnected" id=e19e9dbe5b958926a3c8b7c032f8d169e29458dc17ddb901ecbd63b435cd5ba1 namespace=k8s.io Feb 12 20:24:23.333748 env[1644]: time="2024-02-12T20:24:23.333717689Z" level=info msg="cleaning up dead shim" Feb 12 20:24:23.349371 env[1644]: time="2024-02-12T20:24:23.349311614Z" level=warning msg="cleanup warnings time=\"2024-02-12T20:24:23Z\" level=info msg=\"starting signal loop\" namespace=k8s.io pid=2304 runtime=io.containerd.runc.v2\n" Feb 12 20:24:23.711585 systemd[1]: run-containerd-io.containerd.runtime.v2.task-k8s.io-e19e9dbe5b958926a3c8b7c032f8d169e29458dc17ddb901ecbd63b435cd5ba1-rootfs.mount: Deactivated successfully. Feb 12 20:24:24.261924 kubelet[2113]: E0212 20:24:24.261853 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:24.307027 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1651294543.mount: Deactivated successfully. Feb 12 20:24:24.449476 kubelet[2113]: E0212 20:24:24.449374 2113 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-wrwvz" podUID=9822be3a-c300-4397-bd25-d44111e8e8f3 Feb 12 20:24:25.092511 env[1644]: time="2024-02-12T20:24:25.092436847Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/kube-proxy:v1.27.10,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:25.095559 env[1644]: time="2024-02-12T20:24:25.095496957Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:f17f9528c5073692925255c3de3f310109480873912e8b5ddc171ae1e64324ef,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:25.098812 env[1644]: time="2024-02-12T20:24:25.098720160Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/kube-proxy:v1.27.10,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:25.102011 env[1644]: time="2024-02-12T20:24:25.101943003Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/kube-proxy@sha256:d084b53c772f62ec38fddb2348a82d4234016daf6cd43fedbf0b3281f3790f88,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:25.103509 env[1644]: time="2024-02-12T20:24:25.103436318Z" level=info msg="PullImage \"registry.k8s.io/kube-proxy:v1.27.10\" returns image reference \"sha256:f17f9528c5073692925255c3de3f310109480873912e8b5ddc171ae1e64324ef\"" Feb 12 20:24:25.105532 env[1644]: time="2024-02-12T20:24:25.105457364Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/cni:v3.27.0\"" Feb 12 20:24:25.107887 env[1644]: time="2024-02-12T20:24:25.107814957Z" level=info msg="CreateContainer within sandbox \"c67a4061177baccafe39c57f6a3151c29c729576ed70f9089fe6998aaaf60263\" for container &ContainerMetadata{Name:kube-proxy,Attempt:0,}" Feb 12 20:24:25.130377 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3754057948.mount: Deactivated successfully. Feb 12 20:24:25.142290 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount4061675047.mount: Deactivated successfully. Feb 12 20:24:25.148220 env[1644]: time="2024-02-12T20:24:25.148126670Z" level=info msg="CreateContainer within sandbox \"c67a4061177baccafe39c57f6a3151c29c729576ed70f9089fe6998aaaf60263\" for &ContainerMetadata{Name:kube-proxy,Attempt:0,} returns container id \"6cca3b410ab037286279cd0bf0cf113c33b8ffb482720a686875d763992f4cd0\"" Feb 12 20:24:25.149642 env[1644]: time="2024-02-12T20:24:25.149574872Z" level=info msg="StartContainer for \"6cca3b410ab037286279cd0bf0cf113c33b8ffb482720a686875d763992f4cd0\"" Feb 12 20:24:25.193530 systemd[1]: Started cri-containerd-6cca3b410ab037286279cd0bf0cf113c33b8ffb482720a686875d763992f4cd0.scope. Feb 12 20:24:25.236000 audit[2330]: AVC avc: denied { perfmon } for pid=2330 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:25.236000 audit[2330]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001475a0 a2=3c a3=0 items=0 ppid=2190 pid=2330 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.236000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3663636133623431306162303337323836323739636430626630636631 Feb 12 20:24:25.236000 audit[2330]: AVC avc: denied { bpf } for pid=2330 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:25.236000 audit[2330]: AVC avc: denied { bpf } for pid=2330 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:25.236000 audit[2330]: AVC avc: denied { bpf } for pid=2330 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:25.236000 audit[2330]: AVC avc: denied { perfmon } for pid=2330 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:25.236000 audit[2330]: AVC avc: denied { perfmon } for pid=2330 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:25.236000 audit[2330]: AVC avc: denied { perfmon } for pid=2330 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:25.236000 audit[2330]: AVC avc: denied { perfmon } for pid=2330 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:25.236000 audit[2330]: AVC avc: denied { perfmon } for pid=2330 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:25.236000 audit[2330]: AVC avc: denied { bpf } for pid=2330 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:25.236000 audit[2330]: AVC avc: denied { bpf } for pid=2330 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:25.236000 audit: BPF prog-id=84 op=LOAD Feb 12 20:24:25.236000 audit[2330]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001478e0 a2=78 a3=0 items=0 ppid=2190 pid=2330 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.236000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3663636133623431306162303337323836323739636430626630636631 Feb 12 20:24:25.236000 audit[2330]: AVC avc: denied { bpf } for pid=2330 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:25.236000 audit[2330]: AVC avc: denied { bpf } for pid=2330 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:25.236000 audit[2330]: AVC avc: denied { perfmon } for pid=2330 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:25.236000 audit[2330]: AVC avc: denied { perfmon } for pid=2330 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:25.236000 audit[2330]: AVC avc: denied { perfmon } for pid=2330 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:25.236000 audit[2330]: AVC avc: denied { perfmon } for pid=2330 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:25.236000 audit[2330]: AVC avc: denied { perfmon } for pid=2330 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:25.236000 audit[2330]: AVC avc: denied { bpf } for pid=2330 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:25.236000 audit[2330]: AVC avc: denied { bpf } for pid=2330 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:25.236000 audit: BPF prog-id=85 op=LOAD Feb 12 20:24:25.236000 audit[2330]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000147670 a2=78 a3=0 items=0 ppid=2190 pid=2330 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.236000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3663636133623431306162303337323836323739636430626630636631 Feb 12 20:24:25.237000 audit: BPF prog-id=85 op=UNLOAD Feb 12 20:24:25.237000 audit: BPF prog-id=84 op=UNLOAD Feb 12 20:24:25.237000 audit[2330]: AVC avc: denied { bpf } for pid=2330 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:25.237000 audit[2330]: AVC avc: denied { bpf } for pid=2330 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:25.237000 audit[2330]: AVC avc: denied { bpf } for pid=2330 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:25.237000 audit[2330]: AVC avc: denied { perfmon } for pid=2330 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:25.237000 audit[2330]: AVC avc: denied { perfmon } for pid=2330 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:25.237000 audit[2330]: AVC avc: denied { perfmon } for pid=2330 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:25.237000 audit[2330]: AVC avc: denied { perfmon } for pid=2330 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:25.237000 audit[2330]: AVC avc: denied { perfmon } for pid=2330 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:25.237000 audit[2330]: AVC avc: denied { bpf } for pid=2330 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:25.237000 audit[2330]: AVC avc: denied { bpf } for pid=2330 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:25.237000 audit: BPF prog-id=86 op=LOAD Feb 12 20:24:25.237000 audit[2330]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000147b40 a2=78 a3=0 items=0 ppid=2190 pid=2330 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.237000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3663636133623431306162303337323836323739636430626630636631 Feb 12 20:24:25.264621 kubelet[2113]: E0212 20:24:25.262494 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:25.269682 env[1644]: time="2024-02-12T20:24:25.269570924Z" level=info msg="StartContainer for \"6cca3b410ab037286279cd0bf0cf113c33b8ffb482720a686875d763992f4cd0\" returns successfully" Feb 12 20:24:25.383000 audit[2379]: NETFILTER_CFG table=mangle:14 family=2 entries=1 op=nft_register_chain pid=2379 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:25.388188 kernel: kauditd_printk_skb: 266 callbacks suppressed Feb 12 20:24:25.388302 kernel: audit: type=1325 audit(1707769465.383:657): table=mangle:14 family=2 entries=1 op=nft_register_chain pid=2379 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:25.383000 audit[2379]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=fffffac2c050 a2=0 a3=ffffb42a46c0 items=0 ppid=2340 pid=2379 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.406102 kernel: audit: type=1300 audit(1707769465.383:657): arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=fffffac2c050 a2=0 a3=ffffb42a46c0 items=0 ppid=2340 pid=2379 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.383000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006D616E676C65 Feb 12 20:24:25.412981 kernel: audit: type=1327 audit(1707769465.383:657): proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006D616E676C65 Feb 12 20:24:25.413129 kernel: audit: type=1325 audit(1707769465.386:658): table=mangle:15 family=10 entries=1 op=nft_register_chain pid=2380 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:25.386000 audit[2380]: NETFILTER_CFG table=mangle:15 family=10 entries=1 op=nft_register_chain pid=2380 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:25.386000 audit[2380]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffe649a1b0 a2=0 a3=ffff8f8166c0 items=0 ppid=2340 pid=2380 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.430402 kernel: audit: type=1300 audit(1707769465.386:658): arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffe649a1b0 a2=0 a3=ffff8f8166c0 items=0 ppid=2340 pid=2380 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.430550 kernel: audit: type=1327 audit(1707769465.386:658): proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006D616E676C65 Feb 12 20:24:25.386000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006D616E676C65 Feb 12 20:24:25.398000 audit[2382]: NETFILTER_CFG table=nat:16 family=10 entries=1 op=nft_register_chain pid=2382 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:25.441833 kernel: audit: type=1325 audit(1707769465.398:659): table=nat:16 family=10 entries=1 op=nft_register_chain pid=2382 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:25.441908 kernel: audit: type=1300 audit(1707769465.398:659): arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffe9ff37f0 a2=0 a3=ffffa7e6f6c0 items=0 ppid=2340 pid=2382 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.398000 audit[2382]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffe9ff37f0 a2=0 a3=ffffa7e6f6c0 items=0 ppid=2340 pid=2382 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.398000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006E6174 Feb 12 20:24:25.458992 kernel: audit: type=1327 audit(1707769465.398:659): proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006E6174 Feb 12 20:24:25.405000 audit[2384]: NETFILTER_CFG table=filter:17 family=10 entries=1 op=nft_register_chain pid=2384 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:25.465624 kernel: audit: type=1325 audit(1707769465.405:660): table=filter:17 family=10 entries=1 op=nft_register_chain pid=2384 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:25.405000 audit[2384]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffe5630310 a2=0 a3=ffff939c16c0 items=0 ppid=2340 pid=2384 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.405000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D740066696C746572 Feb 12 20:24:25.405000 audit[2381]: NETFILTER_CFG table=nat:18 family=2 entries=1 op=nft_register_chain pid=2381 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:25.405000 audit[2381]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffdf0a2a20 a2=0 a3=ffff87d396c0 items=0 ppid=2340 pid=2381 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.405000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006E6174 Feb 12 20:24:25.411000 audit[2385]: NETFILTER_CFG table=filter:19 family=2 entries=1 op=nft_register_chain pid=2385 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:25.411000 audit[2385]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffc332e300 a2=0 a3=ffff9f98b6c0 items=0 ppid=2340 pid=2385 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.411000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D740066696C746572 Feb 12 20:24:25.489120 kubelet[2113]: I0212 20:24:25.489063 2113 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="kube-system/kube-proxy-hh9g6" podStartSLOduration=2.82508581 podCreationTimestamp="2024-02-12 20:24:19 +0000 UTC" firstStartedPulling="2024-02-12 20:24:21.440160414 +0000 UTC m=+4.638922311" lastFinishedPulling="2024-02-12 20:24:25.104035728 +0000 UTC m=+8.302797613" observedRunningTime="2024-02-12 20:24:25.488294789 +0000 UTC m=+8.687056710" watchObservedRunningTime="2024-02-12 20:24:25.488961112 +0000 UTC m=+8.687722985" Feb 12 20:24:25.495000 audit[2386]: NETFILTER_CFG table=filter:20 family=2 entries=1 op=nft_register_chain pid=2386 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:25.495000 audit[2386]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=108 a0=3 a1=fffffcd9b750 a2=0 a3=ffffaf4246c0 items=0 ppid=2340 pid=2386 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.495000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D45585445524E414C2D5345525649434553002D740066696C746572 Feb 12 20:24:25.500000 audit[2388]: NETFILTER_CFG table=filter:21 family=2 entries=1 op=nft_register_rule pid=2388 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:25.500000 audit[2388]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=752 a0=3 a1=fffff5de3dd0 a2=0 a3=ffff8bfe76c0 items=0 ppid=2340 pid=2388 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.500000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C652073657276696365 Feb 12 20:24:25.510000 audit[2391]: NETFILTER_CFG table=filter:22 family=2 entries=2 op=nft_register_chain pid=2391 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:25.510000 audit[2391]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=836 a0=3 a1=fffff3b482c0 a2=0 a3=ffff8a3af6c0 items=0 ppid=2340 pid=2391 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.510000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C65207365727669 Feb 12 20:24:25.513000 audit[2392]: NETFILTER_CFG table=filter:23 family=2 entries=1 op=nft_register_chain pid=2392 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:25.513000 audit[2392]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffdf5dedd0 a2=0 a3=ffffa0e686c0 items=0 ppid=2340 pid=2392 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.513000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4E4F4445504F525453002D740066696C746572 Feb 12 20:24:25.517000 audit[2394]: NETFILTER_CFG table=filter:24 family=2 entries=1 op=nft_register_rule pid=2394 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:25.517000 audit[2394]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=528 a0=3 a1=ffffc0dd7de0 a2=0 a3=ffffb14d16c0 items=0 ppid=2340 pid=2394 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.517000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206865616C746820636865636B207365727669636520706F727473002D6A004B5542452D4E4F4445504F525453 Feb 12 20:24:25.521000 audit[2395]: NETFILTER_CFG table=filter:25 family=2 entries=1 op=nft_register_chain pid=2395 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:25.521000 audit[2395]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffe962d170 a2=0 a3=ffffb66266c0 items=0 ppid=2340 pid=2395 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.521000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D740066696C746572 Feb 12 20:24:25.527000 audit[2397]: NETFILTER_CFG table=filter:26 family=2 entries=1 op=nft_register_rule pid=2397 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:25.527000 audit[2397]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=744 a0=3 a1=fffff58daf10 a2=0 a3=ffff8062c6c0 items=0 ppid=2340 pid=2397 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.527000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D Feb 12 20:24:25.534000 audit[2400]: NETFILTER_CFG table=filter:27 family=2 entries=1 op=nft_register_rule pid=2400 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:25.534000 audit[2400]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=744 a0=3 a1=ffffee325490 a2=0 a3=ffff8334f6c0 items=0 ppid=2340 pid=2400 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.534000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D53 Feb 12 20:24:25.537000 audit[2401]: NETFILTER_CFG table=filter:28 family=2 entries=1 op=nft_register_chain pid=2401 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:25.537000 audit[2401]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=fffff9979970 a2=0 a3=ffff8244d6c0 items=0 ppid=2340 pid=2401 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.537000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D464F5257415244002D740066696C746572 Feb 12 20:24:25.544000 audit[2403]: NETFILTER_CFG table=filter:29 family=2 entries=1 op=nft_register_rule pid=2403 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:25.544000 audit[2403]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=528 a0=3 a1=ffffd85a3920 a2=0 a3=ffff99f226c0 items=0 ppid=2340 pid=2403 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.544000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320666F7277617264696E672072756C6573002D6A004B5542452D464F5257415244 Feb 12 20:24:25.547000 audit[2404]: NETFILTER_CFG table=filter:30 family=2 entries=1 op=nft_register_chain pid=2404 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:25.547000 audit[2404]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=fffffc7b0e50 a2=0 a3=ffff803036c0 items=0 ppid=2340 pid=2404 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.547000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D4649524557414C4C002D740066696C746572 Feb 12 20:24:25.552000 audit[2406]: NETFILTER_CFG table=filter:31 family=2 entries=1 op=nft_register_rule pid=2406 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:25.552000 audit[2406]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=fffff58d9e00 a2=0 a3=ffffbdaee6c0 items=0 ppid=2340 pid=2406 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.552000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Feb 12 20:24:25.562000 audit[2409]: NETFILTER_CFG table=filter:32 family=2 entries=1 op=nft_register_rule pid=2409 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:25.562000 audit[2409]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffe6035e20 a2=0 a3=ffffa10fb6c0 items=0 ppid=2340 pid=2409 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.562000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Feb 12 20:24:25.569000 audit[2412]: NETFILTER_CFG table=filter:33 family=2 entries=1 op=nft_register_rule pid=2412 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:25.569000 audit[2412]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffec829700 a2=0 a3=ffff8941a6c0 items=0 ppid=2340 pid=2412 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.569000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D Feb 12 20:24:25.571000 audit[2413]: NETFILTER_CFG table=nat:34 family=2 entries=1 op=nft_register_chain pid=2413 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:25.571000 audit[2413]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=96 a0=3 a1=ffffff6c03f0 a2=0 a3=ffffb80346c0 items=0 ppid=2340 pid=2413 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.571000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D74006E6174 Feb 12 20:24:25.575000 audit[2415]: NETFILTER_CFG table=nat:35 family=2 entries=2 op=nft_register_chain pid=2415 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:25.575000 audit[2415]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=600 a0=3 a1=fffff8d124f0 a2=0 a3=ffffa57666c0 items=0 ppid=2340 pid=2415 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.575000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Feb 12 20:24:25.609000 audit[2421]: NETFILTER_CFG table=nat:36 family=2 entries=2 op=nft_register_chain pid=2421 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:25.609000 audit[2421]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=608 a0=3 a1=ffffc7d30e10 a2=0 a3=ffff97b9d6c0 items=0 ppid=2340 pid=2421 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.609000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900505245524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Feb 12 20:24:25.621000 audit[2426]: NETFILTER_CFG table=nat:37 family=2 entries=1 op=nft_register_chain pid=2426 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:25.621000 audit[2426]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=fffff83508d0 a2=0 a3=ffff935566c0 items=0 ppid=2340 pid=2426 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.621000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D504F5354524F5554494E47002D74006E6174 Feb 12 20:24:25.626000 audit[2428]: NETFILTER_CFG table=nat:38 family=2 entries=2 op=nft_register_chain pid=2428 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:25.626000 audit[2428]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=612 a0=3 a1=fffff98a8d30 a2=0 a3=ffffb614a6c0 items=0 ppid=2340 pid=2428 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.626000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900504F5354524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320706F7374726F7574696E672072756C6573002D6A004B5542452D504F5354524F5554494E47 Feb 12 20:24:25.638000 audit[2430]: NETFILTER_CFG table=filter:39 family=2 entries=5 op=nft_register_rule pid=2430 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:24:25.638000 audit[2430]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=2844 a0=3 a1=fffff1320190 a2=0 a3=ffff97fda6c0 items=0 ppid=2340 pid=2430 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.638000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:24:25.671000 audit[2430]: NETFILTER_CFG table=nat:40 family=2 entries=54 op=nft_register_chain pid=2430 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:24:25.671000 audit[2430]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=24988 a0=3 a1=fffff1320190 a2=0 a3=ffff97fda6c0 items=0 ppid=2340 pid=2430 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.671000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:24:25.691000 audit[2438]: NETFILTER_CFG table=filter:41 family=10 entries=1 op=nft_register_chain pid=2438 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:25.691000 audit[2438]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=108 a0=3 a1=ffffdc63f730 a2=0 a3=ffffab48c6c0 items=0 ppid=2340 pid=2438 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.691000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D45585445524E414C2D5345525649434553002D740066696C746572 Feb 12 20:24:25.696000 audit[2440]: NETFILTER_CFG table=filter:42 family=10 entries=2 op=nft_register_chain pid=2440 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:25.696000 audit[2440]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=836 a0=3 a1=ffffe571dc90 a2=0 a3=ffff8275e6c0 items=0 ppid=2340 pid=2440 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.696000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C6520736572766963 Feb 12 20:24:25.704000 audit[2443]: NETFILTER_CFG table=filter:43 family=10 entries=2 op=nft_register_chain pid=2443 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:25.704000 audit[2443]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=836 a0=3 a1=ffffe2f50430 a2=0 a3=ffff80cd36c0 items=0 ppid=2340 pid=2443 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.704000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C652073657276 Feb 12 20:24:25.707000 audit[2444]: NETFILTER_CFG table=filter:44 family=10 entries=1 op=nft_register_chain pid=2444 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:25.707000 audit[2444]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffe192d740 a2=0 a3=ffff8efb86c0 items=0 ppid=2340 pid=2444 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.707000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4E4F4445504F525453002D740066696C746572 Feb 12 20:24:25.712000 audit[2446]: NETFILTER_CFG table=filter:45 family=10 entries=1 op=nft_register_rule pid=2446 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:25.712000 audit[2446]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=528 a0=3 a1=ffffdcec5be0 a2=0 a3=ffffa926d6c0 items=0 ppid=2340 pid=2446 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.712000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206865616C746820636865636B207365727669636520706F727473002D6A004B5542452D4E4F4445504F525453 Feb 12 20:24:25.715000 audit[2447]: NETFILTER_CFG table=filter:46 family=10 entries=1 op=nft_register_chain pid=2447 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:25.715000 audit[2447]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffd2385020 a2=0 a3=ffffbe4236c0 items=0 ppid=2340 pid=2447 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.715000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D740066696C746572 Feb 12 20:24:25.721000 audit[2449]: NETFILTER_CFG table=filter:47 family=10 entries=1 op=nft_register_rule pid=2449 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:25.721000 audit[2449]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=744 a0=3 a1=ffffcf154c00 a2=0 a3=ffffbb22f6c0 items=0 ppid=2340 pid=2449 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.721000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B554245 Feb 12 20:24:25.729000 audit[2452]: NETFILTER_CFG table=filter:48 family=10 entries=2 op=nft_register_chain pid=2452 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:25.729000 audit[2452]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=828 a0=3 a1=ffffc9675950 a2=0 a3=ffffa04ce6c0 items=0 ppid=2340 pid=2452 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.729000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D Feb 12 20:24:25.732000 audit[2453]: NETFILTER_CFG table=filter:49 family=10 entries=1 op=nft_register_chain pid=2453 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:25.732000 audit[2453]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=fffff18d01e0 a2=0 a3=ffff8b0326c0 items=0 ppid=2340 pid=2453 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.732000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D464F5257415244002D740066696C746572 Feb 12 20:24:25.737000 audit[2455]: NETFILTER_CFG table=filter:50 family=10 entries=1 op=nft_register_rule pid=2455 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:25.737000 audit[2455]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=528 a0=3 a1=ffffe87f5390 a2=0 a3=ffffb0e786c0 items=0 ppid=2340 pid=2455 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.737000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320666F7277617264696E672072756C6573002D6A004B5542452D464F5257415244 Feb 12 20:24:25.740000 audit[2456]: NETFILTER_CFG table=filter:51 family=10 entries=1 op=nft_register_chain pid=2456 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:25.740000 audit[2456]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffc205d690 a2=0 a3=ffffa43356c0 items=0 ppid=2340 pid=2456 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.740000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D4649524557414C4C002D740066696C746572 Feb 12 20:24:25.746000 audit[2458]: NETFILTER_CFG table=filter:52 family=10 entries=1 op=nft_register_rule pid=2458 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:25.746000 audit[2458]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffe0772380 a2=0 a3=ffff826db6c0 items=0 ppid=2340 pid=2458 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.746000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Feb 12 20:24:25.753000 audit[2461]: NETFILTER_CFG table=filter:53 family=10 entries=1 op=nft_register_rule pid=2461 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:25.753000 audit[2461]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffe89e71a0 a2=0 a3=ffffb71266c0 items=0 ppid=2340 pid=2461 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.753000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D Feb 12 20:24:25.761000 audit[2464]: NETFILTER_CFG table=filter:54 family=10 entries=1 op=nft_register_rule pid=2464 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:25.761000 audit[2464]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffd4b29a70 a2=0 a3=ffff9ef9f6c0 items=0 ppid=2340 pid=2464 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.761000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C Feb 12 20:24:25.764000 audit[2465]: NETFILTER_CFG table=nat:55 family=10 entries=1 op=nft_register_chain pid=2465 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:25.764000 audit[2465]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=96 a0=3 a1=ffffcfa82630 a2=0 a3=ffffb37246c0 items=0 ppid=2340 pid=2465 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.764000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D74006E6174 Feb 12 20:24:25.770000 audit[2467]: NETFILTER_CFG table=nat:56 family=10 entries=2 op=nft_register_chain pid=2467 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:25.770000 audit[2467]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=600 a0=3 a1=ffffe4a19dc0 a2=0 a3=ffff8532a6c0 items=0 ppid=2340 pid=2467 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.770000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Feb 12 20:24:25.776000 audit[2470]: NETFILTER_CFG table=nat:57 family=10 entries=2 op=nft_register_chain pid=2470 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:25.776000 audit[2470]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=608 a0=3 a1=ffffffec1e20 a2=0 a3=ffff96fc66c0 items=0 ppid=2340 pid=2470 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.776000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900505245524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Feb 12 20:24:25.779000 audit[2471]: NETFILTER_CFG table=filter:58 family=10 entries=1 op=nft_register_chain pid=2471 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:25.779000 audit[2471]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=fffff516c150 a2=0 a3=ffffaa81b6c0 items=0 ppid=2340 pid=2471 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.779000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4649524557414C4C002D740066696C746572 Feb 12 20:24:25.784000 audit[2473]: NETFILTER_CFG table=filter:59 family=10 entries=1 op=nft_register_rule pid=2473 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:25.784000 audit[2473]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=228 a0=3 a1=ffffe3602d60 a2=0 a3=ffffa6a5d6c0 items=0 ppid=2340 pid=2473 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.784000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6A004B5542452D4649524557414C4C Feb 12 20:24:25.791000 audit[2476]: NETFILTER_CFG table=filter:60 family=10 entries=1 op=nft_register_rule pid=2476 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:25.791000 audit[2476]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=228 a0=3 a1=ffffee67c400 a2=0 a3=ffff878b66c0 items=0 ppid=2340 pid=2476 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.791000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6A004B5542452D4649524557414C4C Feb 12 20:24:25.793000 audit[2477]: NETFILTER_CFG table=nat:61 family=10 entries=1 op=nft_register_chain pid=2477 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:25.793000 audit[2477]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffe75bd600 a2=0 a3=ffffa2a296c0 items=0 ppid=2340 pid=2477 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.793000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D504F5354524F5554494E47002D74006E6174 Feb 12 20:24:25.799000 audit[2479]: NETFILTER_CFG table=nat:62 family=10 entries=2 op=nft_register_chain pid=2479 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:25.799000 audit[2479]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=612 a0=3 a1=ffffd4537e00 a2=0 a3=ffff8199c6c0 items=0 ppid=2340 pid=2479 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.799000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900504F5354524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320706F7374726F7574696E672072756C6573002D6A004B5542452D504F5354524F5554494E47 Feb 12 20:24:25.805000 audit[2481]: NETFILTER_CFG table=filter:63 family=10 entries=3 op=nft_register_rule pid=2481 subj=system_u:system_r:kernel_t:s0 comm="ip6tables-resto" Feb 12 20:24:25.805000 audit[2481]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=1916 a0=3 a1=ffffdd104740 a2=0 a3=ffffb01566c0 items=0 ppid=2340 pid=2481 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables-resto" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.805000 audit: PROCTITLE proctitle=6970367461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:24:25.806000 audit[2481]: NETFILTER_CFG table=nat:64 family=10 entries=7 op=nft_register_chain pid=2481 subj=system_u:system_r:kernel_t:s0 comm="ip6tables-resto" Feb 12 20:24:25.806000 audit[2481]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=1968 a0=3 a1=ffffdd104740 a2=0 a3=ffffb01566c0 items=0 ppid=2340 pid=2481 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables-resto" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:25.806000 audit: PROCTITLE proctitle=6970367461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:24:26.262889 kubelet[2113]: E0212 20:24:26.262784 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:26.447087 kubelet[2113]: E0212 20:24:26.447016 2113 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-wrwvz" podUID=9822be3a-c300-4397-bd25-d44111e8e8f3 Feb 12 20:24:26.525368 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1732136863.mount: Deactivated successfully. Feb 12 20:24:27.263970 kubelet[2113]: E0212 20:24:27.263892 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:28.264845 kubelet[2113]: E0212 20:24:28.264775 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:28.447792 kubelet[2113]: E0212 20:24:28.447073 2113 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-wrwvz" podUID=9822be3a-c300-4397-bd25-d44111e8e8f3 Feb 12 20:24:29.265959 kubelet[2113]: E0212 20:24:29.265825 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:30.178099 env[1644]: time="2024-02-12T20:24:30.178029888Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/cni:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:30.180573 env[1644]: time="2024-02-12T20:24:30.180517273Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:9c9318f5fbf505fc3d84676966009a3887e58ea1e3eac10039e5a96dfceb254b,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:30.184049 env[1644]: time="2024-02-12T20:24:30.183969549Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/cni:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:30.187143 env[1644]: time="2024-02-12T20:24:30.187071141Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/cni@sha256:d943b4c23e82a39b0186a1a3b2fe8f728e543d503df72d7be521501a82b7e7b4,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:30.188745 env[1644]: time="2024-02-12T20:24:30.188669754Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/cni:v3.27.0\" returns image reference \"sha256:9c9318f5fbf505fc3d84676966009a3887e58ea1e3eac10039e5a96dfceb254b\"" Feb 12 20:24:30.193180 env[1644]: time="2024-02-12T20:24:30.193127284Z" level=info msg="CreateContainer within sandbox \"04cb4b1b3d661890728523957a3385892d8d18badcaaf418a550ccda008f199a\" for container &ContainerMetadata{Name:install-cni,Attempt:0,}" Feb 12 20:24:30.215638 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1828339153.mount: Deactivated successfully. Feb 12 20:24:30.223824 env[1644]: time="2024-02-12T20:24:30.223726615Z" level=info msg="CreateContainer within sandbox \"04cb4b1b3d661890728523957a3385892d8d18badcaaf418a550ccda008f199a\" for &ContainerMetadata{Name:install-cni,Attempt:0,} returns container id \"cec448c3f26c07838ba12bad104fce34f6ef72eb9f968c59de8e8707589ed6ac\"" Feb 12 20:24:30.225282 env[1644]: time="2024-02-12T20:24:30.225235426Z" level=info msg="StartContainer for \"cec448c3f26c07838ba12bad104fce34f6ef72eb9f968c59de8e8707589ed6ac\"" Feb 12 20:24:30.266997 kubelet[2113]: E0212 20:24:30.266920 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:30.272215 systemd[1]: Started cri-containerd-cec448c3f26c07838ba12bad104fce34f6ef72eb9f968c59de8e8707589ed6ac.scope. Feb 12 20:24:30.313000 audit[2490]: AVC avc: denied { perfmon } for pid=2490 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:30.313000 audit[2490]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=2189 pid=2490 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:30.313000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6365633434386333663236633037383338626131326261643130346663 Feb 12 20:24:30.314000 audit[2490]: AVC avc: denied { bpf } for pid=2490 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:30.314000 audit[2490]: AVC avc: denied { bpf } for pid=2490 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:30.314000 audit[2490]: AVC avc: denied { bpf } for pid=2490 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:30.314000 audit[2490]: AVC avc: denied { perfmon } for pid=2490 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:30.314000 audit[2490]: AVC avc: denied { perfmon } for pid=2490 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:30.314000 audit[2490]: AVC avc: denied { perfmon } for pid=2490 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:30.314000 audit[2490]: AVC avc: denied { perfmon } for pid=2490 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:30.314000 audit[2490]: AVC avc: denied { perfmon } for pid=2490 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:30.314000 audit[2490]: AVC avc: denied { bpf } for pid=2490 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:30.314000 audit[2490]: AVC avc: denied { bpf } for pid=2490 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:30.314000 audit: BPF prog-id=87 op=LOAD Feb 12 20:24:30.314000 audit[2490]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=2189 pid=2490 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:30.314000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6365633434386333663236633037383338626131326261643130346663 Feb 12 20:24:30.315000 audit[2490]: AVC avc: denied { bpf } for pid=2490 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:30.315000 audit[2490]: AVC avc: denied { bpf } for pid=2490 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:30.315000 audit[2490]: AVC avc: denied { perfmon } for pid=2490 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:30.315000 audit[2490]: AVC avc: denied { perfmon } for pid=2490 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:30.315000 audit[2490]: AVC avc: denied { perfmon } for pid=2490 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:30.315000 audit[2490]: AVC avc: denied { perfmon } for pid=2490 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:30.315000 audit[2490]: AVC avc: denied { perfmon } for pid=2490 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:30.315000 audit[2490]: AVC avc: denied { bpf } for pid=2490 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:30.315000 audit[2490]: AVC avc: denied { bpf } for pid=2490 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:30.315000 audit: BPF prog-id=88 op=LOAD Feb 12 20:24:30.315000 audit[2490]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=2189 pid=2490 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:30.315000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6365633434386333663236633037383338626131326261643130346663 Feb 12 20:24:30.316000 audit: BPF prog-id=88 op=UNLOAD Feb 12 20:24:30.317000 audit: BPF prog-id=87 op=UNLOAD Feb 12 20:24:30.317000 audit[2490]: AVC avc: denied { bpf } for pid=2490 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:30.317000 audit[2490]: AVC avc: denied { bpf } for pid=2490 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:30.317000 audit[2490]: AVC avc: denied { bpf } for pid=2490 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:30.317000 audit[2490]: AVC avc: denied { perfmon } for pid=2490 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:30.317000 audit[2490]: AVC avc: denied { perfmon } for pid=2490 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:30.317000 audit[2490]: AVC avc: denied { perfmon } for pid=2490 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:30.317000 audit[2490]: AVC avc: denied { perfmon } for pid=2490 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:30.317000 audit[2490]: AVC avc: denied { perfmon } for pid=2490 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:30.317000 audit[2490]: AVC avc: denied { bpf } for pid=2490 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:30.317000 audit[2490]: AVC avc: denied { bpf } for pid=2490 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:30.317000 audit: BPF prog-id=89 op=LOAD Feb 12 20:24:30.317000 audit[2490]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=2189 pid=2490 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:30.317000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6365633434386333663236633037383338626131326261643130346663 Feb 12 20:24:30.351088 env[1644]: time="2024-02-12T20:24:30.351001655Z" level=info msg="StartContainer for \"cec448c3f26c07838ba12bad104fce34f6ef72eb9f968c59de8e8707589ed6ac\" returns successfully" Feb 12 20:24:30.447348 kubelet[2113]: E0212 20:24:30.447104 2113 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-wrwvz" podUID=9822be3a-c300-4397-bd25-d44111e8e8f3 Feb 12 20:24:31.211111 systemd[1]: run-containerd-runc-k8s.io-cec448c3f26c07838ba12bad104fce34f6ef72eb9f968c59de8e8707589ed6ac-runc.yvJ5nk.mount: Deactivated successfully. Feb 12 20:24:31.267108 kubelet[2113]: E0212 20:24:31.267061 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:31.623663 env[1644]: time="2024-02-12T20:24:31.623405252Z" level=error msg="failed to reload cni configuration after receiving fs change event(\"/etc/cni/net.d/calico-kubeconfig\": WRITE)" error="cni config load failed: no network config found in /etc/cni/net.d: cni plugin not initialized: failed to load cni config" Feb 12 20:24:31.629446 systemd[1]: cri-containerd-cec448c3f26c07838ba12bad104fce34f6ef72eb9f968c59de8e8707589ed6ac.scope: Deactivated successfully. Feb 12 20:24:31.632000 audit: BPF prog-id=89 op=UNLOAD Feb 12 20:24:31.635020 kernel: kauditd_printk_skb: 186 callbacks suppressed Feb 12 20:24:31.635114 kernel: audit: type=1334 audit(1707769471.632:714): prog-id=89 op=UNLOAD Feb 12 20:24:31.638860 kubelet[2113]: I0212 20:24:31.638832 2113 kubelet_node_status.go:493] "Fast updating node status as it just became ready" Feb 12 20:24:31.674243 systemd[1]: run-containerd-io.containerd.runtime.v2.task-k8s.io-cec448c3f26c07838ba12bad104fce34f6ef72eb9f968c59de8e8707589ed6ac-rootfs.mount: Deactivated successfully. Feb 12 20:24:32.268326 kubelet[2113]: E0212 20:24:32.268261 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:32.457579 systemd[1]: Created slice kubepods-besteffort-pod9822be3a_c300_4397_bd25_d44111e8e8f3.slice. Feb 12 20:24:32.464025 env[1644]: time="2024-02-12T20:24:32.463971726Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-wrwvz,Uid:9822be3a-c300-4397-bd25-d44111e8e8f3,Namespace:calico-system,Attempt:0,}" Feb 12 20:24:33.111388 env[1644]: time="2024-02-12T20:24:33.111311072Z" level=info msg="shim disconnected" id=cec448c3f26c07838ba12bad104fce34f6ef72eb9f968c59de8e8707589ed6ac Feb 12 20:24:33.111975 env[1644]: time="2024-02-12T20:24:33.111386130Z" level=warning msg="cleaning up after shim disconnected" id=cec448c3f26c07838ba12bad104fce34f6ef72eb9f968c59de8e8707589ed6ac namespace=k8s.io Feb 12 20:24:33.111975 env[1644]: time="2024-02-12T20:24:33.111409065Z" level=info msg="cleaning up dead shim" Feb 12 20:24:33.130026 env[1644]: time="2024-02-12T20:24:33.129906330Z" level=error msg="Failed to destroy network for sandbox \"e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14\"" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 12 20:24:33.133466 env[1644]: time="2024-02-12T20:24:33.133388161Z" level=error msg="encountered an error cleaning up failed sandbox \"e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14\", marking sandbox state as SANDBOX_UNKNOWN" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 12 20:24:33.133768 env[1644]: time="2024-02-12T20:24:33.133680159Z" level=error msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-wrwvz,Uid:9822be3a-c300-4397-bd25-d44111e8e8f3,Namespace:calico-system,Attempt:0,} failed, error" error="failed to setup network for sandbox \"e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 12 20:24:33.134703 kubelet[2113]: E0212 20:24:33.134212 2113 remote_runtime.go:176] "RunPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 12 20:24:33.134703 kubelet[2113]: E0212 20:24:33.134291 2113 kuberuntime_sandbox.go:72] "Failed to create sandbox for pod" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="calico-system/csi-node-driver-wrwvz" Feb 12 20:24:33.134703 kubelet[2113]: E0212 20:24:33.134347 2113 kuberuntime_manager.go:1122] "CreatePodSandbox for pod failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="calico-system/csi-node-driver-wrwvz" Feb 12 20:24:33.135007 kubelet[2113]: E0212 20:24:33.134440 2113 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"CreatePodSandbox\" for \"csi-node-driver-wrwvz_calico-system(9822be3a-c300-4397-bd25-d44111e8e8f3)\" with CreatePodSandboxError: \"Failed to create sandbox for pod \\\"csi-node-driver-wrwvz_calico-system(9822be3a-c300-4397-bd25-d44111e8e8f3)\\\": rpc error: code = Unknown desc = failed to setup network for sandbox \\\"e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14\\\": plugin type=\\\"calico\\\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="calico-system/csi-node-driver-wrwvz" podUID=9822be3a-c300-4397-bd25-d44111e8e8f3 Feb 12 20:24:33.135186 systemd[1]: run-containerd-io.containerd.grpc.v1.cri-sandboxes-e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14-shm.mount: Deactivated successfully. Feb 12 20:24:33.137514 env[1644]: time="2024-02-12T20:24:33.137459880Z" level=warning msg="cleanup warnings time=\"2024-02-12T20:24:33Z\" level=info msg=\"starting signal loop\" namespace=k8s.io pid=2562 runtime=io.containerd.runc.v2\n" Feb 12 20:24:33.269114 kubelet[2113]: E0212 20:24:33.269039 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:33.497242 env[1644]: time="2024-02-12T20:24:33.496067477Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node:v3.27.0\"" Feb 12 20:24:33.499575 kubelet[2113]: I0212 20:24:33.499535 2113 pod_container_deletor.go:80] "Container not found in pod's containers" containerID="e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" Feb 12 20:24:33.501282 env[1644]: time="2024-02-12T20:24:33.501216948Z" level=info msg="StopPodSandbox for \"e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14\"" Feb 12 20:24:33.551310 env[1644]: time="2024-02-12T20:24:33.551232241Z" level=error msg="StopPodSandbox for \"e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14\" failed" error="failed to destroy network for sandbox \"e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 12 20:24:33.552260 kubelet[2113]: E0212 20:24:33.551921 2113 remote_runtime.go:205] "StopPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to destroy network for sandbox \"e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" podSandboxID="e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" Feb 12 20:24:33.552260 kubelet[2113]: E0212 20:24:33.552043 2113 kuberuntime_manager.go:1312] "Failed to stop sandbox" podSandboxID={Type:containerd ID:e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14} Feb 12 20:24:33.552260 kubelet[2113]: E0212 20:24:33.552131 2113 kuberuntime_manager.go:1038] "killPodWithSyncResult failed" err="failed to \"KillPodSandbox\" for \"9822be3a-c300-4397-bd25-d44111e8e8f3\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" Feb 12 20:24:33.552260 kubelet[2113]: E0212 20:24:33.552187 2113 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"KillPodSandbox\" for \"9822be3a-c300-4397-bd25-d44111e8e8f3\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="calico-system/csi-node-driver-wrwvz" podUID=9822be3a-c300-4397-bd25-d44111e8e8f3 Feb 12 20:24:33.563012 systemd[1]: systemd-hostnamed.service: Deactivated successfully. Feb 12 20:24:33.562000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-hostnamed comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:33.571871 kernel: audit: type=1131 audit(1707769473.562:715): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-hostnamed comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:33.598000 audit: BPF prog-id=57 op=UNLOAD Feb 12 20:24:33.598000 audit: BPF prog-id=56 op=UNLOAD Feb 12 20:24:33.604150 kernel: audit: type=1334 audit(1707769473.598:716): prog-id=57 op=UNLOAD Feb 12 20:24:33.604233 kernel: audit: type=1334 audit(1707769473.598:717): prog-id=56 op=UNLOAD Feb 12 20:24:33.604282 kernel: audit: type=1334 audit(1707769473.598:718): prog-id=55 op=UNLOAD Feb 12 20:24:33.598000 audit: BPF prog-id=55 op=UNLOAD Feb 12 20:24:34.270315 kubelet[2113]: E0212 20:24:34.270252 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:34.399318 kubelet[2113]: I0212 20:24:34.399062 2113 topology_manager.go:212] "Topology Admit Handler" Feb 12 20:24:34.407851 kubelet[2113]: W0212 20:24:34.407799 2113 reflector.go:533] object-"default"/"kube-root-ca.crt": failed to list *v1.ConfigMap: configmaps "kube-root-ca.crt" is forbidden: User "system:node:172.31.20.28" cannot list resource "configmaps" in API group "" in the namespace "default": no relationship found between node '172.31.20.28' and this object Feb 12 20:24:34.408095 kubelet[2113]: E0212 20:24:34.408072 2113 reflector.go:148] object-"default"/"kube-root-ca.crt": Failed to watch *v1.ConfigMap: failed to list *v1.ConfigMap: configmaps "kube-root-ca.crt" is forbidden: User "system:node:172.31.20.28" cannot list resource "configmaps" in API group "" in the namespace "default": no relationship found between node '172.31.20.28' and this object Feb 12 20:24:34.408563 systemd[1]: Created slice kubepods-besteffort-podad71e193_6ace_444c_a8fa_af3cc2663662.slice. Feb 12 20:24:34.489034 kubelet[2113]: I0212 20:24:34.488965 2113 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-fk8ms\" (UniqueName: \"kubernetes.io/projected/ad71e193-6ace-444c-a8fa-af3cc2663662-kube-api-access-fk8ms\") pod \"nginx-deployment-845c78c8b9-6n6s5\" (UID: \"ad71e193-6ace-444c-a8fa-af3cc2663662\") " pod="default/nginx-deployment-845c78c8b9-6n6s5" Feb 12 20:24:35.271395 kubelet[2113]: E0212 20:24:35.271327 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:35.626839 kubelet[2113]: E0212 20:24:35.626611 2113 projected.go:292] Couldn't get configMap default/kube-root-ca.crt: failed to sync configmap cache: timed out waiting for the condition Feb 12 20:24:35.626839 kubelet[2113]: E0212 20:24:35.626664 2113 projected.go:198] Error preparing data for projected volume kube-api-access-fk8ms for pod default/nginx-deployment-845c78c8b9-6n6s5: failed to sync configmap cache: timed out waiting for the condition Feb 12 20:24:35.626839 kubelet[2113]: E0212 20:24:35.626803 2113 nestedpendingoperations.go:348] Operation for "{volumeName:kubernetes.io/projected/ad71e193-6ace-444c-a8fa-af3cc2663662-kube-api-access-fk8ms podName:ad71e193-6ace-444c-a8fa-af3cc2663662 nodeName:}" failed. No retries permitted until 2024-02-12 20:24:36.126737344 +0000 UTC m=+19.325499216 (durationBeforeRetry 500ms). Error: MountVolume.SetUp failed for volume "kube-api-access-fk8ms" (UniqueName: "kubernetes.io/projected/ad71e193-6ace-444c-a8fa-af3cc2663662-kube-api-access-fk8ms") pod "nginx-deployment-845c78c8b9-6n6s5" (UID: "ad71e193-6ace-444c-a8fa-af3cc2663662") : failed to sync configmap cache: timed out waiting for the condition Feb 12 20:24:36.271835 kubelet[2113]: E0212 20:24:36.271782 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:36.515143 env[1644]: time="2024-02-12T20:24:36.515089183Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-845c78c8b9-6n6s5,Uid:ad71e193-6ace-444c-a8fa-af3cc2663662,Namespace:default,Attempt:0,}" Feb 12 20:24:36.685274 env[1644]: time="2024-02-12T20:24:36.685197136Z" level=error msg="Failed to destroy network for sandbox \"70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3\"" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 12 20:24:36.688318 systemd[1]: run-containerd-io.containerd.grpc.v1.cri-sandboxes-70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3-shm.mount: Deactivated successfully. Feb 12 20:24:36.690602 env[1644]: time="2024-02-12T20:24:36.690531289Z" level=error msg="encountered an error cleaning up failed sandbox \"70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3\", marking sandbox state as SANDBOX_UNKNOWN" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 12 20:24:36.690917 env[1644]: time="2024-02-12T20:24:36.690866120Z" level=error msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-845c78c8b9-6n6s5,Uid:ad71e193-6ace-444c-a8fa-af3cc2663662,Namespace:default,Attempt:0,} failed, error" error="failed to setup network for sandbox \"70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 12 20:24:36.691853 kubelet[2113]: E0212 20:24:36.691356 2113 remote_runtime.go:176] "RunPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 12 20:24:36.691853 kubelet[2113]: E0212 20:24:36.691427 2113 kuberuntime_sandbox.go:72] "Failed to create sandbox for pod" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="default/nginx-deployment-845c78c8b9-6n6s5" Feb 12 20:24:36.691853 kubelet[2113]: E0212 20:24:36.691464 2113 kuberuntime_manager.go:1122] "CreatePodSandbox for pod failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="default/nginx-deployment-845c78c8b9-6n6s5" Feb 12 20:24:36.692169 kubelet[2113]: E0212 20:24:36.691536 2113 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"CreatePodSandbox\" for \"nginx-deployment-845c78c8b9-6n6s5_default(ad71e193-6ace-444c-a8fa-af3cc2663662)\" with CreatePodSandboxError: \"Failed to create sandbox for pod \\\"nginx-deployment-845c78c8b9-6n6s5_default(ad71e193-6ace-444c-a8fa-af3cc2663662)\\\": rpc error: code = Unknown desc = failed to setup network for sandbox \\\"70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3\\\": plugin type=\\\"calico\\\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="default/nginx-deployment-845c78c8b9-6n6s5" podUID=ad71e193-6ace-444c-a8fa-af3cc2663662 Feb 12 20:24:37.272844 kubelet[2113]: E0212 20:24:37.272780 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:37.509413 kubelet[2113]: I0212 20:24:37.509366 2113 pod_container_deletor.go:80] "Container not found in pod's containers" containerID="70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" Feb 12 20:24:37.510400 env[1644]: time="2024-02-12T20:24:37.510348682Z" level=info msg="StopPodSandbox for \"70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3\"" Feb 12 20:24:37.585384 env[1644]: time="2024-02-12T20:24:37.585302875Z" level=error msg="StopPodSandbox for \"70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3\" failed" error="failed to destroy network for sandbox \"70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 12 20:24:37.586351 kubelet[2113]: E0212 20:24:37.586286 2113 remote_runtime.go:205] "StopPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to destroy network for sandbox \"70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" podSandboxID="70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" Feb 12 20:24:37.586517 kubelet[2113]: E0212 20:24:37.586357 2113 kuberuntime_manager.go:1312] "Failed to stop sandbox" podSandboxID={Type:containerd ID:70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3} Feb 12 20:24:37.586517 kubelet[2113]: E0212 20:24:37.586422 2113 kuberuntime_manager.go:1038] "killPodWithSyncResult failed" err="failed to \"KillPodSandbox\" for \"ad71e193-6ace-444c-a8fa-af3cc2663662\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" Feb 12 20:24:37.586517 kubelet[2113]: E0212 20:24:37.586483 2113 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"KillPodSandbox\" for \"ad71e193-6ace-444c-a8fa-af3cc2663662\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="default/nginx-deployment-845c78c8b9-6n6s5" podUID=ad71e193-6ace-444c-a8fa-af3cc2663662 Feb 12 20:24:38.258055 kubelet[2113]: E0212 20:24:38.257997 2113 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:38.273300 kubelet[2113]: E0212 20:24:38.273228 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:39.274221 kubelet[2113]: E0212 20:24:39.274125 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:40.275194 kubelet[2113]: E0212 20:24:40.275093 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:41.275905 kubelet[2113]: E0212 20:24:41.275808 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:42.050041 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1374510627.mount: Deactivated successfully. Feb 12 20:24:42.138948 env[1644]: time="2024-02-12T20:24:42.138891254Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:42.143114 env[1644]: time="2024-02-12T20:24:42.143062379Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:c445639cb28807ced09724016dc3b273b170b14d3b3d0c39b1affa1cc6b68774,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:42.146332 env[1644]: time="2024-02-12T20:24:42.146265839Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/node:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:42.149737 env[1644]: time="2024-02-12T20:24:42.149667521Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node:v3.27.0\" returns image reference \"sha256:c445639cb28807ced09724016dc3b273b170b14d3b3d0c39b1affa1cc6b68774\"" Feb 12 20:24:42.152823 env[1644]: time="2024-02-12T20:24:42.150128016Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node@sha256:a45dffb21a0e9ca8962f36359a2ab776beeecd93843543c2fa1745d7bbb0f754,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:42.174446 env[1644]: time="2024-02-12T20:24:42.174392530Z" level=info msg="CreateContainer within sandbox \"04cb4b1b3d661890728523957a3385892d8d18badcaaf418a550ccda008f199a\" for container &ContainerMetadata{Name:calico-node,Attempt:0,}" Feb 12 20:24:42.211909 env[1644]: time="2024-02-12T20:24:42.211826819Z" level=info msg="CreateContainer within sandbox \"04cb4b1b3d661890728523957a3385892d8d18badcaaf418a550ccda008f199a\" for &ContainerMetadata{Name:calico-node,Attempt:0,} returns container id \"8fb855d90484d384c9af92545b8d81f2dc3f2731a92b7369da2deab68bc8c9c3\"" Feb 12 20:24:42.212670 env[1644]: time="2024-02-12T20:24:42.212597528Z" level=info msg="StartContainer for \"8fb855d90484d384c9af92545b8d81f2dc3f2731a92b7369da2deab68bc8c9c3\"" Feb 12 20:24:42.244710 systemd[1]: Started cri-containerd-8fb855d90484d384c9af92545b8d81f2dc3f2731a92b7369da2deab68bc8c9c3.scope. Feb 12 20:24:42.276839 kubelet[2113]: E0212 20:24:42.276745 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:42.286000 audit[2663]: AVC avc: denied { perfmon } for pid=2663 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.286000 audit[2663]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=400011d5a0 a2=3c a3=0 items=0 ppid=2189 pid=2663 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:42.306476 kernel: audit: type=1400 audit(1707769482.286:719): avc: denied { perfmon } for pid=2663 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.306642 kernel: audit: type=1300 audit(1707769482.286:719): arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=400011d5a0 a2=3c a3=0 items=0 ppid=2189 pid=2663 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:42.306702 kernel: audit: type=1327 audit(1707769482.286:719): proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3866623835356439303438346433383463396166393235343562386438 Feb 12 20:24:42.286000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3866623835356439303438346433383463396166393235343562386438 Feb 12 20:24:42.293000 audit[2663]: AVC avc: denied { bpf } for pid=2663 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.327473 kernel: audit: type=1400 audit(1707769482.293:720): avc: denied { bpf } for pid=2663 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.293000 audit[2663]: AVC avc: denied { bpf } for pid=2663 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.338626 kernel: audit: type=1400 audit(1707769482.293:720): avc: denied { bpf } for pid=2663 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.293000 audit[2663]: AVC avc: denied { bpf } for pid=2663 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.346247 kernel: audit: type=1400 audit(1707769482.293:720): avc: denied { bpf } for pid=2663 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.293000 audit[2663]: AVC avc: denied { perfmon } for pid=2663 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.353962 kernel: audit: type=1400 audit(1707769482.293:720): avc: denied { perfmon } for pid=2663 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.293000 audit[2663]: AVC avc: denied { perfmon } for pid=2663 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.362458 kernel: audit: type=1400 audit(1707769482.293:720): avc: denied { perfmon } for pid=2663 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.365914 kernel: audit: type=1400 audit(1707769482.293:720): avc: denied { perfmon } for pid=2663 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.293000 audit[2663]: AVC avc: denied { perfmon } for pid=2663 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.293000 audit[2663]: AVC avc: denied { perfmon } for pid=2663 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.381498 kernel: audit: type=1400 audit(1707769482.293:720): avc: denied { perfmon } for pid=2663 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.382016 env[1644]: time="2024-02-12T20:24:42.381957980Z" level=info msg="StartContainer for \"8fb855d90484d384c9af92545b8d81f2dc3f2731a92b7369da2deab68bc8c9c3\" returns successfully" Feb 12 20:24:42.293000 audit[2663]: AVC avc: denied { perfmon } for pid=2663 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.293000 audit[2663]: AVC avc: denied { bpf } for pid=2663 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.293000 audit[2663]: AVC avc: denied { bpf } for pid=2663 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.293000 audit: BPF prog-id=90 op=LOAD Feb 12 20:24:42.293000 audit[2663]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=400011d8e0 a2=78 a3=0 items=0 ppid=2189 pid=2663 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:42.293000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3866623835356439303438346433383463396166393235343562386438 Feb 12 20:24:42.293000 audit[2663]: AVC avc: denied { bpf } for pid=2663 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.293000 audit[2663]: AVC avc: denied { bpf } for pid=2663 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.293000 audit[2663]: AVC avc: denied { perfmon } for pid=2663 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.293000 audit[2663]: AVC avc: denied { perfmon } for pid=2663 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.293000 audit[2663]: AVC avc: denied { perfmon } for pid=2663 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.293000 audit[2663]: AVC avc: denied { perfmon } for pid=2663 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.293000 audit[2663]: AVC avc: denied { perfmon } for pid=2663 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.293000 audit[2663]: AVC avc: denied { bpf } for pid=2663 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.293000 audit[2663]: AVC avc: denied { bpf } for pid=2663 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.293000 audit: BPF prog-id=91 op=LOAD Feb 12 20:24:42.293000 audit[2663]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=400011d670 a2=78 a3=0 items=0 ppid=2189 pid=2663 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:42.293000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3866623835356439303438346433383463396166393235343562386438 Feb 12 20:24:42.294000 audit: BPF prog-id=91 op=UNLOAD Feb 12 20:24:42.294000 audit: BPF prog-id=90 op=UNLOAD Feb 12 20:24:42.294000 audit[2663]: AVC avc: denied { bpf } for pid=2663 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.294000 audit[2663]: AVC avc: denied { bpf } for pid=2663 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.294000 audit[2663]: AVC avc: denied { bpf } for pid=2663 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.294000 audit[2663]: AVC avc: denied { perfmon } for pid=2663 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.294000 audit[2663]: AVC avc: denied { perfmon } for pid=2663 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.294000 audit[2663]: AVC avc: denied { perfmon } for pid=2663 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.294000 audit[2663]: AVC avc: denied { perfmon } for pid=2663 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.294000 audit[2663]: AVC avc: denied { perfmon } for pid=2663 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.294000 audit[2663]: AVC avc: denied { bpf } for pid=2663 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.294000 audit[2663]: AVC avc: denied { bpf } for pid=2663 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:42.294000 audit: BPF prog-id=92 op=LOAD Feb 12 20:24:42.294000 audit[2663]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=400011db40 a2=78 a3=0 items=0 ppid=2189 pid=2663 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:42.294000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3866623835356439303438346433383463396166393235343562386438 Feb 12 20:24:42.486357 kernel: wireguard: WireGuard 1.0.0 loaded. See www.wireguard.com for information. Feb 12 20:24:42.486521 kernel: wireguard: Copyright (C) 2015-2019 Jason A. Donenfeld . All Rights Reserved. Feb 12 20:24:43.277523 kubelet[2113]: E0212 20:24:43.277449 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:43.978000 audit[2781]: AVC avc: denied { write } for pid=2781 comm="tee" name="fd" dev="proc" ino=15659 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 12 20:24:43.978000 audit[2781]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffe0876976 a2=241 a3=1b6 items=1 ppid=2730 pid=2781 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:43.978000 audit: CWD cwd="/etc/service/enabled/allocate-tunnel-addrs/log" Feb 12 20:24:43.978000 audit: PATH item=0 name="/dev/fd/63" inode=15005 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:24:43.978000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 12 20:24:43.980000 audit[2776]: AVC avc: denied { write } for pid=2776 comm="tee" name="fd" dev="proc" ino=15013 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 12 20:24:43.982000 audit[2780]: AVC avc: denied { write } for pid=2780 comm="tee" name="fd" dev="proc" ino=15661 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 12 20:24:43.982000 audit[2780]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffe5f9f987 a2=241 a3=1b6 items=1 ppid=2731 pid=2780 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:43.982000 audit: CWD cwd="/etc/service/enabled/bird/log" Feb 12 20:24:43.982000 audit: PATH item=0 name="/dev/fd/63" inode=15653 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:24:43.982000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 12 20:24:43.986000 audit[2783]: AVC avc: denied { write } for pid=2783 comm="tee" name="fd" dev="proc" ino=15665 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 12 20:24:43.986000 audit[2783]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffdc63b977 a2=241 a3=1b6 items=1 ppid=2741 pid=2783 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:43.986000 audit: CWD cwd="/etc/service/enabled/node-status-reporter/log" Feb 12 20:24:43.986000 audit: PATH item=0 name="/dev/fd/63" inode=15654 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:24:43.986000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 12 20:24:43.993000 audit[2777]: AVC avc: denied { write } for pid=2777 comm="tee" name="fd" dev="proc" ino=15019 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 12 20:24:44.000000 audit[2794]: AVC avc: denied { write } for pid=2794 comm="tee" name="fd" dev="proc" ino=15669 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 12 20:24:44.000000 audit[2794]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffc2169986 a2=241 a3=1b6 items=1 ppid=2739 pid=2794 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:44.000000 audit: CWD cwd="/etc/service/enabled/felix/log" Feb 12 20:24:44.000000 audit: PATH item=0 name="/dev/fd/63" inode=15010 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:24:44.000000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 12 20:24:43.980000 audit[2776]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffe68d3986 a2=241 a3=1b6 items=1 ppid=2734 pid=2776 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:43.980000 audit: CWD cwd="/etc/service/enabled/confd/log" Feb 12 20:24:43.980000 audit: PATH item=0 name="/dev/fd/63" inode=15652 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:24:43.980000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 12 20:24:43.993000 audit[2777]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffff1b4988 a2=241 a3=1b6 items=1 ppid=2737 pid=2777 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:43.993000 audit: CWD cwd="/etc/service/enabled/cni/log" Feb 12 20:24:43.993000 audit: PATH item=0 name="/dev/fd/63" inode=15001 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:24:43.993000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 12 20:24:44.007000 audit[2792]: AVC avc: denied { write } for pid=2792 comm="tee" name="fd" dev="proc" ino=15024 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 12 20:24:44.007000 audit[2792]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffe49b0986 a2=241 a3=1b6 items=1 ppid=2736 pid=2792 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:44.007000 audit: CWD cwd="/etc/service/enabled/bird6/log" Feb 12 20:24:44.007000 audit: PATH item=0 name="/dev/fd/63" inode=15009 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:24:44.007000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 12 20:24:44.278314 kubelet[2113]: E0212 20:24:44.278171 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:44.324036 kernel: Initializing XFRM netlink socket Feb 12 20:24:44.567947 (udev-worker)[2868]: Network interface NamePolicy= disabled on kernel command line. Feb 12 20:24:44.571950 (udev-worker)[2696]: Network interface NamePolicy= disabled on kernel command line. Feb 12 20:24:44.574000 audit[2871]: AVC avc: denied { bpf } for pid=2871 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:44.574000 audit[2871]: AVC avc: denied { bpf } for pid=2871 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:44.574000 audit[2871]: AVC avc: denied { perfmon } for pid=2871 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:44.574000 audit[2871]: AVC avc: denied { perfmon } for pid=2871 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:44.574000 audit[2871]: AVC avc: denied { perfmon } for pid=2871 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:44.574000 audit[2871]: AVC avc: denied { perfmon } for pid=2871 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:44.574000 audit[2871]: AVC avc: denied { perfmon } for pid=2871 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:44.574000 audit[2871]: AVC avc: denied { bpf } for pid=2871 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:44.574000 audit[2871]: AVC avc: denied { bpf } for pid=2871 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:44.574000 audit: BPF prog-id=93 op=LOAD Feb 12 20:24:44.574000 audit[2871]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=3 a0=5 a1=ffffe9d67b28 a2=70 a3=0 items=0 ppid=2740 pid=2871 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:44.574000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 12 20:24:44.575000 audit: BPF prog-id=93 op=UNLOAD Feb 12 20:24:44.575000 audit[2871]: AVC avc: denied { bpf } for pid=2871 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:44.575000 audit[2871]: AVC avc: denied { bpf } for pid=2871 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:44.575000 audit[2871]: AVC avc: denied { perfmon } for pid=2871 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:44.575000 audit[2871]: AVC avc: denied { perfmon } for pid=2871 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:44.575000 audit[2871]: AVC avc: denied { perfmon } for pid=2871 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:44.575000 audit[2871]: AVC avc: denied { perfmon } for pid=2871 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:44.575000 audit[2871]: AVC avc: denied { perfmon } for pid=2871 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:44.575000 audit[2871]: AVC avc: denied { bpf } for pid=2871 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:44.575000 audit[2871]: AVC avc: denied { bpf } for pid=2871 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:44.575000 audit: BPF prog-id=94 op=LOAD Feb 12 20:24:44.575000 audit[2871]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=3 a0=5 a1=ffffe9d67b28 a2=70 a3=4a174c items=0 ppid=2740 pid=2871 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:44.575000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 12 20:24:44.575000 audit: BPF prog-id=94 op=UNLOAD Feb 12 20:24:44.575000 audit[2871]: AVC avc: denied { bpf } for pid=2871 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:44.575000 audit[2871]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=3 a0=0 a1=ffffe9d67b58 a2=70 a3=256673f items=0 ppid=2740 pid=2871 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:44.575000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 12 20:24:44.575000 audit[2871]: AVC avc: denied { bpf } for pid=2871 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:44.575000 audit[2871]: AVC avc: denied { bpf } for pid=2871 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:44.575000 audit[2871]: AVC avc: denied { bpf } for pid=2871 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:44.575000 audit[2871]: AVC avc: denied { perfmon } for pid=2871 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:44.575000 audit[2871]: AVC avc: denied { perfmon } for pid=2871 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:44.575000 audit[2871]: AVC avc: denied { perfmon } for pid=2871 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:44.575000 audit[2871]: AVC avc: denied { perfmon } for pid=2871 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:44.575000 audit[2871]: AVC avc: denied { perfmon } for pid=2871 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:44.575000 audit[2871]: AVC avc: denied { bpf } for pid=2871 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:44.575000 audit[2871]: AVC avc: denied { bpf } for pid=2871 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:44.575000 audit: BPF prog-id=95 op=LOAD Feb 12 20:24:44.575000 audit[2871]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=5 a0=5 a1=ffffe9d67aa8 a2=70 a3=2566759 items=0 ppid=2740 pid=2871 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:44.575000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 12 20:24:44.584000 audit[2873]: AVC avc: denied { bpf } for pid=2873 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:44.584000 audit[2873]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=ffffc594eb28 a2=70 a3=0 items=0 ppid=2740 pid=2873 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:44.584000 audit: PROCTITLE proctitle=627066746F6F6C002D2D6A736F6E002D2D7072657474790070726F670073686F770070696E6E6564002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41 Feb 12 20:24:44.585000 audit[2873]: AVC avc: denied { bpf } for pid=2873 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:44.585000 audit[2873]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=ffffc594ea08 a2=70 a3=2 items=0 ppid=2740 pid=2873 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:44.585000 audit: PROCTITLE proctitle=627066746F6F6C002D2D6A736F6E002D2D7072657474790070726F670073686F770070696E6E6564002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41 Feb 12 20:24:44.596000 audit: BPF prog-id=95 op=UNLOAD Feb 12 20:24:44.686000 audit[2894]: NETFILTER_CFG table=raw:65 family=2 entries=19 op=nft_register_chain pid=2894 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 12 20:24:44.686000 audit[2894]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=6132 a0=3 a1=ffffe3a8d4e0 a2=0 a3=ffff94ab5fa8 items=0 ppid=2740 pid=2894 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:44.686000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 12 20:24:44.689000 audit[2895]: NETFILTER_CFG table=mangle:66 family=2 entries=19 op=nft_register_chain pid=2895 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 12 20:24:44.689000 audit[2895]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=6800 a0=3 a1=ffffdfee4160 a2=0 a3=ffff90697fa8 items=0 ppid=2740 pid=2895 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:44.689000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 12 20:24:44.700000 audit[2898]: NETFILTER_CFG table=nat:67 family=2 entries=16 op=nft_register_chain pid=2898 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 12 20:24:44.700000 audit[2898]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5188 a0=3 a1=ffffcdac26d0 a2=0 a3=ffff96816fa8 items=0 ppid=2740 pid=2898 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:44.700000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 12 20:24:44.704000 audit[2897]: NETFILTER_CFG table=filter:68 family=2 entries=39 op=nft_register_chain pid=2897 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 12 20:24:44.704000 audit[2897]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=18472 a0=3 a1=ffffeefe6120 a2=0 a3=ffffa5443fa8 items=0 ppid=2740 pid=2897 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:44.704000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 12 20:24:45.279236 kubelet[2113]: E0212 20:24:45.279158 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:45.340564 systemd-networkd[1456]: vxlan.calico: Link UP Feb 12 20:24:45.340580 systemd-networkd[1456]: vxlan.calico: Gained carrier Feb 12 20:24:45.448189 env[1644]: time="2024-02-12T20:24:45.448125500Z" level=info msg="StopPodSandbox for \"e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14\"" Feb 12 20:24:45.530360 kubelet[2113]: I0212 20:24:45.529381 2113 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="calico-system/calico-node-mhm9v" podStartSLOduration=5.790015782 podCreationTimestamp="2024-02-12 20:24:19 +0000 UTC" firstStartedPulling="2024-02-12 20:24:21.410726632 +0000 UTC m=+4.609488517" lastFinishedPulling="2024-02-12 20:24:42.150036959 +0000 UTC m=+25.348798856" observedRunningTime="2024-02-12 20:24:42.569302932 +0000 UTC m=+25.768064841" watchObservedRunningTime="2024-02-12 20:24:45.529326121 +0000 UTC m=+28.728088017" Feb 12 20:24:45.599148 env[1644]: 2024-02-12 20:24:45.528 [INFO][2921] k8s.go 578: Cleaning up netns ContainerID="e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" Feb 12 20:24:45.599148 env[1644]: 2024-02-12 20:24:45.531 [INFO][2921] dataplane_linux.go 530: Deleting workload's device in netns. ContainerID="e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" iface="eth0" netns="/var/run/netns/cni-6f5459e5-1c3c-e624-fb70-09c6e68ed6d3" Feb 12 20:24:45.599148 env[1644]: 2024-02-12 20:24:45.531 [INFO][2921] dataplane_linux.go 541: Entered netns, deleting veth. ContainerID="e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" iface="eth0" netns="/var/run/netns/cni-6f5459e5-1c3c-e624-fb70-09c6e68ed6d3" Feb 12 20:24:45.599148 env[1644]: 2024-02-12 20:24:45.531 [INFO][2921] dataplane_linux.go 568: Workload's veth was already gone. Nothing to do. ContainerID="e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" iface="eth0" netns="/var/run/netns/cni-6f5459e5-1c3c-e624-fb70-09c6e68ed6d3" Feb 12 20:24:45.599148 env[1644]: 2024-02-12 20:24:45.531 [INFO][2921] k8s.go 585: Releasing IP address(es) ContainerID="e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" Feb 12 20:24:45.599148 env[1644]: 2024-02-12 20:24:45.531 [INFO][2921] utils.go 188: Calico CNI releasing IP address ContainerID="e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" Feb 12 20:24:45.599148 env[1644]: 2024-02-12 20:24:45.572 [INFO][2928] ipam_plugin.go 415: Releasing address using handleID ContainerID="e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" HandleID="k8s-pod-network.e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" Workload="172.31.20.28-k8s-csi--node--driver--wrwvz-eth0" Feb 12 20:24:45.599148 env[1644]: 2024-02-12 20:24:45.572 [INFO][2928] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 12 20:24:45.599148 env[1644]: 2024-02-12 20:24:45.572 [INFO][2928] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 12 20:24:45.599148 env[1644]: 2024-02-12 20:24:45.589 [WARNING][2928] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" HandleID="k8s-pod-network.e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" Workload="172.31.20.28-k8s-csi--node--driver--wrwvz-eth0" Feb 12 20:24:45.599148 env[1644]: 2024-02-12 20:24:45.589 [INFO][2928] ipam_plugin.go 443: Releasing address using workloadID ContainerID="e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" HandleID="k8s-pod-network.e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" Workload="172.31.20.28-k8s-csi--node--driver--wrwvz-eth0" Feb 12 20:24:45.599148 env[1644]: 2024-02-12 20:24:45.595 [INFO][2928] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 12 20:24:45.599148 env[1644]: 2024-02-12 20:24:45.597 [INFO][2921] k8s.go 591: Teardown processing complete. ContainerID="e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" Feb 12 20:24:45.604526 env[1644]: time="2024-02-12T20:24:45.603113108Z" level=info msg="TearDown network for sandbox \"e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14\" successfully" Feb 12 20:24:45.604526 env[1644]: time="2024-02-12T20:24:45.603181688Z" level=info msg="StopPodSandbox for \"e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14\" returns successfully" Feb 12 20:24:45.602685 systemd[1]: run-netns-cni\x2d6f5459e5\x2d1c3c\x2de624\x2dfb70\x2d09c6e68ed6d3.mount: Deactivated successfully. Feb 12 20:24:45.605110 env[1644]: time="2024-02-12T20:24:45.604596782Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-wrwvz,Uid:9822be3a-c300-4397-bd25-d44111e8e8f3,Namespace:calico-system,Attempt:1,}" Feb 12 20:24:45.702429 amazon-ssm-agent[1621]: 2024-02-12 20:24:45 INFO [MessagingDeliveryService] [Association] Schedule manager refreshed with 0 associations, 0 new associations associated Feb 12 20:24:45.833476 systemd-networkd[1456]: cali21e38711621: Link UP Feb 12 20:24:45.839835 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 12 20:24:45.840106 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali21e38711621: link becomes ready Feb 12 20:24:45.840180 systemd-networkd[1456]: cali21e38711621: Gained carrier Feb 12 20:24:45.870819 env[1644]: 2024-02-12 20:24:45.699 [INFO][2935] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.20.28-k8s-csi--node--driver--wrwvz-eth0 csi-node-driver- calico-system 9822be3a-c300-4397-bd25-d44111e8e8f3 1042 0 2024-02-12 20:24:19 +0000 UTC map[app.kubernetes.io/name:csi-node-driver controller-revision-hash:86b88cf7c9 k8s-app:csi-node-driver name:csi-node-driver pod-template-generation:1 projectcalico.org/namespace:calico-system projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 172.31.20.28 csi-node-driver-wrwvz eth0 default [] [] [kns.calico-system ksa.calico-system.default] cali21e38711621 [] []}} ContainerID="534e2769342fbac61d3681762a481ba81f80820fd9679ba8dfdddf40b335da60" Namespace="calico-system" Pod="csi-node-driver-wrwvz" WorkloadEndpoint="172.31.20.28-k8s-csi--node--driver--wrwvz-" Feb 12 20:24:45.870819 env[1644]: 2024-02-12 20:24:45.703 [INFO][2935] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="534e2769342fbac61d3681762a481ba81f80820fd9679ba8dfdddf40b335da60" Namespace="calico-system" Pod="csi-node-driver-wrwvz" WorkloadEndpoint="172.31.20.28-k8s-csi--node--driver--wrwvz-eth0" Feb 12 20:24:45.870819 env[1644]: 2024-02-12 20:24:45.749 [INFO][2947] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="534e2769342fbac61d3681762a481ba81f80820fd9679ba8dfdddf40b335da60" HandleID="k8s-pod-network.534e2769342fbac61d3681762a481ba81f80820fd9679ba8dfdddf40b335da60" Workload="172.31.20.28-k8s-csi--node--driver--wrwvz-eth0" Feb 12 20:24:45.870819 env[1644]: 2024-02-12 20:24:45.773 [INFO][2947] ipam_plugin.go 268: Auto assigning IP ContainerID="534e2769342fbac61d3681762a481ba81f80820fd9679ba8dfdddf40b335da60" HandleID="k8s-pod-network.534e2769342fbac61d3681762a481ba81f80820fd9679ba8dfdddf40b335da60" Workload="172.31.20.28-k8s-csi--node--driver--wrwvz-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x40002a9700), Attrs:map[string]string{"namespace":"calico-system", "node":"172.31.20.28", "pod":"csi-node-driver-wrwvz", "timestamp":"2024-02-12 20:24:45.7491662 +0000 UTC"}, Hostname:"172.31.20.28", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 12 20:24:45.870819 env[1644]: 2024-02-12 20:24:45.773 [INFO][2947] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 12 20:24:45.870819 env[1644]: 2024-02-12 20:24:45.773 [INFO][2947] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 12 20:24:45.870819 env[1644]: 2024-02-12 20:24:45.773 [INFO][2947] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.20.28' Feb 12 20:24:45.870819 env[1644]: 2024-02-12 20:24:45.776 [INFO][2947] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.534e2769342fbac61d3681762a481ba81f80820fd9679ba8dfdddf40b335da60" host="172.31.20.28" Feb 12 20:24:45.870819 env[1644]: 2024-02-12 20:24:45.784 [INFO][2947] ipam.go 372: Looking up existing affinities for host host="172.31.20.28" Feb 12 20:24:45.870819 env[1644]: 2024-02-12 20:24:45.792 [INFO][2947] ipam.go 489: Trying affinity for 192.168.0.64/26 host="172.31.20.28" Feb 12 20:24:45.870819 env[1644]: 2024-02-12 20:24:45.796 [INFO][2947] ipam.go 155: Attempting to load block cidr=192.168.0.64/26 host="172.31.20.28" Feb 12 20:24:45.870819 env[1644]: 2024-02-12 20:24:45.800 [INFO][2947] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.0.64/26 host="172.31.20.28" Feb 12 20:24:45.870819 env[1644]: 2024-02-12 20:24:45.800 [INFO][2947] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.0.64/26 handle="k8s-pod-network.534e2769342fbac61d3681762a481ba81f80820fd9679ba8dfdddf40b335da60" host="172.31.20.28" Feb 12 20:24:45.870819 env[1644]: 2024-02-12 20:24:45.803 [INFO][2947] ipam.go 1682: Creating new handle: k8s-pod-network.534e2769342fbac61d3681762a481ba81f80820fd9679ba8dfdddf40b335da60 Feb 12 20:24:45.870819 env[1644]: 2024-02-12 20:24:45.809 [INFO][2947] ipam.go 1203: Writing block in order to claim IPs block=192.168.0.64/26 handle="k8s-pod-network.534e2769342fbac61d3681762a481ba81f80820fd9679ba8dfdddf40b335da60" host="172.31.20.28" Feb 12 20:24:45.870819 env[1644]: 2024-02-12 20:24:45.822 [INFO][2947] ipam.go 1216: Successfully claimed IPs: [192.168.0.65/26] block=192.168.0.64/26 handle="k8s-pod-network.534e2769342fbac61d3681762a481ba81f80820fd9679ba8dfdddf40b335da60" host="172.31.20.28" Feb 12 20:24:45.870819 env[1644]: 2024-02-12 20:24:45.822 [INFO][2947] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.0.65/26] handle="k8s-pod-network.534e2769342fbac61d3681762a481ba81f80820fd9679ba8dfdddf40b335da60" host="172.31.20.28" Feb 12 20:24:45.870819 env[1644]: 2024-02-12 20:24:45.822 [INFO][2947] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 12 20:24:45.870819 env[1644]: 2024-02-12 20:24:45.822 [INFO][2947] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.0.65/26] IPv6=[] ContainerID="534e2769342fbac61d3681762a481ba81f80820fd9679ba8dfdddf40b335da60" HandleID="k8s-pod-network.534e2769342fbac61d3681762a481ba81f80820fd9679ba8dfdddf40b335da60" Workload="172.31.20.28-k8s-csi--node--driver--wrwvz-eth0" Feb 12 20:24:45.872140 env[1644]: 2024-02-12 20:24:45.827 [INFO][2935] k8s.go 385: Populated endpoint ContainerID="534e2769342fbac61d3681762a481ba81f80820fd9679ba8dfdddf40b335da60" Namespace="calico-system" Pod="csi-node-driver-wrwvz" WorkloadEndpoint="172.31.20.28-k8s-csi--node--driver--wrwvz-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.20.28-k8s-csi--node--driver--wrwvz-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"9822be3a-c300-4397-bd25-d44111e8e8f3", ResourceVersion:"1042", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 24, 19, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"86b88cf7c9", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.20.28", ContainerID:"", Pod:"csi-node-driver-wrwvz", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.0.65/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"cali21e38711621", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:24:45.872140 env[1644]: 2024-02-12 20:24:45.827 [INFO][2935] k8s.go 386: Calico CNI using IPs: [192.168.0.65/32] ContainerID="534e2769342fbac61d3681762a481ba81f80820fd9679ba8dfdddf40b335da60" Namespace="calico-system" Pod="csi-node-driver-wrwvz" WorkloadEndpoint="172.31.20.28-k8s-csi--node--driver--wrwvz-eth0" Feb 12 20:24:45.872140 env[1644]: 2024-02-12 20:24:45.827 [INFO][2935] dataplane_linux.go 68: Setting the host side veth name to cali21e38711621 ContainerID="534e2769342fbac61d3681762a481ba81f80820fd9679ba8dfdddf40b335da60" Namespace="calico-system" Pod="csi-node-driver-wrwvz" WorkloadEndpoint="172.31.20.28-k8s-csi--node--driver--wrwvz-eth0" Feb 12 20:24:45.872140 env[1644]: 2024-02-12 20:24:45.841 [INFO][2935] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="534e2769342fbac61d3681762a481ba81f80820fd9679ba8dfdddf40b335da60" Namespace="calico-system" Pod="csi-node-driver-wrwvz" WorkloadEndpoint="172.31.20.28-k8s-csi--node--driver--wrwvz-eth0" Feb 12 20:24:45.872140 env[1644]: 2024-02-12 20:24:45.842 [INFO][2935] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="534e2769342fbac61d3681762a481ba81f80820fd9679ba8dfdddf40b335da60" Namespace="calico-system" Pod="csi-node-driver-wrwvz" WorkloadEndpoint="172.31.20.28-k8s-csi--node--driver--wrwvz-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.20.28-k8s-csi--node--driver--wrwvz-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"9822be3a-c300-4397-bd25-d44111e8e8f3", ResourceVersion:"1042", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 24, 19, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"86b88cf7c9", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.20.28", ContainerID:"534e2769342fbac61d3681762a481ba81f80820fd9679ba8dfdddf40b335da60", Pod:"csi-node-driver-wrwvz", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.0.65/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"cali21e38711621", MAC:"92:1e:54:9d:88:e2", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:24:45.872140 env[1644]: 2024-02-12 20:24:45.860 [INFO][2935] k8s.go 491: Wrote updated endpoint to datastore ContainerID="534e2769342fbac61d3681762a481ba81f80820fd9679ba8dfdddf40b335da60" Namespace="calico-system" Pod="csi-node-driver-wrwvz" WorkloadEndpoint="172.31.20.28-k8s-csi--node--driver--wrwvz-eth0" Feb 12 20:24:45.904832 env[1644]: time="2024-02-12T20:24:45.904614902Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 12 20:24:45.905047 env[1644]: time="2024-02-12T20:24:45.904827807Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 12 20:24:45.905047 env[1644]: time="2024-02-12T20:24:45.904859501Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 12 20:24:45.905324 env[1644]: time="2024-02-12T20:24:45.905229677Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/534e2769342fbac61d3681762a481ba81f80820fd9679ba8dfdddf40b335da60 pid=2976 runtime=io.containerd.runc.v2 Feb 12 20:24:45.909000 audit[2980]: NETFILTER_CFG table=filter:69 family=2 entries=36 op=nft_register_chain pid=2980 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 12 20:24:45.909000 audit[2980]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=19908 a0=3 a1=ffffe500bf60 a2=0 a3=ffff85d72fa8 items=0 ppid=2740 pid=2980 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:45.909000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 12 20:24:45.952555 systemd[1]: Started cri-containerd-534e2769342fbac61d3681762a481ba81f80820fd9679ba8dfdddf40b335da60.scope. Feb 12 20:24:45.983000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.983000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.983000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.983000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.983000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.983000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.983000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.983000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.983000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.983000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.983000 audit: BPF prog-id=96 op=LOAD Feb 12 20:24:45.985000 audit[2987]: AVC avc: denied { bpf } for pid=2987 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.985000 audit[2987]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=400014db38 a2=10 a3=0 items=0 ppid=2976 pid=2987 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:45.985000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3533346532373639333432666261633631643336383137363261343831 Feb 12 20:24:45.985000 audit[2987]: AVC avc: denied { perfmon } for pid=2987 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.985000 audit[2987]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=400014d5a0 a2=3c a3=0 items=0 ppid=2976 pid=2987 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:45.985000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3533346532373639333432666261633631643336383137363261343831 Feb 12 20:24:45.986000 audit[2987]: AVC avc: denied { bpf } for pid=2987 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.986000 audit[2987]: AVC avc: denied { bpf } for pid=2987 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.986000 audit[2987]: AVC avc: denied { bpf } for pid=2987 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.986000 audit[2987]: AVC avc: denied { perfmon } for pid=2987 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.986000 audit[2987]: AVC avc: denied { perfmon } for pid=2987 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.986000 audit[2987]: AVC avc: denied { perfmon } for pid=2987 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.986000 audit[2987]: AVC avc: denied { perfmon } for pid=2987 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.986000 audit[2987]: AVC avc: denied { perfmon } for pid=2987 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.986000 audit[2987]: AVC avc: denied { bpf } for pid=2987 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.986000 audit[2987]: AVC avc: denied { bpf } for pid=2987 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.986000 audit: BPF prog-id=97 op=LOAD Feb 12 20:24:45.986000 audit[2987]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=400014d8e0 a2=78 a3=0 items=0 ppid=2976 pid=2987 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:45.986000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3533346532373639333432666261633631643336383137363261343831 Feb 12 20:24:45.987000 audit[2987]: AVC avc: denied { bpf } for pid=2987 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.987000 audit[2987]: AVC avc: denied { bpf } for pid=2987 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.987000 audit[2987]: AVC avc: denied { perfmon } for pid=2987 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.987000 audit[2987]: AVC avc: denied { perfmon } for pid=2987 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.987000 audit[2987]: AVC avc: denied { perfmon } for pid=2987 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.987000 audit[2987]: AVC avc: denied { perfmon } for pid=2987 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.987000 audit[2987]: AVC avc: denied { perfmon } for pid=2987 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.987000 audit[2987]: AVC avc: denied { bpf } for pid=2987 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.987000 audit[2987]: AVC avc: denied { bpf } for pid=2987 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.987000 audit: BPF prog-id=98 op=LOAD Feb 12 20:24:45.987000 audit[2987]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=400014d670 a2=78 a3=0 items=0 ppid=2976 pid=2987 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:45.987000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3533346532373639333432666261633631643336383137363261343831 Feb 12 20:24:45.989000 audit: BPF prog-id=98 op=UNLOAD Feb 12 20:24:45.989000 audit: BPF prog-id=97 op=UNLOAD Feb 12 20:24:45.989000 audit[2987]: AVC avc: denied { bpf } for pid=2987 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.989000 audit[2987]: AVC avc: denied { bpf } for pid=2987 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.989000 audit[2987]: AVC avc: denied { bpf } for pid=2987 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.989000 audit[2987]: AVC avc: denied { perfmon } for pid=2987 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.989000 audit[2987]: AVC avc: denied { perfmon } for pid=2987 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.989000 audit[2987]: AVC avc: denied { perfmon } for pid=2987 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.989000 audit[2987]: AVC avc: denied { perfmon } for pid=2987 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.989000 audit[2987]: AVC avc: denied { perfmon } for pid=2987 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.989000 audit[2987]: AVC avc: denied { bpf } for pid=2987 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.989000 audit[2987]: AVC avc: denied { bpf } for pid=2987 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:45.989000 audit: BPF prog-id=99 op=LOAD Feb 12 20:24:45.989000 audit[2987]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=400014db40 a2=78 a3=0 items=0 ppid=2976 pid=2987 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:45.989000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3533346532373639333432666261633631643336383137363261343831 Feb 12 20:24:46.013743 env[1644]: time="2024-02-12T20:24:46.013689616Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-wrwvz,Uid:9822be3a-c300-4397-bd25-d44111e8e8f3,Namespace:calico-system,Attempt:1,} returns sandbox id \"534e2769342fbac61d3681762a481ba81f80820fd9679ba8dfdddf40b335da60\"" Feb 12 20:24:46.018875 env[1644]: time="2024-02-12T20:24:46.018728213Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/csi:v3.27.0\"" Feb 12 20:24:46.280829 kubelet[2113]: E0212 20:24:46.279931 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:46.602707 systemd[1]: run-containerd-runc-k8s.io-534e2769342fbac61d3681762a481ba81f80820fd9679ba8dfdddf40b335da60-runc.4SJEfg.mount: Deactivated successfully. Feb 12 20:24:46.976969 systemd-networkd[1456]: cali21e38711621: Gained IPv6LL Feb 12 20:24:47.281037 kubelet[2113]: E0212 20:24:47.280875 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:47.361428 systemd-networkd[1456]: vxlan.calico: Gained IPv6LL Feb 12 20:24:47.757366 env[1644]: time="2024-02-12T20:24:47.757293077Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/csi:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:47.760169 env[1644]: time="2024-02-12T20:24:47.760118099Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:4b71e7439e0eba34a97844591560a009f37e8e6c17a386a34d416c1cc872dee8,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:47.762296 env[1644]: time="2024-02-12T20:24:47.762247145Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/csi:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:47.764661 env[1644]: time="2024-02-12T20:24:47.764596081Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/csi@sha256:2b9021393c17e87ba8a3c89f5b3719941812f4e4751caa0b71eb2233bff48738,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:47.765686 env[1644]: time="2024-02-12T20:24:47.765625205Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/csi:v3.27.0\" returns image reference \"sha256:4b71e7439e0eba34a97844591560a009f37e8e6c17a386a34d416c1cc872dee8\"" Feb 12 20:24:47.769650 env[1644]: time="2024-02-12T20:24:47.769599447Z" level=info msg="CreateContainer within sandbox \"534e2769342fbac61d3681762a481ba81f80820fd9679ba8dfdddf40b335da60\" for container &ContainerMetadata{Name:calico-csi,Attempt:0,}" Feb 12 20:24:47.797327 env[1644]: time="2024-02-12T20:24:47.797252406Z" level=info msg="CreateContainer within sandbox \"534e2769342fbac61d3681762a481ba81f80820fd9679ba8dfdddf40b335da60\" for &ContainerMetadata{Name:calico-csi,Attempt:0,} returns container id \"880eeef8fe3b912c5ea5e3fa9aa63745ef5274f4ce0733913f8fc31d02634ba4\"" Feb 12 20:24:47.798298 env[1644]: time="2024-02-12T20:24:47.798243940Z" level=info msg="StartContainer for \"880eeef8fe3b912c5ea5e3fa9aa63745ef5274f4ce0733913f8fc31d02634ba4\"" Feb 12 20:24:47.847983 systemd[1]: run-containerd-runc-k8s.io-880eeef8fe3b912c5ea5e3fa9aa63745ef5274f4ce0733913f8fc31d02634ba4-runc.xelNWM.mount: Deactivated successfully. Feb 12 20:24:47.852936 systemd[1]: Started cri-containerd-880eeef8fe3b912c5ea5e3fa9aa63745ef5274f4ce0733913f8fc31d02634ba4.scope. Feb 12 20:24:47.880000 audit[3020]: AVC avc: denied { perfmon } for pid=3020 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.884506 kernel: kauditd_printk_skb: 189 callbacks suppressed Feb 12 20:24:47.884646 kernel: audit: type=1400 audit(1707769487.880:764): avc: denied { perfmon } for pid=3020 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.880000 audit[3020]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=400011d5a0 a2=3c a3=0 items=0 ppid=2976 pid=3020 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:47.902885 kernel: audit: type=1300 audit(1707769487.880:764): arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=400011d5a0 a2=3c a3=0 items=0 ppid=2976 pid=3020 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:47.903047 kernel: audit: type=1327 audit(1707769487.880:764): proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3838306565656638666533623931326335656135653366613961613633 Feb 12 20:24:47.880000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3838306565656638666533623931326335656135653366613961613633 Feb 12 20:24:47.880000 audit[3020]: AVC avc: denied { bpf } for pid=3020 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.920426 kernel: audit: type=1400 audit(1707769487.880:765): avc: denied { bpf } for pid=3020 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.880000 audit[3020]: AVC avc: denied { bpf } for pid=3020 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.929429 kernel: audit: type=1400 audit(1707769487.880:765): avc: denied { bpf } for pid=3020 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.929931 kernel: audit: type=1400 audit(1707769487.880:765): avc: denied { bpf } for pid=3020 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.880000 audit[3020]: AVC avc: denied { bpf } for pid=3020 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.880000 audit[3020]: AVC avc: denied { perfmon } for pid=3020 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.944587 kernel: audit: type=1400 audit(1707769487.880:765): avc: denied { perfmon } for pid=3020 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.880000 audit[3020]: AVC avc: denied { perfmon } for pid=3020 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.955596 kernel: audit: type=1400 audit(1707769487.880:765): avc: denied { perfmon } for pid=3020 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.880000 audit[3020]: AVC avc: denied { perfmon } for pid=3020 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.963290 kernel: audit: type=1400 audit(1707769487.880:765): avc: denied { perfmon } for pid=3020 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.880000 audit[3020]: AVC avc: denied { perfmon } for pid=3020 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.971989 kernel: audit: type=1400 audit(1707769487.880:765): avc: denied { perfmon } for pid=3020 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.880000 audit[3020]: AVC avc: denied { perfmon } for pid=3020 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.880000 audit[3020]: AVC avc: denied { bpf } for pid=3020 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.880000 audit[3020]: AVC avc: denied { bpf } for pid=3020 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.880000 audit: BPF prog-id=100 op=LOAD Feb 12 20:24:47.880000 audit[3020]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=400011d8e0 a2=78 a3=0 items=0 ppid=2976 pid=3020 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:47.880000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3838306565656638666533623931326335656135653366613961613633 Feb 12 20:24:47.883000 audit[3020]: AVC avc: denied { bpf } for pid=3020 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.883000 audit[3020]: AVC avc: denied { bpf } for pid=3020 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.883000 audit[3020]: AVC avc: denied { perfmon } for pid=3020 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.883000 audit[3020]: AVC avc: denied { perfmon } for pid=3020 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.883000 audit[3020]: AVC avc: denied { perfmon } for pid=3020 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.883000 audit[3020]: AVC avc: denied { perfmon } for pid=3020 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.883000 audit[3020]: AVC avc: denied { perfmon } for pid=3020 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.883000 audit[3020]: AVC avc: denied { bpf } for pid=3020 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.883000 audit[3020]: AVC avc: denied { bpf } for pid=3020 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.883000 audit: BPF prog-id=101 op=LOAD Feb 12 20:24:47.883000 audit[3020]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=400011d670 a2=78 a3=0 items=0 ppid=2976 pid=3020 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:47.883000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3838306565656638666533623931326335656135653366613961613633 Feb 12 20:24:47.890000 audit: BPF prog-id=101 op=UNLOAD Feb 12 20:24:47.890000 audit: BPF prog-id=100 op=UNLOAD Feb 12 20:24:47.890000 audit[3020]: AVC avc: denied { bpf } for pid=3020 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.890000 audit[3020]: AVC avc: denied { bpf } for pid=3020 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.890000 audit[3020]: AVC avc: denied { bpf } for pid=3020 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.890000 audit[3020]: AVC avc: denied { perfmon } for pid=3020 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.890000 audit[3020]: AVC avc: denied { perfmon } for pid=3020 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.890000 audit[3020]: AVC avc: denied { perfmon } for pid=3020 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.890000 audit[3020]: AVC avc: denied { perfmon } for pid=3020 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.890000 audit[3020]: AVC avc: denied { perfmon } for pid=3020 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.890000 audit[3020]: AVC avc: denied { bpf } for pid=3020 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.890000 audit[3020]: AVC avc: denied { bpf } for pid=3020 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:47.890000 audit: BPF prog-id=102 op=LOAD Feb 12 20:24:47.890000 audit[3020]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=400011db40 a2=78 a3=0 items=0 ppid=2976 pid=3020 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:47.890000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3838306565656638666533623931326335656135653366613961613633 Feb 12 20:24:47.986127 env[1644]: time="2024-02-12T20:24:47.986060853Z" level=info msg="StartContainer for \"880eeef8fe3b912c5ea5e3fa9aa63745ef5274f4ce0733913f8fc31d02634ba4\" returns successfully" Feb 12 20:24:47.988247 env[1644]: time="2024-02-12T20:24:47.988195514Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node-driver-registrar:v3.27.0\"" Feb 12 20:24:48.281558 kubelet[2113]: E0212 20:24:48.281492 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:48.434203 update_engine[1634]: I0212 20:24:48.434141 1634 update_attempter.cc:509] Updating boot flags... Feb 12 20:24:49.282699 kubelet[2113]: E0212 20:24:49.282625 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:49.617899 env[1644]: time="2024-02-12T20:24:49.617830379Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node-driver-registrar:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:49.620529 env[1644]: time="2024-02-12T20:24:49.620480121Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:9dbda087e98c46610fb8629cf530f1fe49eee4b17d2afe455664ca446ec39d43,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:49.622870 env[1644]: time="2024-02-12T20:24:49.622810914Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/node-driver-registrar:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:49.625184 env[1644]: time="2024-02-12T20:24:49.625140498Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node-driver-registrar@sha256:45a7aba6020a7cf7b866cb8a8d481b30c97e9b3407e1459aaa65a5b4cc06633a,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:49.625985 env[1644]: time="2024-02-12T20:24:49.625937242Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node-driver-registrar:v3.27.0\" returns image reference \"sha256:9dbda087e98c46610fb8629cf530f1fe49eee4b17d2afe455664ca446ec39d43\"" Feb 12 20:24:49.629423 env[1644]: time="2024-02-12T20:24:49.629362243Z" level=info msg="CreateContainer within sandbox \"534e2769342fbac61d3681762a481ba81f80820fd9679ba8dfdddf40b335da60\" for container &ContainerMetadata{Name:csi-node-driver-registrar,Attempt:0,}" Feb 12 20:24:49.655484 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2251417251.mount: Deactivated successfully. Feb 12 20:24:49.663357 env[1644]: time="2024-02-12T20:24:49.663269311Z" level=info msg="CreateContainer within sandbox \"534e2769342fbac61d3681762a481ba81f80820fd9679ba8dfdddf40b335da60\" for &ContainerMetadata{Name:csi-node-driver-registrar,Attempt:0,} returns container id \"39ad4140919ca0a5831f19259f0faa0eacfe6147a80d668554162dd82482c1b4\"" Feb 12 20:24:49.664576 env[1644]: time="2024-02-12T20:24:49.664495884Z" level=info msg="StartContainer for \"39ad4140919ca0a5831f19259f0faa0eacfe6147a80d668554162dd82482c1b4\"" Feb 12 20:24:49.713554 systemd[1]: Started cri-containerd-39ad4140919ca0a5831f19259f0faa0eacfe6147a80d668554162dd82482c1b4.scope. Feb 12 20:24:49.760000 audit[3148]: AVC avc: denied { perfmon } for pid=3148 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.760000 audit[3148]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=2976 pid=3148 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:49.760000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3339616434313430393139636130613538333166313932353966306661 Feb 12 20:24:49.761000 audit[3148]: AVC avc: denied { bpf } for pid=3148 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.761000 audit[3148]: AVC avc: denied { bpf } for pid=3148 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.761000 audit[3148]: AVC avc: denied { bpf } for pid=3148 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.761000 audit[3148]: AVC avc: denied { perfmon } for pid=3148 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.761000 audit[3148]: AVC avc: denied { perfmon } for pid=3148 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.761000 audit[3148]: AVC avc: denied { perfmon } for pid=3148 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.761000 audit[3148]: AVC avc: denied { perfmon } for pid=3148 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.761000 audit[3148]: AVC avc: denied { perfmon } for pid=3148 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.761000 audit[3148]: AVC avc: denied { bpf } for pid=3148 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.761000 audit[3148]: AVC avc: denied { bpf } for pid=3148 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.761000 audit: BPF prog-id=103 op=LOAD Feb 12 20:24:49.761000 audit[3148]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=2976 pid=3148 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:49.761000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3339616434313430393139636130613538333166313932353966306661 Feb 12 20:24:49.762000 audit[3148]: AVC avc: denied { bpf } for pid=3148 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.762000 audit[3148]: AVC avc: denied { bpf } for pid=3148 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.762000 audit[3148]: AVC avc: denied { perfmon } for pid=3148 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.762000 audit[3148]: AVC avc: denied { perfmon } for pid=3148 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.762000 audit[3148]: AVC avc: denied { perfmon } for pid=3148 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.762000 audit[3148]: AVC avc: denied { perfmon } for pid=3148 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.762000 audit[3148]: AVC avc: denied { perfmon } for pid=3148 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.762000 audit[3148]: AVC avc: denied { bpf } for pid=3148 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.762000 audit[3148]: AVC avc: denied { bpf } for pid=3148 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.762000 audit: BPF prog-id=104 op=LOAD Feb 12 20:24:49.762000 audit[3148]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=2976 pid=3148 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:49.762000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3339616434313430393139636130613538333166313932353966306661 Feb 12 20:24:49.764000 audit: BPF prog-id=104 op=UNLOAD Feb 12 20:24:49.764000 audit: BPF prog-id=103 op=UNLOAD Feb 12 20:24:49.764000 audit[3148]: AVC avc: denied { bpf } for pid=3148 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.764000 audit[3148]: AVC avc: denied { bpf } for pid=3148 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.764000 audit[3148]: AVC avc: denied { bpf } for pid=3148 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.764000 audit[3148]: AVC avc: denied { perfmon } for pid=3148 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.764000 audit[3148]: AVC avc: denied { perfmon } for pid=3148 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.764000 audit[3148]: AVC avc: denied { perfmon } for pid=3148 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.764000 audit[3148]: AVC avc: denied { perfmon } for pid=3148 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.764000 audit[3148]: AVC avc: denied { perfmon } for pid=3148 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.764000 audit[3148]: AVC avc: denied { bpf } for pid=3148 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.764000 audit[3148]: AVC avc: denied { bpf } for pid=3148 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.764000 audit: BPF prog-id=105 op=LOAD Feb 12 20:24:49.764000 audit[3148]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=2976 pid=3148 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:49.764000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3339616434313430393139636130613538333166313932353966306661 Feb 12 20:24:49.793427 env[1644]: time="2024-02-12T20:24:49.793317393Z" level=info msg="StartContainer for \"39ad4140919ca0a5831f19259f0faa0eacfe6147a80d668554162dd82482c1b4\" returns successfully" Feb 12 20:24:50.283372 kubelet[2113]: E0212 20:24:50.283320 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:50.416821 kubelet[2113]: I0212 20:24:50.416782 2113 csi_plugin.go:99] kubernetes.io/csi: Trying to validate a new CSI Driver with name: csi.tigera.io endpoint: /var/lib/kubelet/plugins/csi.tigera.io/csi.sock versions: 1.0.0 Feb 12 20:24:50.416821 kubelet[2113]: I0212 20:24:50.416827 2113 csi_plugin.go:112] kubernetes.io/csi: Register new plugin with name: csi.tigera.io at endpoint: /var/lib/kubelet/plugins/csi.tigera.io/csi.sock Feb 12 20:24:50.452684 kubelet[2113]: I0212 20:24:50.452631 2113 prober_manager.go:287] "Failed to trigger a manual run" probe="Readiness" Feb 12 20:24:50.621922 kubelet[2113]: I0212 20:24:50.621878 2113 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="calico-system/csi-node-driver-wrwvz" podStartSLOduration=28.012636238 podCreationTimestamp="2024-02-12 20:24:19 +0000 UTC" firstStartedPulling="2024-02-12 20:24:46.017174126 +0000 UTC m=+29.215936010" lastFinishedPulling="2024-02-12 20:24:49.626339692 +0000 UTC m=+32.825101565" observedRunningTime="2024-02-12 20:24:50.59397648 +0000 UTC m=+33.792738389" watchObservedRunningTime="2024-02-12 20:24:50.621801793 +0000 UTC m=+33.820563689" Feb 12 20:24:50.648772 systemd[1]: run-containerd-runc-k8s.io-8fb855d90484d384c9af92545b8d81f2dc3f2731a92b7369da2deab68bc8c9c3-runc.5AfZkU.mount: Deactivated successfully. Feb 12 20:24:51.285119 kubelet[2113]: E0212 20:24:51.285043 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:52.285640 kubelet[2113]: E0212 20:24:52.285538 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:52.448199 env[1644]: time="2024-02-12T20:24:52.448130695Z" level=info msg="StopPodSandbox for \"70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3\"" Feb 12 20:24:52.598515 env[1644]: 2024-02-12 20:24:52.525 [INFO][3241] k8s.go 578: Cleaning up netns ContainerID="70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" Feb 12 20:24:52.598515 env[1644]: 2024-02-12 20:24:52.525 [INFO][3241] dataplane_linux.go 530: Deleting workload's device in netns. ContainerID="70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" iface="eth0" netns="/var/run/netns/cni-47923731-8977-78a0-4a3b-b8dc0177d26c" Feb 12 20:24:52.598515 env[1644]: 2024-02-12 20:24:52.526 [INFO][3241] dataplane_linux.go 541: Entered netns, deleting veth. ContainerID="70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" iface="eth0" netns="/var/run/netns/cni-47923731-8977-78a0-4a3b-b8dc0177d26c" Feb 12 20:24:52.598515 env[1644]: 2024-02-12 20:24:52.526 [INFO][3241] dataplane_linux.go 568: Workload's veth was already gone. Nothing to do. ContainerID="70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" iface="eth0" netns="/var/run/netns/cni-47923731-8977-78a0-4a3b-b8dc0177d26c" Feb 12 20:24:52.598515 env[1644]: 2024-02-12 20:24:52.527 [INFO][3241] k8s.go 585: Releasing IP address(es) ContainerID="70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" Feb 12 20:24:52.598515 env[1644]: 2024-02-12 20:24:52.527 [INFO][3241] utils.go 188: Calico CNI releasing IP address ContainerID="70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" Feb 12 20:24:52.598515 env[1644]: 2024-02-12 20:24:52.567 [INFO][3247] ipam_plugin.go 415: Releasing address using handleID ContainerID="70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" HandleID="k8s-pod-network.70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" Workload="172.31.20.28-k8s-nginx--deployment--845c78c8b9--6n6s5-eth0" Feb 12 20:24:52.598515 env[1644]: 2024-02-12 20:24:52.568 [INFO][3247] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 12 20:24:52.598515 env[1644]: 2024-02-12 20:24:52.568 [INFO][3247] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 12 20:24:52.598515 env[1644]: 2024-02-12 20:24:52.591 [WARNING][3247] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" HandleID="k8s-pod-network.70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" Workload="172.31.20.28-k8s-nginx--deployment--845c78c8b9--6n6s5-eth0" Feb 12 20:24:52.598515 env[1644]: 2024-02-12 20:24:52.591 [INFO][3247] ipam_plugin.go 443: Releasing address using workloadID ContainerID="70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" HandleID="k8s-pod-network.70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" Workload="172.31.20.28-k8s-nginx--deployment--845c78c8b9--6n6s5-eth0" Feb 12 20:24:52.598515 env[1644]: 2024-02-12 20:24:52.594 [INFO][3247] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 12 20:24:52.598515 env[1644]: 2024-02-12 20:24:52.596 [INFO][3241] k8s.go 591: Teardown processing complete. ContainerID="70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" Feb 12 20:24:52.603255 env[1644]: time="2024-02-12T20:24:52.602861563Z" level=info msg="TearDown network for sandbox \"70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3\" successfully" Feb 12 20:24:52.603255 env[1644]: time="2024-02-12T20:24:52.602915148Z" level=info msg="StopPodSandbox for \"70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3\" returns successfully" Feb 12 20:24:52.601859 systemd[1]: run-netns-cni\x2d47923731\x2d8977\x2d78a0\x2d4a3b\x2db8dc0177d26c.mount: Deactivated successfully. Feb 12 20:24:52.604369 env[1644]: time="2024-02-12T20:24:52.604259592Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-845c78c8b9-6n6s5,Uid:ad71e193-6ace-444c-a8fa-af3cc2663662,Namespace:default,Attempt:1,}" Feb 12 20:24:52.826364 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 12 20:24:52.826514 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali6e92b8cea18: link becomes ready Feb 12 20:24:52.821223 systemd-networkd[1456]: cali6e92b8cea18: Link UP Feb 12 20:24:52.826609 systemd-networkd[1456]: cali6e92b8cea18: Gained carrier Feb 12 20:24:52.830820 (udev-worker)[3272]: Network interface NamePolicy= disabled on kernel command line. Feb 12 20:24:52.848798 env[1644]: 2024-02-12 20:24:52.696 [INFO][3253] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.20.28-k8s-nginx--deployment--845c78c8b9--6n6s5-eth0 nginx-deployment-845c78c8b9- default ad71e193-6ace-444c-a8fa-af3cc2663662 1075 0 2024-02-12 20:24:34 +0000 UTC map[app:nginx pod-template-hash:845c78c8b9 projectcalico.org/namespace:default projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 172.31.20.28 nginx-deployment-845c78c8b9-6n6s5 eth0 default [] [] [kns.default ksa.default.default] cali6e92b8cea18 [] []}} ContainerID="f60a4019d9e3e87540edd97a6fb99b2f96e839e15cc287c2ef64c1d84a214bc8" Namespace="default" Pod="nginx-deployment-845c78c8b9-6n6s5" WorkloadEndpoint="172.31.20.28-k8s-nginx--deployment--845c78c8b9--6n6s5-" Feb 12 20:24:52.848798 env[1644]: 2024-02-12 20:24:52.696 [INFO][3253] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="f60a4019d9e3e87540edd97a6fb99b2f96e839e15cc287c2ef64c1d84a214bc8" Namespace="default" Pod="nginx-deployment-845c78c8b9-6n6s5" WorkloadEndpoint="172.31.20.28-k8s-nginx--deployment--845c78c8b9--6n6s5-eth0" Feb 12 20:24:52.848798 env[1644]: 2024-02-12 20:24:52.742 [INFO][3264] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="f60a4019d9e3e87540edd97a6fb99b2f96e839e15cc287c2ef64c1d84a214bc8" HandleID="k8s-pod-network.f60a4019d9e3e87540edd97a6fb99b2f96e839e15cc287c2ef64c1d84a214bc8" Workload="172.31.20.28-k8s-nginx--deployment--845c78c8b9--6n6s5-eth0" Feb 12 20:24:52.848798 env[1644]: 2024-02-12 20:24:52.764 [INFO][3264] ipam_plugin.go 268: Auto assigning IP ContainerID="f60a4019d9e3e87540edd97a6fb99b2f96e839e15cc287c2ef64c1d84a214bc8" HandleID="k8s-pod-network.f60a4019d9e3e87540edd97a6fb99b2f96e839e15cc287c2ef64c1d84a214bc8" Workload="172.31.20.28-k8s-nginx--deployment--845c78c8b9--6n6s5-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x40004feeb0), Attrs:map[string]string{"namespace":"default", "node":"172.31.20.28", "pod":"nginx-deployment-845c78c8b9-6n6s5", "timestamp":"2024-02-12 20:24:52.742836617 +0000 UTC"}, Hostname:"172.31.20.28", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 12 20:24:52.848798 env[1644]: 2024-02-12 20:24:52.764 [INFO][3264] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 12 20:24:52.848798 env[1644]: 2024-02-12 20:24:52.764 [INFO][3264] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 12 20:24:52.848798 env[1644]: 2024-02-12 20:24:52.764 [INFO][3264] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.20.28' Feb 12 20:24:52.848798 env[1644]: 2024-02-12 20:24:52.768 [INFO][3264] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.f60a4019d9e3e87540edd97a6fb99b2f96e839e15cc287c2ef64c1d84a214bc8" host="172.31.20.28" Feb 12 20:24:52.848798 env[1644]: 2024-02-12 20:24:52.778 [INFO][3264] ipam.go 372: Looking up existing affinities for host host="172.31.20.28" Feb 12 20:24:52.848798 env[1644]: 2024-02-12 20:24:52.786 [INFO][3264] ipam.go 489: Trying affinity for 192.168.0.64/26 host="172.31.20.28" Feb 12 20:24:52.848798 env[1644]: 2024-02-12 20:24:52.789 [INFO][3264] ipam.go 155: Attempting to load block cidr=192.168.0.64/26 host="172.31.20.28" Feb 12 20:24:52.848798 env[1644]: 2024-02-12 20:24:52.793 [INFO][3264] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.0.64/26 host="172.31.20.28" Feb 12 20:24:52.848798 env[1644]: 2024-02-12 20:24:52.793 [INFO][3264] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.0.64/26 handle="k8s-pod-network.f60a4019d9e3e87540edd97a6fb99b2f96e839e15cc287c2ef64c1d84a214bc8" host="172.31.20.28" Feb 12 20:24:52.848798 env[1644]: 2024-02-12 20:24:52.797 [INFO][3264] ipam.go 1682: Creating new handle: k8s-pod-network.f60a4019d9e3e87540edd97a6fb99b2f96e839e15cc287c2ef64c1d84a214bc8 Feb 12 20:24:52.848798 env[1644]: 2024-02-12 20:24:52.805 [INFO][3264] ipam.go 1203: Writing block in order to claim IPs block=192.168.0.64/26 handle="k8s-pod-network.f60a4019d9e3e87540edd97a6fb99b2f96e839e15cc287c2ef64c1d84a214bc8" host="172.31.20.28" Feb 12 20:24:52.848798 env[1644]: 2024-02-12 20:24:52.814 [INFO][3264] ipam.go 1216: Successfully claimed IPs: [192.168.0.66/26] block=192.168.0.64/26 handle="k8s-pod-network.f60a4019d9e3e87540edd97a6fb99b2f96e839e15cc287c2ef64c1d84a214bc8" host="172.31.20.28" Feb 12 20:24:52.848798 env[1644]: 2024-02-12 20:24:52.814 [INFO][3264] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.0.66/26] handle="k8s-pod-network.f60a4019d9e3e87540edd97a6fb99b2f96e839e15cc287c2ef64c1d84a214bc8" host="172.31.20.28" Feb 12 20:24:52.848798 env[1644]: 2024-02-12 20:24:52.814 [INFO][3264] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 12 20:24:52.848798 env[1644]: 2024-02-12 20:24:52.814 [INFO][3264] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.0.66/26] IPv6=[] ContainerID="f60a4019d9e3e87540edd97a6fb99b2f96e839e15cc287c2ef64c1d84a214bc8" HandleID="k8s-pod-network.f60a4019d9e3e87540edd97a6fb99b2f96e839e15cc287c2ef64c1d84a214bc8" Workload="172.31.20.28-k8s-nginx--deployment--845c78c8b9--6n6s5-eth0" Feb 12 20:24:52.850106 env[1644]: 2024-02-12 20:24:52.817 [INFO][3253] k8s.go 385: Populated endpoint ContainerID="f60a4019d9e3e87540edd97a6fb99b2f96e839e15cc287c2ef64c1d84a214bc8" Namespace="default" Pod="nginx-deployment-845c78c8b9-6n6s5" WorkloadEndpoint="172.31.20.28-k8s-nginx--deployment--845c78c8b9--6n6s5-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.20.28-k8s-nginx--deployment--845c78c8b9--6n6s5-eth0", GenerateName:"nginx-deployment-845c78c8b9-", Namespace:"default", SelfLink:"", UID:"ad71e193-6ace-444c-a8fa-af3cc2663662", ResourceVersion:"1075", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 24, 34, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"845c78c8b9", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.20.28", ContainerID:"", Pod:"nginx-deployment-845c78c8b9-6n6s5", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.0.66/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali6e92b8cea18", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:24:52.850106 env[1644]: 2024-02-12 20:24:52.817 [INFO][3253] k8s.go 386: Calico CNI using IPs: [192.168.0.66/32] ContainerID="f60a4019d9e3e87540edd97a6fb99b2f96e839e15cc287c2ef64c1d84a214bc8" Namespace="default" Pod="nginx-deployment-845c78c8b9-6n6s5" WorkloadEndpoint="172.31.20.28-k8s-nginx--deployment--845c78c8b9--6n6s5-eth0" Feb 12 20:24:52.850106 env[1644]: 2024-02-12 20:24:52.817 [INFO][3253] dataplane_linux.go 68: Setting the host side veth name to cali6e92b8cea18 ContainerID="f60a4019d9e3e87540edd97a6fb99b2f96e839e15cc287c2ef64c1d84a214bc8" Namespace="default" Pod="nginx-deployment-845c78c8b9-6n6s5" WorkloadEndpoint="172.31.20.28-k8s-nginx--deployment--845c78c8b9--6n6s5-eth0" Feb 12 20:24:52.850106 env[1644]: 2024-02-12 20:24:52.827 [INFO][3253] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="f60a4019d9e3e87540edd97a6fb99b2f96e839e15cc287c2ef64c1d84a214bc8" Namespace="default" Pod="nginx-deployment-845c78c8b9-6n6s5" WorkloadEndpoint="172.31.20.28-k8s-nginx--deployment--845c78c8b9--6n6s5-eth0" Feb 12 20:24:52.850106 env[1644]: 2024-02-12 20:24:52.828 [INFO][3253] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="f60a4019d9e3e87540edd97a6fb99b2f96e839e15cc287c2ef64c1d84a214bc8" Namespace="default" Pod="nginx-deployment-845c78c8b9-6n6s5" WorkloadEndpoint="172.31.20.28-k8s-nginx--deployment--845c78c8b9--6n6s5-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.20.28-k8s-nginx--deployment--845c78c8b9--6n6s5-eth0", GenerateName:"nginx-deployment-845c78c8b9-", Namespace:"default", SelfLink:"", UID:"ad71e193-6ace-444c-a8fa-af3cc2663662", ResourceVersion:"1075", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 24, 34, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"845c78c8b9", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.20.28", ContainerID:"f60a4019d9e3e87540edd97a6fb99b2f96e839e15cc287c2ef64c1d84a214bc8", Pod:"nginx-deployment-845c78c8b9-6n6s5", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.0.66/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali6e92b8cea18", MAC:"62:9d:66:68:12:f7", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:24:52.850106 env[1644]: 2024-02-12 20:24:52.841 [INFO][3253] k8s.go 491: Wrote updated endpoint to datastore ContainerID="f60a4019d9e3e87540edd97a6fb99b2f96e839e15cc287c2ef64c1d84a214bc8" Namespace="default" Pod="nginx-deployment-845c78c8b9-6n6s5" WorkloadEndpoint="172.31.20.28-k8s-nginx--deployment--845c78c8b9--6n6s5-eth0" Feb 12 20:24:52.885439 env[1644]: time="2024-02-12T20:24:52.884571508Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 12 20:24:52.885439 env[1644]: time="2024-02-12T20:24:52.884654198Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 12 20:24:52.885439 env[1644]: time="2024-02-12T20:24:52.884681314Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 12 20:24:52.885439 env[1644]: time="2024-02-12T20:24:52.885208670Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/f60a4019d9e3e87540edd97a6fb99b2f96e839e15cc287c2ef64c1d84a214bc8 pid=3295 runtime=io.containerd.runc.v2 Feb 12 20:24:52.917000 audit[3311]: NETFILTER_CFG table=filter:70 family=2 entries=40 op=nft_register_chain pid=3311 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 12 20:24:52.921245 kernel: kauditd_printk_skb: 76 callbacks suppressed Feb 12 20:24:52.921375 kernel: audit: type=1325 audit(1707769492.917:776): table=filter:70 family=2 entries=40 op=nft_register_chain pid=3311 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 12 20:24:52.917000 audit[3311]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=21064 a0=3 a1=fffff89b21b0 a2=0 a3=ffff905fafa8 items=0 ppid=2740 pid=3311 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:52.940060 kernel: audit: type=1300 audit(1707769492.917:776): arch=c00000b7 syscall=211 success=yes exit=21064 a0=3 a1=fffff89b21b0 a2=0 a3=ffff905fafa8 items=0 ppid=2740 pid=3311 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:52.917000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 12 20:24:52.943083 systemd[1]: Started cri-containerd-f60a4019d9e3e87540edd97a6fb99b2f96e839e15cc287c2ef64c1d84a214bc8.scope. Feb 12 20:24:52.947312 kernel: audit: type=1327 audit(1707769492.917:776): proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 12 20:24:52.967000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.967000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.983055 kernel: audit: type=1400 audit(1707769492.967:777): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.983271 kernel: audit: type=1400 audit(1707769492.967:778): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.967000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.992027 kernel: audit: type=1400 audit(1707769492.967:779): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.967000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:53.002425 kernel: audit: type=1400 audit(1707769492.967:780): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.967000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.967000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:53.018169 kernel: audit: type=1400 audit(1707769492.967:781): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:53.018277 kernel: audit: type=1400 audit(1707769492.967:782): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.967000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:53.025972 kernel: audit: type=1400 audit(1707769492.967:783): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.967000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.967000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.975000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.975000 audit: BPF prog-id=106 op=LOAD Feb 12 20:24:52.982000 audit[3305]: AVC avc: denied { bpf } for pid=3305 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.982000 audit[3305]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000145b38 a2=10 a3=0 items=0 ppid=3295 pid=3305 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:52.982000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6636306134303139643965336538373534306564643937613666623939 Feb 12 20:24:52.983000 audit[3305]: AVC avc: denied { perfmon } for pid=3305 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.983000 audit[3305]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=3295 pid=3305 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:52.983000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6636306134303139643965336538373534306564643937613666623939 Feb 12 20:24:52.983000 audit[3305]: AVC avc: denied { bpf } for pid=3305 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.983000 audit[3305]: AVC avc: denied { bpf } for pid=3305 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.983000 audit[3305]: AVC avc: denied { bpf } for pid=3305 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.983000 audit[3305]: AVC avc: denied { perfmon } for pid=3305 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.983000 audit[3305]: AVC avc: denied { perfmon } for pid=3305 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.983000 audit[3305]: AVC avc: denied { perfmon } for pid=3305 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.983000 audit[3305]: AVC avc: denied { perfmon } for pid=3305 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.983000 audit[3305]: AVC avc: denied { perfmon } for pid=3305 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.983000 audit[3305]: AVC avc: denied { bpf } for pid=3305 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.983000 audit[3305]: AVC avc: denied { bpf } for pid=3305 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.983000 audit: BPF prog-id=107 op=LOAD Feb 12 20:24:52.983000 audit[3305]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=3295 pid=3305 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:52.983000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6636306134303139643965336538373534306564643937613666623939 Feb 12 20:24:52.983000 audit[3305]: AVC avc: denied { bpf } for pid=3305 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.983000 audit[3305]: AVC avc: denied { bpf } for pid=3305 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.983000 audit[3305]: AVC avc: denied { perfmon } for pid=3305 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.983000 audit[3305]: AVC avc: denied { perfmon } for pid=3305 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.983000 audit[3305]: AVC avc: denied { perfmon } for pid=3305 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.983000 audit[3305]: AVC avc: denied { perfmon } for pid=3305 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.983000 audit[3305]: AVC avc: denied { perfmon } for pid=3305 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.983000 audit[3305]: AVC avc: denied { bpf } for pid=3305 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.983000 audit[3305]: AVC avc: denied { bpf } for pid=3305 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.983000 audit: BPF prog-id=108 op=LOAD Feb 12 20:24:52.983000 audit[3305]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=3295 pid=3305 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:52.983000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6636306134303139643965336538373534306564643937613666623939 Feb 12 20:24:52.983000 audit: BPF prog-id=108 op=UNLOAD Feb 12 20:24:52.983000 audit: BPF prog-id=107 op=UNLOAD Feb 12 20:24:52.983000 audit[3305]: AVC avc: denied { bpf } for pid=3305 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.983000 audit[3305]: AVC avc: denied { bpf } for pid=3305 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.983000 audit[3305]: AVC avc: denied { bpf } for pid=3305 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.983000 audit[3305]: AVC avc: denied { perfmon } for pid=3305 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.983000 audit[3305]: AVC avc: denied { perfmon } for pid=3305 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.983000 audit[3305]: AVC avc: denied { perfmon } for pid=3305 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.983000 audit[3305]: AVC avc: denied { perfmon } for pid=3305 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.983000 audit[3305]: AVC avc: denied { perfmon } for pid=3305 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.983000 audit[3305]: AVC avc: denied { bpf } for pid=3305 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.983000 audit[3305]: AVC avc: denied { bpf } for pid=3305 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:52.983000 audit: BPF prog-id=109 op=LOAD Feb 12 20:24:52.983000 audit[3305]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=3295 pid=3305 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:52.983000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6636306134303139643965336538373534306564643937613666623939 Feb 12 20:24:53.046928 env[1644]: time="2024-02-12T20:24:53.046872773Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-845c78c8b9-6n6s5,Uid:ad71e193-6ace-444c-a8fa-af3cc2663662,Namespace:default,Attempt:1,} returns sandbox id \"f60a4019d9e3e87540edd97a6fb99b2f96e839e15cc287c2ef64c1d84a214bc8\"" Feb 12 20:24:53.050465 env[1644]: time="2024-02-12T20:24:53.050385755Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\"" Feb 12 20:24:53.286711 kubelet[2113]: E0212 20:24:53.286533 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:53.601835 systemd[1]: run-containerd-runc-k8s.io-f60a4019d9e3e87540edd97a6fb99b2f96e839e15cc287c2ef64c1d84a214bc8-runc.2voSDg.mount: Deactivated successfully. Feb 12 20:24:54.017233 systemd-networkd[1456]: cali6e92b8cea18: Gained IPv6LL Feb 12 20:24:54.287489 kubelet[2113]: E0212 20:24:54.287328 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:55.287914 kubelet[2113]: E0212 20:24:55.287848 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:55.744000 audit[3340]: NETFILTER_CFG table=filter:71 family=2 entries=9 op=nft_register_rule pid=3340 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:24:55.744000 audit[3340]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=3548 a0=3 a1=ffffc9389c50 a2=0 a3=ffff8660c6c0 items=0 ppid=2340 pid=3340 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:55.744000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:24:55.748000 audit[3340]: NETFILTER_CFG table=nat:72 family=2 entries=20 op=nft_register_rule pid=3340 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:24:55.748000 audit[3340]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5484 a0=3 a1=ffffc9389c50 a2=0 a3=ffff8660c6c0 items=0 ppid=2340 pid=3340 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:55.748000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:24:55.760668 kubelet[2113]: I0212 20:24:55.760607 2113 topology_manager.go:212] "Topology Admit Handler" Feb 12 20:24:55.771000 audit[3343]: NETFILTER_CFG table=filter:73 family=2 entries=10 op=nft_register_rule pid=3343 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:24:55.771000 audit[3343]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=3548 a0=3 a1=ffffd518dbe0 a2=0 a3=ffff9b3136c0 items=0 ppid=2340 pid=3343 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:55.771000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:24:55.773521 systemd[1]: Created slice kubepods-besteffort-pod9e9d8ca7_e775_443b_bfc3_858c30087f29.slice. Feb 12 20:24:55.776000 audit[3343]: NETFILTER_CFG table=nat:74 family=2 entries=20 op=nft_register_rule pid=3343 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:24:55.776000 audit[3343]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5484 a0=3 a1=ffffd518dbe0 a2=0 a3=ffff9b3136c0 items=0 ppid=2340 pid=3343 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:55.776000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:24:55.941616 kubelet[2113]: I0212 20:24:55.941539 2113 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"calico-apiserver-certs\" (UniqueName: \"kubernetes.io/secret/9e9d8ca7-e775-443b-bfc3-858c30087f29-calico-apiserver-certs\") pod \"calico-apiserver-84b8bd5599-8cgvt\" (UID: \"9e9d8ca7-e775-443b-bfc3-858c30087f29\") " pod="calico-apiserver/calico-apiserver-84b8bd5599-8cgvt" Feb 12 20:24:55.941819 kubelet[2113]: I0212 20:24:55.941693 2113 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-5lwbf\" (UniqueName: \"kubernetes.io/projected/9e9d8ca7-e775-443b-bfc3-858c30087f29-kube-api-access-5lwbf\") pod \"calico-apiserver-84b8bd5599-8cgvt\" (UID: \"9e9d8ca7-e775-443b-bfc3-858c30087f29\") " pod="calico-apiserver/calico-apiserver-84b8bd5599-8cgvt" Feb 12 20:24:56.079846 env[1644]: time="2024-02-12T20:24:56.079457419Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-apiserver-84b8bd5599-8cgvt,Uid:9e9d8ca7-e775-443b-bfc3-858c30087f29,Namespace:calico-apiserver,Attempt:0,}" Feb 12 20:24:56.288420 kubelet[2113]: E0212 20:24:56.288339 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:56.405555 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 12 20:24:56.405669 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali165e3efbf72: link becomes ready Feb 12 20:24:56.400419 systemd-networkd[1456]: cali165e3efbf72: Link UP Feb 12 20:24:56.405867 systemd-networkd[1456]: cali165e3efbf72: Gained carrier Feb 12 20:24:56.408337 (udev-worker)[3280]: Network interface NamePolicy= disabled on kernel command line. Feb 12 20:24:56.444718 env[1644]: 2024-02-12 20:24:56.224 [INFO][3346] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.20.28-k8s-calico--apiserver--84b8bd5599--8cgvt-eth0 calico-apiserver-84b8bd5599- calico-apiserver 9e9d8ca7-e775-443b-bfc3-858c30087f29 1125 0 2024-02-12 20:24:55 +0000 UTC map[apiserver:true app.kubernetes.io/name:calico-apiserver k8s-app:calico-apiserver pod-template-hash:84b8bd5599 projectcalico.org/namespace:calico-apiserver projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:calico-apiserver] map[] [] [] []} {k8s 172.31.20.28 calico-apiserver-84b8bd5599-8cgvt eth0 calico-apiserver [] [] [kns.calico-apiserver ksa.calico-apiserver.calico-apiserver] cali165e3efbf72 [] []}} ContainerID="f99474174da5818c2ef6df333465fd4cbc4da9079ab5e2a45802fcfdaf278f0d" Namespace="calico-apiserver" Pod="calico-apiserver-84b8bd5599-8cgvt" WorkloadEndpoint="172.31.20.28-k8s-calico--apiserver--84b8bd5599--8cgvt-" Feb 12 20:24:56.444718 env[1644]: 2024-02-12 20:24:56.224 [INFO][3346] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="f99474174da5818c2ef6df333465fd4cbc4da9079ab5e2a45802fcfdaf278f0d" Namespace="calico-apiserver" Pod="calico-apiserver-84b8bd5599-8cgvt" WorkloadEndpoint="172.31.20.28-k8s-calico--apiserver--84b8bd5599--8cgvt-eth0" Feb 12 20:24:56.444718 env[1644]: 2024-02-12 20:24:56.292 [INFO][3358] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="f99474174da5818c2ef6df333465fd4cbc4da9079ab5e2a45802fcfdaf278f0d" HandleID="k8s-pod-network.f99474174da5818c2ef6df333465fd4cbc4da9079ab5e2a45802fcfdaf278f0d" Workload="172.31.20.28-k8s-calico--apiserver--84b8bd5599--8cgvt-eth0" Feb 12 20:24:56.444718 env[1644]: 2024-02-12 20:24:56.319 [INFO][3358] ipam_plugin.go 268: Auto assigning IP ContainerID="f99474174da5818c2ef6df333465fd4cbc4da9079ab5e2a45802fcfdaf278f0d" HandleID="k8s-pod-network.f99474174da5818c2ef6df333465fd4cbc4da9079ab5e2a45802fcfdaf278f0d" Workload="172.31.20.28-k8s-calico--apiserver--84b8bd5599--8cgvt-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x40002c3800), Attrs:map[string]string{"namespace":"calico-apiserver", "node":"172.31.20.28", "pod":"calico-apiserver-84b8bd5599-8cgvt", "timestamp":"2024-02-12 20:24:56.292254354 +0000 UTC"}, Hostname:"172.31.20.28", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 12 20:24:56.444718 env[1644]: 2024-02-12 20:24:56.321 [INFO][3358] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 12 20:24:56.444718 env[1644]: 2024-02-12 20:24:56.321 [INFO][3358] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 12 20:24:56.444718 env[1644]: 2024-02-12 20:24:56.321 [INFO][3358] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.20.28' Feb 12 20:24:56.444718 env[1644]: 2024-02-12 20:24:56.324 [INFO][3358] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.f99474174da5818c2ef6df333465fd4cbc4da9079ab5e2a45802fcfdaf278f0d" host="172.31.20.28" Feb 12 20:24:56.444718 env[1644]: 2024-02-12 20:24:56.332 [INFO][3358] ipam.go 372: Looking up existing affinities for host host="172.31.20.28" Feb 12 20:24:56.444718 env[1644]: 2024-02-12 20:24:56.341 [INFO][3358] ipam.go 489: Trying affinity for 192.168.0.64/26 host="172.31.20.28" Feb 12 20:24:56.444718 env[1644]: 2024-02-12 20:24:56.344 [INFO][3358] ipam.go 155: Attempting to load block cidr=192.168.0.64/26 host="172.31.20.28" Feb 12 20:24:56.444718 env[1644]: 2024-02-12 20:24:56.351 [INFO][3358] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.0.64/26 host="172.31.20.28" Feb 12 20:24:56.444718 env[1644]: 2024-02-12 20:24:56.351 [INFO][3358] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.0.64/26 handle="k8s-pod-network.f99474174da5818c2ef6df333465fd4cbc4da9079ab5e2a45802fcfdaf278f0d" host="172.31.20.28" Feb 12 20:24:56.444718 env[1644]: 2024-02-12 20:24:56.354 [INFO][3358] ipam.go 1682: Creating new handle: k8s-pod-network.f99474174da5818c2ef6df333465fd4cbc4da9079ab5e2a45802fcfdaf278f0d Feb 12 20:24:56.444718 env[1644]: 2024-02-12 20:24:56.364 [INFO][3358] ipam.go 1203: Writing block in order to claim IPs block=192.168.0.64/26 handle="k8s-pod-network.f99474174da5818c2ef6df333465fd4cbc4da9079ab5e2a45802fcfdaf278f0d" host="172.31.20.28" Feb 12 20:24:56.444718 env[1644]: 2024-02-12 20:24:56.393 [INFO][3358] ipam.go 1216: Successfully claimed IPs: [192.168.0.67/26] block=192.168.0.64/26 handle="k8s-pod-network.f99474174da5818c2ef6df333465fd4cbc4da9079ab5e2a45802fcfdaf278f0d" host="172.31.20.28" Feb 12 20:24:56.444718 env[1644]: 2024-02-12 20:24:56.393 [INFO][3358] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.0.67/26] handle="k8s-pod-network.f99474174da5818c2ef6df333465fd4cbc4da9079ab5e2a45802fcfdaf278f0d" host="172.31.20.28" Feb 12 20:24:56.444718 env[1644]: 2024-02-12 20:24:56.393 [INFO][3358] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 12 20:24:56.444718 env[1644]: 2024-02-12 20:24:56.393 [INFO][3358] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.0.67/26] IPv6=[] ContainerID="f99474174da5818c2ef6df333465fd4cbc4da9079ab5e2a45802fcfdaf278f0d" HandleID="k8s-pod-network.f99474174da5818c2ef6df333465fd4cbc4da9079ab5e2a45802fcfdaf278f0d" Workload="172.31.20.28-k8s-calico--apiserver--84b8bd5599--8cgvt-eth0" Feb 12 20:24:56.446314 env[1644]: 2024-02-12 20:24:56.397 [INFO][3346] k8s.go 385: Populated endpoint ContainerID="f99474174da5818c2ef6df333465fd4cbc4da9079ab5e2a45802fcfdaf278f0d" Namespace="calico-apiserver" Pod="calico-apiserver-84b8bd5599-8cgvt" WorkloadEndpoint="172.31.20.28-k8s-calico--apiserver--84b8bd5599--8cgvt-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.20.28-k8s-calico--apiserver--84b8bd5599--8cgvt-eth0", GenerateName:"calico-apiserver-84b8bd5599-", Namespace:"calico-apiserver", SelfLink:"", UID:"9e9d8ca7-e775-443b-bfc3-858c30087f29", ResourceVersion:"1125", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 24, 55, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"apiserver":"true", "app.kubernetes.io/name":"calico-apiserver", "k8s-app":"calico-apiserver", "pod-template-hash":"84b8bd5599", "projectcalico.org/namespace":"calico-apiserver", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"calico-apiserver"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.20.28", ContainerID:"", Pod:"calico-apiserver-84b8bd5599-8cgvt", Endpoint:"eth0", ServiceAccountName:"calico-apiserver", IPNetworks:[]string{"192.168.0.67/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-apiserver", "ksa.calico-apiserver.calico-apiserver"}, InterfaceName:"cali165e3efbf72", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:24:56.446314 env[1644]: 2024-02-12 20:24:56.397 [INFO][3346] k8s.go 386: Calico CNI using IPs: [192.168.0.67/32] ContainerID="f99474174da5818c2ef6df333465fd4cbc4da9079ab5e2a45802fcfdaf278f0d" Namespace="calico-apiserver" Pod="calico-apiserver-84b8bd5599-8cgvt" WorkloadEndpoint="172.31.20.28-k8s-calico--apiserver--84b8bd5599--8cgvt-eth0" Feb 12 20:24:56.446314 env[1644]: 2024-02-12 20:24:56.397 [INFO][3346] dataplane_linux.go 68: Setting the host side veth name to cali165e3efbf72 ContainerID="f99474174da5818c2ef6df333465fd4cbc4da9079ab5e2a45802fcfdaf278f0d" Namespace="calico-apiserver" Pod="calico-apiserver-84b8bd5599-8cgvt" WorkloadEndpoint="172.31.20.28-k8s-calico--apiserver--84b8bd5599--8cgvt-eth0" Feb 12 20:24:56.446314 env[1644]: 2024-02-12 20:24:56.407 [INFO][3346] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="f99474174da5818c2ef6df333465fd4cbc4da9079ab5e2a45802fcfdaf278f0d" Namespace="calico-apiserver" Pod="calico-apiserver-84b8bd5599-8cgvt" WorkloadEndpoint="172.31.20.28-k8s-calico--apiserver--84b8bd5599--8cgvt-eth0" Feb 12 20:24:56.446314 env[1644]: 2024-02-12 20:24:56.408 [INFO][3346] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="f99474174da5818c2ef6df333465fd4cbc4da9079ab5e2a45802fcfdaf278f0d" Namespace="calico-apiserver" Pod="calico-apiserver-84b8bd5599-8cgvt" WorkloadEndpoint="172.31.20.28-k8s-calico--apiserver--84b8bd5599--8cgvt-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.20.28-k8s-calico--apiserver--84b8bd5599--8cgvt-eth0", GenerateName:"calico-apiserver-84b8bd5599-", Namespace:"calico-apiserver", SelfLink:"", UID:"9e9d8ca7-e775-443b-bfc3-858c30087f29", ResourceVersion:"1125", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 24, 55, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"apiserver":"true", "app.kubernetes.io/name":"calico-apiserver", "k8s-app":"calico-apiserver", "pod-template-hash":"84b8bd5599", "projectcalico.org/namespace":"calico-apiserver", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"calico-apiserver"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.20.28", ContainerID:"f99474174da5818c2ef6df333465fd4cbc4da9079ab5e2a45802fcfdaf278f0d", Pod:"calico-apiserver-84b8bd5599-8cgvt", Endpoint:"eth0", ServiceAccountName:"calico-apiserver", IPNetworks:[]string{"192.168.0.67/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-apiserver", "ksa.calico-apiserver.calico-apiserver"}, InterfaceName:"cali165e3efbf72", MAC:"4a:96:44:92:33:96", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:24:56.446314 env[1644]: 2024-02-12 20:24:56.442 [INFO][3346] k8s.go 491: Wrote updated endpoint to datastore ContainerID="f99474174da5818c2ef6df333465fd4cbc4da9079ab5e2a45802fcfdaf278f0d" Namespace="calico-apiserver" Pod="calico-apiserver-84b8bd5599-8cgvt" WorkloadEndpoint="172.31.20.28-k8s-calico--apiserver--84b8bd5599--8cgvt-eth0" Feb 12 20:24:56.504218 env[1644]: time="2024-02-12T20:24:56.504095109Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 12 20:24:56.504403 env[1644]: time="2024-02-12T20:24:56.504174476Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 12 20:24:56.504403 env[1644]: time="2024-02-12T20:24:56.504201579Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 12 20:24:56.504551 env[1644]: time="2024-02-12T20:24:56.504430893Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/f99474174da5818c2ef6df333465fd4cbc4da9079ab5e2a45802fcfdaf278f0d pid=3387 runtime=io.containerd.runc.v2 Feb 12 20:24:56.539000 audit[3406]: NETFILTER_CFG table=filter:75 family=2 entries=51 op=nft_register_chain pid=3406 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 12 20:24:56.539000 audit[3406]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=26916 a0=3 a1=ffffded2de20 a2=0 a3=ffffafdf6fa8 items=0 ppid=2740 pid=3406 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:56.539000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 12 20:24:56.556352 systemd[1]: Started cri-containerd-f99474174da5818c2ef6df333465fd4cbc4da9079ab5e2a45802fcfdaf278f0d.scope. Feb 12 20:24:56.598000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.598000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.598000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.598000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.598000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.598000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.598000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.598000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.598000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.598000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.598000 audit: BPF prog-id=110 op=LOAD Feb 12 20:24:56.600000 audit[3400]: AVC avc: denied { bpf } for pid=3400 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.600000 audit[3400]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000195b38 a2=10 a3=0 items=0 ppid=3387 pid=3400 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:56.600000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6639393437343137346461353831386332656636646633333334363566 Feb 12 20:24:56.600000 audit[3400]: AVC avc: denied { perfmon } for pid=3400 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.600000 audit[3400]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=3387 pid=3400 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:56.600000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6639393437343137346461353831386332656636646633333334363566 Feb 12 20:24:56.601000 audit[3400]: AVC avc: denied { bpf } for pid=3400 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.601000 audit[3400]: AVC avc: denied { bpf } for pid=3400 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.601000 audit[3400]: AVC avc: denied { bpf } for pid=3400 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.601000 audit[3400]: AVC avc: denied { perfmon } for pid=3400 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.601000 audit[3400]: AVC avc: denied { perfmon } for pid=3400 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.601000 audit[3400]: AVC avc: denied { perfmon } for pid=3400 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.601000 audit[3400]: AVC avc: denied { perfmon } for pid=3400 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.601000 audit[3400]: AVC avc: denied { perfmon } for pid=3400 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.601000 audit[3400]: AVC avc: denied { bpf } for pid=3400 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.601000 audit[3400]: AVC avc: denied { bpf } for pid=3400 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.601000 audit: BPF prog-id=111 op=LOAD Feb 12 20:24:56.601000 audit[3400]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=3387 pid=3400 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:56.601000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6639393437343137346461353831386332656636646633333334363566 Feb 12 20:24:56.602000 audit[3400]: AVC avc: denied { bpf } for pid=3400 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.602000 audit[3400]: AVC avc: denied { bpf } for pid=3400 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.602000 audit[3400]: AVC avc: denied { perfmon } for pid=3400 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.602000 audit[3400]: AVC avc: denied { perfmon } for pid=3400 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.602000 audit[3400]: AVC avc: denied { perfmon } for pid=3400 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.602000 audit[3400]: AVC avc: denied { perfmon } for pid=3400 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.602000 audit[3400]: AVC avc: denied { perfmon } for pid=3400 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.602000 audit[3400]: AVC avc: denied { bpf } for pid=3400 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.602000 audit[3400]: AVC avc: denied { bpf } for pid=3400 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.602000 audit: BPF prog-id=112 op=LOAD Feb 12 20:24:56.602000 audit[3400]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=3387 pid=3400 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:56.602000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6639393437343137346461353831386332656636646633333334363566 Feb 12 20:24:56.604000 audit: BPF prog-id=112 op=UNLOAD Feb 12 20:24:56.604000 audit: BPF prog-id=111 op=UNLOAD Feb 12 20:24:56.604000 audit[3400]: AVC avc: denied { bpf } for pid=3400 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.604000 audit[3400]: AVC avc: denied { bpf } for pid=3400 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.604000 audit[3400]: AVC avc: denied { bpf } for pid=3400 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.604000 audit[3400]: AVC avc: denied { perfmon } for pid=3400 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.604000 audit[3400]: AVC avc: denied { perfmon } for pid=3400 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.604000 audit[3400]: AVC avc: denied { perfmon } for pid=3400 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.604000 audit[3400]: AVC avc: denied { perfmon } for pid=3400 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.604000 audit[3400]: AVC avc: denied { perfmon } for pid=3400 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.604000 audit[3400]: AVC avc: denied { bpf } for pid=3400 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.604000 audit[3400]: AVC avc: denied { bpf } for pid=3400 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.604000 audit: BPF prog-id=113 op=LOAD Feb 12 20:24:56.604000 audit[3400]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=3387 pid=3400 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:56.604000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6639393437343137346461353831386332656636646633333334363566 Feb 12 20:24:56.651550 env[1644]: time="2024-02-12T20:24:56.651475102Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-apiserver-84b8bd5599-8cgvt,Uid:9e9d8ca7-e775-443b-bfc3-858c30087f29,Namespace:calico-apiserver,Attempt:0,} returns sandbox id \"f99474174da5818c2ef6df333465fd4cbc4da9079ab5e2a45802fcfdaf278f0d\"" Feb 12 20:24:57.126282 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2819626618.mount: Deactivated successfully. Feb 12 20:24:57.289137 kubelet[2113]: E0212 20:24:57.289004 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:57.793514 systemd-networkd[1456]: cali165e3efbf72: Gained IPv6LL Feb 12 20:24:58.258926 kubelet[2113]: E0212 20:24:58.258090 2113 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:58.290435 kubelet[2113]: E0212 20:24:58.290352 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:58.679665 env[1644]: time="2024-02-12T20:24:58.679587539Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:58.685691 env[1644]: time="2024-02-12T20:24:58.685600185Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:01bfff6bfbc6f0e8a890bad9e22c5392e6dbfd67def93467db6231d4be1b719b,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:58.688482 env[1644]: time="2024-02-12T20:24:58.688437232Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:58.693573 env[1644]: time="2024-02-12T20:24:58.693502597Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/nginx@sha256:e34a272f01984c973b1e034e197c02f77dda18981038e3a54e957554ada4fec6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:58.694980 env[1644]: time="2024-02-12T20:24:58.694910151Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\" returns image reference \"sha256:01bfff6bfbc6f0e8a890bad9e22c5392e6dbfd67def93467db6231d4be1b719b\"" Feb 12 20:24:58.696961 env[1644]: time="2024-02-12T20:24:58.696879846Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/apiserver:v3.27.0\"" Feb 12 20:24:58.704153 env[1644]: time="2024-02-12T20:24:58.704088360Z" level=info msg="CreateContainer within sandbox \"f60a4019d9e3e87540edd97a6fb99b2f96e839e15cc287c2ef64c1d84a214bc8\" for container &ContainerMetadata{Name:nginx,Attempt:0,}" Feb 12 20:24:58.723830 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount679930371.mount: Deactivated successfully. Feb 12 20:24:58.732107 env[1644]: time="2024-02-12T20:24:58.731945090Z" level=info msg="CreateContainer within sandbox \"f60a4019d9e3e87540edd97a6fb99b2f96e839e15cc287c2ef64c1d84a214bc8\" for &ContainerMetadata{Name:nginx,Attempt:0,} returns container id \"88777e43c1ee17b17c3c8f95cd60fbc760fcc56c91a1ba1dd1018acb432bc381\"" Feb 12 20:24:58.734589 env[1644]: time="2024-02-12T20:24:58.734518792Z" level=info msg="StartContainer for \"88777e43c1ee17b17c3c8f95cd60fbc760fcc56c91a1ba1dd1018acb432bc381\"" Feb 12 20:24:58.770071 systemd[1]: Started cri-containerd-88777e43c1ee17b17c3c8f95cd60fbc760fcc56c91a1ba1dd1018acb432bc381.scope. Feb 12 20:24:58.812920 kernel: kauditd_printk_skb: 122 callbacks suppressed Feb 12 20:24:58.813086 kernel: audit: type=1400 audit(1707769498.801:818): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.801000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.811000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.823838 kernel: audit: type=1400 audit(1707769498.811:819): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.811000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.831501 kernel: audit: type=1400 audit(1707769498.811:820): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.811000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.839455 kernel: audit: type=1400 audit(1707769498.811:821): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.811000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.811000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.847849 kernel: audit: type=1400 audit(1707769498.811:822): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.811000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.863637 kernel: audit: type=1400 audit(1707769498.811:823): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.863793 kernel: audit: type=1400 audit(1707769498.811:824): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.811000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.871564 kernel: audit: type=1400 audit(1707769498.811:825): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.811000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.879399 kernel: audit: type=1400 audit(1707769498.811:826): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.812000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.887925 kernel: audit: type=1400 audit(1707769498.812:827): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.812000 audit: BPF prog-id=114 op=LOAD Feb 12 20:24:58.813000 audit[3432]: AVC avc: denied { bpf } for pid=3432 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.813000 audit[3432]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000145b38 a2=10 a3=0 items=0 ppid=3295 pid=3432 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:58.813000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3838373737653433633165653137623137633363386639356364363066 Feb 12 20:24:58.813000 audit[3432]: AVC avc: denied { perfmon } for pid=3432 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.813000 audit[3432]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=3295 pid=3432 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:58.813000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3838373737653433633165653137623137633363386639356364363066 Feb 12 20:24:58.813000 audit[3432]: AVC avc: denied { bpf } for pid=3432 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.813000 audit[3432]: AVC avc: denied { bpf } for pid=3432 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.813000 audit[3432]: AVC avc: denied { bpf } for pid=3432 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.813000 audit[3432]: AVC avc: denied { perfmon } for pid=3432 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.813000 audit[3432]: AVC avc: denied { perfmon } for pid=3432 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.813000 audit[3432]: AVC avc: denied { perfmon } for pid=3432 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.813000 audit[3432]: AVC avc: denied { perfmon } for pid=3432 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.813000 audit[3432]: AVC avc: denied { perfmon } for pid=3432 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.813000 audit[3432]: AVC avc: denied { bpf } for pid=3432 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.813000 audit[3432]: AVC avc: denied { bpf } for pid=3432 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.813000 audit: BPF prog-id=115 op=LOAD Feb 12 20:24:58.813000 audit[3432]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=3295 pid=3432 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:58.813000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3838373737653433633165653137623137633363386639356364363066 Feb 12 20:24:58.813000 audit[3432]: AVC avc: denied { bpf } for pid=3432 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.813000 audit[3432]: AVC avc: denied { bpf } for pid=3432 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.813000 audit[3432]: AVC avc: denied { perfmon } for pid=3432 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.813000 audit[3432]: AVC avc: denied { perfmon } for pid=3432 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.813000 audit[3432]: AVC avc: denied { perfmon } for pid=3432 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.813000 audit[3432]: AVC avc: denied { perfmon } for pid=3432 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.813000 audit[3432]: AVC avc: denied { perfmon } for pid=3432 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.813000 audit[3432]: AVC avc: denied { bpf } for pid=3432 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.813000 audit[3432]: AVC avc: denied { bpf } for pid=3432 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.813000 audit: BPF prog-id=116 op=LOAD Feb 12 20:24:58.813000 audit[3432]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=3295 pid=3432 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:58.813000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3838373737653433633165653137623137633363386639356364363066 Feb 12 20:24:58.813000 audit: BPF prog-id=116 op=UNLOAD Feb 12 20:24:58.814000 audit: BPF prog-id=115 op=UNLOAD Feb 12 20:24:58.814000 audit[3432]: AVC avc: denied { bpf } for pid=3432 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.814000 audit[3432]: AVC avc: denied { bpf } for pid=3432 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.814000 audit[3432]: AVC avc: denied { bpf } for pid=3432 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.814000 audit[3432]: AVC avc: denied { perfmon } for pid=3432 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.814000 audit[3432]: AVC avc: denied { perfmon } for pid=3432 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.814000 audit[3432]: AVC avc: denied { perfmon } for pid=3432 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.814000 audit[3432]: AVC avc: denied { perfmon } for pid=3432 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.814000 audit[3432]: AVC avc: denied { perfmon } for pid=3432 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.814000 audit[3432]: AVC avc: denied { bpf } for pid=3432 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.814000 audit[3432]: AVC avc: denied { bpf } for pid=3432 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:58.814000 audit: BPF prog-id=117 op=LOAD Feb 12 20:24:58.814000 audit[3432]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=3295 pid=3432 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:58.814000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3838373737653433633165653137623137633363386639356364363066 Feb 12 20:24:58.894542 env[1644]: time="2024-02-12T20:24:58.892225913Z" level=info msg="StartContainer for \"88777e43c1ee17b17c3c8f95cd60fbc760fcc56c91a1ba1dd1018acb432bc381\" returns successfully" Feb 12 20:24:59.290780 kubelet[2113]: E0212 20:24:59.290678 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:59.955172 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1176925394.mount: Deactivated successfully. Feb 12 20:25:00.148000 audit[3482]: NETFILTER_CFG table=filter:76 family=2 entries=10 op=nft_register_rule pid=3482 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:00.148000 audit[3482]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=3548 a0=3 a1=ffffd8d2fbe0 a2=0 a3=ffffa48096c0 items=0 ppid=2340 pid=3482 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:00.148000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:00.151000 audit[3482]: NETFILTER_CFG table=nat:77 family=2 entries=20 op=nft_register_rule pid=3482 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:00.151000 audit[3482]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5484 a0=3 a1=ffffd8d2fbe0 a2=0 a3=ffffa48096c0 items=0 ppid=2340 pid=3482 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:00.151000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:00.290986 kubelet[2113]: E0212 20:25:00.290928 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:01.292109 kubelet[2113]: E0212 20:25:01.292042 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:02.177504 env[1644]: time="2024-02-12T20:25:02.177422610Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/apiserver:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:25:02.181217 env[1644]: time="2024-02-12T20:25:02.181152139Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:24494ef6c7de0e2dcf21ad9fb6c94801c53f120443e256a5e1b54eccd57058a9,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:25:02.184444 env[1644]: time="2024-02-12T20:25:02.184379979Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/apiserver:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:25:02.187589 env[1644]: time="2024-02-12T20:25:02.187526341Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/apiserver@sha256:5ff0bdc8d0b2e9d7819703b18867f60f9153ed01da81e2bbfa22002abec9dc26,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:25:02.188967 env[1644]: time="2024-02-12T20:25:02.188917889Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/apiserver:v3.27.0\" returns image reference \"sha256:24494ef6c7de0e2dcf21ad9fb6c94801c53f120443e256a5e1b54eccd57058a9\"" Feb 12 20:25:02.192541 env[1644]: time="2024-02-12T20:25:02.192479845Z" level=info msg="CreateContainer within sandbox \"f99474174da5818c2ef6df333465fd4cbc4da9079ab5e2a45802fcfdaf278f0d\" for container &ContainerMetadata{Name:calico-apiserver,Attempt:0,}" Feb 12 20:25:02.212409 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1891431645.mount: Deactivated successfully. Feb 12 20:25:02.219853 env[1644]: time="2024-02-12T20:25:02.219742341Z" level=info msg="CreateContainer within sandbox \"f99474174da5818c2ef6df333465fd4cbc4da9079ab5e2a45802fcfdaf278f0d\" for &ContainerMetadata{Name:calico-apiserver,Attempt:0,} returns container id \"4b78f16fa356174c1e52bb77382d14ee93ef85c65801c706252a597ca7e4d7d1\"" Feb 12 20:25:02.221188 env[1644]: time="2024-02-12T20:25:02.221123050Z" level=info msg="StartContainer for \"4b78f16fa356174c1e52bb77382d14ee93ef85c65801c706252a597ca7e4d7d1\"" Feb 12 20:25:02.279841 systemd[1]: Started cri-containerd-4b78f16fa356174c1e52bb77382d14ee93ef85c65801c706252a597ca7e4d7d1.scope. Feb 12 20:25:02.293214 kubelet[2113]: E0212 20:25:02.293123 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:02.304000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.304000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.304000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.304000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.304000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.304000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.304000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.304000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.304000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.304000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.304000 audit: BPF prog-id=118 op=LOAD Feb 12 20:25:02.306000 audit[3493]: AVC avc: denied { bpf } for pid=3493 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.306000 audit[3493]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=40001c5b38 a2=10 a3=0 items=0 ppid=3387 pid=3493 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:02.306000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3462373866313666613335363137346331653532626237373338326431 Feb 12 20:25:02.306000 audit[3493]: AVC avc: denied { perfmon } for pid=3493 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.306000 audit[3493]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001c55a0 a2=3c a3=0 items=0 ppid=3387 pid=3493 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:02.306000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3462373866313666613335363137346331653532626237373338326431 Feb 12 20:25:02.306000 audit[3493]: AVC avc: denied { bpf } for pid=3493 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.306000 audit[3493]: AVC avc: denied { bpf } for pid=3493 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.306000 audit[3493]: AVC avc: denied { bpf } for pid=3493 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.306000 audit[3493]: AVC avc: denied { perfmon } for pid=3493 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.306000 audit[3493]: AVC avc: denied { perfmon } for pid=3493 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.306000 audit[3493]: AVC avc: denied { perfmon } for pid=3493 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.306000 audit[3493]: AVC avc: denied { perfmon } for pid=3493 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.306000 audit[3493]: AVC avc: denied { perfmon } for pid=3493 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.306000 audit[3493]: AVC avc: denied { bpf } for pid=3493 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.306000 audit[3493]: AVC avc: denied { bpf } for pid=3493 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.306000 audit: BPF prog-id=119 op=LOAD Feb 12 20:25:02.306000 audit[3493]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001c58e0 a2=78 a3=0 items=0 ppid=3387 pid=3493 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:02.306000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3462373866313666613335363137346331653532626237373338326431 Feb 12 20:25:02.308000 audit[3493]: AVC avc: denied { bpf } for pid=3493 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.308000 audit[3493]: AVC avc: denied { bpf } for pid=3493 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.308000 audit[3493]: AVC avc: denied { perfmon } for pid=3493 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.308000 audit[3493]: AVC avc: denied { perfmon } for pid=3493 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.308000 audit[3493]: AVC avc: denied { perfmon } for pid=3493 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.308000 audit[3493]: AVC avc: denied { perfmon } for pid=3493 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.308000 audit[3493]: AVC avc: denied { perfmon } for pid=3493 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.308000 audit[3493]: AVC avc: denied { bpf } for pid=3493 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.308000 audit[3493]: AVC avc: denied { bpf } for pid=3493 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.308000 audit: BPF prog-id=120 op=LOAD Feb 12 20:25:02.308000 audit[3493]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=40001c5670 a2=78 a3=0 items=0 ppid=3387 pid=3493 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:02.308000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3462373866313666613335363137346331653532626237373338326431 Feb 12 20:25:02.309000 audit: BPF prog-id=120 op=UNLOAD Feb 12 20:25:02.309000 audit: BPF prog-id=119 op=UNLOAD Feb 12 20:25:02.309000 audit[3493]: AVC avc: denied { bpf } for pid=3493 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.309000 audit[3493]: AVC avc: denied { bpf } for pid=3493 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.309000 audit[3493]: AVC avc: denied { bpf } for pid=3493 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.309000 audit[3493]: AVC avc: denied { perfmon } for pid=3493 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.309000 audit[3493]: AVC avc: denied { perfmon } for pid=3493 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.309000 audit[3493]: AVC avc: denied { perfmon } for pid=3493 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.309000 audit[3493]: AVC avc: denied { perfmon } for pid=3493 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.309000 audit[3493]: AVC avc: denied { perfmon } for pid=3493 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.309000 audit[3493]: AVC avc: denied { bpf } for pid=3493 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.309000 audit[3493]: AVC avc: denied { bpf } for pid=3493 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.309000 audit: BPF prog-id=121 op=LOAD Feb 12 20:25:02.309000 audit[3493]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001c5b40 a2=78 a3=0 items=0 ppid=3387 pid=3493 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:02.309000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3462373866313666613335363137346331653532626237373338326431 Feb 12 20:25:02.363332 env[1644]: time="2024-02-12T20:25:02.363258308Z" level=info msg="StartContainer for \"4b78f16fa356174c1e52bb77382d14ee93ef85c65801c706252a597ca7e4d7d1\" returns successfully" Feb 12 20:25:02.635363 kubelet[2113]: I0212 20:25:02.635313 2113 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="default/nginx-deployment-845c78c8b9-6n6s5" podStartSLOduration=22.989153815 podCreationTimestamp="2024-02-12 20:24:34 +0000 UTC" firstStartedPulling="2024-02-12 20:24:53.049372596 +0000 UTC m=+36.248134481" lastFinishedPulling="2024-02-12 20:24:58.695478634 +0000 UTC m=+41.894240519" observedRunningTime="2024-02-12 20:24:59.60530528 +0000 UTC m=+42.804067177" watchObservedRunningTime="2024-02-12 20:25:02.635259853 +0000 UTC m=+45.834021738" Feb 12 20:25:02.635611 kubelet[2113]: I0212 20:25:02.635430 2113 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="calico-apiserver/calico-apiserver-84b8bd5599-8cgvt" podStartSLOduration=2.100039788 podCreationTimestamp="2024-02-12 20:24:55 +0000 UTC" firstStartedPulling="2024-02-12 20:24:56.653928625 +0000 UTC m=+39.852690510" lastFinishedPulling="2024-02-12 20:25:02.18928426 +0000 UTC m=+45.388046157" observedRunningTime="2024-02-12 20:25:02.632732344 +0000 UTC m=+45.831494241" watchObservedRunningTime="2024-02-12 20:25:02.635395435 +0000 UTC m=+45.834157344" Feb 12 20:25:02.685000 audit[3523]: NETFILTER_CFG table=filter:78 family=2 entries=10 op=nft_register_rule pid=3523 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:02.685000 audit[3523]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=3548 a0=3 a1=ffffc8718e60 a2=0 a3=ffff890706c0 items=0 ppid=2340 pid=3523 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:02.685000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:02.688000 audit[3523]: NETFILTER_CFG table=nat:79 family=2 entries=20 op=nft_register_rule pid=3523 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:02.688000 audit[3523]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5484 a0=3 a1=ffffc8718e60 a2=0 a3=ffff890706c0 items=0 ppid=2340 pid=3523 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:02.688000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:03.146000 audit[3503]: AVC avc: denied { watch } for pid=3503 comm="apiserver" path="/calico-apiserver-certs/..2024_02_12_20_24_56.2145200416/tls.crt" dev="tmpfs" ino=4 scontext=system_u:system_r:svirt_lxc_net_t:s0:c167,c649 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c167,c649 tclass=file permissive=0 Feb 12 20:25:03.146000 audit[3503]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=8 a1=4000c22020 a2=fc6 a3=0 items=0 ppid=3387 pid=3503 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="apiserver" exe="/code/apiserver" subj=system_u:system_r:svirt_lxc_net_t:s0:c167,c649 key=(null) Feb 12 20:25:03.146000 audit: PROCTITLE proctitle=2E2F617069736572766572002D2D7365637572652D706F72743D35343433002D2D746C732D707269766174652D6B65792D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C732E6B6579002D2D746C732D636572742D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C Feb 12 20:25:03.294067 kubelet[2113]: E0212 20:25:03.294020 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:04.294900 kubelet[2113]: E0212 20:25:04.294834 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:05.295839 kubelet[2113]: E0212 20:25:05.295791 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:05.653000 audit[3532]: NETFILTER_CFG table=filter:80 family=2 entries=22 op=nft_register_rule pid=3532 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:05.657190 kernel: kauditd_printk_skb: 119 callbacks suppressed Feb 12 20:25:05.657428 kernel: audit: type=1325 audit(1707769505.653:859): table=filter:80 family=2 entries=22 op=nft_register_rule pid=3532 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:05.653000 audit[3532]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=11996 a0=3 a1=ffffde49d710 a2=0 a3=ffffb7ec26c0 items=0 ppid=2340 pid=3532 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:05.674893 kernel: audit: type=1300 audit(1707769505.653:859): arch=c00000b7 syscall=211 success=yes exit=11996 a0=3 a1=ffffde49d710 a2=0 a3=ffffb7ec26c0 items=0 ppid=2340 pid=3532 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:05.653000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:05.680963 kernel: audit: type=1327 audit(1707769505.653:859): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:05.681102 kernel: audit: type=1325 audit(1707769505.656:860): table=nat:81 family=2 entries=20 op=nft_register_rule pid=3532 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:05.656000 audit[3532]: NETFILTER_CFG table=nat:81 family=2 entries=20 op=nft_register_rule pid=3532 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:05.656000 audit[3532]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5484 a0=3 a1=ffffde49d710 a2=0 a3=ffffb7ec26c0 items=0 ppid=2340 pid=3532 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:05.698553 kernel: audit: type=1300 audit(1707769505.656:860): arch=c00000b7 syscall=211 success=yes exit=5484 a0=3 a1=ffffde49d710 a2=0 a3=ffffb7ec26c0 items=0 ppid=2340 pid=3532 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:05.698731 kernel: audit: type=1327 audit(1707769505.656:860): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:05.656000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:05.690000 audit[3534]: NETFILTER_CFG table=filter:82 family=2 entries=34 op=nft_register_rule pid=3534 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:05.690000 audit[3534]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=11996 a0=3 a1=ffffc65f9f00 a2=0 a3=ffff935b76c0 items=0 ppid=2340 pid=3534 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:05.723919 kernel: audit: type=1325 audit(1707769505.690:861): table=filter:82 family=2 entries=34 op=nft_register_rule pid=3534 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:05.724158 kernel: audit: type=1300 audit(1707769505.690:861): arch=c00000b7 syscall=211 success=yes exit=11996 a0=3 a1=ffffc65f9f00 a2=0 a3=ffff935b76c0 items=0 ppid=2340 pid=3534 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:05.724217 kernel: audit: type=1327 audit(1707769505.690:861): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:05.690000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:05.707000 audit[3534]: NETFILTER_CFG table=nat:83 family=2 entries=20 op=nft_register_rule pid=3534 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:05.707000 audit[3534]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5484 a0=3 a1=ffffc65f9f00 a2=0 a3=ffff935b76c0 items=0 ppid=2340 pid=3534 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:05.707000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:05.736819 kernel: audit: type=1325 audit(1707769505.707:862): table=nat:83 family=2 entries=20 op=nft_register_rule pid=3534 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:05.737291 kubelet[2113]: I0212 20:25:05.737251 2113 topology_manager.go:212] "Topology Admit Handler" Feb 12 20:25:05.746508 systemd[1]: Created slice kubepods-besteffort-podf2a41027_ff0d_4d6f_a2dc_1183af1ce906.slice. Feb 12 20:25:05.900903 kubelet[2113]: I0212 20:25:05.900855 2113 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"data\" (UniqueName: \"kubernetes.io/empty-dir/f2a41027-ff0d-4d6f-a2dc-1183af1ce906-data\") pod \"nfs-server-provisioner-0\" (UID: \"f2a41027-ff0d-4d6f-a2dc-1183af1ce906\") " pod="default/nfs-server-provisioner-0" Feb 12 20:25:05.901100 kubelet[2113]: I0212 20:25:05.900939 2113 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-pkt7b\" (UniqueName: \"kubernetes.io/projected/f2a41027-ff0d-4d6f-a2dc-1183af1ce906-kube-api-access-pkt7b\") pod \"nfs-server-provisioner-0\" (UID: \"f2a41027-ff0d-4d6f-a2dc-1183af1ce906\") " pod="default/nfs-server-provisioner-0" Feb 12 20:25:06.055185 env[1644]: time="2024-02-12T20:25:06.055047734Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nfs-server-provisioner-0,Uid:f2a41027-ff0d-4d6f-a2dc-1183af1ce906,Namespace:default,Attempt:0,}" Feb 12 20:25:06.274491 systemd-networkd[1456]: cali60e51b789ff: Link UP Feb 12 20:25:06.280793 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 12 20:25:06.280903 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali60e51b789ff: link becomes ready Feb 12 20:25:06.281522 systemd-networkd[1456]: cali60e51b789ff: Gained carrier Feb 12 20:25:06.282388 (udev-worker)[3556]: Network interface NamePolicy= disabled on kernel command line. Feb 12 20:25:06.296880 kubelet[2113]: E0212 20:25:06.296736 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:06.302382 env[1644]: 2024-02-12 20:25:06.139 [INFO][3536] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.20.28-k8s-nfs--server--provisioner--0-eth0 nfs-server-provisioner- default f2a41027-ff0d-4d6f-a2dc-1183af1ce906 1201 0 2024-02-12 20:25:05 +0000 UTC map[app:nfs-server-provisioner chart:nfs-server-provisioner-1.8.0 controller-revision-hash:nfs-server-provisioner-d5cbb7f57 heritage:Helm projectcalico.org/namespace:default projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:nfs-server-provisioner release:nfs-server-provisioner statefulset.kubernetes.io/pod-name:nfs-server-provisioner-0] map[] [] [] []} {k8s 172.31.20.28 nfs-server-provisioner-0 eth0 nfs-server-provisioner [] [] [kns.default ksa.default.nfs-server-provisioner] cali60e51b789ff [{nfs TCP 2049 0 } {nfs-udp UDP 2049 0 } {nlockmgr TCP 32803 0 } {nlockmgr-udp UDP 32803 0 } {mountd TCP 20048 0 } {mountd-udp UDP 20048 0 } {rquotad TCP 875 0 } {rquotad-udp UDP 875 0 } {rpcbind TCP 111 0 } {rpcbind-udp UDP 111 0 } {statd TCP 662 0 } {statd-udp UDP 662 0 }] []}} ContainerID="a8f3bd9ac5ebbd844c57bdffe8c953f59e83326ce24cee0b49372a34d0dbf314" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.20.28-k8s-nfs--server--provisioner--0-" Feb 12 20:25:06.302382 env[1644]: 2024-02-12 20:25:06.139 [INFO][3536] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="a8f3bd9ac5ebbd844c57bdffe8c953f59e83326ce24cee0b49372a34d0dbf314" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.20.28-k8s-nfs--server--provisioner--0-eth0" Feb 12 20:25:06.302382 env[1644]: 2024-02-12 20:25:06.188 [INFO][3549] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="a8f3bd9ac5ebbd844c57bdffe8c953f59e83326ce24cee0b49372a34d0dbf314" HandleID="k8s-pod-network.a8f3bd9ac5ebbd844c57bdffe8c953f59e83326ce24cee0b49372a34d0dbf314" Workload="172.31.20.28-k8s-nfs--server--provisioner--0-eth0" Feb 12 20:25:06.302382 env[1644]: 2024-02-12 20:25:06.217 [INFO][3549] ipam_plugin.go 268: Auto assigning IP ContainerID="a8f3bd9ac5ebbd844c57bdffe8c953f59e83326ce24cee0b49372a34d0dbf314" HandleID="k8s-pod-network.a8f3bd9ac5ebbd844c57bdffe8c953f59e83326ce24cee0b49372a34d0dbf314" Workload="172.31.20.28-k8s-nfs--server--provisioner--0-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x40002a9aa0), Attrs:map[string]string{"namespace":"default", "node":"172.31.20.28", "pod":"nfs-server-provisioner-0", "timestamp":"2024-02-12 20:25:06.188946113 +0000 UTC"}, Hostname:"172.31.20.28", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 12 20:25:06.302382 env[1644]: 2024-02-12 20:25:06.217 [INFO][3549] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 12 20:25:06.302382 env[1644]: 2024-02-12 20:25:06.218 [INFO][3549] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 12 20:25:06.302382 env[1644]: 2024-02-12 20:25:06.218 [INFO][3549] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.20.28' Feb 12 20:25:06.302382 env[1644]: 2024-02-12 20:25:06.221 [INFO][3549] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.a8f3bd9ac5ebbd844c57bdffe8c953f59e83326ce24cee0b49372a34d0dbf314" host="172.31.20.28" Feb 12 20:25:06.302382 env[1644]: 2024-02-12 20:25:06.230 [INFO][3549] ipam.go 372: Looking up existing affinities for host host="172.31.20.28" Feb 12 20:25:06.302382 env[1644]: 2024-02-12 20:25:06.239 [INFO][3549] ipam.go 489: Trying affinity for 192.168.0.64/26 host="172.31.20.28" Feb 12 20:25:06.302382 env[1644]: 2024-02-12 20:25:06.243 [INFO][3549] ipam.go 155: Attempting to load block cidr=192.168.0.64/26 host="172.31.20.28" Feb 12 20:25:06.302382 env[1644]: 2024-02-12 20:25:06.248 [INFO][3549] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.0.64/26 host="172.31.20.28" Feb 12 20:25:06.302382 env[1644]: 2024-02-12 20:25:06.248 [INFO][3549] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.0.64/26 handle="k8s-pod-network.a8f3bd9ac5ebbd844c57bdffe8c953f59e83326ce24cee0b49372a34d0dbf314" host="172.31.20.28" Feb 12 20:25:06.302382 env[1644]: 2024-02-12 20:25:06.251 [INFO][3549] ipam.go 1682: Creating new handle: k8s-pod-network.a8f3bd9ac5ebbd844c57bdffe8c953f59e83326ce24cee0b49372a34d0dbf314 Feb 12 20:25:06.302382 env[1644]: 2024-02-12 20:25:06.257 [INFO][3549] ipam.go 1203: Writing block in order to claim IPs block=192.168.0.64/26 handle="k8s-pod-network.a8f3bd9ac5ebbd844c57bdffe8c953f59e83326ce24cee0b49372a34d0dbf314" host="172.31.20.28" Feb 12 20:25:06.302382 env[1644]: 2024-02-12 20:25:06.267 [INFO][3549] ipam.go 1216: Successfully claimed IPs: [192.168.0.68/26] block=192.168.0.64/26 handle="k8s-pod-network.a8f3bd9ac5ebbd844c57bdffe8c953f59e83326ce24cee0b49372a34d0dbf314" host="172.31.20.28" Feb 12 20:25:06.302382 env[1644]: 2024-02-12 20:25:06.267 [INFO][3549] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.0.68/26] handle="k8s-pod-network.a8f3bd9ac5ebbd844c57bdffe8c953f59e83326ce24cee0b49372a34d0dbf314" host="172.31.20.28" Feb 12 20:25:06.302382 env[1644]: 2024-02-12 20:25:06.267 [INFO][3549] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 12 20:25:06.302382 env[1644]: 2024-02-12 20:25:06.267 [INFO][3549] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.0.68/26] IPv6=[] ContainerID="a8f3bd9ac5ebbd844c57bdffe8c953f59e83326ce24cee0b49372a34d0dbf314" HandleID="k8s-pod-network.a8f3bd9ac5ebbd844c57bdffe8c953f59e83326ce24cee0b49372a34d0dbf314" Workload="172.31.20.28-k8s-nfs--server--provisioner--0-eth0" Feb 12 20:25:06.303947 env[1644]: 2024-02-12 20:25:06.270 [INFO][3536] k8s.go 385: Populated endpoint ContainerID="a8f3bd9ac5ebbd844c57bdffe8c953f59e83326ce24cee0b49372a34d0dbf314" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.20.28-k8s-nfs--server--provisioner--0-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.20.28-k8s-nfs--server--provisioner--0-eth0", GenerateName:"nfs-server-provisioner-", Namespace:"default", SelfLink:"", UID:"f2a41027-ff0d-4d6f-a2dc-1183af1ce906", ResourceVersion:"1201", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 25, 5, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nfs-server-provisioner", "chart":"nfs-server-provisioner-1.8.0", "controller-revision-hash":"nfs-server-provisioner-d5cbb7f57", "heritage":"Helm", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"nfs-server-provisioner", "release":"nfs-server-provisioner", "statefulset.kubernetes.io/pod-name":"nfs-server-provisioner-0"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.20.28", ContainerID:"", Pod:"nfs-server-provisioner-0", Endpoint:"eth0", ServiceAccountName:"nfs-server-provisioner", IPNetworks:[]string{"192.168.0.68/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.nfs-server-provisioner"}, InterfaceName:"cali60e51b789ff", MAC:"", Ports:[]v3.WorkloadEndpointPort{v3.WorkloadEndpointPort{Name:"nfs", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nfs-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x296, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x296, HostPort:0x0, HostIP:""}}, AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:25:06.303947 env[1644]: 2024-02-12 20:25:06.270 [INFO][3536] k8s.go 386: Calico CNI using IPs: [192.168.0.68/32] ContainerID="a8f3bd9ac5ebbd844c57bdffe8c953f59e83326ce24cee0b49372a34d0dbf314" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.20.28-k8s-nfs--server--provisioner--0-eth0" Feb 12 20:25:06.303947 env[1644]: 2024-02-12 20:25:06.270 [INFO][3536] dataplane_linux.go 68: Setting the host side veth name to cali60e51b789ff ContainerID="a8f3bd9ac5ebbd844c57bdffe8c953f59e83326ce24cee0b49372a34d0dbf314" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.20.28-k8s-nfs--server--provisioner--0-eth0" Feb 12 20:25:06.303947 env[1644]: 2024-02-12 20:25:06.283 [INFO][3536] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="a8f3bd9ac5ebbd844c57bdffe8c953f59e83326ce24cee0b49372a34d0dbf314" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.20.28-k8s-nfs--server--provisioner--0-eth0" Feb 12 20:25:06.304338 env[1644]: 2024-02-12 20:25:06.284 [INFO][3536] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="a8f3bd9ac5ebbd844c57bdffe8c953f59e83326ce24cee0b49372a34d0dbf314" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.20.28-k8s-nfs--server--provisioner--0-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.20.28-k8s-nfs--server--provisioner--0-eth0", GenerateName:"nfs-server-provisioner-", Namespace:"default", SelfLink:"", UID:"f2a41027-ff0d-4d6f-a2dc-1183af1ce906", ResourceVersion:"1201", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 25, 5, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nfs-server-provisioner", "chart":"nfs-server-provisioner-1.8.0", "controller-revision-hash":"nfs-server-provisioner-d5cbb7f57", "heritage":"Helm", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"nfs-server-provisioner", "release":"nfs-server-provisioner", "statefulset.kubernetes.io/pod-name":"nfs-server-provisioner-0"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.20.28", ContainerID:"a8f3bd9ac5ebbd844c57bdffe8c953f59e83326ce24cee0b49372a34d0dbf314", Pod:"nfs-server-provisioner-0", Endpoint:"eth0", ServiceAccountName:"nfs-server-provisioner", IPNetworks:[]string{"192.168.0.68/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.nfs-server-provisioner"}, InterfaceName:"cali60e51b789ff", MAC:"22:57:e3:63:b0:10", Ports:[]v3.WorkloadEndpointPort{v3.WorkloadEndpointPort{Name:"nfs", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nfs-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x296, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x296, HostPort:0x0, HostIP:""}}, AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:25:06.304338 env[1644]: 2024-02-12 20:25:06.298 [INFO][3536] k8s.go 491: Wrote updated endpoint to datastore ContainerID="a8f3bd9ac5ebbd844c57bdffe8c953f59e83326ce24cee0b49372a34d0dbf314" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.20.28-k8s-nfs--server--provisioner--0-eth0" Feb 12 20:25:06.336473 env[1644]: time="2024-02-12T20:25:06.336242883Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 12 20:25:06.336641 env[1644]: time="2024-02-12T20:25:06.336326733Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 12 20:25:06.336641 env[1644]: time="2024-02-12T20:25:06.336355723Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 12 20:25:06.339509 env[1644]: time="2024-02-12T20:25:06.339405307Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/a8f3bd9ac5ebbd844c57bdffe8c953f59e83326ce24cee0b49372a34d0dbf314 pid=3580 runtime=io.containerd.runc.v2 Feb 12 20:25:06.366000 audit[3597]: NETFILTER_CFG table=filter:84 family=2 entries=48 op=nft_register_chain pid=3597 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 12 20:25:06.375666 systemd[1]: Started cri-containerd-a8f3bd9ac5ebbd844c57bdffe8c953f59e83326ce24cee0b49372a34d0dbf314.scope. Feb 12 20:25:06.366000 audit[3597]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=23540 a0=3 a1=ffffdede5170 a2=0 a3=ffff89c83fa8 items=0 ppid=2740 pid=3597 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:06.366000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 12 20:25:06.423000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.423000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.423000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.423000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.423000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.423000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.423000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.423000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.423000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.424000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.424000 audit: BPF prog-id=122 op=LOAD Feb 12 20:25:06.425000 audit[3591]: AVC avc: denied { bpf } for pid=3591 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.425000 audit[3591]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000145b38 a2=10 a3=0 items=0 ppid=3580 pid=3591 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:06.425000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6138663362643961633565626264383434633537626466666538633935 Feb 12 20:25:06.425000 audit[3591]: AVC avc: denied { perfmon } for pid=3591 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.425000 audit[3591]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=3580 pid=3591 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:06.425000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6138663362643961633565626264383434633537626466666538633935 Feb 12 20:25:06.425000 audit[3591]: AVC avc: denied { bpf } for pid=3591 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.425000 audit[3591]: AVC avc: denied { bpf } for pid=3591 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.425000 audit[3591]: AVC avc: denied { bpf } for pid=3591 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.425000 audit[3591]: AVC avc: denied { perfmon } for pid=3591 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.425000 audit[3591]: AVC avc: denied { perfmon } for pid=3591 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.425000 audit[3591]: AVC avc: denied { perfmon } for pid=3591 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.425000 audit[3591]: AVC avc: denied { perfmon } for pid=3591 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.425000 audit[3591]: AVC avc: denied { perfmon } for pid=3591 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.425000 audit[3591]: AVC avc: denied { bpf } for pid=3591 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.425000 audit[3591]: AVC avc: denied { bpf } for pid=3591 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.425000 audit: BPF prog-id=123 op=LOAD Feb 12 20:25:06.425000 audit[3591]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=3580 pid=3591 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:06.425000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6138663362643961633565626264383434633537626466666538633935 Feb 12 20:25:06.426000 audit[3591]: AVC avc: denied { bpf } for pid=3591 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.426000 audit[3591]: AVC avc: denied { bpf } for pid=3591 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.426000 audit[3591]: AVC avc: denied { perfmon } for pid=3591 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.426000 audit[3591]: AVC avc: denied { perfmon } for pid=3591 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.426000 audit[3591]: AVC avc: denied { perfmon } for pid=3591 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.426000 audit[3591]: AVC avc: denied { perfmon } for pid=3591 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.426000 audit[3591]: AVC avc: denied { perfmon } for pid=3591 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.426000 audit[3591]: AVC avc: denied { bpf } for pid=3591 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.426000 audit[3591]: AVC avc: denied { bpf } for pid=3591 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.426000 audit: BPF prog-id=124 op=LOAD Feb 12 20:25:06.426000 audit[3591]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=3580 pid=3591 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:06.426000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6138663362643961633565626264383434633537626466666538633935 Feb 12 20:25:06.426000 audit: BPF prog-id=124 op=UNLOAD Feb 12 20:25:06.426000 audit: BPF prog-id=123 op=UNLOAD Feb 12 20:25:06.426000 audit[3591]: AVC avc: denied { bpf } for pid=3591 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.426000 audit[3591]: AVC avc: denied { bpf } for pid=3591 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.426000 audit[3591]: AVC avc: denied { bpf } for pid=3591 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.426000 audit[3591]: AVC avc: denied { perfmon } for pid=3591 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.426000 audit[3591]: AVC avc: denied { perfmon } for pid=3591 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.426000 audit[3591]: AVC avc: denied { perfmon } for pid=3591 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.426000 audit[3591]: AVC avc: denied { perfmon } for pid=3591 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.426000 audit[3591]: AVC avc: denied { perfmon } for pid=3591 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.426000 audit[3591]: AVC avc: denied { bpf } for pid=3591 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.426000 audit[3591]: AVC avc: denied { bpf } for pid=3591 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:06.426000 audit: BPF prog-id=125 op=LOAD Feb 12 20:25:06.426000 audit[3591]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=3580 pid=3591 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:06.426000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6138663362643961633565626264383434633537626466666538633935 Feb 12 20:25:06.476075 env[1644]: time="2024-02-12T20:25:06.475997220Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nfs-server-provisioner-0,Uid:f2a41027-ff0d-4d6f-a2dc-1183af1ce906,Namespace:default,Attempt:0,} returns sandbox id \"a8f3bd9ac5ebbd844c57bdffe8c953f59e83326ce24cee0b49372a34d0dbf314\"" Feb 12 20:25:06.479130 env[1644]: time="2024-02-12T20:25:06.479077283Z" level=info msg="PullImage \"registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8\"" Feb 12 20:25:07.022682 systemd[1]: run-containerd-runc-k8s.io-a8f3bd9ac5ebbd844c57bdffe8c953f59e83326ce24cee0b49372a34d0dbf314-runc.etThJM.mount: Deactivated successfully. Feb 12 20:25:07.297280 kubelet[2113]: E0212 20:25:07.297206 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:07.649399 systemd-networkd[1456]: cali60e51b789ff: Gained IPv6LL Feb 12 20:25:08.298312 kubelet[2113]: E0212 20:25:08.298242 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:09.298719 kubelet[2113]: E0212 20:25:09.298657 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:10.237162 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2516994788.mount: Deactivated successfully. Feb 12 20:25:10.298993 kubelet[2113]: E0212 20:25:10.298909 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:11.299358 kubelet[2113]: E0212 20:25:11.299296 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:12.300495 kubelet[2113]: E0212 20:25:12.300430 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:13.300742 kubelet[2113]: E0212 20:25:13.300669 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:13.867375 env[1644]: time="2024-02-12T20:25:13.867284903Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:25:13.870880 env[1644]: time="2024-02-12T20:25:13.870806298Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:5a42a519e0a8cf95c3c5f18f767c58c8c8b072aaea0a26e5e47a6f206c7df685,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:25:13.874236 env[1644]: time="2024-02-12T20:25:13.874166685Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:25:13.877562 env[1644]: time="2024-02-12T20:25:13.877491725Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/sig-storage/nfs-provisioner@sha256:c825f3d5e28bde099bd7a3daace28772d412c9157ad47fa752a9ad0baafc118d,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:25:13.879503 env[1644]: time="2024-02-12T20:25:13.879438459Z" level=info msg="PullImage \"registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8\" returns image reference \"sha256:5a42a519e0a8cf95c3c5f18f767c58c8c8b072aaea0a26e5e47a6f206c7df685\"" Feb 12 20:25:13.884813 env[1644]: time="2024-02-12T20:25:13.884723037Z" level=info msg="CreateContainer within sandbox \"a8f3bd9ac5ebbd844c57bdffe8c953f59e83326ce24cee0b49372a34d0dbf314\" for container &ContainerMetadata{Name:nfs-server-provisioner,Attempt:0,}" Feb 12 20:25:13.904598 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2215837918.mount: Deactivated successfully. Feb 12 20:25:13.920378 env[1644]: time="2024-02-12T20:25:13.920293563Z" level=info msg="CreateContainer within sandbox \"a8f3bd9ac5ebbd844c57bdffe8c953f59e83326ce24cee0b49372a34d0dbf314\" for &ContainerMetadata{Name:nfs-server-provisioner,Attempt:0,} returns container id \"af860e2c6bba3d395abc4cbf778475eeb7a3183ee6d0a13ee9f16d9c6f4e7f18\"" Feb 12 20:25:13.921577 env[1644]: time="2024-02-12T20:25:13.921507857Z" level=info msg="StartContainer for \"af860e2c6bba3d395abc4cbf778475eeb7a3183ee6d0a13ee9f16d9c6f4e7f18\"" Feb 12 20:25:13.957555 systemd[1]: Started cri-containerd-af860e2c6bba3d395abc4cbf778475eeb7a3183ee6d0a13ee9f16d9c6f4e7f18.scope. Feb 12 20:25:14.001730 kernel: kauditd_printk_skb: 62 callbacks suppressed Feb 12 20:25:14.001915 kernel: audit: type=1400 audit(1707769513.998:882): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:13.998000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.017038 kernel: audit: type=1400 audit(1707769514.000:883): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.000000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.000000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.025052 kernel: audit: type=1400 audit(1707769514.000:884): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.000000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.033240 kernel: audit: type=1400 audit(1707769514.000:885): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.000000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.041386 kernel: audit: type=1400 audit(1707769514.000:886): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.000000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.000000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.058829 kernel: audit: type=1400 audit(1707769514.000:887): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.059026 kernel: audit: type=1400 audit(1707769514.000:888): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.000000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.066916 kernel: audit: type=1400 audit(1707769514.000:889): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.000000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.074740 kernel: audit: type=1400 audit(1707769514.000:890): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.001000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.082639 kernel: audit: type=1400 audit(1707769514.001:891): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.001000 audit: BPF prog-id=126 op=LOAD Feb 12 20:25:14.008000 audit[3627]: AVC avc: denied { bpf } for pid=3627 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.008000 audit[3627]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=400019db38 a2=10 a3=0 items=0 ppid=3580 pid=3627 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:14.008000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6166383630653263366262613364333935616263346362663737383437 Feb 12 20:25:14.008000 audit[3627]: AVC avc: denied { perfmon } for pid=3627 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.008000 audit[3627]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=400019d5a0 a2=3c a3=0 items=0 ppid=3580 pid=3627 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:14.008000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6166383630653263366262613364333935616263346362663737383437 Feb 12 20:25:14.008000 audit[3627]: AVC avc: denied { bpf } for pid=3627 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.008000 audit[3627]: AVC avc: denied { bpf } for pid=3627 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.008000 audit[3627]: AVC avc: denied { bpf } for pid=3627 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.008000 audit[3627]: AVC avc: denied { perfmon } for pid=3627 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.008000 audit[3627]: AVC avc: denied { perfmon } for pid=3627 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.008000 audit[3627]: AVC avc: denied { perfmon } for pid=3627 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.008000 audit[3627]: AVC avc: denied { perfmon } for pid=3627 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.008000 audit[3627]: AVC avc: denied { perfmon } for pid=3627 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.008000 audit[3627]: AVC avc: denied { bpf } for pid=3627 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.008000 audit[3627]: AVC avc: denied { bpf } for pid=3627 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.008000 audit: BPF prog-id=127 op=LOAD Feb 12 20:25:14.008000 audit[3627]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=400019d8e0 a2=78 a3=0 items=0 ppid=3580 pid=3627 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:14.008000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6166383630653263366262613364333935616263346362663737383437 Feb 12 20:25:14.008000 audit[3627]: AVC avc: denied { bpf } for pid=3627 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.008000 audit[3627]: AVC avc: denied { bpf } for pid=3627 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.008000 audit[3627]: AVC avc: denied { perfmon } for pid=3627 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.008000 audit[3627]: AVC avc: denied { perfmon } for pid=3627 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.008000 audit[3627]: AVC avc: denied { perfmon } for pid=3627 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.008000 audit[3627]: AVC avc: denied { perfmon } for pid=3627 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.008000 audit[3627]: AVC avc: denied { perfmon } for pid=3627 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.008000 audit[3627]: AVC avc: denied { bpf } for pid=3627 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.008000 audit[3627]: AVC avc: denied { bpf } for pid=3627 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.008000 audit: BPF prog-id=128 op=LOAD Feb 12 20:25:14.008000 audit[3627]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=400019d670 a2=78 a3=0 items=0 ppid=3580 pid=3627 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:14.008000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6166383630653263366262613364333935616263346362663737383437 Feb 12 20:25:14.016000 audit: BPF prog-id=128 op=UNLOAD Feb 12 20:25:14.016000 audit: BPF prog-id=127 op=UNLOAD Feb 12 20:25:14.016000 audit[3627]: AVC avc: denied { bpf } for pid=3627 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.016000 audit[3627]: AVC avc: denied { bpf } for pid=3627 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.016000 audit[3627]: AVC avc: denied { bpf } for pid=3627 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.016000 audit[3627]: AVC avc: denied { perfmon } for pid=3627 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.016000 audit[3627]: AVC avc: denied { perfmon } for pid=3627 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.016000 audit[3627]: AVC avc: denied { perfmon } for pid=3627 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.016000 audit[3627]: AVC avc: denied { perfmon } for pid=3627 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.016000 audit[3627]: AVC avc: denied { perfmon } for pid=3627 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.016000 audit[3627]: AVC avc: denied { bpf } for pid=3627 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.016000 audit[3627]: AVC avc: denied { bpf } for pid=3627 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:14.016000 audit: BPF prog-id=129 op=LOAD Feb 12 20:25:14.016000 audit[3627]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=400019db40 a2=78 a3=0 items=0 ppid=3580 pid=3627 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:14.016000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6166383630653263366262613364333935616263346362663737383437 Feb 12 20:25:14.092002 env[1644]: time="2024-02-12T20:25:14.091917907Z" level=info msg="StartContainer for \"af860e2c6bba3d395abc4cbf778475eeb7a3183ee6d0a13ee9f16d9c6f4e7f18\" returns successfully" Feb 12 20:25:14.189000 audit[3655]: AVC avc: denied { search } for pid=3655 comm="rpcbind" name="crypto" dev="proc" ino=19063 scontext=system_u:system_r:svirt_lxc_net_t:s0:c230,c731 tcontext=system_u:object_r:sysctl_crypto_t:s0 tclass=dir permissive=0 Feb 12 20:25:14.189000 audit[3655]: SYSCALL arch=c00000b7 syscall=56 success=no exit=-13 a0=ffffffffffffff9c a1=ffffa0aff000 a2=0 a3=0 items=0 ppid=3637 pid=3655 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="rpcbind" exe="/usr/bin/rpcbind" subj=system_u:system_r:svirt_lxc_net_t:s0:c230,c731 key=(null) Feb 12 20:25:14.189000 audit: PROCTITLE proctitle=2F7573722F7362696E2F72706362696E64002D77 Feb 12 20:25:14.278000 audit[3660]: AVC avc: denied { search } for pid=3660 comm="dbus-daemon" name="crypto" dev="proc" ino=19063 scontext=system_u:system_r:svirt_lxc_net_t:s0:c230,c731 tcontext=system_u:object_r:sysctl_crypto_t:s0 tclass=dir permissive=0 Feb 12 20:25:14.278000 audit[3660]: SYSCALL arch=c00000b7 syscall=56 success=no exit=-13 a0=ffffffffffffff9c a1=ffffbda3f000 a2=0 a3=0 items=0 ppid=3637 pid=3660 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="dbus-daemon" exe="/usr/bin/dbus-daemon" subj=system_u:system_r:svirt_lxc_net_t:s0:c230,c731 key=(null) Feb 12 20:25:14.278000 audit: PROCTITLE proctitle=646275732D6461656D6F6E002D2D73797374656D002D2D6E6F70696466696C65 Feb 12 20:25:14.285000 audit[3661]: AVC avc: denied { watch } for pid=3661 comm="dbus-daemon" path="/usr/share/dbus-1/system.d" dev="overlay" ino=538071 scontext=system_u:system_r:svirt_lxc_net_t:s0:c230,c731 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c230,c731 tclass=dir permissive=0 Feb 12 20:25:14.285000 audit[3661]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=6 a1=aaaae562f380 a2=2c8 a3=aaaae561aa60 items=0 ppid=3637 pid=3661 auid=4294967295 uid=81 gid=81 euid=81 suid=81 fsuid=81 egid=81 sgid=81 fsgid=81 tty=(none) ses=4294967295 comm="dbus-daemon" exe="/usr/bin/dbus-daemon" subj=system_u:system_r:svirt_lxc_net_t:s0:c230,c731 key=(null) Feb 12 20:25:14.285000 audit: PROCTITLE proctitle=646275732D6461656D6F6E002D2D73797374656D002D2D6E6F70696466696C65 Feb 12 20:25:14.294000 audit[3662]: AVC avc: denied { read } for pid=3662 comm="ganesha.nfsd" name="overcommit_memory" dev="proc" ino=20084 scontext=system_u:system_r:svirt_lxc_net_t:s0:c230,c731 tcontext=system_u:object_r:sysctl_vm_overcommit_t:s0 tclass=file permissive=0 Feb 12 20:25:14.294000 audit[3662]: SYSCALL arch=c00000b7 syscall=56 success=no exit=-13 a0=ffffff9c a1=ffff89dba570 a2=80000 a3=0 items=0 ppid=3637 pid=3662 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ganesha.nfsd" exe="/usr/local/bin/ganesha.nfsd" subj=system_u:system_r:svirt_lxc_net_t:s0:c230,c731 key=(null) Feb 12 20:25:14.294000 audit: PROCTITLE proctitle=67616E657368612E6E667364002D46002D4C002F6578706F72742F67616E657368612E6C6F67002D70002F7661722F72756E2F67616E657368612E706964002D66002F6578706F72742F7666732E636F6E66 Feb 12 20:25:14.295000 audit[3662]: AVC avc: denied { search } for pid=3662 comm="ganesha.nfsd" name="crypto" dev="proc" ino=19063 scontext=system_u:system_r:svirt_lxc_net_t:s0:c230,c731 tcontext=system_u:object_r:sysctl_crypto_t:s0 tclass=dir permissive=0 Feb 12 20:25:14.295000 audit[3662]: SYSCALL arch=c00000b7 syscall=56 success=no exit=-13 a0=ffffffffffffff9c a1=ffff8914f000 a2=0 a3=0 items=0 ppid=3637 pid=3662 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ganesha.nfsd" exe="/usr/local/bin/ganesha.nfsd" subj=system_u:system_r:svirt_lxc_net_t:s0:c230,c731 key=(null) Feb 12 20:25:14.295000 audit: PROCTITLE proctitle=67616E657368612E6E667364002D46002D4C002F6578706F72742F67616E657368612E6C6F67002D70002F7661722F72756E2F67616E657368612E706964002D66002F6578706F72742F7666732E636F6E66 Feb 12 20:25:14.301443 kubelet[2113]: E0212 20:25:14.301393 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:14.651813 kubelet[2113]: I0212 20:25:14.651284 2113 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="default/nfs-server-provisioner-0" podStartSLOduration=2.249662387 podCreationTimestamp="2024-02-12 20:25:05 +0000 UTC" firstStartedPulling="2024-02-12 20:25:06.478468382 +0000 UTC m=+49.677230375" lastFinishedPulling="2024-02-12 20:25:13.880026496 +0000 UTC m=+57.078788382" observedRunningTime="2024-02-12 20:25:14.651186384 +0000 UTC m=+57.849948282" watchObservedRunningTime="2024-02-12 20:25:14.651220394 +0000 UTC m=+57.849982291" Feb 12 20:25:14.679000 audit[3667]: NETFILTER_CFG table=filter:85 family=2 entries=22 op=nft_register_rule pid=3667 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:14.679000 audit[3667]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=3548 a0=3 a1=ffffe18c0890 a2=0 a3=ffff84c096c0 items=0 ppid=2340 pid=3667 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:14.679000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:14.685000 audit[3667]: NETFILTER_CFG table=nat:86 family=2 entries=104 op=nft_register_chain pid=3667 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:14.685000 audit[3667]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=47436 a0=3 a1=ffffe18c0890 a2=0 a3=ffff84c096c0 items=0 ppid=2340 pid=3667 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:14.685000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:15.302326 kubelet[2113]: E0212 20:25:15.302276 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:16.303985 kubelet[2113]: E0212 20:25:16.303938 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:17.305306 kubelet[2113]: E0212 20:25:17.305259 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:18.257391 kubelet[2113]: E0212 20:25:18.257346 2113 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:18.269922 env[1644]: time="2024-02-12T20:25:18.269840181Z" level=info msg="StopPodSandbox for \"e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14\"" Feb 12 20:25:18.307021 kubelet[2113]: E0212 20:25:18.306933 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:18.395358 env[1644]: 2024-02-12 20:25:18.339 [WARNING][3684] k8s.go 542: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.20.28-k8s-csi--node--driver--wrwvz-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"9822be3a-c300-4397-bd25-d44111e8e8f3", ResourceVersion:"1067", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 24, 19, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"86b88cf7c9", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.20.28", ContainerID:"534e2769342fbac61d3681762a481ba81f80820fd9679ba8dfdddf40b335da60", Pod:"csi-node-driver-wrwvz", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.0.65/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"cali21e38711621", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:25:18.395358 env[1644]: 2024-02-12 20:25:18.339 [INFO][3684] k8s.go 578: Cleaning up netns ContainerID="e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" Feb 12 20:25:18.395358 env[1644]: 2024-02-12 20:25:18.340 [INFO][3684] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" iface="eth0" netns="" Feb 12 20:25:18.395358 env[1644]: 2024-02-12 20:25:18.340 [INFO][3684] k8s.go 585: Releasing IP address(es) ContainerID="e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" Feb 12 20:25:18.395358 env[1644]: 2024-02-12 20:25:18.340 [INFO][3684] utils.go 188: Calico CNI releasing IP address ContainerID="e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" Feb 12 20:25:18.395358 env[1644]: 2024-02-12 20:25:18.375 [INFO][3690] ipam_plugin.go 415: Releasing address using handleID ContainerID="e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" HandleID="k8s-pod-network.e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" Workload="172.31.20.28-k8s-csi--node--driver--wrwvz-eth0" Feb 12 20:25:18.395358 env[1644]: 2024-02-12 20:25:18.375 [INFO][3690] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 12 20:25:18.395358 env[1644]: 2024-02-12 20:25:18.375 [INFO][3690] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 12 20:25:18.395358 env[1644]: 2024-02-12 20:25:18.388 [WARNING][3690] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" HandleID="k8s-pod-network.e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" Workload="172.31.20.28-k8s-csi--node--driver--wrwvz-eth0" Feb 12 20:25:18.395358 env[1644]: 2024-02-12 20:25:18.388 [INFO][3690] ipam_plugin.go 443: Releasing address using workloadID ContainerID="e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" HandleID="k8s-pod-network.e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" Workload="172.31.20.28-k8s-csi--node--driver--wrwvz-eth0" Feb 12 20:25:18.395358 env[1644]: 2024-02-12 20:25:18.391 [INFO][3690] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 12 20:25:18.395358 env[1644]: 2024-02-12 20:25:18.393 [INFO][3684] k8s.go 591: Teardown processing complete. ContainerID="e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" Feb 12 20:25:18.396382 env[1644]: time="2024-02-12T20:25:18.395403537Z" level=info msg="TearDown network for sandbox \"e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14\" successfully" Feb 12 20:25:18.396382 env[1644]: time="2024-02-12T20:25:18.395450147Z" level=info msg="StopPodSandbox for \"e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14\" returns successfully" Feb 12 20:25:18.396511 env[1644]: time="2024-02-12T20:25:18.396406371Z" level=info msg="RemovePodSandbox for \"e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14\"" Feb 12 20:25:18.396511 env[1644]: time="2024-02-12T20:25:18.396459746Z" level=info msg="Forcibly stopping sandbox \"e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14\"" Feb 12 20:25:18.524957 env[1644]: 2024-02-12 20:25:18.467 [WARNING][3710] k8s.go 542: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.20.28-k8s-csi--node--driver--wrwvz-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"9822be3a-c300-4397-bd25-d44111e8e8f3", ResourceVersion:"1067", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 24, 19, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"86b88cf7c9", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.20.28", ContainerID:"534e2769342fbac61d3681762a481ba81f80820fd9679ba8dfdddf40b335da60", Pod:"csi-node-driver-wrwvz", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.0.65/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"cali21e38711621", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:25:18.524957 env[1644]: 2024-02-12 20:25:18.468 [INFO][3710] k8s.go 578: Cleaning up netns ContainerID="e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" Feb 12 20:25:18.524957 env[1644]: 2024-02-12 20:25:18.468 [INFO][3710] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" iface="eth0" netns="" Feb 12 20:25:18.524957 env[1644]: 2024-02-12 20:25:18.468 [INFO][3710] k8s.go 585: Releasing IP address(es) ContainerID="e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" Feb 12 20:25:18.524957 env[1644]: 2024-02-12 20:25:18.468 [INFO][3710] utils.go 188: Calico CNI releasing IP address ContainerID="e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" Feb 12 20:25:18.524957 env[1644]: 2024-02-12 20:25:18.503 [INFO][3719] ipam_plugin.go 415: Releasing address using handleID ContainerID="e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" HandleID="k8s-pod-network.e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" Workload="172.31.20.28-k8s-csi--node--driver--wrwvz-eth0" Feb 12 20:25:18.524957 env[1644]: 2024-02-12 20:25:18.504 [INFO][3719] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 12 20:25:18.524957 env[1644]: 2024-02-12 20:25:18.504 [INFO][3719] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 12 20:25:18.524957 env[1644]: 2024-02-12 20:25:18.517 [WARNING][3719] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" HandleID="k8s-pod-network.e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" Workload="172.31.20.28-k8s-csi--node--driver--wrwvz-eth0" Feb 12 20:25:18.524957 env[1644]: 2024-02-12 20:25:18.517 [INFO][3719] ipam_plugin.go 443: Releasing address using workloadID ContainerID="e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" HandleID="k8s-pod-network.e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" Workload="172.31.20.28-k8s-csi--node--driver--wrwvz-eth0" Feb 12 20:25:18.524957 env[1644]: 2024-02-12 20:25:18.520 [INFO][3719] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 12 20:25:18.524957 env[1644]: 2024-02-12 20:25:18.522 [INFO][3710] k8s.go 591: Teardown processing complete. ContainerID="e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14" Feb 12 20:25:18.530460 env[1644]: time="2024-02-12T20:25:18.526875789Z" level=info msg="TearDown network for sandbox \"e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14\" successfully" Feb 12 20:25:18.531777 env[1644]: time="2024-02-12T20:25:18.531677642Z" level=info msg="RemovePodSandbox \"e87e7382250548cecd3ba2d7ec723e59a7d1def900bacd8463fa093dbb9e5a14\" returns successfully" Feb 12 20:25:18.532580 env[1644]: time="2024-02-12T20:25:18.532514561Z" level=info msg="StopPodSandbox for \"70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3\"" Feb 12 20:25:18.691245 env[1644]: 2024-02-12 20:25:18.622 [WARNING][3738] k8s.go 542: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.20.28-k8s-nginx--deployment--845c78c8b9--6n6s5-eth0", GenerateName:"nginx-deployment-845c78c8b9-", Namespace:"default", SelfLink:"", UID:"ad71e193-6ace-444c-a8fa-af3cc2663662", ResourceVersion:"1155", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 24, 34, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"845c78c8b9", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.20.28", ContainerID:"f60a4019d9e3e87540edd97a6fb99b2f96e839e15cc287c2ef64c1d84a214bc8", Pod:"nginx-deployment-845c78c8b9-6n6s5", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.0.66/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali6e92b8cea18", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:25:18.691245 env[1644]: 2024-02-12 20:25:18.622 [INFO][3738] k8s.go 578: Cleaning up netns ContainerID="70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" Feb 12 20:25:18.691245 env[1644]: 2024-02-12 20:25:18.622 [INFO][3738] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" iface="eth0" netns="" Feb 12 20:25:18.691245 env[1644]: 2024-02-12 20:25:18.622 [INFO][3738] k8s.go 585: Releasing IP address(es) ContainerID="70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" Feb 12 20:25:18.691245 env[1644]: 2024-02-12 20:25:18.622 [INFO][3738] utils.go 188: Calico CNI releasing IP address ContainerID="70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" Feb 12 20:25:18.691245 env[1644]: 2024-02-12 20:25:18.667 [INFO][3744] ipam_plugin.go 415: Releasing address using handleID ContainerID="70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" HandleID="k8s-pod-network.70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" Workload="172.31.20.28-k8s-nginx--deployment--845c78c8b9--6n6s5-eth0" Feb 12 20:25:18.691245 env[1644]: 2024-02-12 20:25:18.667 [INFO][3744] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 12 20:25:18.691245 env[1644]: 2024-02-12 20:25:18.667 [INFO][3744] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 12 20:25:18.691245 env[1644]: 2024-02-12 20:25:18.683 [WARNING][3744] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" HandleID="k8s-pod-network.70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" Workload="172.31.20.28-k8s-nginx--deployment--845c78c8b9--6n6s5-eth0" Feb 12 20:25:18.691245 env[1644]: 2024-02-12 20:25:18.683 [INFO][3744] ipam_plugin.go 443: Releasing address using workloadID ContainerID="70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" HandleID="k8s-pod-network.70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" Workload="172.31.20.28-k8s-nginx--deployment--845c78c8b9--6n6s5-eth0" Feb 12 20:25:18.691245 env[1644]: 2024-02-12 20:25:18.686 [INFO][3744] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 12 20:25:18.691245 env[1644]: 2024-02-12 20:25:18.689 [INFO][3738] k8s.go 591: Teardown processing complete. ContainerID="70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" Feb 12 20:25:18.691245 env[1644]: time="2024-02-12T20:25:18.691166980Z" level=info msg="TearDown network for sandbox \"70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3\" successfully" Feb 12 20:25:18.691245 env[1644]: time="2024-02-12T20:25:18.691214649Z" level=info msg="StopPodSandbox for \"70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3\" returns successfully" Feb 12 20:25:18.692376 env[1644]: time="2024-02-12T20:25:18.692051291Z" level=info msg="RemovePodSandbox for \"70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3\"" Feb 12 20:25:18.692376 env[1644]: time="2024-02-12T20:25:18.692110420Z" level=info msg="Forcibly stopping sandbox \"70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3\"" Feb 12 20:25:18.814411 env[1644]: 2024-02-12 20:25:18.754 [WARNING][3762] k8s.go 542: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.20.28-k8s-nginx--deployment--845c78c8b9--6n6s5-eth0", GenerateName:"nginx-deployment-845c78c8b9-", Namespace:"default", SelfLink:"", UID:"ad71e193-6ace-444c-a8fa-af3cc2663662", ResourceVersion:"1155", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 24, 34, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"845c78c8b9", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.20.28", ContainerID:"f60a4019d9e3e87540edd97a6fb99b2f96e839e15cc287c2ef64c1d84a214bc8", Pod:"nginx-deployment-845c78c8b9-6n6s5", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.0.66/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali6e92b8cea18", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:25:18.814411 env[1644]: 2024-02-12 20:25:18.754 [INFO][3762] k8s.go 578: Cleaning up netns ContainerID="70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" Feb 12 20:25:18.814411 env[1644]: 2024-02-12 20:25:18.754 [INFO][3762] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" iface="eth0" netns="" Feb 12 20:25:18.814411 env[1644]: 2024-02-12 20:25:18.754 [INFO][3762] k8s.go 585: Releasing IP address(es) ContainerID="70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" Feb 12 20:25:18.814411 env[1644]: 2024-02-12 20:25:18.754 [INFO][3762] utils.go 188: Calico CNI releasing IP address ContainerID="70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" Feb 12 20:25:18.814411 env[1644]: 2024-02-12 20:25:18.788 [INFO][3768] ipam_plugin.go 415: Releasing address using handleID ContainerID="70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" HandleID="k8s-pod-network.70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" Workload="172.31.20.28-k8s-nginx--deployment--845c78c8b9--6n6s5-eth0" Feb 12 20:25:18.814411 env[1644]: 2024-02-12 20:25:18.788 [INFO][3768] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 12 20:25:18.814411 env[1644]: 2024-02-12 20:25:18.790 [INFO][3768] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 12 20:25:18.814411 env[1644]: 2024-02-12 20:25:18.807 [WARNING][3768] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" HandleID="k8s-pod-network.70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" Workload="172.31.20.28-k8s-nginx--deployment--845c78c8b9--6n6s5-eth0" Feb 12 20:25:18.814411 env[1644]: 2024-02-12 20:25:18.807 [INFO][3768] ipam_plugin.go 443: Releasing address using workloadID ContainerID="70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" HandleID="k8s-pod-network.70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" Workload="172.31.20.28-k8s-nginx--deployment--845c78c8b9--6n6s5-eth0" Feb 12 20:25:18.814411 env[1644]: 2024-02-12 20:25:18.810 [INFO][3768] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 12 20:25:18.814411 env[1644]: 2024-02-12 20:25:18.812 [INFO][3762] k8s.go 591: Teardown processing complete. ContainerID="70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3" Feb 12 20:25:18.815734 env[1644]: time="2024-02-12T20:25:18.815674884Z" level=info msg="TearDown network for sandbox \"70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3\" successfully" Feb 12 20:25:18.821310 env[1644]: time="2024-02-12T20:25:18.821251048Z" level=info msg="RemovePodSandbox \"70cf30fb6332292da91ed37b685325896549ffc147fa2318d8cd1956223b5ad3\" returns successfully" Feb 12 20:25:19.308114 kubelet[2113]: E0212 20:25:19.308048 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:20.309149 kubelet[2113]: E0212 20:25:20.309028 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:20.482118 systemd[1]: run-containerd-runc-k8s.io-8fb855d90484d384c9af92545b8d81f2dc3f2731a92b7369da2deab68bc8c9c3-runc.kiSEff.mount: Deactivated successfully. Feb 12 20:25:21.309850 kubelet[2113]: E0212 20:25:21.309799 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:22.310536 kubelet[2113]: E0212 20:25:22.310492 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:23.311836 kubelet[2113]: E0212 20:25:23.311788 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:24.312770 kubelet[2113]: E0212 20:25:24.312688 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:25.313777 kubelet[2113]: E0212 20:25:25.313669 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:26.114924 systemd[1]: run-containerd-runc-k8s.io-4b78f16fa356174c1e52bb77382d14ee93ef85c65801c706252a597ca7e4d7d1-runc.INrdsT.mount: Deactivated successfully. Feb 12 20:25:26.221000 audit[3843]: NETFILTER_CFG table=filter:87 family=2 entries=9 op=nft_register_rule pid=3843 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:26.225048 kernel: kauditd_printk_skb: 68 callbacks suppressed Feb 12 20:25:26.225222 kernel: audit: type=1325 audit(1707769526.221:907): table=filter:87 family=2 entries=9 op=nft_register_rule pid=3843 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:26.221000 audit[3843]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=2844 a0=3 a1=ffffe71cf510 a2=0 a3=ffff803496c0 items=0 ppid=2340 pid=3843 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:26.242681 kernel: audit: type=1300 audit(1707769526.221:907): arch=c00000b7 syscall=211 success=yes exit=2844 a0=3 a1=ffffe71cf510 a2=0 a3=ffff803496c0 items=0 ppid=2340 pid=3843 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:26.242873 kernel: audit: type=1327 audit(1707769526.221:907): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:26.221000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:26.223000 audit[3843]: NETFILTER_CFG table=nat:88 family=2 entries=51 op=nft_register_chain pid=3843 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:26.254311 kernel: audit: type=1325 audit(1707769526.223:908): table=nat:88 family=2 entries=51 op=nft_register_chain pid=3843 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:26.254447 kernel: audit: type=1300 audit(1707769526.223:908): arch=c00000b7 syscall=211 success=yes exit=17716 a0=3 a1=ffffe71cf510 a2=0 a3=ffff803496c0 items=0 ppid=2340 pid=3843 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:26.223000 audit[3843]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=17716 a0=3 a1=ffffe71cf510 a2=0 a3=ffff803496c0 items=0 ppid=2340 pid=3843 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:26.223000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:26.271693 kernel: audit: type=1327 audit(1707769526.223:908): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:26.314117 kubelet[2113]: E0212 20:25:26.314052 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:26.370000 audit[3845]: NETFILTER_CFG table=filter:89 family=2 entries=8 op=nft_register_rule pid=3845 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:26.370000 audit[3845]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=2844 a0=3 a1=fffff9b73cb0 a2=0 a3=ffff92a566c0 items=0 ppid=2340 pid=3845 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:26.389445 kernel: audit: type=1325 audit(1707769526.370:909): table=filter:89 family=2 entries=8 op=nft_register_rule pid=3845 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:26.389622 kernel: audit: type=1300 audit(1707769526.370:909): arch=c00000b7 syscall=211 success=yes exit=2844 a0=3 a1=fffff9b73cb0 a2=0 a3=ffff92a566c0 items=0 ppid=2340 pid=3845 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:26.370000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:26.395472 kernel: audit: type=1327 audit(1707769526.370:909): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:26.395572 kernel: audit: type=1325 audit(1707769526.375:910): table=nat:90 family=2 entries=58 op=nft_register_chain pid=3845 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:26.375000 audit[3845]: NETFILTER_CFG table=nat:90 family=2 entries=58 op=nft_register_chain pid=3845 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:26.375000 audit[3845]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=19604 a0=3 a1=fffff9b73cb0 a2=0 a3=ffff92a566c0 items=0 ppid=2340 pid=3845 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:26.375000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:27.315191 kubelet[2113]: E0212 20:25:27.315127 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:28.315885 kubelet[2113]: E0212 20:25:28.315835 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:29.317194 kubelet[2113]: E0212 20:25:29.317056 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:30.318201 kubelet[2113]: E0212 20:25:30.318133 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:31.318344 kubelet[2113]: E0212 20:25:31.318276 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:32.318812 kubelet[2113]: E0212 20:25:32.318713 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:33.319764 kubelet[2113]: E0212 20:25:33.319692 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:34.320340 kubelet[2113]: E0212 20:25:34.320272 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:35.320749 kubelet[2113]: E0212 20:25:35.320683 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:36.321729 kubelet[2113]: E0212 20:25:36.321685 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:37.322888 kubelet[2113]: E0212 20:25:37.322845 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:38.257513 kubelet[2113]: E0212 20:25:38.257436 2113 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:38.324142 kubelet[2113]: E0212 20:25:38.324080 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:39.024286 kubelet[2113]: I0212 20:25:39.024237 2113 topology_manager.go:212] "Topology Admit Handler" Feb 12 20:25:39.034195 systemd[1]: Created slice kubepods-besteffort-pod4aeb1c95_e64c_42d5_86a3_cd6718de1ac7.slice. Feb 12 20:25:39.181557 kubelet[2113]: I0212 20:25:39.181494 2113 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-p786x\" (UniqueName: \"kubernetes.io/projected/4aeb1c95-e64c-42d5-86a3-cd6718de1ac7-kube-api-access-p786x\") pod \"test-pod-1\" (UID: \"4aeb1c95-e64c-42d5-86a3-cd6718de1ac7\") " pod="default/test-pod-1" Feb 12 20:25:39.182014 kubelet[2113]: I0212 20:25:39.181966 2113 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"pvc-f2640884-963d-4835-8564-1a1b0a6e9eb4\" (UniqueName: \"kubernetes.io/nfs/4aeb1c95-e64c-42d5-86a3-cd6718de1ac7-pvc-f2640884-963d-4835-8564-1a1b0a6e9eb4\") pod \"test-pod-1\" (UID: \"4aeb1c95-e64c-42d5-86a3-cd6718de1ac7\") " pod="default/test-pod-1" Feb 12 20:25:39.317187 kernel: Failed to create system directory netfs Feb 12 20:25:39.317341 kernel: kauditd_printk_skb: 2 callbacks suppressed Feb 12 20:25:39.317400 kernel: audit: type=1400 audit(1707769539.310:911): avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.317453 kernel: Failed to create system directory netfs Feb 12 20:25:39.310000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.327161 kernel: audit: type=1400 audit(1707769539.310:911): avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.327256 kernel: Failed to create system directory netfs Feb 12 20:25:39.310000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.327375 kubelet[2113]: E0212 20:25:39.325438 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:39.310000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.337184 kernel: audit: type=1400 audit(1707769539.310:911): avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.337289 kernel: Failed to create system directory netfs Feb 12 20:25:39.310000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.346254 kernel: audit: type=1400 audit(1707769539.310:911): avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.310000 audit[3852]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=aaaacb06e5e0 a1=12c14 a2=aaaab856e028 a3=aaaacb05f010 items=0 ppid=9 pid=3852 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:39.371946 kernel: audit: type=1300 audit(1707769539.310:911): arch=c00000b7 syscall=105 success=yes exit=0 a0=aaaacb06e5e0 a1=12c14 a2=aaaab856e028 a3=aaaacb05f010 items=0 ppid=9 pid=3852 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:39.372091 kernel: audit: type=1327 audit(1707769539.310:911): proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Feb 12 20:25:39.310000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Feb 12 20:25:39.364000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.388792 kernel: Failed to create system directory fscache Feb 12 20:25:39.388883 kernel: audit: type=1400 audit(1707769539.364:912): avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.388954 kernel: Failed to create system directory fscache Feb 12 20:25:39.389004 kernel: audit: type=1400 audit(1707769539.364:912): avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.364000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.398777 kernel: Failed to create system directory fscache Feb 12 20:25:39.398854 kernel: audit: type=1400 audit(1707769539.364:912): avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.364000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.406951 kernel: Failed to create system directory fscache Feb 12 20:25:39.364000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.416996 kernel: audit: type=1400 audit(1707769539.364:912): avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.417060 kernel: Failed to create system directory fscache Feb 12 20:25:39.364000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.364000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.420829 kernel: Failed to create system directory fscache Feb 12 20:25:39.420925 kernel: Failed to create system directory fscache Feb 12 20:25:39.364000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.364000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.424643 kernel: Failed to create system directory fscache Feb 12 20:25:39.424704 kernel: Failed to create system directory fscache Feb 12 20:25:39.364000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.364000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.428477 kernel: Failed to create system directory fscache Feb 12 20:25:39.428538 kernel: Failed to create system directory fscache Feb 12 20:25:39.364000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.364000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.432307 kernel: Failed to create system directory fscache Feb 12 20:25:39.432372 kernel: Failed to create system directory fscache Feb 12 20:25:39.364000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.364000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.436095 kernel: Failed to create system directory fscache Feb 12 20:25:39.437665 kernel: FS-Cache: Loaded Feb 12 20:25:39.364000 audit[3852]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=aaaacb281210 a1=4c344 a2=aaaab856e028 a3=aaaacb05f010 items=0 ppid=9 pid=3852 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:39.364000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.472331 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.472412 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.472462 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.476044 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.476107 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.479727 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.479834 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.483415 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.483477 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.487162 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.487271 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.490956 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.491107 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.494794 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.494997 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.498545 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.498687 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.502374 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.502499 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.506167 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.506278 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.509886 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.510028 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.513721 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.513847 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.517517 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.517635 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.521298 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.521468 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.525208 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.525343 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.528978 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.529091 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.532770 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.532882 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.536580 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.536804 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.540553 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.540669 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.544289 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.544369 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.548014 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.548104 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.551713 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.551791 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.555446 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.555502 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.559453 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.559585 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.563283 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.563387 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.567053 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.567139 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.576374 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.576471 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.580082 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.580167 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.583867 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.583982 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.587648 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.587796 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.591374 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.593532 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.595535 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.595744 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.599524 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.599579 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.603207 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.603310 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.604981 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.606869 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.608595 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.610511 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.614430 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.614549 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.616522 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.618468 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.620388 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.624079 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.624177 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.627818 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.627872 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.629656 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.631548 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.635515 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.635662 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.639575 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.639705 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.643443 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.643592 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.645452 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.649411 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.649529 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.652984 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.653084 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.656914 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.656971 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.660698 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.660812 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.664437 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.664488 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.668171 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.668223 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.671882 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.671933 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.675693 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.675805 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.679491 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.679714 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.683278 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.683383 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.687005 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.687136 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.690664 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.690784 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.694538 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.694588 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.698483 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.698604 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.702207 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.702415 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.704204 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.707882 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.708152 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.711906 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.712929 kernel: Failed to create system directory sunrpc Feb 12 20:25:39.459000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.725652 kernel: RPC: Registered named UNIX socket transport module. Feb 12 20:25:39.725838 kernel: RPC: Registered udp transport module. Feb 12 20:25:39.725990 kernel: RPC: Registered tcp transport module. Feb 12 20:25:39.730161 kernel: RPC: Registered tcp NFSv4.1 backchannel transport module. Feb 12 20:25:39.459000 audit[3852]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=aaaacb2cd560 a1=fbb6c a2=aaaab856e028 a3=aaaacb05f010 items=6 ppid=9 pid=3852 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:39.459000 audit: CWD cwd="/" Feb 12 20:25:39.459000 audit: PATH item=0 name=(null) inode=1 dev=00:07 mode=040700 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:25:39.459000 audit: PATH item=1 name=(null) inode=19443 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:25:39.459000 audit: PATH item=2 name=(null) inode=19443 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:25:39.459000 audit: PATH item=3 name=(null) inode=19444 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:25:39.459000 audit: PATH item=4 name=(null) inode=19443 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:25:39.459000 audit: PATH item=5 name=(null) inode=19445 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:25:39.459000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.766461 kernel: Failed to create system directory nfs Feb 12 20:25:39.766610 kernel: Failed to create system directory nfs Feb 12 20:25:39.766732 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.770048 kernel: Failed to create system directory nfs Feb 12 20:25:39.770175 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.773641 kernel: Failed to create system directory nfs Feb 12 20:25:39.773842 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.777227 kernel: Failed to create system directory nfs Feb 12 20:25:39.777330 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.780739 kernel: Failed to create system directory nfs Feb 12 20:25:39.780845 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.784403 kernel: Failed to create system directory nfs Feb 12 20:25:39.784596 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.787953 kernel: Failed to create system directory nfs Feb 12 20:25:39.788061 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.791517 kernel: Failed to create system directory nfs Feb 12 20:25:39.791640 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.793386 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.795177 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.796877 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.798667 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.802207 kernel: Failed to create system directory nfs Feb 12 20:25:39.802347 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.805721 kernel: Failed to create system directory nfs Feb 12 20:25:39.805812 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.807439 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.809432 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.812914 kernel: Failed to create system directory nfs Feb 12 20:25:39.813036 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.816419 kernel: Failed to create system directory nfs Feb 12 20:25:39.816543 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.818094 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.819871 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.821543 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.823367 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.826876 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.835704 kernel: Failed to create system directory nfs Feb 12 20:25:39.835808 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.839255 kernel: Failed to create system directory nfs Feb 12 20:25:39.839314 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.842822 kernel: Failed to create system directory nfs Feb 12 20:25:39.842881 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.846367 kernel: Failed to create system directory nfs Feb 12 20:25:39.846424 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.850046 kernel: Failed to create system directory nfs Feb 12 20:25:39.850199 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.854045 kernel: Failed to create system directory nfs Feb 12 20:25:39.854213 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.855918 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.857718 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.859527 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.861404 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.864910 kernel: Failed to create system directory nfs Feb 12 20:25:39.865025 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.866677 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.868564 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.872284 kernel: Failed to create system directory nfs Feb 12 20:25:39.872376 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.874225 kernel: Failed to create system directory nfs Feb 12 20:25:39.756000 audit[3852]: AVC avc: denied { confidentiality } for pid=3852 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.756000 audit[3852]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=aaaacb3f9b40 a1=ae35c a2=aaaab856e028 a3=aaaacb05f010 items=0 ppid=9 pid=3852 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:39.896981 kernel: FS-Cache: Netfs 'nfs' registered for caching Feb 12 20:25:39.756000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.943313 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.943419 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.945528 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.945608 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.949392 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.949467 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.953202 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.953282 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.956876 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.956951 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.958797 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.962406 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.962460 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.966031 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.966110 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.969598 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.969657 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.973322 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.973410 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.976978 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.977051 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.980585 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.980642 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.984237 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.984289 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.987903 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.988021 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.989801 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.995411 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.995468 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.995509 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.999048 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.999140 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.002680 kernel: Failed to create system directory nfs4 Feb 12 20:25:40.002774 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.006488 kernel: Failed to create system directory nfs4 Feb 12 20:25:40.006567 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.010227 kernel: Failed to create system directory nfs4 Feb 12 20:25:40.010283 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.013898 kernel: Failed to create system directory nfs4 Feb 12 20:25:40.013948 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.017547 kernel: Failed to create system directory nfs4 Feb 12 20:25:40.017618 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.021234 kernel: Failed to create system directory nfs4 Feb 12 20:25:40.021304 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.024911 kernel: Failed to create system directory nfs4 Feb 12 20:25:40.024989 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.028581 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.030401 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.032287 kernel: Failed to create system directory nfs4 Feb 12 20:25:40.032338 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.035978 kernel: Failed to create system directory nfs4 Feb 12 20:25:40.036046 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.039636 kernel: Failed to create system directory nfs4 Feb 12 20:25:40.039689 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.043294 kernel: Failed to create system directory nfs4 Feb 12 20:25:40.043367 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.046989 kernel: Failed to create system directory nfs4 Feb 12 20:25:40.047062 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.050729 kernel: Failed to create system directory nfs4 Feb 12 20:25:40.050867 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.054714 kernel: Failed to create system directory nfs4 Feb 12 20:25:40.054822 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.058359 kernel: Failed to create system directory nfs4 Feb 12 20:25:40.058455 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.061999 kernel: Failed to create system directory nfs4 Feb 12 20:25:40.062079 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.065537 kernel: Failed to create system directory nfs4 Feb 12 20:25:40.065592 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.069232 kernel: Failed to create system directory nfs4 Feb 12 20:25:40.069330 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.072837 kernel: Failed to create system directory nfs4 Feb 12 20:25:40.072929 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.076476 kernel: Failed to create system directory nfs4 Feb 12 20:25:40.076587 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.080097 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.088862 kernel: Failed to create system directory nfs4 Feb 12 20:25:40.088994 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.090850 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.094435 kernel: Failed to create system directory nfs4 Feb 12 20:25:40.094534 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.098082 kernel: Failed to create system directory nfs4 Feb 12 20:25:40.098221 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.102008 kernel: Failed to create system directory nfs4 Feb 12 20:25:40.102169 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.103896 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.107518 kernel: Failed to create system directory nfs4 Feb 12 20:25:40.107656 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.109321 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.111110 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.112953 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.114774 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.116592 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.118361 kernel: Failed to create system directory nfs4 Feb 12 20:25:39.929000 audit[3858]: AVC avc: denied { confidentiality } for pid=3858 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.325981 kubelet[2113]: E0212 20:25:40.325895 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:40.333826 kernel: NFS: Registering the id_resolver key type Feb 12 20:25:40.333988 kernel: Key type id_resolver registered Feb 12 20:25:40.334036 kernel: Key type id_legacy registered Feb 12 20:25:39.929000 audit[3858]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=ffffa946b010 a1=167c04 a2=aaaacafde028 a3=aaaae6cd7010 items=0 ppid=9 pid=3858 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:39.929000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D006E66737634 Feb 12 20:25:40.345000 audit[3859]: AVC avc: denied { confidentiality } for pid=3859 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.353115 kernel: Failed to create system directory rpcgss Feb 12 20:25:40.353216 kernel: Failed to create system directory rpcgss Feb 12 20:25:40.353289 kernel: Failed to create system directory rpcgss Feb 12 20:25:40.345000 audit[3859]: AVC avc: denied { confidentiality } for pid=3859 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.345000 audit[3859]: AVC avc: denied { confidentiality } for pid=3859 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.345000 audit[3859]: AVC avc: denied { confidentiality } for pid=3859 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.356998 kernel: Failed to create system directory rpcgss Feb 12 20:25:40.357179 kernel: Failed to create system directory rpcgss Feb 12 20:25:40.345000 audit[3859]: AVC avc: denied { confidentiality } for pid=3859 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.345000 audit[3859]: AVC avc: denied { confidentiality } for pid=3859 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.360864 kernel: Failed to create system directory rpcgss Feb 12 20:25:40.361047 kernel: Failed to create system directory rpcgss Feb 12 20:25:40.345000 audit[3859]: AVC avc: denied { confidentiality } for pid=3859 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.345000 audit[3859]: AVC avc: denied { confidentiality } for pid=3859 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.364800 kernel: Failed to create system directory rpcgss Feb 12 20:25:40.364894 kernel: Failed to create system directory rpcgss Feb 12 20:25:40.345000 audit[3859]: AVC avc: denied { confidentiality } for pid=3859 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.345000 audit[3859]: AVC avc: denied { confidentiality } for pid=3859 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.368642 kernel: Failed to create system directory rpcgss Feb 12 20:25:40.368775 kernel: Failed to create system directory rpcgss Feb 12 20:25:40.345000 audit[3859]: AVC avc: denied { confidentiality } for pid=3859 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.370647 kernel: Failed to create system directory rpcgss Feb 12 20:25:40.345000 audit[3859]: AVC avc: denied { confidentiality } for pid=3859 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.345000 audit[3859]: AVC avc: denied { confidentiality } for pid=3859 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.374365 kernel: Failed to create system directory rpcgss Feb 12 20:25:40.374420 kernel: Failed to create system directory rpcgss Feb 12 20:25:40.345000 audit[3859]: AVC avc: denied { confidentiality } for pid=3859 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.345000 audit[3859]: AVC avc: denied { confidentiality } for pid=3859 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.378070 kernel: Failed to create system directory rpcgss Feb 12 20:25:40.378161 kernel: Failed to create system directory rpcgss Feb 12 20:25:40.345000 audit[3859]: AVC avc: denied { confidentiality } for pid=3859 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.345000 audit[3859]: AVC avc: denied { confidentiality } for pid=3859 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.381781 kernel: Failed to create system directory rpcgss Feb 12 20:25:40.381840 kernel: Failed to create system directory rpcgss Feb 12 20:25:40.345000 audit[3859]: AVC avc: denied { confidentiality } for pid=3859 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.345000 audit[3859]: AVC avc: denied { confidentiality } for pid=3859 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.385594 kernel: Failed to create system directory rpcgss Feb 12 20:25:40.385738 kernel: Failed to create system directory rpcgss Feb 12 20:25:40.345000 audit[3859]: AVC avc: denied { confidentiality } for pid=3859 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.345000 audit[3859]: AVC avc: denied { confidentiality } for pid=3859 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.389367 kernel: Failed to create system directory rpcgss Feb 12 20:25:40.389455 kernel: Failed to create system directory rpcgss Feb 12 20:25:40.345000 audit[3859]: AVC avc: denied { confidentiality } for pid=3859 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.345000 audit[3859]: AVC avc: denied { confidentiality } for pid=3859 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.393053 kernel: Failed to create system directory rpcgss Feb 12 20:25:40.393110 kernel: Failed to create system directory rpcgss Feb 12 20:25:40.345000 audit[3859]: AVC avc: denied { confidentiality } for pid=3859 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.345000 audit[3859]: AVC avc: denied { confidentiality } for pid=3859 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.396860 kernel: Failed to create system directory rpcgss Feb 12 20:25:40.396916 kernel: Failed to create system directory rpcgss Feb 12 20:25:40.345000 audit[3859]: AVC avc: denied { confidentiality } for pid=3859 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:40.345000 audit[3859]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=ffffb0f23010 a1=3e09c a2=aaaab454e028 a3=aaaad3662010 items=0 ppid=9 pid=3859 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:40.345000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D007270632D617574682D36 Feb 12 20:25:40.426847 nfsidmap[3867]: nss_getpwnam: name 'root@nfs-server-provisioner.default.svc.cluster.local' does not map into domain 'us-west-2.compute.internal' Feb 12 20:25:40.432268 nfsidmap[3868]: nss_name_to_gid: name 'root@nfs-server-provisioner.default.svc.cluster.local' does not map into domain 'us-west-2.compute.internal' Feb 12 20:25:40.448000 audit[1]: AVC avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2741 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 12 20:25:40.448000 audit[1]: AVC avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2741 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 12 20:25:40.448000 audit[1]: AVC avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2741 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 12 20:25:40.448000 audit[1838]: AVC avc: denied { watch_reads } for pid=1838 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2741 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 12 20:25:40.448000 audit[1838]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=e a1=aaab08b3e740 a2=10 a3=0 items=0 ppid=1 pid=1838 auid=4294967295 uid=500 gid=500 euid=500 suid=500 fsuid=500 egid=500 sgid=500 fsgid=500 tty=(none) ses=4294967295 comm="systemd" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:40.448000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D64002D2D75736572 Feb 12 20:25:40.448000 audit[1838]: AVC avc: denied { watch_reads } for pid=1838 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2741 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 12 20:25:40.448000 audit[1838]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=e a1=aaab08b3e740 a2=10 a3=0 items=0 ppid=1 pid=1838 auid=4294967295 uid=500 gid=500 euid=500 suid=500 fsuid=500 egid=500 sgid=500 fsgid=500 tty=(none) ses=4294967295 comm="systemd" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:40.448000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D64002D2D75736572 Feb 12 20:25:40.448000 audit[1838]: AVC avc: denied { watch_reads } for pid=1838 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2741 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 12 20:25:40.448000 audit[1838]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=e a1=aaab08b3e740 a2=10 a3=0 items=0 ppid=1 pid=1838 auid=4294967295 uid=500 gid=500 euid=500 suid=500 fsuid=500 egid=500 sgid=500 fsgid=500 tty=(none) ses=4294967295 comm="systemd" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:40.448000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D64002D2D75736572 Feb 12 20:25:40.542873 env[1644]: time="2024-02-12T20:25:40.542744869Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:test-pod-1,Uid:4aeb1c95-e64c-42d5-86a3-cd6718de1ac7,Namespace:default,Attempt:0,}" Feb 12 20:25:40.750359 (udev-worker)[3864]: Network interface NamePolicy= disabled on kernel command line. Feb 12 20:25:40.754143 systemd-networkd[1456]: cali5ec59c6bf6e: Link UP Feb 12 20:25:40.759436 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 12 20:25:40.759570 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali5ec59c6bf6e: link becomes ready Feb 12 20:25:40.760515 systemd-networkd[1456]: cali5ec59c6bf6e: Gained carrier Feb 12 20:25:40.779453 env[1644]: 2024-02-12 20:25:40.622 [INFO][3870] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.20.28-k8s-test--pod--1-eth0 default 4aeb1c95-e64c-42d5-86a3-cd6718de1ac7 1317 0 2024-02-12 20:25:06 +0000 UTC map[projectcalico.org/namespace:default projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 172.31.20.28 test-pod-1 eth0 default [] [] [kns.default ksa.default.default] cali5ec59c6bf6e [] []}} ContainerID="a515d53a0eb461bbea22b8a5066289ea6afe6735cc197eb7c5beec55dacfcb4d" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.20.28-k8s-test--pod--1-" Feb 12 20:25:40.779453 env[1644]: 2024-02-12 20:25:40.623 [INFO][3870] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="a515d53a0eb461bbea22b8a5066289ea6afe6735cc197eb7c5beec55dacfcb4d" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.20.28-k8s-test--pod--1-eth0" Feb 12 20:25:40.779453 env[1644]: 2024-02-12 20:25:40.674 [INFO][3881] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="a515d53a0eb461bbea22b8a5066289ea6afe6735cc197eb7c5beec55dacfcb4d" HandleID="k8s-pod-network.a515d53a0eb461bbea22b8a5066289ea6afe6735cc197eb7c5beec55dacfcb4d" Workload="172.31.20.28-k8s-test--pod--1-eth0" Feb 12 20:25:40.779453 env[1644]: 2024-02-12 20:25:40.694 [INFO][3881] ipam_plugin.go 268: Auto assigning IP ContainerID="a515d53a0eb461bbea22b8a5066289ea6afe6735cc197eb7c5beec55dacfcb4d" HandleID="k8s-pod-network.a515d53a0eb461bbea22b8a5066289ea6afe6735cc197eb7c5beec55dacfcb4d" Workload="172.31.20.28-k8s-test--pod--1-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x4000511f20), Attrs:map[string]string{"namespace":"default", "node":"172.31.20.28", "pod":"test-pod-1", "timestamp":"2024-02-12 20:25:40.674710138 +0000 UTC"}, Hostname:"172.31.20.28", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 12 20:25:40.779453 env[1644]: 2024-02-12 20:25:40.695 [INFO][3881] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 12 20:25:40.779453 env[1644]: 2024-02-12 20:25:40.695 [INFO][3881] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 12 20:25:40.779453 env[1644]: 2024-02-12 20:25:40.695 [INFO][3881] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.20.28' Feb 12 20:25:40.779453 env[1644]: 2024-02-12 20:25:40.698 [INFO][3881] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.a515d53a0eb461bbea22b8a5066289ea6afe6735cc197eb7c5beec55dacfcb4d" host="172.31.20.28" Feb 12 20:25:40.779453 env[1644]: 2024-02-12 20:25:40.705 [INFO][3881] ipam.go 372: Looking up existing affinities for host host="172.31.20.28" Feb 12 20:25:40.779453 env[1644]: 2024-02-12 20:25:40.713 [INFO][3881] ipam.go 489: Trying affinity for 192.168.0.64/26 host="172.31.20.28" Feb 12 20:25:40.779453 env[1644]: 2024-02-12 20:25:40.717 [INFO][3881] ipam.go 155: Attempting to load block cidr=192.168.0.64/26 host="172.31.20.28" Feb 12 20:25:40.779453 env[1644]: 2024-02-12 20:25:40.722 [INFO][3881] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.0.64/26 host="172.31.20.28" Feb 12 20:25:40.779453 env[1644]: 2024-02-12 20:25:40.722 [INFO][3881] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.0.64/26 handle="k8s-pod-network.a515d53a0eb461bbea22b8a5066289ea6afe6735cc197eb7c5beec55dacfcb4d" host="172.31.20.28" Feb 12 20:25:40.779453 env[1644]: 2024-02-12 20:25:40.724 [INFO][3881] ipam.go 1682: Creating new handle: k8s-pod-network.a515d53a0eb461bbea22b8a5066289ea6afe6735cc197eb7c5beec55dacfcb4d Feb 12 20:25:40.779453 env[1644]: 2024-02-12 20:25:40.730 [INFO][3881] ipam.go 1203: Writing block in order to claim IPs block=192.168.0.64/26 handle="k8s-pod-network.a515d53a0eb461bbea22b8a5066289ea6afe6735cc197eb7c5beec55dacfcb4d" host="172.31.20.28" Feb 12 20:25:40.779453 env[1644]: 2024-02-12 20:25:40.743 [INFO][3881] ipam.go 1216: Successfully claimed IPs: [192.168.0.69/26] block=192.168.0.64/26 handle="k8s-pod-network.a515d53a0eb461bbea22b8a5066289ea6afe6735cc197eb7c5beec55dacfcb4d" host="172.31.20.28" Feb 12 20:25:40.779453 env[1644]: 2024-02-12 20:25:40.743 [INFO][3881] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.0.69/26] handle="k8s-pod-network.a515d53a0eb461bbea22b8a5066289ea6afe6735cc197eb7c5beec55dacfcb4d" host="172.31.20.28" Feb 12 20:25:40.779453 env[1644]: 2024-02-12 20:25:40.743 [INFO][3881] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 12 20:25:40.779453 env[1644]: 2024-02-12 20:25:40.743 [INFO][3881] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.0.69/26] IPv6=[] ContainerID="a515d53a0eb461bbea22b8a5066289ea6afe6735cc197eb7c5beec55dacfcb4d" HandleID="k8s-pod-network.a515d53a0eb461bbea22b8a5066289ea6afe6735cc197eb7c5beec55dacfcb4d" Workload="172.31.20.28-k8s-test--pod--1-eth0" Feb 12 20:25:40.779453 env[1644]: 2024-02-12 20:25:40.746 [INFO][3870] k8s.go 385: Populated endpoint ContainerID="a515d53a0eb461bbea22b8a5066289ea6afe6735cc197eb7c5beec55dacfcb4d" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.20.28-k8s-test--pod--1-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.20.28-k8s-test--pod--1-eth0", GenerateName:"", Namespace:"default", SelfLink:"", UID:"4aeb1c95-e64c-42d5-86a3-cd6718de1ac7", ResourceVersion:"1317", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 25, 6, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.20.28", ContainerID:"", Pod:"test-pod-1", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.0.69/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali5ec59c6bf6e", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:25:40.779453 env[1644]: 2024-02-12 20:25:40.747 [INFO][3870] k8s.go 386: Calico CNI using IPs: [192.168.0.69/32] ContainerID="a515d53a0eb461bbea22b8a5066289ea6afe6735cc197eb7c5beec55dacfcb4d" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.20.28-k8s-test--pod--1-eth0" Feb 12 20:25:40.780944 env[1644]: 2024-02-12 20:25:40.747 [INFO][3870] dataplane_linux.go 68: Setting the host side veth name to cali5ec59c6bf6e ContainerID="a515d53a0eb461bbea22b8a5066289ea6afe6735cc197eb7c5beec55dacfcb4d" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.20.28-k8s-test--pod--1-eth0" Feb 12 20:25:40.780944 env[1644]: 2024-02-12 20:25:40.759 [INFO][3870] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="a515d53a0eb461bbea22b8a5066289ea6afe6735cc197eb7c5beec55dacfcb4d" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.20.28-k8s-test--pod--1-eth0" Feb 12 20:25:40.780944 env[1644]: 2024-02-12 20:25:40.760 [INFO][3870] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="a515d53a0eb461bbea22b8a5066289ea6afe6735cc197eb7c5beec55dacfcb4d" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.20.28-k8s-test--pod--1-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.20.28-k8s-test--pod--1-eth0", GenerateName:"", Namespace:"default", SelfLink:"", UID:"4aeb1c95-e64c-42d5-86a3-cd6718de1ac7", ResourceVersion:"1317", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 25, 6, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.20.28", ContainerID:"a515d53a0eb461bbea22b8a5066289ea6afe6735cc197eb7c5beec55dacfcb4d", Pod:"test-pod-1", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.0.69/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali5ec59c6bf6e", MAC:"7a:5e:0c:1a:a9:9c", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:25:40.780944 env[1644]: 2024-02-12 20:25:40.768 [INFO][3870] k8s.go 491: Wrote updated endpoint to datastore ContainerID="a515d53a0eb461bbea22b8a5066289ea6afe6735cc197eb7c5beec55dacfcb4d" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.20.28-k8s-test--pod--1-eth0" Feb 12 20:25:40.804291 env[1644]: time="2024-02-12T20:25:40.804174005Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 12 20:25:40.804541 env[1644]: time="2024-02-12T20:25:40.804490704Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 12 20:25:40.804739 env[1644]: time="2024-02-12T20:25:40.804690795Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 12 20:25:40.803000 audit[3907]: NETFILTER_CFG table=filter:91 family=2 entries=38 op=nft_register_chain pid=3907 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 12 20:25:40.803000 audit[3907]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=19064 a0=3 a1=ffffd39484e0 a2=0 a3=ffffbd861fa8 items=0 ppid=2740 pid=3907 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:40.803000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 12 20:25:40.806493 env[1644]: time="2024-02-12T20:25:40.806386179Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/a515d53a0eb461bbea22b8a5066289ea6afe6735cc197eb7c5beec55dacfcb4d pid=3910 runtime=io.containerd.runc.v2 Feb 12 20:25:40.852727 systemd[1]: Started cri-containerd-a515d53a0eb461bbea22b8a5066289ea6afe6735cc197eb7c5beec55dacfcb4d.scope. Feb 12 20:25:40.881000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.881000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.881000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.881000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.881000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.881000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.881000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.881000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.881000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.881000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.882000 audit: BPF prog-id=130 op=LOAD Feb 12 20:25:40.883000 audit[3922]: AVC avc: denied { bpf } for pid=3922 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.883000 audit[3922]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000145b38 a2=10 a3=0 items=0 ppid=3910 pid=3922 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:40.883000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6135313564353361306562343631626265613232623861353036363238 Feb 12 20:25:40.883000 audit[3922]: AVC avc: denied { perfmon } for pid=3922 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.883000 audit[3922]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=3910 pid=3922 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:40.883000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6135313564353361306562343631626265613232623861353036363238 Feb 12 20:25:40.883000 audit[3922]: AVC avc: denied { bpf } for pid=3922 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.883000 audit[3922]: AVC avc: denied { bpf } for pid=3922 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.883000 audit[3922]: AVC avc: denied { bpf } for pid=3922 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.883000 audit[3922]: AVC avc: denied { perfmon } for pid=3922 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.883000 audit[3922]: AVC avc: denied { perfmon } for pid=3922 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.883000 audit[3922]: AVC avc: denied { perfmon } for pid=3922 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.883000 audit[3922]: AVC avc: denied { perfmon } for pid=3922 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.883000 audit[3922]: AVC avc: denied { perfmon } for pid=3922 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.883000 audit[3922]: AVC avc: denied { bpf } for pid=3922 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.883000 audit[3922]: AVC avc: denied { bpf } for pid=3922 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.883000 audit: BPF prog-id=131 op=LOAD Feb 12 20:25:40.883000 audit[3922]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=3910 pid=3922 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:40.883000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6135313564353361306562343631626265613232623861353036363238 Feb 12 20:25:40.883000 audit[3922]: AVC avc: denied { bpf } for pid=3922 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.883000 audit[3922]: AVC avc: denied { bpf } for pid=3922 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.883000 audit[3922]: AVC avc: denied { perfmon } for pid=3922 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.883000 audit[3922]: AVC avc: denied { perfmon } for pid=3922 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.883000 audit[3922]: AVC avc: denied { perfmon } for pid=3922 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.883000 audit[3922]: AVC avc: denied { perfmon } for pid=3922 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.883000 audit[3922]: AVC avc: denied { perfmon } for pid=3922 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.883000 audit[3922]: AVC avc: denied { bpf } for pid=3922 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.883000 audit[3922]: AVC avc: denied { bpf } for pid=3922 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.883000 audit: BPF prog-id=132 op=LOAD Feb 12 20:25:40.883000 audit[3922]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=3910 pid=3922 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:40.883000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6135313564353361306562343631626265613232623861353036363238 Feb 12 20:25:40.884000 audit: BPF prog-id=132 op=UNLOAD Feb 12 20:25:40.884000 audit: BPF prog-id=131 op=UNLOAD Feb 12 20:25:40.884000 audit[3922]: AVC avc: denied { bpf } for pid=3922 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.884000 audit[3922]: AVC avc: denied { bpf } for pid=3922 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.884000 audit[3922]: AVC avc: denied { bpf } for pid=3922 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.884000 audit[3922]: AVC avc: denied { perfmon } for pid=3922 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.884000 audit[3922]: AVC avc: denied { perfmon } for pid=3922 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.884000 audit[3922]: AVC avc: denied { perfmon } for pid=3922 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.884000 audit[3922]: AVC avc: denied { perfmon } for pid=3922 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.884000 audit[3922]: AVC avc: denied { perfmon } for pid=3922 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.884000 audit[3922]: AVC avc: denied { bpf } for pid=3922 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.884000 audit[3922]: AVC avc: denied { bpf } for pid=3922 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:40.884000 audit: BPF prog-id=133 op=LOAD Feb 12 20:25:40.884000 audit[3922]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=3910 pid=3922 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:40.884000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6135313564353361306562343631626265613232623861353036363238 Feb 12 20:25:40.925351 env[1644]: time="2024-02-12T20:25:40.925269333Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:test-pod-1,Uid:4aeb1c95-e64c-42d5-86a3-cd6718de1ac7,Namespace:default,Attempt:0,} returns sandbox id \"a515d53a0eb461bbea22b8a5066289ea6afe6735cc197eb7c5beec55dacfcb4d\"" Feb 12 20:25:40.928498 env[1644]: time="2024-02-12T20:25:40.928434083Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\"" Feb 12 20:25:41.326593 kubelet[2113]: E0212 20:25:41.326525 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:41.365083 env[1644]: time="2024-02-12T20:25:41.365029007Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:25:41.367847 env[1644]: time="2024-02-12T20:25:41.367748781Z" level=info msg="ImageUpdate event &ImageUpdate{Name:sha256:01bfff6bfbc6f0e8a890bad9e22c5392e6dbfd67def93467db6231d4be1b719b,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:25:41.371086 env[1644]: time="2024-02-12T20:25:41.371031554Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:25:41.373963 env[1644]: time="2024-02-12T20:25:41.373912988Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx@sha256:e34a272f01984c973b1e034e197c02f77dda18981038e3a54e957554ada4fec6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:25:41.375420 env[1644]: time="2024-02-12T20:25:41.375350519Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\" returns image reference \"sha256:01bfff6bfbc6f0e8a890bad9e22c5392e6dbfd67def93467db6231d4be1b719b\"" Feb 12 20:25:41.380146 env[1644]: time="2024-02-12T20:25:41.380068678Z" level=info msg="CreateContainer within sandbox \"a515d53a0eb461bbea22b8a5066289ea6afe6735cc197eb7c5beec55dacfcb4d\" for container &ContainerMetadata{Name:test,Attempt:0,}" Feb 12 20:25:41.402859 env[1644]: time="2024-02-12T20:25:41.402783939Z" level=info msg="CreateContainer within sandbox \"a515d53a0eb461bbea22b8a5066289ea6afe6735cc197eb7c5beec55dacfcb4d\" for &ContainerMetadata{Name:test,Attempt:0,} returns container id \"b51a13e805b352b0902c0d6f81df57190c9e8263cd6ee073af7fe7291befea04\"" Feb 12 20:25:41.404385 env[1644]: time="2024-02-12T20:25:41.404307265Z" level=info msg="StartContainer for \"b51a13e805b352b0902c0d6f81df57190c9e8263cd6ee073af7fe7291befea04\"" Feb 12 20:25:41.435913 systemd[1]: Started cri-containerd-b51a13e805b352b0902c0d6f81df57190c9e8263cd6ee073af7fe7291befea04.scope. Feb 12 20:25:41.474000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.474000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.474000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.474000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.474000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.474000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.474000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.474000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.474000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.474000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.474000 audit: BPF prog-id=134 op=LOAD Feb 12 20:25:41.476000 audit[3954]: AVC avc: denied { bpf } for pid=3954 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.476000 audit[3954]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000195b38 a2=10 a3=0 items=0 ppid=3910 pid=3954 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:41.476000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6235316131336538303562333532623039303263306436663831646635 Feb 12 20:25:41.476000 audit[3954]: AVC avc: denied { perfmon } for pid=3954 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.476000 audit[3954]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=3910 pid=3954 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:41.476000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6235316131336538303562333532623039303263306436663831646635 Feb 12 20:25:41.477000 audit[3954]: AVC avc: denied { bpf } for pid=3954 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.477000 audit[3954]: AVC avc: denied { bpf } for pid=3954 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.477000 audit[3954]: AVC avc: denied { bpf } for pid=3954 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.477000 audit[3954]: AVC avc: denied { perfmon } for pid=3954 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.477000 audit[3954]: AVC avc: denied { perfmon } for pid=3954 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.477000 audit[3954]: AVC avc: denied { perfmon } for pid=3954 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.477000 audit[3954]: AVC avc: denied { perfmon } for pid=3954 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.477000 audit[3954]: AVC avc: denied { perfmon } for pid=3954 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.477000 audit[3954]: AVC avc: denied { bpf } for pid=3954 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.477000 audit[3954]: AVC avc: denied { bpf } for pid=3954 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.477000 audit: BPF prog-id=135 op=LOAD Feb 12 20:25:41.477000 audit[3954]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=3910 pid=3954 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:41.477000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6235316131336538303562333532623039303263306436663831646635 Feb 12 20:25:41.478000 audit[3954]: AVC avc: denied { bpf } for pid=3954 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.478000 audit[3954]: AVC avc: denied { bpf } for pid=3954 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.478000 audit[3954]: AVC avc: denied { perfmon } for pid=3954 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.478000 audit[3954]: AVC avc: denied { perfmon } for pid=3954 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.478000 audit[3954]: AVC avc: denied { perfmon } for pid=3954 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.478000 audit[3954]: AVC avc: denied { perfmon } for pid=3954 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.478000 audit[3954]: AVC avc: denied { perfmon } for pid=3954 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.478000 audit[3954]: AVC avc: denied { bpf } for pid=3954 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.478000 audit[3954]: AVC avc: denied { bpf } for pid=3954 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.478000 audit: BPF prog-id=136 op=LOAD Feb 12 20:25:41.478000 audit[3954]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=3910 pid=3954 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:41.478000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6235316131336538303562333532623039303263306436663831646635 Feb 12 20:25:41.479000 audit: BPF prog-id=136 op=UNLOAD Feb 12 20:25:41.480000 audit: BPF prog-id=135 op=UNLOAD Feb 12 20:25:41.480000 audit[3954]: AVC avc: denied { bpf } for pid=3954 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.480000 audit[3954]: AVC avc: denied { bpf } for pid=3954 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.480000 audit[3954]: AVC avc: denied { bpf } for pid=3954 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.480000 audit[3954]: AVC avc: denied { perfmon } for pid=3954 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.480000 audit[3954]: AVC avc: denied { perfmon } for pid=3954 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.480000 audit[3954]: AVC avc: denied { perfmon } for pid=3954 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.480000 audit[3954]: AVC avc: denied { perfmon } for pid=3954 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.480000 audit[3954]: AVC avc: denied { perfmon } for pid=3954 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.480000 audit[3954]: AVC avc: denied { bpf } for pid=3954 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.480000 audit[3954]: AVC avc: denied { bpf } for pid=3954 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:41.480000 audit: BPF prog-id=137 op=LOAD Feb 12 20:25:41.480000 audit[3954]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=3910 pid=3954 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:41.480000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6235316131336538303562333532623039303263306436663831646635 Feb 12 20:25:41.514558 env[1644]: time="2024-02-12T20:25:41.514497983Z" level=info msg="StartContainer for \"b51a13e805b352b0902c0d6f81df57190c9e8263cd6ee073af7fe7291befea04\" returns successfully" Feb 12 20:25:41.741181 kubelet[2113]: I0212 20:25:41.737474 2113 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="default/test-pod-1" podStartSLOduration=35.289074092999996 podCreationTimestamp="2024-02-12 20:25:06 +0000 UTC" firstStartedPulling="2024-02-12 20:25:40.927398623 +0000 UTC m=+84.126160507" lastFinishedPulling="2024-02-12 20:25:41.375743929 +0000 UTC m=+84.574505814" observedRunningTime="2024-02-12 20:25:41.736833812 +0000 UTC m=+84.935595733" watchObservedRunningTime="2024-02-12 20:25:41.7374194 +0000 UTC m=+84.936181285" Feb 12 20:25:42.145181 systemd-networkd[1456]: cali5ec59c6bf6e: Gained IPv6LL Feb 12 20:25:42.327607 kubelet[2113]: E0212 20:25:42.327556 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:43.329038 kubelet[2113]: E0212 20:25:43.328997 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:44.330489 kubelet[2113]: E0212 20:25:44.330431 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:45.331515 kubelet[2113]: E0212 20:25:45.331436 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:46.331921 kubelet[2113]: E0212 20:25:46.331857 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:47.332263 kubelet[2113]: E0212 20:25:47.332192 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:48.333002 kubelet[2113]: E0212 20:25:48.332955 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:49.334220 kubelet[2113]: E0212 20:25:49.334148 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:50.335287 kubelet[2113]: E0212 20:25:50.335220 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:50.486035 systemd[1]: run-containerd-runc-k8s.io-8fb855d90484d384c9af92545b8d81f2dc3f2731a92b7369da2deab68bc8c9c3-runc.CxQFVG.mount: Deactivated successfully. Feb 12 20:25:51.335849 kubelet[2113]: E0212 20:25:51.335695 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:52.336573 kubelet[2113]: E0212 20:25:52.336503 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:53.337093 kubelet[2113]: E0212 20:25:53.337048 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:54.338350 kubelet[2113]: E0212 20:25:54.338280 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:55.339512 kubelet[2113]: E0212 20:25:55.339453 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:56.111653 systemd[1]: run-containerd-runc-k8s.io-4b78f16fa356174c1e52bb77382d14ee93ef85c65801c706252a597ca7e4d7d1-runc.GuWWLJ.mount: Deactivated successfully. Feb 12 20:25:56.340101 kubelet[2113]: E0212 20:25:56.340032 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:57.340784 kubelet[2113]: E0212 20:25:57.340712 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:58.257309 kubelet[2113]: E0212 20:25:58.257244 2113 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:58.342289 kubelet[2113]: E0212 20:25:58.342220 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:59.343363 kubelet[2113]: E0212 20:25:59.343285 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:00.344696 kubelet[2113]: E0212 20:26:00.344644 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:01.031142 kubelet[2113]: E0212 20:26:01.031104 2113 controller.go:193] "Failed to update lease" err="the server was unable to return a response in the time allotted, but may still be processing the request (put leases.coordination.k8s.io 172.31.20.28)" Feb 12 20:26:01.345864 kubelet[2113]: E0212 20:26:01.345793 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:02.346303 kubelet[2113]: E0212 20:26:02.346233 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:03.148000 audit[3503]: AVC avc: denied { watch } for pid=3503 comm="apiserver" path="/calico-apiserver-certs/..2024_02_12_20_24_56.2145200416/tls.crt" dev="tmpfs" ino=4 scontext=system_u:system_r:svirt_lxc_net_t:s0:c167,c649 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c167,c649 tclass=file permissive=0 Feb 12 20:26:03.151526 kernel: kauditd_printk_skb: 461 callbacks suppressed Feb 12 20:26:03.151698 kernel: audit: type=1400 audit(1707769563.148:960): avc: denied { watch } for pid=3503 comm="apiserver" path="/calico-apiserver-certs/..2024_02_12_20_24_56.2145200416/tls.crt" dev="tmpfs" ino=4 scontext=system_u:system_r:svirt_lxc_net_t:s0:c167,c649 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c167,c649 tclass=file permissive=0 Feb 12 20:26:03.148000 audit[3503]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=8 a1=4001832280 a2=fc6 a3=0 items=0 ppid=3387 pid=3503 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="apiserver" exe="/code/apiserver" subj=system_u:system_r:svirt_lxc_net_t:s0:c167,c649 key=(null) Feb 12 20:26:03.173780 kernel: audit: type=1300 audit(1707769563.148:960): arch=c00000b7 syscall=27 success=no exit=-13 a0=8 a1=4001832280 a2=fc6 a3=0 items=0 ppid=3387 pid=3503 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="apiserver" exe="/code/apiserver" subj=system_u:system_r:svirt_lxc_net_t:s0:c167,c649 key=(null) Feb 12 20:26:03.173924 kernel: audit: type=1327 audit(1707769563.148:960): proctitle=2E2F617069736572766572002D2D7365637572652D706F72743D35343433002D2D746C732D707269766174652D6B65792D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C732E6B6579002D2D746C732D636572742D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C Feb 12 20:26:03.148000 audit: PROCTITLE proctitle=2E2F617069736572766572002D2D7365637572652D706F72743D35343433002D2D746C732D707269766174652D6B65792D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C732E6B6579002D2D746C732D636572742D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C Feb 12 20:26:03.346590 kubelet[2113]: E0212 20:26:03.346543 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:04.348275 kubelet[2113]: E0212 20:26:04.348201 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:05.348889 kubelet[2113]: E0212 20:26:05.348812 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:06.349993 kubelet[2113]: E0212 20:26:06.349950 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:07.350913 kubelet[2113]: E0212 20:26:07.350854 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:08.351536 kubelet[2113]: E0212 20:26:08.351466 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:09.352447 kubelet[2113]: E0212 20:26:09.352387 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:10.353021 kubelet[2113]: E0212 20:26:10.352943 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:11.031103 kubelet[2113]: E0212 20:26:11.031043 2113 controller.go:193] "Failed to update lease" err="the server was unable to return a response in the time allotted, but may still be processing the request (put leases.coordination.k8s.io 172.31.20.28)" Feb 12 20:26:11.353991 kubelet[2113]: E0212 20:26:11.353953 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:12.354817 kubelet[2113]: E0212 20:26:12.354738 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:13.355205 kubelet[2113]: E0212 20:26:13.355157 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:14.356873 kubelet[2113]: E0212 20:26:14.356804 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:15.357414 kubelet[2113]: E0212 20:26:15.357344 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:16.357950 kubelet[2113]: E0212 20:26:16.357901 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:17.359666 kubelet[2113]: E0212 20:26:17.359560 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:18.257431 kubelet[2113]: E0212 20:26:18.257384 2113 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:18.360589 kubelet[2113]: E0212 20:26:18.360485 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:19.360992 kubelet[2113]: E0212 20:26:19.360945 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:20.362150 kubelet[2113]: E0212 20:26:20.362078 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:20.482901 systemd[1]: run-containerd-runc-k8s.io-8fb855d90484d384c9af92545b8d81f2dc3f2731a92b7369da2deab68bc8c9c3-runc.2Q23Vw.mount: Deactivated successfully. Feb 12 20:26:21.032295 kubelet[2113]: E0212 20:26:21.032170 2113 controller.go:193] "Failed to update lease" err="Put \"https://172.31.19.54:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.20.28?timeout=10s\": net/http: request canceled (Client.Timeout exceeded while awaiting headers)" Feb 12 20:26:21.362441 kubelet[2113]: E0212 20:26:21.362372 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:22.362604 kubelet[2113]: E0212 20:26:22.362519 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:23.364219 kubelet[2113]: E0212 20:26:23.364152 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:24.365257 kubelet[2113]: E0212 20:26:24.365177 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:25.365877 kubelet[2113]: E0212 20:26:25.365808 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:26.111590 systemd[1]: run-containerd-runc-k8s.io-4b78f16fa356174c1e52bb77382d14ee93ef85c65801c706252a597ca7e4d7d1-runc.Eseq7w.mount: Deactivated successfully. Feb 12 20:26:26.367025 kubelet[2113]: E0212 20:26:26.366560 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:27.367856 kubelet[2113]: E0212 20:26:27.367793 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:28.368621 kubelet[2113]: E0212 20:26:28.368555 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:29.369464 kubelet[2113]: E0212 20:26:29.369389 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:30.119820 kubelet[2113]: E0212 20:26:30.117879 2113 controller.go:193] "Failed to update lease" err="Put \"https://172.31.19.54:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.20.28?timeout=10s\": unexpected EOF" Feb 12 20:26:30.120933 kubelet[2113]: E0212 20:26:30.120855 2113 controller.go:193] "Failed to update lease" err="Put \"https://172.31.19.54:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.20.28?timeout=10s\": dial tcp 172.31.19.54:6443: connect: connection refused" Feb 12 20:26:30.120933 kubelet[2113]: I0212 20:26:30.120940 2113 controller.go:116] "failed to update lease using latest lease, fallback to ensure lease" err="failed 5 attempts to update lease" Feb 12 20:26:30.121715 kubelet[2113]: E0212 20:26:30.121665 2113 controller.go:146] "Failed to ensure lease exists, will retry" err="Get \"https://172.31.19.54:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.20.28?timeout=10s\": dial tcp 172.31.19.54:6443: connect: connection refused" interval="200ms" Feb 12 20:26:30.322991 kubelet[2113]: E0212 20:26:30.322923 2113 controller.go:146] "Failed to ensure lease exists, will retry" err="Get \"https://172.31.19.54:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.20.28?timeout=10s\": dial tcp 172.31.19.54:6443: connect: connection refused" interval="400ms" Feb 12 20:26:30.371341 kubelet[2113]: E0212 20:26:30.370520 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:30.724696 kubelet[2113]: E0212 20:26:30.724306 2113 controller.go:146] "Failed to ensure lease exists, will retry" err="Get \"https://172.31.19.54:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.20.28?timeout=10s\": dial tcp 172.31.19.54:6443: connect: connection refused" interval="800ms" Feb 12 20:26:31.370897 kubelet[2113]: E0212 20:26:31.370853 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:32.371338 kubelet[2113]: E0212 20:26:32.371247 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:33.372008 kubelet[2113]: E0212 20:26:33.371941 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:34.373078 kubelet[2113]: E0212 20:26:34.373011 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:35.373630 kubelet[2113]: E0212 20:26:35.373564 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:36.374020 kubelet[2113]: E0212 20:26:36.373957 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:37.374785 kubelet[2113]: E0212 20:26:37.374714 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:38.257254 kubelet[2113]: E0212 20:26:38.257186 2113 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:38.375138 kubelet[2113]: E0212 20:26:38.375091 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:39.376830 kubelet[2113]: E0212 20:26:39.376786 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:40.378280 kubelet[2113]: E0212 20:26:40.378232 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:41.379350 kubelet[2113]: E0212 20:26:41.379281 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:41.526067 kubelet[2113]: E0212 20:26:41.525997 2113 controller.go:146] "Failed to ensure lease exists, will retry" err="Get \"https://172.31.19.54:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.20.28?timeout=10s\": net/http: request canceled while waiting for connection (Client.Timeout exceeded while awaiting headers)" interval="1.6s" Feb 12 20:26:42.313298 kubelet[2113]: E0212 20:26:42.313236 2113 kubelet_node_status.go:540] "Error updating node status, will retry" err="error getting node \"172.31.20.28\": Get \"https://172.31.19.54:6443/api/v1/nodes/172.31.20.28?resourceVersion=0&timeout=10s\": net/http: request canceled while waiting for connection (Client.Timeout exceeded while awaiting headers)" Feb 12 20:26:42.379773 kubelet[2113]: E0212 20:26:42.379712 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:43.380883 kubelet[2113]: E0212 20:26:43.380797 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:44.381835 kubelet[2113]: E0212 20:26:44.381775 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:45.381988 kubelet[2113]: E0212 20:26:45.381938 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:46.383456 kubelet[2113]: E0212 20:26:46.383382 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:47.384875 kubelet[2113]: E0212 20:26:47.384828 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:48.386398 kubelet[2113]: E0212 20:26:48.386328 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:49.386883 kubelet[2113]: E0212 20:26:49.386810 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:50.387663 kubelet[2113]: E0212 20:26:50.387588 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:50.483637 systemd[1]: run-containerd-runc-k8s.io-8fb855d90484d384c9af92545b8d81f2dc3f2731a92b7369da2deab68bc8c9c3-runc.F7RbHW.mount: Deactivated successfully. Feb 12 20:26:51.388831 kubelet[2113]: E0212 20:26:51.388739 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:52.314158 kubelet[2113]: E0212 20:26:52.314111 2113 kubelet_node_status.go:540] "Error updating node status, will retry" err="error getting node \"172.31.20.28\": Get \"https://172.31.19.54:6443/api/v1/nodes/172.31.20.28?timeout=10s\": net/http: request canceled while waiting for connection (Client.Timeout exceeded while awaiting headers)" Feb 12 20:26:52.389523 kubelet[2113]: E0212 20:26:52.389482 2113 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:53.128092 kubelet[2113]: E0212 20:26:53.128030 2113 controller.go:146] "Failed to ensure lease exists, will retry" err="Get \"https://172.31.19.54:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.20.28?timeout=10s\": net/http: request canceled while waiting for connection (Client.Timeout exceeded while awaiting headers)" interval="3.2s"