Feb 12 20:23:49.987578 kernel: Booting Linux on physical CPU 0x0000000000 [0x410fd083] Feb 12 20:23:49.987619 kernel: Linux version 5.15.148-flatcar (build@pony-truck.infra.kinvolk.io) (aarch64-cros-linux-gnu-gcc (Gentoo Hardened 11.3.1_p20221209 p3) 11.3.1 20221209, GNU ld (Gentoo 2.39 p5) 2.39.0) #1 SMP PREEMPT Mon Feb 12 18:07:00 -00 2024 Feb 12 20:23:49.987660 kernel: efi: EFI v2.70 by EDK II Feb 12 20:23:49.987679 kernel: efi: SMBIOS=0x7bed0000 SMBIOS 3.0=0x7beb0000 ACPI=0x786e0000 ACPI 2.0=0x786e0014 MEMATTR=0x7ac1aa98 MEMRESERVE=0x71a8cf98 Feb 12 20:23:49.987693 kernel: ACPI: Early table checksum verification disabled Feb 12 20:23:49.987707 kernel: ACPI: RSDP 0x00000000786E0014 000024 (v02 AMAZON) Feb 12 20:23:49.987724 kernel: ACPI: XSDT 0x00000000786D00E8 000064 (v01 AMAZON AMZNFACP 00000001 01000013) Feb 12 20:23:49.987738 kernel: ACPI: FACP 0x00000000786B0000 000114 (v06 AMAZON AMZNFACP 00000001 AMZN 00000001) Feb 12 20:23:49.987752 kernel: ACPI: DSDT 0x0000000078640000 00154F (v02 AMAZON AMZNDSDT 00000001 INTL 20160527) Feb 12 20:23:49.987766 kernel: ACPI: APIC 0x00000000786C0000 000108 (v04 AMAZON AMZNAPIC 00000001 AMZN 00000001) Feb 12 20:23:49.987786 kernel: ACPI: SPCR 0x00000000786A0000 000050 (v02 AMAZON AMZNSPCR 00000001 AMZN 00000001) Feb 12 20:23:49.987800 kernel: ACPI: GTDT 0x0000000078690000 000060 (v02 AMAZON AMZNGTDT 00000001 AMZN 00000001) Feb 12 20:23:49.987814 kernel: ACPI: MCFG 0x0000000078680000 00003C (v02 AMAZON AMZNMCFG 00000001 AMZN 00000001) Feb 12 20:23:49.987828 kernel: ACPI: SLIT 0x0000000078670000 00002D (v01 AMAZON AMZNSLIT 00000001 AMZN 00000001) Feb 12 20:23:49.987845 kernel: ACPI: IORT 0x0000000078660000 000078 (v01 AMAZON AMZNIORT 00000001 AMZN 00000001) Feb 12 20:23:49.987865 kernel: ACPI: PPTT 0x0000000078650000 0000EC (v01 AMAZON AMZNPPTT 00000001 AMZN 00000001) Feb 12 20:23:49.987879 kernel: ACPI: SPCR: console: uart,mmio,0x90a0000,115200 Feb 12 20:23:49.987893 kernel: earlycon: uart0 at MMIO 0x00000000090a0000 (options '115200') Feb 12 20:23:49.987908 kernel: printk: bootconsole [uart0] enabled Feb 12 20:23:49.987922 kernel: NUMA: Failed to initialise from firmware Feb 12 20:23:49.987937 kernel: NUMA: Faking a node at [mem 0x0000000040000000-0x00000004b5ffffff] Feb 12 20:23:49.987952 kernel: NUMA: NODE_DATA [mem 0x4b5841900-0x4b5846fff] Feb 12 20:23:49.990052 kernel: Zone ranges: Feb 12 20:23:49.990073 kernel: DMA [mem 0x0000000040000000-0x00000000ffffffff] Feb 12 20:23:49.990088 kernel: DMA32 empty Feb 12 20:23:49.990120 kernel: Normal [mem 0x0000000100000000-0x00000004b5ffffff] Feb 12 20:23:49.990152 kernel: Movable zone start for each node Feb 12 20:23:49.990169 kernel: Early memory node ranges Feb 12 20:23:49.990184 kernel: node 0: [mem 0x0000000040000000-0x00000000786effff] Feb 12 20:23:49.990200 kernel: node 0: [mem 0x00000000786f0000-0x000000007872ffff] Feb 12 20:23:49.990215 kernel: node 0: [mem 0x0000000078730000-0x000000007bbfffff] Feb 12 20:23:49.990230 kernel: node 0: [mem 0x000000007bc00000-0x000000007bfdffff] Feb 12 20:23:49.990246 kernel: node 0: [mem 0x000000007bfe0000-0x000000007fffffff] Feb 12 20:23:49.990262 kernel: node 0: [mem 0x0000000400000000-0x00000004b5ffffff] Feb 12 20:23:49.990277 kernel: Initmem setup node 0 [mem 0x0000000040000000-0x00000004b5ffffff] Feb 12 20:23:49.990292 kernel: On node 0, zone Normal: 8192 pages in unavailable ranges Feb 12 20:23:49.990307 kernel: psci: probing for conduit method from ACPI. Feb 12 20:23:49.990323 kernel: psci: PSCIv1.0 detected in firmware. Feb 12 20:23:49.990346 kernel: psci: Using standard PSCI v0.2 function IDs Feb 12 20:23:49.990361 kernel: psci: Trusted OS migration not required Feb 12 20:23:49.990384 kernel: psci: SMC Calling Convention v1.1 Feb 12 20:23:49.990402 kernel: ACPI: SRAT not present Feb 12 20:23:49.990418 kernel: percpu: Embedded 29 pages/cpu s79960 r8192 d30632 u118784 Feb 12 20:23:49.990439 kernel: pcpu-alloc: s79960 r8192 d30632 u118784 alloc=29*4096 Feb 12 20:23:49.990455 kernel: pcpu-alloc: [0] 0 [0] 1 Feb 12 20:23:49.990471 kernel: Detected PIPT I-cache on CPU0 Feb 12 20:23:49.990486 kernel: CPU features: detected: GIC system register CPU interface Feb 12 20:23:49.990502 kernel: CPU features: detected: Spectre-v2 Feb 12 20:23:49.990518 kernel: CPU features: detected: Spectre-v3a Feb 12 20:23:49.990534 kernel: CPU features: detected: Spectre-BHB Feb 12 20:23:49.990549 kernel: CPU features: kernel page table isolation forced ON by KASLR Feb 12 20:23:49.990565 kernel: CPU features: detected: Kernel page table isolation (KPTI) Feb 12 20:23:49.990581 kernel: CPU features: detected: ARM erratum 1742098 Feb 12 20:23:49.990597 kernel: CPU features: detected: ARM errata 1165522, 1319367, or 1530923 Feb 12 20:23:49.990621 kernel: Built 1 zonelists, mobility grouping on. Total pages: 991872 Feb 12 20:23:49.990637 kernel: Policy zone: Normal Feb 12 20:23:49.990655 kernel: Kernel command line: BOOT_IMAGE=/flatcar/vmlinuz-a mount.usr=/dev/mapper/usr verity.usr=PARTUUID=7130c94a-213a-4e5a-8e26-6cce9662f132 rootflags=rw mount.usrflags=ro consoleblank=0 root=LABEL=ROOT console=tty1 console=ttyS0,115200n8 earlycon flatcar.first_boot=detected acpi=force flatcar.oem.id=ec2 modprobe.blacklist=xen_fbfront net.ifnames=0 nvme_core.io_timeout=4294967295 verity.usrhash=0a07ee1673be713cb46dc1305004c8854c4690dc8835a87e3bc71aa6c6a62e40 Feb 12 20:23:49.990672 kernel: Unknown kernel command line parameters "BOOT_IMAGE=/flatcar/vmlinuz-a", will be passed to user space. Feb 12 20:23:49.990688 kernel: Dentry cache hash table entries: 524288 (order: 10, 4194304 bytes, linear) Feb 12 20:23:49.990704 kernel: Inode-cache hash table entries: 262144 (order: 9, 2097152 bytes, linear) Feb 12 20:23:49.990720 kernel: mem auto-init: stack:off, heap alloc:off, heap free:off Feb 12 20:23:49.990736 kernel: software IO TLB: mapped [mem 0x000000007c000000-0x0000000080000000] (64MB) Feb 12 20:23:49.990752 kernel: Memory: 3826316K/4030464K available (9792K kernel code, 2092K rwdata, 7556K rodata, 34688K init, 778K bss, 204148K reserved, 0K cma-reserved) Feb 12 20:23:49.990769 kernel: SLUB: HWalign=64, Order=0-3, MinObjects=0, CPUs=2, Nodes=1 Feb 12 20:23:49.990790 kernel: trace event string verifier disabled Feb 12 20:23:49.990806 kernel: rcu: Preemptible hierarchical RCU implementation. Feb 12 20:23:49.990822 kernel: rcu: RCU event tracing is enabled. Feb 12 20:23:49.990839 kernel: rcu: RCU restricting CPUs from NR_CPUS=512 to nr_cpu_ids=2. Feb 12 20:23:49.990857 kernel: Trampoline variant of Tasks RCU enabled. Feb 12 20:23:49.990874 kernel: Tracing variant of Tasks RCU enabled. Feb 12 20:23:49.990890 kernel: rcu: RCU calculated value of scheduler-enlistment delay is 100 jiffies. Feb 12 20:23:49.990906 kernel: rcu: Adjusting geometry for rcu_fanout_leaf=16, nr_cpu_ids=2 Feb 12 20:23:49.990921 kernel: NR_IRQS: 64, nr_irqs: 64, preallocated irqs: 0 Feb 12 20:23:49.990937 kernel: GICv3: 96 SPIs implemented Feb 12 20:23:49.990952 kernel: GICv3: 0 Extended SPIs implemented Feb 12 20:23:49.991077 kernel: GICv3: Distributor has no Range Selector support Feb 12 20:23:49.991106 kernel: Root IRQ handler: gic_handle_irq Feb 12 20:23:49.991122 kernel: GICv3: 16 PPIs implemented Feb 12 20:23:49.991137 kernel: GICv3: CPU0: found redistributor 0 region 0:0x0000000010200000 Feb 12 20:23:49.991153 kernel: ACPI: SRAT not present Feb 12 20:23:49.991168 kernel: ITS [mem 0x10080000-0x1009ffff] Feb 12 20:23:49.991184 kernel: ITS@0x0000000010080000: allocated 8192 Devices @4000a0000 (indirect, esz 8, psz 64K, shr 1) Feb 12 20:23:49.991200 kernel: ITS@0x0000000010080000: allocated 8192 Interrupt Collections @4000b0000 (flat, esz 8, psz 64K, shr 1) Feb 12 20:23:49.991215 kernel: GICv3: using LPI property table @0x00000004000c0000 Feb 12 20:23:49.991231 kernel: ITS: Using hypervisor restricted LPI range [128] Feb 12 20:23:49.991247 kernel: GICv3: CPU0: using allocated LPI pending table @0x00000004000d0000 Feb 12 20:23:49.991263 kernel: arch_timer: cp15 timer(s) running at 83.33MHz (virt). Feb 12 20:23:49.991284 kernel: clocksource: arch_sys_counter: mask: 0xffffffffffffff max_cycles: 0x13381ebeec, max_idle_ns: 440795203145 ns Feb 12 20:23:49.991300 kernel: sched_clock: 56 bits at 83MHz, resolution 12ns, wraps every 4398046511100ns Feb 12 20:23:49.991316 kernel: Console: colour dummy device 80x25 Feb 12 20:23:49.991332 kernel: printk: console [tty1] enabled Feb 12 20:23:49.991349 kernel: ACPI: Core revision 20210730 Feb 12 20:23:49.991365 kernel: Calibrating delay loop (skipped), value calculated using timer frequency.. 166.66 BogoMIPS (lpj=83333) Feb 12 20:23:49.991381 kernel: pid_max: default: 32768 minimum: 301 Feb 12 20:23:49.991397 kernel: LSM: Security Framework initializing Feb 12 20:23:49.991413 kernel: SELinux: Initializing. Feb 12 20:23:49.991430 kernel: Mount-cache hash table entries: 8192 (order: 4, 65536 bytes, linear) Feb 12 20:23:49.991452 kernel: Mountpoint-cache hash table entries: 8192 (order: 4, 65536 bytes, linear) Feb 12 20:23:49.991469 kernel: rcu: Hierarchical SRCU implementation. Feb 12 20:23:49.991485 kernel: Platform MSI: ITS@0x10080000 domain created Feb 12 20:23:49.991502 kernel: PCI/MSI: ITS@0x10080000 domain created Feb 12 20:23:49.991518 kernel: Remapping and enabling EFI services. Feb 12 20:23:49.991534 kernel: smp: Bringing up secondary CPUs ... Feb 12 20:23:49.991550 kernel: Detected PIPT I-cache on CPU1 Feb 12 20:23:49.991566 kernel: GICv3: CPU1: found redistributor 1 region 0:0x0000000010220000 Feb 12 20:23:49.991583 kernel: GICv3: CPU1: using allocated LPI pending table @0x00000004000e0000 Feb 12 20:23:49.991606 kernel: CPU1: Booted secondary processor 0x0000000001 [0x410fd083] Feb 12 20:23:49.991622 kernel: smp: Brought up 1 node, 2 CPUs Feb 12 20:23:49.991638 kernel: SMP: Total of 2 processors activated. Feb 12 20:23:49.991654 kernel: CPU features: detected: 32-bit EL0 Support Feb 12 20:23:49.991669 kernel: CPU features: detected: 32-bit EL1 Support Feb 12 20:23:49.991686 kernel: CPU features: detected: CRC32 instructions Feb 12 20:23:49.991702 kernel: CPU: All CPU(s) started at EL1 Feb 12 20:23:49.991718 kernel: alternatives: patching kernel code Feb 12 20:23:49.991734 kernel: devtmpfs: initialized Feb 12 20:23:49.991755 kernel: KASLR disabled due to lack of seed Feb 12 20:23:49.991772 kernel: clocksource: jiffies: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 1911260446275000 ns Feb 12 20:23:49.991789 kernel: futex hash table entries: 512 (order: 3, 32768 bytes, linear) Feb 12 20:23:49.991817 kernel: pinctrl core: initialized pinctrl subsystem Feb 12 20:23:49.991837 kernel: SMBIOS 3.0.0 present. Feb 12 20:23:49.991854 kernel: DMI: Amazon EC2 a1.large/, BIOS 1.0 11/1/2018 Feb 12 20:23:49.991870 kernel: NET: Registered PF_NETLINK/PF_ROUTE protocol family Feb 12 20:23:49.991887 kernel: DMA: preallocated 512 KiB GFP_KERNEL pool for atomic allocations Feb 12 20:23:49.991904 kernel: DMA: preallocated 512 KiB GFP_KERNEL|GFP_DMA pool for atomic allocations Feb 12 20:23:49.991921 kernel: DMA: preallocated 512 KiB GFP_KERNEL|GFP_DMA32 pool for atomic allocations Feb 12 20:23:49.991937 kernel: audit: initializing netlink subsys (disabled) Feb 12 20:23:49.991954 kernel: audit: type=2000 audit(0.263:1): state=initialized audit_enabled=0 res=1 Feb 12 20:23:49.992018 kernel: thermal_sys: Registered thermal governor 'step_wise' Feb 12 20:23:49.992036 kernel: cpuidle: using governor menu Feb 12 20:23:49.992053 kernel: hw-breakpoint: found 6 breakpoint and 4 watchpoint registers. Feb 12 20:23:49.992069 kernel: ASID allocator initialised with 32768 entries Feb 12 20:23:49.992086 kernel: ACPI: bus type PCI registered Feb 12 20:23:49.992109 kernel: acpiphp: ACPI Hot Plug PCI Controller Driver version: 0.5 Feb 12 20:23:49.992130 kernel: Serial: AMBA PL011 UART driver Feb 12 20:23:49.992146 kernel: HugeTLB registered 1.00 GiB page size, pre-allocated 0 pages Feb 12 20:23:49.992164 kernel: HugeTLB registered 32.0 MiB page size, pre-allocated 0 pages Feb 12 20:23:49.992180 kernel: HugeTLB registered 2.00 MiB page size, pre-allocated 0 pages Feb 12 20:23:49.992204 kernel: HugeTLB registered 64.0 KiB page size, pre-allocated 0 pages Feb 12 20:23:49.992223 kernel: cryptd: max_cpu_qlen set to 1000 Feb 12 20:23:49.992240 kernel: alg: No test for fips(ansi_cprng) (fips_ansi_cprng) Feb 12 20:23:49.992257 kernel: ACPI: Added _OSI(Module Device) Feb 12 20:23:49.992279 kernel: ACPI: Added _OSI(Processor Device) Feb 12 20:23:49.992295 kernel: ACPI: Added _OSI(3.0 _SCP Extensions) Feb 12 20:23:49.992312 kernel: ACPI: Added _OSI(Processor Aggregator Device) Feb 12 20:23:49.992329 kernel: ACPI: Added _OSI(Linux-Dell-Video) Feb 12 20:23:49.992345 kernel: ACPI: Added _OSI(Linux-Lenovo-NV-HDMI-Audio) Feb 12 20:23:49.992362 kernel: ACPI: Added _OSI(Linux-HPI-Hybrid-Graphics) Feb 12 20:23:49.992379 kernel: ACPI: 1 ACPI AML tables successfully acquired and loaded Feb 12 20:23:49.992395 kernel: ACPI: Interpreter enabled Feb 12 20:23:49.992411 kernel: ACPI: Using GIC for interrupt routing Feb 12 20:23:49.992432 kernel: ACPI: MCFG table detected, 1 entries Feb 12 20:23:49.992449 kernel: ACPI: PCI Root Bridge [PCI0] (domain 0000 [bus 00-0f]) Feb 12 20:23:49.992786 kernel: acpi PNP0A08:00: _OSC: OS supports [ExtendedConfig ASPM ClockPM Segments MSI HPX-Type3] Feb 12 20:23:49.996184 kernel: acpi PNP0A08:00: _OSC: platform does not support [LTR] Feb 12 20:23:49.996490 kernel: acpi PNP0A08:00: _OSC: OS now controls [PCIeHotplug PME AER PCIeCapability] Feb 12 20:23:49.996771 kernel: acpi PNP0A08:00: ECAM area [mem 0x20000000-0x20ffffff] reserved by PNP0C02:00 Feb 12 20:23:49.999148 kernel: acpi PNP0A08:00: ECAM at [mem 0x20000000-0x20ffffff] for [bus 00-0f] Feb 12 20:23:49.999209 kernel: ACPI: Remapped I/O 0x000000001fff0000 to [io 0x0000-0xffff window] Feb 12 20:23:49.999229 kernel: acpiphp: Slot [1] registered Feb 12 20:23:49.999247 kernel: acpiphp: Slot [2] registered Feb 12 20:23:49.999264 kernel: acpiphp: Slot [3] registered Feb 12 20:23:49.999281 kernel: acpiphp: Slot [4] registered Feb 12 20:23:49.999297 kernel: acpiphp: Slot [5] registered Feb 12 20:23:49.999313 kernel: acpiphp: Slot [6] registered Feb 12 20:23:49.999330 kernel: acpiphp: Slot [7] registered Feb 12 20:23:49.999346 kernel: acpiphp: Slot [8] registered Feb 12 20:23:49.999367 kernel: acpiphp: Slot [9] registered Feb 12 20:23:49.999384 kernel: acpiphp: Slot [10] registered Feb 12 20:23:49.999400 kernel: acpiphp: Slot [11] registered Feb 12 20:23:49.999417 kernel: acpiphp: Slot [12] registered Feb 12 20:23:49.999433 kernel: acpiphp: Slot [13] registered Feb 12 20:23:49.999449 kernel: acpiphp: Slot [14] registered Feb 12 20:23:49.999465 kernel: acpiphp: Slot [15] registered Feb 12 20:23:49.999482 kernel: acpiphp: Slot [16] registered Feb 12 20:23:49.999499 kernel: acpiphp: Slot [17] registered Feb 12 20:23:49.999515 kernel: acpiphp: Slot [18] registered Feb 12 20:23:49.999536 kernel: acpiphp: Slot [19] registered Feb 12 20:23:49.999552 kernel: acpiphp: Slot [20] registered Feb 12 20:23:49.999568 kernel: acpiphp: Slot [21] registered Feb 12 20:23:49.999584 kernel: acpiphp: Slot [22] registered Feb 12 20:23:49.999601 kernel: acpiphp: Slot [23] registered Feb 12 20:23:49.999617 kernel: acpiphp: Slot [24] registered Feb 12 20:23:49.999633 kernel: acpiphp: Slot [25] registered Feb 12 20:23:49.999650 kernel: acpiphp: Slot [26] registered Feb 12 20:23:49.999666 kernel: acpiphp: Slot [27] registered Feb 12 20:23:49.999687 kernel: acpiphp: Slot [28] registered Feb 12 20:23:49.999703 kernel: acpiphp: Slot [29] registered Feb 12 20:23:49.999720 kernel: acpiphp: Slot [30] registered Feb 12 20:23:49.999736 kernel: acpiphp: Slot [31] registered Feb 12 20:23:49.999752 kernel: PCI host bridge to bus 0000:00 Feb 12 20:23:50.000050 kernel: pci_bus 0000:00: root bus resource [mem 0x80000000-0xffffffff window] Feb 12 20:23:50.000260 kernel: pci_bus 0000:00: root bus resource [io 0x0000-0xffff window] Feb 12 20:23:50.000475 kernel: pci_bus 0000:00: root bus resource [mem 0x400000000000-0x407fffffffff window] Feb 12 20:23:50.000693 kernel: pci_bus 0000:00: root bus resource [bus 00-0f] Feb 12 20:23:50.000954 kernel: pci 0000:00:00.0: [1d0f:0200] type 00 class 0x060000 Feb 12 20:23:50.005364 kernel: pci 0000:00:01.0: [1d0f:8250] type 00 class 0x070003 Feb 12 20:23:50.005609 kernel: pci 0000:00:01.0: reg 0x10: [mem 0x80118000-0x80118fff] Feb 12 20:23:50.005853 kernel: pci 0000:00:04.0: [1d0f:8061] type 00 class 0x010802 Feb 12 20:23:50.006146 kernel: pci 0000:00:04.0: reg 0x10: [mem 0x80114000-0x80117fff] Feb 12 20:23:50.006397 kernel: pci 0000:00:04.0: PME# supported from D0 D1 D2 D3hot D3cold Feb 12 20:23:50.006636 kernel: pci 0000:00:05.0: [1d0f:ec20] type 00 class 0x020000 Feb 12 20:23:50.006848 kernel: pci 0000:00:05.0: reg 0x10: [mem 0x80110000-0x80113fff] Feb 12 20:23:50.007096 kernel: pci 0000:00:05.0: reg 0x18: [mem 0x80000000-0x800fffff pref] Feb 12 20:23:50.007309 kernel: pci 0000:00:05.0: reg 0x20: [mem 0x80100000-0x8010ffff] Feb 12 20:23:50.007517 kernel: pci 0000:00:05.0: PME# supported from D0 D1 D2 D3hot D3cold Feb 12 20:23:50.007725 kernel: pci 0000:00:05.0: BAR 2: assigned [mem 0x80000000-0x800fffff pref] Feb 12 20:23:50.007948 kernel: pci 0000:00:05.0: BAR 4: assigned [mem 0x80100000-0x8010ffff] Feb 12 20:23:50.008188 kernel: pci 0000:00:04.0: BAR 0: assigned [mem 0x80110000-0x80113fff] Feb 12 20:23:50.008402 kernel: pci 0000:00:05.0: BAR 0: assigned [mem 0x80114000-0x80117fff] Feb 12 20:23:50.008612 kernel: pci 0000:00:01.0: BAR 0: assigned [mem 0x80118000-0x80118fff] Feb 12 20:23:50.008809 kernel: pci_bus 0000:00: resource 4 [mem 0x80000000-0xffffffff window] Feb 12 20:23:50.013125 kernel: pci_bus 0000:00: resource 5 [io 0x0000-0xffff window] Feb 12 20:23:50.013384 kernel: pci_bus 0000:00: resource 6 [mem 0x400000000000-0x407fffffffff window] Feb 12 20:23:50.013428 kernel: ACPI: PCI: Interrupt link GSI0 configured for IRQ 35 Feb 12 20:23:50.013447 kernel: ACPI: PCI: Interrupt link GSI1 configured for IRQ 36 Feb 12 20:23:50.013465 kernel: ACPI: PCI: Interrupt link GSI2 configured for IRQ 37 Feb 12 20:23:50.013482 kernel: ACPI: PCI: Interrupt link GSI3 configured for IRQ 38 Feb 12 20:23:50.013499 kernel: iommu: Default domain type: Translated Feb 12 20:23:50.013516 kernel: iommu: DMA domain TLB invalidation policy: strict mode Feb 12 20:23:50.013533 kernel: vgaarb: loaded Feb 12 20:23:50.013549 kernel: pps_core: LinuxPPS API ver. 1 registered Feb 12 20:23:50.013566 kernel: pps_core: Software ver. 5.3.6 - Copyright 2005-2007 Rodolfo Giometti <giometti@linux.it> Feb 12 20:23:50.013588 kernel: PTP clock support registered Feb 12 20:23:50.013605 kernel: Registered efivars operations Feb 12 20:23:50.013621 kernel: clocksource: Switched to clocksource arch_sys_counter Feb 12 20:23:50.013638 kernel: VFS: Disk quotas dquot_6.6.0 Feb 12 20:23:50.013654 kernel: VFS: Dquot-cache hash table entries: 512 (order 0, 4096 bytes) Feb 12 20:23:50.013672 kernel: pnp: PnP ACPI init Feb 12 20:23:50.021506 kernel: system 00:00: [mem 0x20000000-0x2fffffff] could not be reserved Feb 12 20:23:50.021553 kernel: pnp: PnP ACPI: found 1 devices Feb 12 20:23:50.021570 kernel: NET: Registered PF_INET protocol family Feb 12 20:23:50.021599 kernel: IP idents hash table entries: 65536 (order: 7, 524288 bytes, linear) Feb 12 20:23:50.021616 kernel: tcp_listen_portaddr_hash hash table entries: 2048 (order: 3, 32768 bytes, linear) Feb 12 20:23:50.021633 kernel: Table-perturb hash table entries: 65536 (order: 6, 262144 bytes, linear) Feb 12 20:23:50.021650 kernel: TCP established hash table entries: 32768 (order: 6, 262144 bytes, linear) Feb 12 20:23:50.021667 kernel: TCP bind hash table entries: 32768 (order: 7, 524288 bytes, linear) Feb 12 20:23:50.021684 kernel: TCP: Hash tables configured (established 32768 bind 32768) Feb 12 20:23:50.021701 kernel: UDP hash table entries: 2048 (order: 4, 65536 bytes, linear) Feb 12 20:23:50.021717 kernel: UDP-Lite hash table entries: 2048 (order: 4, 65536 bytes, linear) Feb 12 20:23:50.021734 kernel: NET: Registered PF_UNIX/PF_LOCAL protocol family Feb 12 20:23:50.021756 kernel: PCI: CLS 0 bytes, default 64 Feb 12 20:23:50.021772 kernel: hw perfevents: enabled with armv8_pmuv3_0 PMU driver, 3 counters available Feb 12 20:23:50.021789 kernel: kvm [1]: HYP mode not available Feb 12 20:23:50.021805 kernel: Initialise system trusted keyrings Feb 12 20:23:50.021822 kernel: workingset: timestamp_bits=39 max_order=20 bucket_order=0 Feb 12 20:23:50.021839 kernel: Key type asymmetric registered Feb 12 20:23:50.021855 kernel: Asymmetric key parser 'x509' registered Feb 12 20:23:50.021872 kernel: Block layer SCSI generic (bsg) driver version 0.4 loaded (major 249) Feb 12 20:23:50.021888 kernel: io scheduler mq-deadline registered Feb 12 20:23:50.021910 kernel: io scheduler kyber registered Feb 12 20:23:50.021926 kernel: io scheduler bfq registered Feb 12 20:23:50.022245 kernel: pl061_gpio ARMH0061:00: PL061 GPIO chip registered Feb 12 20:23:50.022283 kernel: input: Power Button as /devices/LNXSYSTM:00/LNXSYBUS:00/PNP0C0C:00/input/input0 Feb 12 20:23:50.022300 kernel: ACPI: button: Power Button [PWRB] Feb 12 20:23:50.022318 kernel: Serial: 8250/16550 driver, 4 ports, IRQ sharing enabled Feb 12 20:23:50.022335 kernel: ACPI: \_SB_.PCI0.GSI2: Enabled at IRQ 37 Feb 12 20:23:50.022566 kernel: serial 0000:00:01.0: enabling device (0010 -> 0012) Feb 12 20:23:50.022602 kernel: printk: console [ttyS0] disabled Feb 12 20:23:50.022620 kernel: 0000:00:01.0: ttyS0 at MMIO 0x80118000 (irq = 14, base_baud = 115200) is a 16550A Feb 12 20:23:50.022637 kernel: printk: console [ttyS0] enabled Feb 12 20:23:50.022653 kernel: printk: bootconsole [uart0] disabled Feb 12 20:23:50.022670 kernel: thunder_xcv, ver 1.0 Feb 12 20:23:50.022686 kernel: thunder_bgx, ver 1.0 Feb 12 20:23:50.022703 kernel: nicpf, ver 1.0 Feb 12 20:23:50.022719 kernel: nicvf, ver 1.0 Feb 12 20:23:50.023024 kernel: rtc-efi rtc-efi.0: registered as rtc0 Feb 12 20:23:50.023256 kernel: rtc-efi rtc-efi.0: setting system clock to 2024-02-12T20:23:49 UTC (1707769429) Feb 12 20:23:50.023282 kernel: hid: raw HID events driver (C) Jiri Kosina Feb 12 20:23:50.023299 kernel: NET: Registered PF_INET6 protocol family Feb 12 20:23:50.023316 kernel: Segment Routing with IPv6 Feb 12 20:23:50.023332 kernel: In-situ OAM (IOAM) with IPv6 Feb 12 20:23:50.023349 kernel: NET: Registered PF_PACKET protocol family Feb 12 20:23:50.023365 kernel: Key type dns_resolver registered Feb 12 20:23:50.023382 kernel: registered taskstats version 1 Feb 12 20:23:50.023405 kernel: Loading compiled-in X.509 certificates Feb 12 20:23:50.023422 kernel: Loaded X.509 cert 'Kinvolk GmbH: Module signing key for 5.15.148-flatcar: c8c3faa6fd8ae0112832fff0e3d0e58448a7eb6c' Feb 12 20:23:50.023438 kernel: Key type .fscrypt registered Feb 12 20:23:50.023455 kernel: Key type fscrypt-provisioning registered Feb 12 20:23:50.023472 kernel: ima: No TPM chip found, activating TPM-bypass! Feb 12 20:23:50.023488 kernel: ima: Allocated hash algorithm: sha1 Feb 12 20:23:50.023504 kernel: ima: No architecture policies found Feb 12 20:23:50.023521 kernel: Freeing unused kernel memory: 34688K Feb 12 20:23:50.023537 kernel: Run /init as init process Feb 12 20:23:50.023557 kernel: with arguments: Feb 12 20:23:50.023574 kernel: /init Feb 12 20:23:50.023590 kernel: with environment: Feb 12 20:23:50.023606 kernel: HOME=/ Feb 12 20:23:50.023622 kernel: TERM=linux Feb 12 20:23:50.023638 kernel: BOOT_IMAGE=/flatcar/vmlinuz-a Feb 12 20:23:50.023660 systemd[1]: systemd 252 running in system mode (+PAM +AUDIT +SELINUX -APPARMOR +IMA +SMACK +SECCOMP +GCRYPT -GNUTLS +OPENSSL -ACL +BLKID +CURL -ELFUTILS -FIDO2 +IDN2 -IDN +IPTC +KMOD +LIBCRYPTSETUP +LIBFDISK +PCRE2 -PWQUALITY -P11KIT -QRENCODE -TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD -BPF_FRAMEWORK -XKBCOMMON +UTMP +SYSVINIT default-hierarchy=unified) Feb 12 20:23:50.023681 systemd[1]: Detected virtualization amazon. Feb 12 20:23:50.023705 systemd[1]: Detected architecture arm64. Feb 12 20:23:50.023723 systemd[1]: Running in initrd. Feb 12 20:23:50.023741 systemd[1]: No hostname configured, using default hostname. Feb 12 20:23:50.023758 systemd[1]: Hostname set to <localhost>. Feb 12 20:23:50.023777 systemd[1]: Initializing machine ID from VM UUID. Feb 12 20:23:50.023795 systemd[1]: Queued start job for default target initrd.target. Feb 12 20:23:50.023813 systemd[1]: Started systemd-ask-password-console.path. Feb 12 20:23:50.023830 systemd[1]: Reached target cryptsetup.target. Feb 12 20:23:50.023854 systemd[1]: Reached target paths.target. Feb 12 20:23:50.023872 systemd[1]: Reached target slices.target. Feb 12 20:23:50.023889 systemd[1]: Reached target swap.target. Feb 12 20:23:50.023907 systemd[1]: Reached target timers.target. Feb 12 20:23:50.023926 systemd[1]: Listening on iscsid.socket. Feb 12 20:23:50.023944 systemd[1]: Listening on iscsiuio.socket. Feb 12 20:23:50.023991 systemd[1]: Listening on systemd-journald-audit.socket. Feb 12 20:23:50.024015 systemd[1]: Listening on systemd-journald-dev-log.socket. Feb 12 20:23:50.024041 systemd[1]: Listening on systemd-journald.socket. Feb 12 20:23:50.024060 systemd[1]: Listening on systemd-networkd.socket. Feb 12 20:23:50.024078 systemd[1]: Listening on systemd-udevd-control.socket. Feb 12 20:23:50.024095 systemd[1]: Listening on systemd-udevd-kernel.socket. Feb 12 20:23:50.024113 systemd[1]: Reached target sockets.target. Feb 12 20:23:50.024131 systemd[1]: Starting kmod-static-nodes.service... Feb 12 20:23:50.024148 systemd[1]: Finished network-cleanup.service. Feb 12 20:23:50.024166 systemd[1]: Starting systemd-fsck-usr.service... Feb 12 20:23:50.024184 systemd[1]: Starting systemd-journald.service... Feb 12 20:23:50.024206 systemd[1]: Starting systemd-modules-load.service... Feb 12 20:23:50.024224 systemd[1]: Starting systemd-resolved.service... Feb 12 20:23:50.024242 systemd[1]: Starting systemd-vconsole-setup.service... Feb 12 20:23:50.024259 systemd[1]: Finished kmod-static-nodes.service. Feb 12 20:23:50.024278 kernel: audit: type=1130 audit(1707769430.011:2): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:50.024297 systemd[1]: Finished systemd-fsck-usr.service. Feb 12 20:23:50.024319 systemd-journald[308]: Journal started Feb 12 20:23:50.024421 systemd-journald[308]: Runtime Journal (/run/log/journal/ec21a60c073e718f9ea2b2c53444f248) is 8.0M, max 75.4M, 67.4M free. Feb 12 20:23:50.011000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:49.993250 systemd-modules-load[309]: Inserted module 'overlay' Feb 12 20:23:50.039997 kernel: bridge: filtering via arp/ip/ip6tables is no longer available by default. Update your scripts to load br_netfilter if you need this. Feb 12 20:23:50.044416 systemd-modules-load[309]: Inserted module 'br_netfilter' Feb 12 20:23:50.048676 kernel: Bridge firewalling registered Feb 12 20:23:50.048000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-usr comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:50.061005 kernel: audit: type=1130 audit(1707769430.048:3): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-usr comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:50.061071 systemd[1]: Started systemd-journald.service. Feb 12 20:23:50.073006 kernel: SCSI subsystem initialized Feb 12 20:23:50.076000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:50.078885 systemd[1]: Finished systemd-vconsole-setup.service. Feb 12 20:23:50.093927 kernel: audit: type=1130 audit(1707769430.076:4): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:50.091000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:50.109061 kernel: audit: type=1130 audit(1707769430.091:5): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:50.109131 kernel: device-mapper: core: CONFIG_IMA_DISABLE_HTABLE is disabled. Duplicate IMA measurements will not be recorded in the IMA log. Feb 12 20:23:50.109154 kernel: device-mapper: uevent: version 1.0.3 Feb 12 20:23:50.112491 kernel: device-mapper: ioctl: 4.45.0-ioctl (2021-03-22) initialised: dm-devel@redhat.com Feb 12 20:23:50.112783 systemd[1]: Starting dracut-cmdline-ask.service... Feb 12 20:23:50.118054 systemd[1]: Starting systemd-tmpfiles-setup-dev.service... Feb 12 20:23:50.138203 systemd-modules-load[309]: Inserted module 'dm_multipath' Feb 12 20:23:50.143585 systemd-resolved[310]: Positive Trust Anchors: Feb 12 20:23:50.143621 systemd-resolved[310]: . IN DS 20326 8 2 e06d44b80b8f1d39a95c0b0d7c65d08458e880409bbc683457104237c7f8ec8d Feb 12 20:23:50.143679 systemd-resolved[310]: Negative trust anchors: home.arpa 10.in-addr.arpa 16.172.in-addr.arpa 17.172.in-addr.arpa 18.172.in-addr.arpa 19.172.in-addr.arpa 20.172.in-addr.arpa 21.172.in-addr.arpa 22.172.in-addr.arpa 23.172.in-addr.arpa 24.172.in-addr.arpa 25.172.in-addr.arpa 26.172.in-addr.arpa 27.172.in-addr.arpa 28.172.in-addr.arpa 29.172.in-addr.arpa 30.172.in-addr.arpa 31.172.in-addr.arpa 168.192.in-addr.arpa d.f.ip6.arpa corp home internal intranet lan local private test Feb 12 20:23:50.163822 systemd[1]: Finished systemd-modules-load.service. Feb 12 20:23:50.162000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:50.164393 systemd[1]: Finished systemd-tmpfiles-setup-dev.service. Feb 12 20:23:50.173147 systemd[1]: Starting systemd-sysctl.service... Feb 12 20:23:50.170000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:50.182308 kernel: audit: type=1130 audit(1707769430.162:6): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:50.182549 kernel: audit: type=1130 audit(1707769430.170:7): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:50.214113 systemd[1]: Finished dracut-cmdline-ask.service. Feb 12 20:23:50.216000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:50.224989 systemd[1]: Starting dracut-cmdline.service... Feb 12 20:23:50.229990 kernel: audit: type=1130 audit(1707769430.216:8): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:50.236372 systemd[1]: Finished systemd-sysctl.service. Feb 12 20:23:50.237000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:50.248008 kernel: audit: type=1130 audit(1707769430.237:9): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:50.257366 dracut-cmdline[330]: dracut-dracut-053 Feb 12 20:23:50.263658 dracut-cmdline[330]: Using kernel command line parameters: rd.driver.pre=btrfs BOOT_IMAGE=/flatcar/vmlinuz-a mount.usr=/dev/mapper/usr verity.usr=PARTUUID=7130c94a-213a-4e5a-8e26-6cce9662f132 rootflags=rw mount.usrflags=ro consoleblank=0 root=LABEL=ROOT console=tty1 console=ttyS0,115200n8 earlycon flatcar.first_boot=detected acpi=force flatcar.oem.id=ec2 modprobe.blacklist=xen_fbfront net.ifnames=0 nvme_core.io_timeout=4294967295 verity.usrhash=0a07ee1673be713cb46dc1305004c8854c4690dc8835a87e3bc71aa6c6a62e40 Feb 12 20:23:50.379994 kernel: Loading iSCSI transport class v2.0-870. Feb 12 20:23:50.390989 kernel: iscsi: registered transport (tcp) Feb 12 20:23:50.417133 kernel: iscsi: registered transport (qla4xxx) Feb 12 20:23:50.417211 kernel: QLogic iSCSI HBA Driver Feb 12 20:23:50.625678 systemd-resolved[310]: Defaulting to hostname 'linux'. Feb 12 20:23:50.628381 kernel: random: crng init done Feb 12 20:23:50.629782 systemd[1]: Started systemd-resolved.service. Feb 12 20:23:50.632000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:50.633604 systemd[1]: Reached target nss-lookup.target. Feb 12 20:23:50.644095 kernel: audit: type=1130 audit(1707769430.632:10): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:50.655629 systemd[1]: Finished dracut-cmdline.service. Feb 12 20:23:50.656000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:50.658990 systemd[1]: Starting dracut-pre-udev.service... Feb 12 20:23:50.725031 kernel: raid6: neonx8 gen() 6401 MB/s Feb 12 20:23:50.743010 kernel: raid6: neonx8 xor() 4583 MB/s Feb 12 20:23:50.761004 kernel: raid6: neonx4 gen() 6555 MB/s Feb 12 20:23:50.779005 kernel: raid6: neonx4 xor() 4726 MB/s Feb 12 20:23:50.797000 kernel: raid6: neonx2 gen() 5793 MB/s Feb 12 20:23:50.814992 kernel: raid6: neonx2 xor() 4427 MB/s Feb 12 20:23:50.832991 kernel: raid6: neonx1 gen() 4486 MB/s Feb 12 20:23:50.850991 kernel: raid6: neonx1 xor() 3596 MB/s Feb 12 20:23:50.868992 kernel: raid6: int64x8 gen() 3439 MB/s Feb 12 20:23:50.886991 kernel: raid6: int64x8 xor() 2055 MB/s Feb 12 20:23:50.904992 kernel: raid6: int64x4 gen() 3836 MB/s Feb 12 20:23:50.922993 kernel: raid6: int64x4 xor() 2161 MB/s Feb 12 20:23:50.940994 kernel: raid6: int64x2 gen() 3606 MB/s Feb 12 20:23:50.958991 kernel: raid6: int64x2 xor() 1927 MB/s Feb 12 20:23:50.976993 kernel: raid6: int64x1 gen() 2761 MB/s Feb 12 20:23:50.996495 kernel: raid6: int64x1 xor() 1406 MB/s Feb 12 20:23:50.996526 kernel: raid6: using algorithm neonx4 gen() 6555 MB/s Feb 12 20:23:50.996549 kernel: raid6: .... xor() 4726 MB/s, rmw enabled Feb 12 20:23:50.998323 kernel: raid6: using neon recovery algorithm Feb 12 20:23:51.016999 kernel: xor: measuring software checksum speed Feb 12 20:23:51.019989 kernel: 8regs : 9334 MB/sec Feb 12 20:23:51.020019 kernel: 32regs : 11107 MB/sec Feb 12 20:23:51.026033 kernel: arm64_neon : 9617 MB/sec Feb 12 20:23:51.026069 kernel: xor: using function: 32regs (11107 MB/sec) Feb 12 20:23:51.117028 kernel: Btrfs loaded, crc32c=crc32c-generic, zoned=no, fsverity=no Feb 12 20:23:51.136372 systemd[1]: Finished dracut-pre-udev.service. Feb 12 20:23:51.137000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-udev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:51.138000 audit: BPF prog-id=7 op=LOAD Feb 12 20:23:51.138000 audit: BPF prog-id=8 op=LOAD Feb 12 20:23:51.141247 systemd[1]: Starting systemd-udevd.service... Feb 12 20:23:51.170942 systemd-udevd[506]: Using default interface naming scheme 'v252'. Feb 12 20:23:51.181495 systemd[1]: Started systemd-udevd.service. Feb 12 20:23:51.186000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:51.189576 systemd[1]: Starting dracut-pre-trigger.service... Feb 12 20:23:51.225659 dracut-pre-trigger[520]: rd.md=0: removing MD RAID activation Feb 12 20:23:51.291939 systemd[1]: Finished dracut-pre-trigger.service. Feb 12 20:23:51.292000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:51.296466 systemd[1]: Starting systemd-udev-trigger.service... Feb 12 20:23:51.414990 systemd[1]: Finished systemd-udev-trigger.service. Feb 12 20:23:51.415000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:51.544884 kernel: ACPI: \_SB_.PCI0.GSI1: Enabled at IRQ 36 Feb 12 20:23:51.544974 kernel: ena 0000:00:05.0: enabling device (0010 -> 0012) Feb 12 20:23:51.558892 kernel: ena 0000:00:05.0: ENA device version: 0.10 Feb 12 20:23:51.559365 kernel: ena 0000:00:05.0: ENA controller version: 0.0.1 implementation version 1 Feb 12 20:23:51.559581 kernel: ACPI: \_SB_.PCI0.GSI0: Enabled at IRQ 35 Feb 12 20:23:51.563618 kernel: nvme nvme0: pci function 0000:00:04.0 Feb 12 20:23:51.569994 kernel: ena 0000:00:05.0: Elastic Network Adapter (ENA) found at mem 80114000, mac addr 06:53:4e:3b:83:ff Feb 12 20:23:51.573012 kernel: nvme nvme0: 2/0/0 default/read/poll queues Feb 12 20:23:51.579265 kernel: GPT:Primary header thinks Alt. header is not at the end of the disk. Feb 12 20:23:51.579313 kernel: GPT:9289727 != 16777215 Feb 12 20:23:51.579337 kernel: GPT:Alternate GPT header not at the end of the disk. Feb 12 20:23:51.581441 kernel: GPT:9289727 != 16777215 Feb 12 20:23:51.582747 kernel: GPT: Use GNU Parted to correct GPT errors. Feb 12 20:23:51.584683 kernel: nvme0n1: p1 p2 p3 p4 p6 p7 p9 Feb 12 20:23:51.590463 (udev-worker)[570]: Network interface NamePolicy= disabled on kernel command line. Feb 12 20:23:51.659008 kernel: BTRFS: device label OEM devid 1 transid 12 /dev/nvme0n1p6 scanned by (udev-worker) (569) Feb 12 20:23:51.678154 systemd[1]: Found device dev-disk-by\x2dlabel-EFI\x2dSYSTEM.device. Feb 12 20:23:51.744402 systemd[1]: Found device dev-disk-by\x2dlabel-OEM.device. Feb 12 20:23:51.783459 systemd[1]: Found device dev-disk-by\x2dlabel-ROOT.device. Feb 12 20:23:51.795889 systemd[1]: Found device dev-disk-by\x2dpartlabel-USR\x2dA.device. Feb 12 20:23:51.800372 systemd[1]: Found device dev-disk-by\x2dpartuuid-7130c94a\x2d213a\x2d4e5a\x2d8e26\x2d6cce9662f132.device. Feb 12 20:23:51.818423 systemd[1]: Starting disk-uuid.service... Feb 12 20:23:51.830276 disk-uuid[673]: Primary Header is updated. Feb 12 20:23:51.830276 disk-uuid[673]: Secondary Entries is updated. Feb 12 20:23:51.830276 disk-uuid[673]: Secondary Header is updated. Feb 12 20:23:51.840029 kernel: nvme0n1: p1 p2 p3 p4 p6 p7 p9 Feb 12 20:23:51.847003 kernel: nvme0n1: p1 p2 p3 p4 p6 p7 p9 Feb 12 20:23:51.856019 kernel: nvme0n1: p1 p2 p3 p4 p6 p7 p9 Feb 12 20:23:52.856277 kernel: nvme0n1: p1 p2 p3 p4 p6 p7 p9 Feb 12 20:23:52.856354 disk-uuid[674]: The operation has completed successfully. Feb 12 20:23:53.033075 systemd[1]: disk-uuid.service: Deactivated successfully. Feb 12 20:23:53.034000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=disk-uuid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.035000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=disk-uuid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.033290 systemd[1]: Finished disk-uuid.service. Feb 12 20:23:53.038341 systemd[1]: Starting verity-setup.service... Feb 12 20:23:53.079375 kernel: device-mapper: verity: sha256 using implementation "sha256-ce" Feb 12 20:23:53.159045 systemd[1]: Found device dev-mapper-usr.device. Feb 12 20:23:53.164437 systemd[1]: Mounting sysusr-usr.mount... Feb 12 20:23:53.168398 systemd[1]: Finished verity-setup.service. Feb 12 20:23:53.170000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=verity-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.255997 kernel: EXT4-fs (dm-0): mounted filesystem without journal. Opts: norecovery. Quota mode: none. Feb 12 20:23:53.256609 systemd[1]: Mounted sysusr-usr.mount. Feb 12 20:23:53.259988 systemd[1]: afterburn-network-kargs.service was skipped because no trigger condition checks were met. Feb 12 20:23:53.264295 systemd[1]: Starting ignition-setup.service... Feb 12 20:23:53.275681 systemd[1]: Starting parse-ip-for-networkd.service... Feb 12 20:23:53.296355 kernel: BTRFS info (device nvme0n1p6): using crc32c (crc32c-generic) checksum algorithm Feb 12 20:23:53.296425 kernel: BTRFS info (device nvme0n1p6): using free space tree Feb 12 20:23:53.296459 kernel: BTRFS info (device nvme0n1p6): has skinny extents Feb 12 20:23:53.308015 kernel: BTRFS info (device nvme0n1p6): enabling ssd optimizations Feb 12 20:23:53.327165 systemd[1]: mnt-oem.mount: Deactivated successfully. Feb 12 20:23:53.361534 systemd[1]: Finished ignition-setup.service. Feb 12 20:23:53.363000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.366215 systemd[1]: Starting ignition-fetch-offline.service... Feb 12 20:23:53.437161 systemd[1]: Finished parse-ip-for-networkd.service. Feb 12 20:23:53.439000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=parse-ip-for-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.439000 audit: BPF prog-id=9 op=LOAD Feb 12 20:23:53.443038 systemd[1]: Starting systemd-networkd.service... Feb 12 20:23:53.489523 systemd-networkd[1185]: lo: Link UP Feb 12 20:23:53.489547 systemd-networkd[1185]: lo: Gained carrier Feb 12 20:23:53.491547 systemd-networkd[1185]: Enumeration completed Feb 12 20:23:53.493442 systemd-networkd[1185]: eth0: Configuring with /usr/lib/systemd/network/zz-default.network. Feb 12 20:23:53.497387 systemd[1]: Started systemd-networkd.service. Feb 12 20:23:53.497000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.499923 systemd[1]: Reached target network.target. Feb 12 20:23:53.512473 systemd-networkd[1185]: eth0: Link UP Feb 12 20:23:53.512482 systemd-networkd[1185]: eth0: Gained carrier Feb 12 20:23:53.513306 systemd[1]: Starting iscsiuio.service... Feb 12 20:23:53.524713 systemd-networkd[1185]: eth0: DHCPv4 address 172.31.16.56/20, gateway 172.31.16.1 acquired from 172.31.16.1 Feb 12 20:23:53.528000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsiuio comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.527558 systemd[1]: Started iscsiuio.service. Feb 12 20:23:53.535600 systemd[1]: Starting iscsid.service... Feb 12 20:23:53.543166 iscsid[1190]: iscsid: can't open InitiatorName configuration file /etc/iscsi/initiatorname.iscsi Feb 12 20:23:53.543166 iscsid[1190]: iscsid: Warning: InitiatorName file /etc/iscsi/initiatorname.iscsi does not exist or does not contain a properly formatted InitiatorName. If using software iscsi (iscsi_tcp or ib_iser) or partial offload (bnx2i or cxgbi iscsi), you may not be able to log into or discover targets. Please create a file /etc/iscsi/initiatorname.iscsi that contains a sting with the format: InitiatorName=iqn.yyyy-mm.<reversed domain name>[:identifier]. Feb 12 20:23:53.543166 iscsid[1190]: Example: InitiatorName=iqn.2001-04.com.redhat:fc6. Feb 12 20:23:53.543166 iscsid[1190]: If using hardware iscsi like qla4xxx this message can be ignored. Feb 12 20:23:53.556000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.563057 iscsid[1190]: iscsid: can't open InitiatorAlias configuration file /etc/iscsi/initiatorname.iscsi Feb 12 20:23:53.563057 iscsid[1190]: iscsid: can't open iscsid.safe_logout configuration file /etc/iscsi/iscsid.conf Feb 12 20:23:53.556906 systemd[1]: Started iscsid.service. Feb 12 20:23:53.571582 systemd[1]: Starting dracut-initqueue.service... Feb 12 20:23:53.595762 systemd[1]: Finished dracut-initqueue.service. Feb 12 20:23:53.597000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.599264 systemd[1]: Reached target remote-fs-pre.target. Feb 12 20:23:53.603090 systemd[1]: Reached target remote-cryptsetup.target. Feb 12 20:23:53.603297 systemd[1]: Reached target remote-fs.target. Feb 12 20:23:53.611784 systemd[1]: Starting dracut-pre-mount.service... Feb 12 20:23:53.636053 systemd[1]: Finished dracut-pre-mount.service. Feb 12 20:23:53.634000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:53.972884 ignition[1131]: Ignition 2.14.0 Feb 12 20:23:53.972915 ignition[1131]: Stage: fetch-offline Feb 12 20:23:53.973311 ignition[1131]: reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 12 20:23:53.973374 ignition[1131]: parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 12 20:23:53.998852 ignition[1131]: no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 12 20:23:54.001721 ignition[1131]: Ignition finished successfully Feb 12 20:23:54.007654 systemd[1]: Finished ignition-fetch-offline.service. Feb 12 20:23:54.009000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:54.018025 kernel: kauditd_printk_skb: 18 callbacks suppressed Feb 12 20:23:54.018099 kernel: audit: type=1130 audit(1707769434.009:29): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:54.013586 systemd[1]: Starting ignition-fetch.service... Feb 12 20:23:54.030981 ignition[1209]: Ignition 2.14.0 Feb 12 20:23:54.032695 ignition[1209]: Stage: fetch Feb 12 20:23:54.034397 ignition[1209]: reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 12 20:23:54.036873 ignition[1209]: parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 12 20:23:54.052696 ignition[1209]: no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 12 20:23:54.056116 ignition[1209]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 12 20:23:54.060596 ignition[1209]: INFO : PUT result: OK Feb 12 20:23:54.064165 ignition[1209]: DEBUG : parsed url from cmdline: "" Feb 12 20:23:54.066082 ignition[1209]: INFO : no config URL provided Feb 12 20:23:54.066082 ignition[1209]: INFO : reading system config file "/usr/lib/ignition/user.ign" Feb 12 20:23:54.066082 ignition[1209]: INFO : no config at "/usr/lib/ignition/user.ign" Feb 12 20:23:54.066082 ignition[1209]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 12 20:23:54.074826 ignition[1209]: INFO : PUT result: OK Feb 12 20:23:54.076370 ignition[1209]: INFO : GET http://169.254.169.254/2019-10-01/user-data: attempt #1 Feb 12 20:23:54.079649 ignition[1209]: INFO : GET result: OK Feb 12 20:23:54.081290 ignition[1209]: DEBUG : parsing config with SHA512: 7199a48e4b2a48f7a1ec284a194818a237d10038aca276e2fcad3cd06d565bc817e7bb30de521b27b2cd84f4fcee68b8410b0b79f1c926630591553f4f5223d0 Feb 12 20:23:54.112535 unknown[1209]: fetched base config from "system" Feb 12 20:23:54.112803 unknown[1209]: fetched base config from "system" Feb 12 20:23:54.113945 ignition[1209]: fetch: fetch complete Feb 12 20:23:54.112819 unknown[1209]: fetched user config from "aws" Feb 12 20:23:54.113982 ignition[1209]: fetch: fetch passed Feb 12 20:23:54.114089 ignition[1209]: Ignition finished successfully Feb 12 20:23:54.124804 systemd[1]: Finished ignition-fetch.service. Feb 12 20:23:54.135223 kernel: audit: type=1130 audit(1707769434.125:30): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:54.125000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:54.128156 systemd[1]: Starting ignition-kargs.service... Feb 12 20:23:54.153431 ignition[1215]: Ignition 2.14.0 Feb 12 20:23:54.153462 ignition[1215]: Stage: kargs Feb 12 20:23:54.153776 ignition[1215]: reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 12 20:23:54.153840 ignition[1215]: parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 12 20:23:54.169252 ignition[1215]: no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 12 20:23:54.171626 ignition[1215]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 12 20:23:54.175005 ignition[1215]: INFO : PUT result: OK Feb 12 20:23:54.179416 ignition[1215]: kargs: kargs passed Feb 12 20:23:54.179520 ignition[1215]: Ignition finished successfully Feb 12 20:23:54.184000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:54.181505 systemd[1]: Finished ignition-kargs.service. Feb 12 20:23:54.187801 systemd[1]: Starting ignition-disks.service... Feb 12 20:23:54.201893 kernel: audit: type=1130 audit(1707769434.184:31): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:54.212305 ignition[1221]: Ignition 2.14.0 Feb 12 20:23:54.212332 ignition[1221]: Stage: disks Feb 12 20:23:54.212635 ignition[1221]: reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 12 20:23:54.212692 ignition[1221]: parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 12 20:23:54.229238 ignition[1221]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 12 20:23:54.228411 ignition[1221]: no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 12 20:23:54.234285 ignition[1221]: INFO : PUT result: OK Feb 12 20:23:54.245446 ignition[1221]: disks: disks passed Feb 12 20:23:54.245838 ignition[1221]: Ignition finished successfully Feb 12 20:23:54.250178 systemd[1]: Finished ignition-disks.service. Feb 12 20:23:54.253475 systemd[1]: Reached target initrd-root-device.target. Feb 12 20:23:54.264785 kernel: audit: type=1130 audit(1707769434.252:32): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:54.252000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:54.264648 systemd[1]: Reached target local-fs-pre.target. Feb 12 20:23:54.266462 systemd[1]: Reached target local-fs.target. Feb 12 20:23:54.279947 systemd[1]: Reached target sysinit.target. Feb 12 20:23:54.283061 systemd[1]: Reached target basic.target. Feb 12 20:23:54.289326 systemd[1]: Starting systemd-fsck-root.service... Feb 12 20:23:54.339725 systemd-fsck[1230]: ROOT: clean, 602/553520 files, 56014/553472 blocks Feb 12 20:23:54.350323 systemd[1]: Finished systemd-fsck-root.service. Feb 12 20:23:54.352000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:54.355079 systemd[1]: Mounting sysroot.mount... Feb 12 20:23:54.363936 kernel: audit: type=1130 audit(1707769434.352:33): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:54.384908 kernel: EXT4-fs (nvme0n1p9): mounted filesystem with ordered data mode. Opts: (null). Quota mode: none. Feb 12 20:23:54.385498 systemd[1]: Mounted sysroot.mount. Feb 12 20:23:54.388837 systemd[1]: Reached target initrd-root-fs.target. Feb 12 20:23:54.417771 systemd[1]: Mounting sysroot-usr.mount... Feb 12 20:23:54.421872 systemd[1]: flatcar-metadata-hostname.service was skipped because no trigger condition checks were met. Feb 12 20:23:54.424949 systemd[1]: ignition-remount-sysroot.service was skipped because of an unmet condition check (ConditionPathIsReadWrite=!/sysroot). Feb 12 20:23:54.427591 systemd[1]: Reached target ignition-diskful.target. Feb 12 20:23:54.440104 systemd[1]: Mounted sysroot-usr.mount. Feb 12 20:23:54.446097 systemd[1]: Mounting sysroot-usr-share-oem.mount... Feb 12 20:23:54.451466 systemd[1]: Starting initrd-setup-root.service... Feb 12 20:23:54.470991 kernel: BTRFS: device label OEM devid 1 transid 14 /dev/nvme0n1p6 scanned by mount (1247) Feb 12 20:23:54.474510 initrd-setup-root[1252]: cut: /sysroot/etc/passwd: No such file or directory Feb 12 20:23:54.479898 kernel: BTRFS info (device nvme0n1p6): using crc32c (crc32c-generic) checksum algorithm Feb 12 20:23:54.479994 kernel: BTRFS info (device nvme0n1p6): using free space tree Feb 12 20:23:54.483001 kernel: BTRFS info (device nvme0n1p6): has skinny extents Feb 12 20:23:54.491008 kernel: BTRFS info (device nvme0n1p6): enabling ssd optimizations Feb 12 20:23:54.496045 systemd[1]: Mounted sysroot-usr-share-oem.mount. Feb 12 20:23:54.501195 initrd-setup-root[1278]: cut: /sysroot/etc/group: No such file or directory Feb 12 20:23:54.509785 initrd-setup-root[1286]: cut: /sysroot/etc/shadow: No such file or directory Feb 12 20:23:54.519367 initrd-setup-root[1294]: cut: /sysroot/etc/gshadow: No such file or directory Feb 12 20:23:54.726578 systemd[1]: Finished initrd-setup-root.service. Feb 12 20:23:54.728000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:54.731494 systemd[1]: Starting ignition-mount.service... Feb 12 20:23:54.745086 kernel: audit: type=1130 audit(1707769434.728:34): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:54.742375 systemd[1]: Starting sysroot-boot.service... Feb 12 20:23:54.756110 systemd[1]: sysusr-usr-share-oem.mount: Deactivated successfully. Feb 12 20:23:54.756516 systemd[1]: sysroot-usr-share-oem.mount: Deactivated successfully. Feb 12 20:23:54.790488 systemd[1]: Finished sysroot-boot.service. Feb 12 20:23:54.792000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:54.800106 ignition[1315]: INFO : Ignition 2.14.0 Feb 12 20:23:54.800106 ignition[1315]: INFO : Stage: mount Feb 12 20:23:54.800106 ignition[1315]: INFO : reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 12 20:23:54.800106 ignition[1315]: DEBUG : parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 12 20:23:54.812249 kernel: audit: type=1130 audit(1707769434.792:35): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:54.819622 ignition[1315]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 12 20:23:54.822620 ignition[1315]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 12 20:23:54.826284 ignition[1315]: INFO : PUT result: OK Feb 12 20:23:54.831854 ignition[1315]: INFO : mount: mount passed Feb 12 20:23:54.833783 ignition[1315]: INFO : Ignition finished successfully Feb 12 20:23:54.837096 systemd[1]: Finished ignition-mount.service. Feb 12 20:23:54.839000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:54.841838 systemd[1]: Starting ignition-files.service... Feb 12 20:23:54.852458 kernel: audit: type=1130 audit(1707769434.839:36): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:54.858634 systemd[1]: Mounting sysroot-usr-share-oem.mount... Feb 12 20:23:54.877012 kernel: BTRFS: device label OEM devid 1 transid 15 /dev/nvme0n1p6 scanned by mount (1323) Feb 12 20:23:54.884026 kernel: BTRFS info (device nvme0n1p6): using crc32c (crc32c-generic) checksum algorithm Feb 12 20:23:54.884098 kernel: BTRFS info (device nvme0n1p6): using free space tree Feb 12 20:23:54.884122 kernel: BTRFS info (device nvme0n1p6): has skinny extents Feb 12 20:23:54.893000 kernel: BTRFS info (device nvme0n1p6): enabling ssd optimizations Feb 12 20:23:54.898271 systemd[1]: Mounted sysroot-usr-share-oem.mount. Feb 12 20:23:54.919138 ignition[1342]: INFO : Ignition 2.14.0 Feb 12 20:23:54.919138 ignition[1342]: INFO : Stage: files Feb 12 20:23:54.922561 ignition[1342]: INFO : reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 12 20:23:54.922561 ignition[1342]: DEBUG : parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 12 20:23:54.940376 ignition[1342]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 12 20:23:54.943403 ignition[1342]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 12 20:23:54.946308 ignition[1342]: INFO : PUT result: OK Feb 12 20:23:54.952129 ignition[1342]: DEBUG : files: compiled without relabeling support, skipping Feb 12 20:23:54.956273 ignition[1342]: INFO : files: ensureUsers: op(1): [started] creating or modifying user "core" Feb 12 20:23:54.956273 ignition[1342]: DEBUG : files: ensureUsers: op(1): executing: "usermod" "--root" "/sysroot" "core" Feb 12 20:23:55.017711 ignition[1342]: INFO : files: ensureUsers: op(1): [finished] creating or modifying user "core" Feb 12 20:23:55.020608 ignition[1342]: INFO : files: ensureUsers: op(2): [started] adding ssh keys to user "core" Feb 12 20:23:55.024353 unknown[1342]: wrote ssh authorized keys file for user: core Feb 12 20:23:55.026825 ignition[1342]: INFO : files: ensureUsers: op(2): [finished] adding ssh keys to user "core" Feb 12 20:23:55.030860 ignition[1342]: INFO : files: createFilesystemsFiles: createFiles: op(3): [started] writing file "/sysroot/opt/cni-plugins-linux-arm64-v1.3.0.tgz" Feb 12 20:23:55.035035 ignition[1342]: INFO : GET https://github.com/containernetworking/plugins/releases/download/v1.3.0/cni-plugins-linux-arm64-v1.3.0.tgz: attempt #1 Feb 12 20:23:55.394165 ignition[1342]: INFO : GET result: OK Feb 12 20:23:55.486140 systemd-networkd[1185]: eth0: Gained IPv6LL Feb 12 20:23:55.980579 ignition[1342]: DEBUG : file matches expected sum of: b2b7fb74f1b3cb8928f49e5bf9d4bc686e057e837fac3caf1b366d54757921dba80d70cc010399b274d136e8dee9a25b1ad87cdfdc4ffcf42cf88f3e8f99587a Feb 12 20:23:55.986262 ignition[1342]: INFO : files: createFilesystemsFiles: createFiles: op(3): [finished] writing file "/sysroot/opt/cni-plugins-linux-arm64-v1.3.0.tgz" Feb 12 20:23:55.986262 ignition[1342]: INFO : files: createFilesystemsFiles: createFiles: op(4): [started] writing file "/sysroot/opt/crictl-v1.27.0-linux-arm64.tar.gz" Feb 12 20:23:55.986262 ignition[1342]: INFO : GET https://github.com/kubernetes-sigs/cri-tools/releases/download/v1.27.0/crictl-v1.27.0-linux-arm64.tar.gz: attempt #1 Feb 12 20:23:56.261008 ignition[1342]: INFO : GET result: OK Feb 12 20:23:56.513222 ignition[1342]: DEBUG : file matches expected sum of: db062e43351a63347871e7094115be2ae3853afcd346d47f7b51141da8c3202c2df58d2e17359322f632abcb37474fd7fdb3b7aadbc5cfd5cf6d3bad040b6251 Feb 12 20:23:56.517827 ignition[1342]: INFO : files: createFilesystemsFiles: createFiles: op(4): [finished] writing file "/sysroot/opt/crictl-v1.27.0-linux-arm64.tar.gz" Feb 12 20:23:56.517827 ignition[1342]: INFO : files: createFilesystemsFiles: createFiles: op(5): [started] writing file "/sysroot/etc/eks/bootstrap.sh" Feb 12 20:23:56.517827 ignition[1342]: INFO : oem config not found in "/usr/share/oem", looking on oem partition Feb 12 20:23:56.535207 ignition[1342]: INFO : op(1): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem4115888512" Feb 12 20:23:56.541923 kernel: BTRFS info: devid 1 device path /dev/nvme0n1p6 changed to /dev/disk/by-label/OEM scanned by ignition (1347) Feb 12 20:23:56.541986 ignition[1342]: CRITICAL : op(1): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem4115888512": device or resource busy Feb 12 20:23:56.541986 ignition[1342]: ERROR : failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem4115888512", trying btrfs: device or resource busy Feb 12 20:23:56.541986 ignition[1342]: INFO : op(2): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem4115888512" Feb 12 20:23:56.558343 ignition[1342]: INFO : op(2): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem4115888512" Feb 12 20:23:56.562067 ignition[1342]: INFO : op(3): [started] unmounting "/mnt/oem4115888512" Feb 12 20:23:56.564452 ignition[1342]: INFO : op(3): [finished] unmounting "/mnt/oem4115888512" Feb 12 20:23:56.570550 ignition[1342]: INFO : files: createFilesystemsFiles: createFiles: op(5): [finished] writing file "/sysroot/etc/eks/bootstrap.sh" Feb 12 20:23:56.570550 ignition[1342]: INFO : files: createFilesystemsFiles: createFiles: op(6): [started] writing file "/sysroot/opt/bin/kubeadm" Feb 12 20:23:56.570550 ignition[1342]: INFO : GET https://dl.k8s.io/release/v1.28.1/bin/linux/arm64/kubeadm: attempt #1 Feb 12 20:23:56.566741 systemd[1]: mnt-oem4115888512.mount: Deactivated successfully. Feb 12 20:23:56.705556 ignition[1342]: INFO : GET result: OK Feb 12 20:23:57.293202 ignition[1342]: DEBUG : file matches expected sum of: 5a08b81f9cc82d3cce21130856ca63b8dafca9149d9775dd25b376eb0f18209aa0e4a47c0a6d7e6fb1316aacd5d59dec770f26c09120c866949d70bc415518b3 Feb 12 20:23:57.299052 ignition[1342]: INFO : files: createFilesystemsFiles: createFiles: op(6): [finished] writing file "/sysroot/opt/bin/kubeadm" Feb 12 20:23:57.299052 ignition[1342]: INFO : files: createFilesystemsFiles: createFiles: op(7): [started] writing file "/sysroot/opt/bin/kubelet" Feb 12 20:23:57.299052 ignition[1342]: INFO : GET https://dl.k8s.io/release/v1.28.1/bin/linux/arm64/kubelet: attempt #1 Feb 12 20:23:57.361639 ignition[1342]: INFO : GET result: OK Feb 12 20:23:58.736519 ignition[1342]: DEBUG : file matches expected sum of: 5a898ef543a6482895101ea58e33602e3c0a7682d322aaf08ac3dc8a5a3c8da8f09600d577024549288f8cebb1a86f9c79927796b69a3d8fe989ca8f12b147d6 Feb 12 20:23:58.741579 ignition[1342]: INFO : files: createFilesystemsFiles: createFiles: op(7): [finished] writing file "/sysroot/opt/bin/kubelet" Feb 12 20:23:58.741579 ignition[1342]: INFO : files: createFilesystemsFiles: createFiles: op(8): [started] writing file "/sysroot/home/core/install.sh" Feb 12 20:23:58.741579 ignition[1342]: INFO : files: createFilesystemsFiles: createFiles: op(8): [finished] writing file "/sysroot/home/core/install.sh" Feb 12 20:23:58.741579 ignition[1342]: INFO : files: createFilesystemsFiles: createFiles: op(9): [started] writing file "/sysroot/etc/docker/daemon.json" Feb 12 20:23:58.756012 ignition[1342]: INFO : files: createFilesystemsFiles: createFiles: op(9): [finished] writing file "/sysroot/etc/docker/daemon.json" Feb 12 20:23:58.762056 ignition[1342]: INFO : files: createFilesystemsFiles: createFiles: op(a): [started] writing file "/sysroot/etc/flatcar/update.conf" Feb 12 20:23:58.765844 ignition[1342]: INFO : files: createFilesystemsFiles: createFiles: op(a): [finished] writing file "/sysroot/etc/flatcar/update.conf" Feb 12 20:23:58.769325 ignition[1342]: INFO : files: createFilesystemsFiles: createFiles: op(b): [started] writing file "/sysroot/etc/amazon/ssm/amazon-ssm-agent.json" Feb 12 20:23:58.773308 ignition[1342]: INFO : oem config not found in "/usr/share/oem", looking on oem partition Feb 12 20:23:58.784257 ignition[1342]: INFO : op(4): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem2127438971" Feb 12 20:23:58.788073 ignition[1342]: CRITICAL : op(4): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem2127438971": device or resource busy Feb 12 20:23:58.791524 ignition[1342]: ERROR : failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem2127438971", trying btrfs: device or resource busy Feb 12 20:23:58.791524 ignition[1342]: INFO : op(5): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem2127438971" Feb 12 20:23:58.811496 ignition[1342]: INFO : op(5): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem2127438971" Feb 12 20:23:58.814558 ignition[1342]: INFO : op(6): [started] unmounting "/mnt/oem2127438971" Feb 12 20:23:58.814558 ignition[1342]: INFO : op(6): [finished] unmounting "/mnt/oem2127438971" Feb 12 20:23:58.822300 ignition[1342]: INFO : files: createFilesystemsFiles: createFiles: op(b): [finished] writing file "/sysroot/etc/amazon/ssm/amazon-ssm-agent.json" Feb 12 20:23:58.818905 systemd[1]: mnt-oem2127438971.mount: Deactivated successfully. Feb 12 20:23:58.830782 ignition[1342]: INFO : files: createFilesystemsFiles: createFiles: op(c): [started] writing file "/sysroot/etc/amazon/ssm/seelog.xml" Feb 12 20:23:58.830782 ignition[1342]: INFO : oem config not found in "/usr/share/oem", looking on oem partition Feb 12 20:23:58.842903 ignition[1342]: INFO : op(7): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1212919355" Feb 12 20:23:58.845822 ignition[1342]: CRITICAL : op(7): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1212919355": device or resource busy Feb 12 20:23:58.845822 ignition[1342]: ERROR : failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem1212919355", trying btrfs: device or resource busy Feb 12 20:23:58.845822 ignition[1342]: INFO : op(8): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1212919355" Feb 12 20:23:58.866204 ignition[1342]: INFO : op(8): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1212919355" Feb 12 20:23:58.869494 ignition[1342]: INFO : op(9): [started] unmounting "/mnt/oem1212919355" Feb 12 20:23:58.874050 systemd[1]: mnt-oem1212919355.mount: Deactivated successfully. Feb 12 20:23:58.878085 ignition[1342]: INFO : op(9): [finished] unmounting "/mnt/oem1212919355" Feb 12 20:23:58.883198 ignition[1342]: INFO : files: createFilesystemsFiles: createFiles: op(c): [finished] writing file "/sysroot/etc/amazon/ssm/seelog.xml" Feb 12 20:23:58.888006 ignition[1342]: INFO : files: createFilesystemsFiles: createFiles: op(d): [started] writing file "/sysroot/etc/systemd/system/nvidia.service" Feb 12 20:23:58.888006 ignition[1342]: INFO : oem config not found in "/usr/share/oem", looking on oem partition Feb 12 20:23:58.905554 ignition[1342]: INFO : op(a): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1727310572" Feb 12 20:23:58.908594 ignition[1342]: CRITICAL : op(a): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1727310572": device or resource busy Feb 12 20:23:58.908594 ignition[1342]: ERROR : failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem1727310572", trying btrfs: device or resource busy Feb 12 20:23:58.908594 ignition[1342]: INFO : op(b): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1727310572" Feb 12 20:23:58.931643 ignition[1342]: INFO : op(b): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1727310572" Feb 12 20:23:58.934611 ignition[1342]: INFO : op(c): [started] unmounting "/mnt/oem1727310572" Feb 12 20:23:58.937023 ignition[1342]: INFO : op(c): [finished] unmounting "/mnt/oem1727310572" Feb 12 20:23:58.937023 ignition[1342]: INFO : files: createFilesystemsFiles: createFiles: op(d): [finished] writing file "/sysroot/etc/systemd/system/nvidia.service" Feb 12 20:23:58.937023 ignition[1342]: INFO : files: op(e): [started] processing unit "amazon-ssm-agent.service" Feb 12 20:23:58.945977 ignition[1342]: INFO : files: op(e): op(f): [started] writing unit "amazon-ssm-agent.service" at "/sysroot/etc/systemd/system/amazon-ssm-agent.service" Feb 12 20:23:58.945977 ignition[1342]: INFO : files: op(e): op(f): [finished] writing unit "amazon-ssm-agent.service" at "/sysroot/etc/systemd/system/amazon-ssm-agent.service" Feb 12 20:23:58.945977 ignition[1342]: INFO : files: op(e): [finished] processing unit "amazon-ssm-agent.service" Feb 12 20:23:58.945977 ignition[1342]: INFO : files: op(10): [started] processing unit "nvidia.service" Feb 12 20:23:58.945977 ignition[1342]: INFO : files: op(10): [finished] processing unit "nvidia.service" Feb 12 20:23:58.945977 ignition[1342]: INFO : files: op(11): [started] processing unit "coreos-metadata-sshkeys@.service" Feb 12 20:23:58.945977 ignition[1342]: INFO : files: op(11): [finished] processing unit "coreos-metadata-sshkeys@.service" Feb 12 20:23:58.945977 ignition[1342]: INFO : files: op(12): [started] processing unit "prepare-cni-plugins.service" Feb 12 20:23:58.970586 ignition[1342]: INFO : files: op(12): op(13): [started] writing unit "prepare-cni-plugins.service" at "/sysroot/etc/systemd/system/prepare-cni-plugins.service" Feb 12 20:23:58.970586 ignition[1342]: INFO : files: op(12): op(13): [finished] writing unit "prepare-cni-plugins.service" at "/sysroot/etc/systemd/system/prepare-cni-plugins.service" Feb 12 20:23:58.970586 ignition[1342]: INFO : files: op(12): [finished] processing unit "prepare-cni-plugins.service" Feb 12 20:23:58.970586 ignition[1342]: INFO : files: op(14): [started] processing unit "prepare-critools.service" Feb 12 20:23:58.970586 ignition[1342]: INFO : files: op(14): op(15): [started] writing unit "prepare-critools.service" at "/sysroot/etc/systemd/system/prepare-critools.service" Feb 12 20:23:58.970586 ignition[1342]: INFO : files: op(14): op(15): [finished] writing unit "prepare-critools.service" at "/sysroot/etc/systemd/system/prepare-critools.service" Feb 12 20:23:58.970586 ignition[1342]: INFO : files: op(14): [finished] processing unit "prepare-critools.service" Feb 12 20:23:58.970586 ignition[1342]: INFO : files: op(16): [started] setting preset to enabled for "amazon-ssm-agent.service" Feb 12 20:23:58.998659 ignition[1342]: INFO : files: op(16): [finished] setting preset to enabled for "amazon-ssm-agent.service" Feb 12 20:23:58.998659 ignition[1342]: INFO : files: op(17): [started] setting preset to enabled for "nvidia.service" Feb 12 20:23:58.998659 ignition[1342]: INFO : files: op(17): [finished] setting preset to enabled for "nvidia.service" Feb 12 20:23:58.998659 ignition[1342]: INFO : files: op(18): [started] setting preset to enabled for "coreos-metadata-sshkeys@.service " Feb 12 20:23:58.998659 ignition[1342]: INFO : files: op(18): [finished] setting preset to enabled for "coreos-metadata-sshkeys@.service " Feb 12 20:23:58.998659 ignition[1342]: INFO : files: op(19): [started] setting preset to enabled for "prepare-cni-plugins.service" Feb 12 20:23:58.998659 ignition[1342]: INFO : files: op(19): [finished] setting preset to enabled for "prepare-cni-plugins.service" Feb 12 20:23:58.998659 ignition[1342]: INFO : files: op(1a): [started] setting preset to enabled for "prepare-critools.service" Feb 12 20:23:58.998659 ignition[1342]: INFO : files: op(1a): [finished] setting preset to enabled for "prepare-critools.service" Feb 12 20:23:59.033310 ignition[1342]: INFO : files: createResultFile: createFiles: op(1b): [started] writing file "/sysroot/etc/.ignition-result.json" Feb 12 20:23:59.033310 ignition[1342]: INFO : files: createResultFile: createFiles: op(1b): [finished] writing file "/sysroot/etc/.ignition-result.json" Feb 12 20:23:59.033310 ignition[1342]: INFO : files: files passed Feb 12 20:23:59.033310 ignition[1342]: INFO : Ignition finished successfully Feb 12 20:23:59.043712 systemd[1]: Finished ignition-files.service. Feb 12 20:23:59.046000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.054979 kernel: audit: type=1130 audit(1707769439.046:37): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.058201 systemd[1]: Starting initrd-setup-root-after-ignition.service... Feb 12 20:23:59.060135 systemd[1]: torcx-profile-populate.service was skipped because of an unmet condition check (ConditionPathExists=/sysroot/etc/torcx/next-profile). Feb 12 20:23:59.061512 systemd[1]: Starting ignition-quench.service... Feb 12 20:23:59.074264 systemd[1]: ignition-quench.service: Deactivated successfully. Feb 12 20:23:59.076570 systemd[1]: Finished ignition-quench.service. Feb 12 20:23:59.077000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.077000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.096591 kernel: audit: type=1130 audit(1707769439.077:38): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.096664 kernel: audit: type=1131 audit(1707769439.077:39): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.099758 initrd-setup-root-after-ignition[1367]: grep: /sysroot/etc/flatcar/enabled-sysext.conf: No such file or directory Feb 12 20:23:59.103073 systemd[1]: Finished initrd-setup-root-after-ignition.service. Feb 12 20:23:59.104000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.116473 kernel: audit: type=1130 audit(1707769439.104:40): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.105997 systemd[1]: Reached target ignition-complete.target. Feb 12 20:23:59.118436 systemd[1]: Starting initrd-parse-etc.service... Feb 12 20:23:59.147735 systemd[1]: initrd-parse-etc.service: Deactivated successfully. Feb 12 20:23:59.148425 systemd[1]: Finished initrd-parse-etc.service. Feb 12 20:23:59.167381 kernel: audit: type=1130 audit(1707769439.150:41): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.168994 kernel: audit: type=1131 audit(1707769439.150:42): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.150000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.150000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.151735 systemd[1]: Reached target initrd-fs.target. Feb 12 20:23:59.169053 systemd[1]: Reached target initrd.target. Feb 12 20:23:59.171107 systemd[1]: dracut-mount.service was skipped because no trigger condition checks were met. Feb 12 20:23:59.172532 systemd[1]: Starting dracut-pre-pivot.service... Feb 12 20:23:59.201432 systemd[1]: Finished dracut-pre-pivot.service. Feb 12 20:23:59.201000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.207830 systemd[1]: Starting initrd-cleanup.service... Feb 12 20:23:59.214748 kernel: audit: type=1130 audit(1707769439.201:43): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.228760 systemd[1]: Stopped target nss-lookup.target. Feb 12 20:23:59.232082 systemd[1]: Stopped target remote-cryptsetup.target. Feb 12 20:23:59.237038 systemd[1]: Stopped target timers.target. Feb 12 20:23:59.240058 systemd[1]: dracut-pre-pivot.service: Deactivated successfully. Feb 12 20:23:59.242156 systemd[1]: Stopped dracut-pre-pivot.service. Feb 12 20:23:59.244000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.245535 systemd[1]: Stopped target initrd.target. Feb 12 20:23:59.255773 kernel: audit: type=1131 audit(1707769439.244:44): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.255737 systemd[1]: Stopped target basic.target. Feb 12 20:23:59.258952 systemd[1]: Stopped target ignition-complete.target. Feb 12 20:23:59.262421 systemd[1]: Stopped target ignition-diskful.target. Feb 12 20:23:59.265892 systemd[1]: Stopped target initrd-root-device.target. Feb 12 20:23:59.269687 systemd[1]: Stopped target remote-fs.target. Feb 12 20:23:59.272900 systemd[1]: Stopped target remote-fs-pre.target. Feb 12 20:23:59.276341 systemd[1]: Stopped target sysinit.target. Feb 12 20:23:59.279500 systemd[1]: Stopped target local-fs.target. Feb 12 20:23:59.282726 systemd[1]: Stopped target local-fs-pre.target. Feb 12 20:23:59.286109 systemd[1]: Stopped target swap.target. Feb 12 20:23:59.289072 systemd[1]: dracut-pre-mount.service: Deactivated successfully. Feb 12 20:23:59.291210 systemd[1]: Stopped dracut-pre-mount.service. Feb 12 20:23:59.293000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.294691 systemd[1]: Stopped target cryptsetup.target. Feb 12 20:23:59.303321 kernel: audit: type=1131 audit(1707769439.293:45): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.305155 systemd[1]: dracut-initqueue.service: Deactivated successfully. Feb 12 20:23:59.307304 systemd[1]: Stopped dracut-initqueue.service. Feb 12 20:23:59.309000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.310836 systemd[1]: initrd-setup-root-after-ignition.service: Deactivated successfully. Feb 12 20:23:59.320094 kernel: audit: type=1131 audit(1707769439.309:46): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.311081 systemd[1]: Stopped initrd-setup-root-after-ignition.service. Feb 12 20:23:59.323000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.324191 systemd[1]: ignition-files.service: Deactivated successfully. Feb 12 20:23:59.326292 systemd[1]: Stopped ignition-files.service. Feb 12 20:23:59.328000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.331669 systemd[1]: Stopping ignition-mount.service... Feb 12 20:23:59.346485 ignition[1380]: INFO : Ignition 2.14.0 Feb 12 20:23:59.346485 ignition[1380]: INFO : Stage: umount Feb 12 20:23:59.346485 ignition[1380]: INFO : reading system config file "/usr/lib/ignition/base.d/base.ign" Feb 12 20:23:59.346485 ignition[1380]: DEBUG : parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Feb 12 20:23:59.366977 ignition[1380]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/aws" Feb 12 20:23:59.366977 ignition[1380]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Feb 12 20:23:59.366977 ignition[1380]: INFO : PUT result: OK Feb 12 20:23:59.369000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.385000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.399159 iscsid[1190]: iscsid shutting down. Feb 12 20:23:59.366442 systemd[1]: Stopping iscsid.service... Feb 12 20:23:59.402573 ignition[1380]: INFO : umount: umount passed Feb 12 20:23:59.402573 ignition[1380]: INFO : Ignition finished successfully Feb 12 20:23:59.368607 systemd[1]: kmod-static-nodes.service: Deactivated successfully. Feb 12 20:23:59.370706 systemd[1]: Stopped kmod-static-nodes.service. Feb 12 20:23:59.374993 systemd[1]: Stopping sysroot-boot.service... Feb 12 20:23:59.383100 systemd[1]: systemd-udev-trigger.service: Deactivated successfully. Feb 12 20:23:59.383506 systemd[1]: Stopped systemd-udev-trigger.service. Feb 12 20:23:59.387082 systemd[1]: dracut-pre-trigger.service: Deactivated successfully. Feb 12 20:23:59.387397 systemd[1]: Stopped dracut-pre-trigger.service. Feb 12 20:23:59.435000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.440331 systemd[1]: iscsid.service: Deactivated successfully. Feb 12 20:23:59.442164 systemd[1]: Stopped iscsid.service. Feb 12 20:23:59.444000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.445839 systemd[1]: ignition-mount.service: Deactivated successfully. Feb 12 20:23:59.447872 systemd[1]: Stopped ignition-mount.service. Feb 12 20:23:59.450000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.451629 systemd[1]: sysroot-boot.service: Deactivated successfully. Feb 12 20:23:59.453648 systemd[1]: Stopped sysroot-boot.service. Feb 12 20:23:59.455000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.457289 systemd[1]: ignition-disks.service: Deactivated successfully. Feb 12 20:23:59.460000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.462000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.462000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.462000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.457470 systemd[1]: Stopped ignition-disks.service. Feb 12 20:23:59.461193 systemd[1]: ignition-kargs.service: Deactivated successfully. Feb 12 20:23:59.461290 systemd[1]: Stopped ignition-kargs.service. Feb 12 20:23:59.464737 systemd[1]: ignition-fetch.service: Deactivated successfully. Feb 12 20:23:59.480000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.484000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.464832 systemd[1]: Stopped ignition-fetch.service. Feb 12 20:23:59.466519 systemd[1]: ignition-fetch-offline.service: Deactivated successfully. Feb 12 20:23:59.466608 systemd[1]: Stopped ignition-fetch-offline.service. Feb 12 20:23:59.468448 systemd[1]: Stopped target paths.target. Feb 12 20:23:59.469975 systemd[1]: systemd-ask-password-console.path: Deactivated successfully. Feb 12 20:23:59.495000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsiuio comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.499000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.499000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.470759 systemd[1]: Stopped systemd-ask-password-console.path. Feb 12 20:23:59.473598 systemd[1]: Stopped target slices.target. Feb 12 20:23:59.476927 systemd[1]: Stopped target sockets.target. Feb 12 20:23:59.478630 systemd[1]: iscsid.socket: Deactivated successfully. Feb 12 20:23:59.478711 systemd[1]: Closed iscsid.socket. Feb 12 20:23:59.480527 systemd[1]: ignition-setup.service: Deactivated successfully. Feb 12 20:23:59.480625 systemd[1]: Stopped ignition-setup.service. Feb 12 20:23:59.483281 systemd[1]: initrd-setup-root.service: Deactivated successfully. Feb 12 20:23:59.528000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.483373 systemd[1]: Stopped initrd-setup-root.service. Feb 12 20:23:59.532000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.486118 systemd[1]: Stopping iscsiuio.service... Feb 12 20:23:59.536000 audit: BPF prog-id=6 op=UNLOAD Feb 12 20:23:59.495632 systemd[1]: iscsiuio.service: Deactivated successfully. Feb 12 20:23:59.545000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=parse-ip-for-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.495936 systemd[1]: Stopped iscsiuio.service. Feb 12 20:23:59.498471 systemd[1]: initrd-cleanup.service: Deactivated successfully. Feb 12 20:23:59.548000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.498634 systemd[1]: Finished initrd-cleanup.service. Feb 12 20:23:59.504140 systemd[1]: Stopped target network.target. Feb 12 20:23:59.552000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.506648 systemd[1]: iscsiuio.socket: Deactivated successfully. Feb 12 20:23:59.506722 systemd[1]: Closed iscsiuio.socket. Feb 12 20:23:59.508972 systemd[1]: Stopping systemd-networkd.service... Feb 12 20:23:59.511691 systemd[1]: Stopping systemd-resolved.service... Feb 12 20:23:59.520047 systemd-networkd[1185]: eth0: DHCPv6 lease lost Feb 12 20:23:59.568000 audit: BPF prog-id=9 op=UNLOAD Feb 12 20:23:59.525978 systemd[1]: systemd-networkd.service: Deactivated successfully. Feb 12 20:23:59.526242 systemd[1]: Stopped systemd-networkd.service. Feb 12 20:23:59.531866 systemd[1]: systemd-resolved.service: Deactivated successfully. Feb 12 20:23:59.532145 systemd[1]: Stopped systemd-resolved.service. Feb 12 20:23:59.535032 systemd[1]: systemd-networkd.socket: Deactivated successfully. Feb 12 20:23:59.584000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.535131 systemd[1]: Closed systemd-networkd.socket. Feb 12 20:23:59.538732 systemd[1]: Stopping network-cleanup.service... Feb 12 20:23:59.542876 systemd[1]: parse-ip-for-networkd.service: Deactivated successfully. Feb 12 20:23:59.543521 systemd[1]: Stopped parse-ip-for-networkd.service. Feb 12 20:23:59.546599 systemd[1]: systemd-sysctl.service: Deactivated successfully. Feb 12 20:23:59.546791 systemd[1]: Stopped systemd-sysctl.service. Feb 12 20:23:59.551610 systemd[1]: systemd-modules-load.service: Deactivated successfully. Feb 12 20:23:59.551709 systemd[1]: Stopped systemd-modules-load.service. Feb 12 20:23:59.555382 systemd[1]: Stopping systemd-udevd.service... Feb 12 20:23:59.570999 systemd[1]: systemd-udevd.service: Deactivated successfully. Feb 12 20:23:59.580647 systemd[1]: Stopped systemd-udevd.service. Feb 12 20:23:59.599450 systemd[1]: network-cleanup.service: Deactivated successfully. Feb 12 20:23:59.601092 systemd[1]: Stopped network-cleanup.service. Feb 12 20:23:59.607000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=network-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.608875 systemd[1]: systemd-udevd-control.socket: Deactivated successfully. Feb 12 20:23:59.608995 systemd[1]: Closed systemd-udevd-control.socket. Feb 12 20:23:59.614185 systemd[1]: systemd-udevd-kernel.socket: Deactivated successfully. Feb 12 20:23:59.614274 systemd[1]: Closed systemd-udevd-kernel.socket. Feb 12 20:23:59.617740 systemd[1]: dracut-pre-udev.service: Deactivated successfully. Feb 12 20:23:59.619327 systemd[1]: Stopped dracut-pre-udev.service. Feb 12 20:23:59.621000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-udev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.624154 systemd[1]: dracut-cmdline.service: Deactivated successfully. Feb 12 20:23:59.626000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.624260 systemd[1]: Stopped dracut-cmdline.service. Feb 12 20:23:59.627596 systemd[1]: dracut-cmdline-ask.service: Deactivated successfully. Feb 12 20:23:59.629000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.627693 systemd[1]: Stopped dracut-cmdline-ask.service. Feb 12 20:23:59.635741 systemd[1]: Starting initrd-udevadm-cleanup-db.service... Feb 12 20:23:59.637000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.638133 systemd[1]: systemd-vconsole-setup.service: Deactivated successfully. Feb 12 20:23:59.638283 systemd[1]: Stopped systemd-vconsole-setup.service. Feb 12 20:23:59.657524 systemd[1]: initrd-udevadm-cleanup-db.service: Deactivated successfully. Feb 12 20:23:59.657743 systemd[1]: Finished initrd-udevadm-cleanup-db.service. Feb 12 20:23:59.658000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-udevadm-cleanup-db comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.658000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-udevadm-cleanup-db comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:23:59.661850 systemd[1]: Reached target initrd-switch-root.target. Feb 12 20:23:59.664938 systemd[1]: Starting initrd-switch-root.service... Feb 12 20:23:59.685437 systemd[1]: Switching root. Feb 12 20:23:59.715238 systemd-journald[308]: Journal stopped Feb 12 20:24:05.295608 systemd-journald[308]: Received SIGTERM from PID 1 (systemd). Feb 12 20:24:05.295724 kernel: SELinux: Class mctp_socket not defined in policy. Feb 12 20:24:05.295767 kernel: SELinux: Class anon_inode not defined in policy. Feb 12 20:24:05.295799 kernel: SELinux: the above unknown classes and permissions will be allowed Feb 12 20:24:05.295832 kernel: SELinux: policy capability network_peer_controls=1 Feb 12 20:24:05.295864 kernel: SELinux: policy capability open_perms=1 Feb 12 20:24:05.295895 kernel: SELinux: policy capability extended_socket_class=1 Feb 12 20:24:05.295924 kernel: SELinux: policy capability always_check_network=0 Feb 12 20:24:05.295954 kernel: SELinux: policy capability cgroup_seclabel=1 Feb 12 20:24:05.296003 kernel: SELinux: policy capability nnp_nosuid_transition=1 Feb 12 20:24:05.296042 kernel: SELinux: policy capability genfs_seclabel_symlinks=0 Feb 12 20:24:05.296112 kernel: SELinux: policy capability ioctl_skip_cloexec=0 Feb 12 20:24:05.296150 systemd[1]: Successfully loaded SELinux policy in 105.771ms. Feb 12 20:24:05.296207 systemd[1]: Relabelled /dev, /dev/shm, /run, /sys/fs/cgroup in 20.085ms. Feb 12 20:24:05.296242 systemd[1]: systemd 252 running in system mode (+PAM +AUDIT +SELINUX -APPARMOR +IMA +SMACK +SECCOMP +GCRYPT -GNUTLS +OPENSSL -ACL +BLKID +CURL -ELFUTILS -FIDO2 +IDN2 -IDN +IPTC +KMOD +LIBCRYPTSETUP +LIBFDISK +PCRE2 -PWQUALITY -P11KIT -QRENCODE -TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD -BPF_FRAMEWORK -XKBCOMMON +UTMP +SYSVINIT default-hierarchy=unified) Feb 12 20:24:05.296282 systemd[1]: Detected virtualization amazon. Feb 12 20:24:05.296315 systemd[1]: Detected architecture arm64. Feb 12 20:24:05.296349 systemd[1]: Detected first boot. Feb 12 20:24:05.296381 systemd[1]: Initializing machine ID from VM UUID. Feb 12 20:24:05.296411 kernel: SELinux: Context system_u:object_r:container_file_t:s0:c1022,c1023 is not valid (left unmapped). Feb 12 20:24:05.296446 systemd[1]: Populated /etc with preset unit settings. Feb 12 20:24:05.296478 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Feb 12 20:24:05.296515 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Feb 12 20:24:05.296550 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Feb 12 20:24:05.296590 kernel: kauditd_printk_skb: 48 callbacks suppressed Feb 12 20:24:05.296620 kernel: audit: type=1334 audit(1707769444.869:88): prog-id=12 op=LOAD Feb 12 20:24:05.296650 kernel: audit: type=1334 audit(1707769444.870:89): prog-id=3 op=UNLOAD Feb 12 20:24:05.296678 kernel: audit: type=1334 audit(1707769444.872:90): prog-id=13 op=LOAD Feb 12 20:24:05.296713 kernel: audit: type=1334 audit(1707769444.874:91): prog-id=14 op=LOAD Feb 12 20:24:05.296753 kernel: audit: type=1334 audit(1707769444.874:92): prog-id=4 op=UNLOAD Feb 12 20:24:05.296781 kernel: audit: type=1334 audit(1707769444.874:93): prog-id=5 op=UNLOAD Feb 12 20:24:05.296813 systemd[1]: initrd-switch-root.service: Deactivated successfully. Feb 12 20:24:05.296846 kernel: audit: type=1334 audit(1707769444.877:94): prog-id=15 op=LOAD Feb 12 20:24:05.296878 systemd[1]: Stopped initrd-switch-root.service. Feb 12 20:24:05.296910 kernel: audit: type=1334 audit(1707769444.877:95): prog-id=12 op=UNLOAD Feb 12 20:24:05.296939 kernel: audit: type=1334 audit(1707769444.879:96): prog-id=16 op=LOAD Feb 12 20:24:05.299910 kernel: audit: type=1334 audit(1707769444.882:97): prog-id=17 op=LOAD Feb 12 20:24:05.300154 systemd[1]: systemd-journald.service: Scheduled restart job, restart counter is at 1. Feb 12 20:24:05.300198 systemd[1]: Created slice system-addon\x2dconfig.slice. Feb 12 20:24:05.300232 systemd[1]: Created slice system-addon\x2drun.slice. Feb 12 20:24:05.300264 systemd[1]: Created slice system-coreos\x2dmetadata\x2dsshkeys.slice. Feb 12 20:24:05.300296 systemd[1]: Created slice system-getty.slice. Feb 12 20:24:05.300328 systemd[1]: Created slice system-modprobe.slice. Feb 12 20:24:05.300359 systemd[1]: Created slice system-serial\x2dgetty.slice. Feb 12 20:24:05.300395 systemd[1]: Created slice system-system\x2dcloudinit.slice. Feb 12 20:24:05.300427 systemd[1]: Created slice system-systemd\x2dfsck.slice. Feb 12 20:24:05.300457 systemd[1]: Created slice user.slice. Feb 12 20:24:05.300490 systemd[1]: Started systemd-ask-password-console.path. Feb 12 20:24:05.300523 systemd[1]: Started systemd-ask-password-wall.path. Feb 12 20:24:05.300556 systemd[1]: Set up automount boot.automount. Feb 12 20:24:05.300586 systemd[1]: Set up automount proc-sys-fs-binfmt_misc.automount. Feb 12 20:24:05.300618 systemd[1]: Stopped target initrd-switch-root.target. Feb 12 20:24:05.300651 systemd[1]: Stopped target initrd-fs.target. Feb 12 20:24:05.300685 systemd[1]: Stopped target initrd-root-fs.target. Feb 12 20:24:05.300718 systemd[1]: Reached target integritysetup.target. Feb 12 20:24:05.300751 systemd[1]: Reached target remote-cryptsetup.target. Feb 12 20:24:05.300785 systemd[1]: Reached target remote-fs.target. Feb 12 20:24:05.300817 systemd[1]: Reached target slices.target. Feb 12 20:24:05.300848 systemd[1]: Reached target swap.target. Feb 12 20:24:05.300877 systemd[1]: Reached target torcx.target. Feb 12 20:24:05.300909 systemd[1]: Reached target veritysetup.target. Feb 12 20:24:05.300939 systemd[1]: Listening on systemd-coredump.socket. Feb 12 20:24:05.300991 systemd[1]: Listening on systemd-initctl.socket. Feb 12 20:24:05.301031 systemd[1]: Listening on systemd-networkd.socket. Feb 12 20:24:05.301065 systemd[1]: Listening on systemd-udevd-control.socket. Feb 12 20:24:05.301097 systemd[1]: Listening on systemd-udevd-kernel.socket. Feb 12 20:24:05.301127 systemd[1]: Listening on systemd-userdbd.socket. Feb 12 20:24:05.301156 systemd[1]: Mounting dev-hugepages.mount... Feb 12 20:24:05.301187 systemd[1]: Mounting dev-mqueue.mount... Feb 12 20:24:05.301217 systemd[1]: Mounting media.mount... Feb 12 20:24:05.301246 systemd[1]: Mounting sys-kernel-debug.mount... Feb 12 20:24:05.301277 systemd[1]: Mounting sys-kernel-tracing.mount... Feb 12 20:24:05.301314 systemd[1]: Mounting tmp.mount... Feb 12 20:24:05.301344 systemd[1]: Starting flatcar-tmpfiles.service... Feb 12 20:24:05.301375 systemd[1]: ignition-delete-config.service was skipped because no trigger condition checks were met. Feb 12 20:24:05.301406 systemd[1]: Starting kmod-static-nodes.service... Feb 12 20:24:05.301436 systemd[1]: Starting modprobe@configfs.service... Feb 12 20:24:05.301468 systemd[1]: Starting modprobe@dm_mod.service... Feb 12 20:24:05.301497 systemd[1]: Starting modprobe@drm.service... Feb 12 20:24:05.301528 systemd[1]: Starting modprobe@efi_pstore.service... Feb 12 20:24:05.301557 systemd[1]: Starting modprobe@fuse.service... Feb 12 20:24:05.301591 systemd[1]: Starting modprobe@loop.service... Feb 12 20:24:05.301621 systemd[1]: setup-nsswitch.service was skipped because of an unmet condition check (ConditionPathExists=!/etc/nsswitch.conf). Feb 12 20:24:05.301654 systemd[1]: systemd-fsck-root.service: Deactivated successfully. Feb 12 20:24:05.301684 systemd[1]: Stopped systemd-fsck-root.service. Feb 12 20:24:05.301714 systemd[1]: systemd-fsck-usr.service: Deactivated successfully. Feb 12 20:24:05.301743 systemd[1]: Stopped systemd-fsck-usr.service. Feb 12 20:24:05.301772 systemd[1]: Stopped systemd-journald.service. Feb 12 20:24:05.301801 systemd[1]: Starting systemd-journald.service... Feb 12 20:24:05.301829 kernel: fuse: init (API version 7.34) Feb 12 20:24:05.301862 kernel: loop: module loaded Feb 12 20:24:05.301892 systemd[1]: Starting systemd-modules-load.service... Feb 12 20:24:05.301922 systemd[1]: Starting systemd-network-generator.service... Feb 12 20:24:05.301952 systemd[1]: Starting systemd-remount-fs.service... Feb 12 20:24:05.302003 systemd[1]: Starting systemd-udev-trigger.service... Feb 12 20:24:05.302037 systemd[1]: verity-setup.service: Deactivated successfully. Feb 12 20:24:05.302067 systemd[1]: Stopped verity-setup.service. Feb 12 20:24:05.302097 systemd[1]: Mounted dev-hugepages.mount. Feb 12 20:24:05.302127 systemd[1]: Mounted dev-mqueue.mount. Feb 12 20:24:05.302165 systemd[1]: Mounted media.mount. Feb 12 20:24:05.302215 systemd[1]: Mounted sys-kernel-debug.mount. Feb 12 20:24:05.302248 systemd[1]: Mounted sys-kernel-tracing.mount. Feb 12 20:24:05.302278 systemd[1]: Mounted tmp.mount. Feb 12 20:24:05.302307 systemd[1]: Finished kmod-static-nodes.service. Feb 12 20:24:05.302339 systemd[1]: modprobe@configfs.service: Deactivated successfully. Feb 12 20:24:05.302370 systemd[1]: Finished modprobe@configfs.service. Feb 12 20:24:05.302401 systemd[1]: modprobe@dm_mod.service: Deactivated successfully. Feb 12 20:24:05.302431 systemd[1]: Finished modprobe@dm_mod.service. Feb 12 20:24:05.302461 systemd[1]: modprobe@drm.service: Deactivated successfully. Feb 12 20:24:05.302494 systemd[1]: Finished modprobe@drm.service. Feb 12 20:24:05.302524 systemd[1]: modprobe@efi_pstore.service: Deactivated successfully. Feb 12 20:24:05.302556 systemd[1]: Finished modprobe@efi_pstore.service. Feb 12 20:24:05.302588 systemd[1]: modprobe@fuse.service: Deactivated successfully. Feb 12 20:24:05.302624 systemd-journald[1491]: Journal started Feb 12 20:24:05.302730 systemd-journald[1491]: Runtime Journal (/run/log/journal/ec21a60c073e718f9ea2b2c53444f248) is 8.0M, max 75.4M, 67.4M free. Feb 12 20:24:00.378000 audit: MAC_POLICY_LOAD auid=4294967295 ses=4294967295 lsm=selinux res=1 Feb 12 20:24:00.569000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=1 Feb 12 20:24:00.569000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=1 Feb 12 20:24:00.569000 audit: BPF prog-id=10 op=LOAD Feb 12 20:24:00.569000 audit: BPF prog-id=10 op=UNLOAD Feb 12 20:24:00.569000 audit: BPF prog-id=11 op=LOAD Feb 12 20:24:00.569000 audit: BPF prog-id=11 op=UNLOAD Feb 12 20:24:00.771000 audit[1413]: AVC avc: denied { associate } for pid=1413 comm="torcx-generator" name="docker" dev="tmpfs" ino=2 scontext=system_u:object_r:unlabeled_t:s0 tcontext=system_u:object_r:tmpfs_t:s0 tclass=filesystem permissive=1 srawcon="system_u:object_r:container_file_t:s0:c1022,c1023" Feb 12 20:24:00.771000 audit[1413]: SYSCALL arch=c00000b7 syscall=5 success=yes exit=0 a0=40001458ac a1=40000c6de0 a2=40000cd0c0 a3=32 items=0 ppid=1396 pid=1413 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="torcx-generator" exe="/usr/lib/systemd/system-generators/torcx-generator" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:00.771000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D2D67656E657261746F72732F746F7263782D67656E657261746F72002F72756E2F73797374656D642F67656E657261746F72002F72756E2F73797374656D642F67656E657261746F722E6561726C79002F72756E2F73797374656D642F67656E657261746F722E6C61 Feb 12 20:24:05.305544 systemd[1]: Finished modprobe@fuse.service. Feb 12 20:24:00.775000 audit[1413]: AVC avc: denied { associate } for pid=1413 comm="torcx-generator" name="bin" scontext=system_u:object_r:unlabeled_t:s0 tcontext=system_u:object_r:tmpfs_t:s0 tclass=filesystem permissive=1 Feb 12 20:24:00.775000 audit[1413]: SYSCALL arch=c00000b7 syscall=34 success=yes exit=0 a0=ffffffffffffff9c a1=4000145985 a2=1ed a3=0 items=2 ppid=1396 pid=1413 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="torcx-generator" exe="/usr/lib/systemd/system-generators/torcx-generator" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:00.775000 audit: CWD cwd="/" Feb 12 20:24:00.775000 audit: PATH item=0 name=(null) inode=2 dev=00:1c mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:unlabeled_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:24:00.775000 audit: PATH item=1 name=(null) inode=3 dev=00:1c mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:unlabeled_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:24:00.775000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D2D67656E657261746F72732F746F7263782D67656E657261746F72002F72756E2F73797374656D642F67656E657261746F72002F72756E2F73797374656D642F67656E657261746F722E6561726C79002F72756E2F73797374656D642F67656E657261746F722E6C61 Feb 12 20:24:04.869000 audit: BPF prog-id=12 op=LOAD Feb 12 20:24:04.870000 audit: BPF prog-id=3 op=UNLOAD Feb 12 20:24:04.872000 audit: BPF prog-id=13 op=LOAD Feb 12 20:24:04.874000 audit: BPF prog-id=14 op=LOAD Feb 12 20:24:04.874000 audit: BPF prog-id=4 op=UNLOAD Feb 12 20:24:04.874000 audit: BPF prog-id=5 op=UNLOAD Feb 12 20:24:04.877000 audit: BPF prog-id=15 op=LOAD Feb 12 20:24:04.877000 audit: BPF prog-id=12 op=UNLOAD Feb 12 20:24:04.879000 audit: BPF prog-id=16 op=LOAD Feb 12 20:24:04.882000 audit: BPF prog-id=17 op=LOAD Feb 12 20:24:04.882000 audit: BPF prog-id=13 op=UNLOAD Feb 12 20:24:04.882000 audit: BPF prog-id=14 op=UNLOAD Feb 12 20:24:04.884000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:04.895000 audit: BPF prog-id=15 op=UNLOAD Feb 12 20:24:04.904000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=initrd-switch-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:04.904000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=initrd-switch-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:05.152000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:05.160000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck-usr comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:05.167000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:05.167000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:05.168000 audit: BPF prog-id=18 op=LOAD Feb 12 20:24:05.169000 audit: BPF prog-id=19 op=LOAD Feb 12 20:24:05.169000 audit: BPF prog-id=20 op=LOAD Feb 12 20:24:05.169000 audit: BPF prog-id=16 op=UNLOAD Feb 12 20:24:05.169000 audit: BPF prog-id=17 op=UNLOAD Feb 12 20:24:05.221000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=verity-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:05.260000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:05.270000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@configfs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:05.270000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@configfs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:05.279000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:05.279000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:05.287000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@drm comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:05.287000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@drm comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:05.291000 audit: CONFIG_CHANGE op=set audit_enabled=1 old=1 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 res=1 Feb 12 20:24:05.291000 audit[1491]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=60 a0=6 a1=ffffde3736d0 a2=4000 a3=1 items=0 ppid=1 pid=1491 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="systemd-journal" exe="/usr/lib/systemd/systemd-journald" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:05.291000 audit: PROCTITLE proctitle="/usr/lib/systemd/systemd-journald" Feb 12 20:24:05.298000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:05.299000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:05.308000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@fuse comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:05.308000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@fuse comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:00.760125 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-12T20:24:00Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.2 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.2 /var/lib/torcx/store]" Feb 12 20:24:04.866733 systemd[1]: Queued start job for default target multi-user.target. Feb 12 20:24:05.314198 systemd[1]: Started systemd-journald.service. Feb 12 20:24:00.760828 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-12T20:24:00Z" level=debug msg="profile found" name=docker-1.12-no path=/usr/share/torcx/profiles/docker-1.12-no.json Feb 12 20:24:04.884518 systemd[1]: systemd-journald.service: Deactivated successfully. Feb 12 20:24:05.313000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:00.760879 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-12T20:24:00Z" level=debug msg="profile found" name=vendor path=/usr/share/torcx/profiles/vendor.json Feb 12 20:24:00.760949 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-12T20:24:00Z" level=info msg="no vendor profile selected by /etc/flatcar/docker-1.12" Feb 12 20:24:05.314994 systemd[1]: modprobe@loop.service: Deactivated successfully. Feb 12 20:24:00.761003 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-12T20:24:00Z" level=debug msg="skipped missing lower profile" missing profile=oem Feb 12 20:24:05.315288 systemd[1]: Finished modprobe@loop.service. Feb 12 20:24:00.761074 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-12T20:24:00Z" level=warning msg="no next profile: unable to read profile file: open /etc/torcx/next-profile: no such file or directory" Feb 12 20:24:05.316000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:05.316000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:00.761107 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-12T20:24:00Z" level=debug msg="apply configuration parsed" lower profiles (vendor/oem)="[vendor]" upper profile (user)= Feb 12 20:24:00.761538 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-12T20:24:00Z" level=debug msg="mounted tmpfs" target=/run/torcx/unpack Feb 12 20:24:00.761627 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-12T20:24:00Z" level=debug msg="profile found" name=docker-1.12-no path=/usr/share/torcx/profiles/docker-1.12-no.json Feb 12 20:24:05.317925 systemd[1]: Finished systemd-modules-load.service. Feb 12 20:24:00.761664 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-12T20:24:00Z" level=debug msg="profile found" name=vendor path=/usr/share/torcx/profiles/vendor.json Feb 12 20:24:00.762636 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-12T20:24:00Z" level=debug msg="new archive/reference added to cache" format=tgz name=docker path="/usr/share/torcx/store/docker:20.10.torcx.tgz" reference=20.10 Feb 12 20:24:00.762724 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-12T20:24:00Z" level=debug msg="new archive/reference added to cache" format=tgz name=docker path="/usr/share/torcx/store/docker:com.coreos.cl.torcx.tgz" reference=com.coreos.cl Feb 12 20:24:05.319000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:00.762771 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-12T20:24:00Z" level=info msg="store skipped" err="open /usr/share/oem/torcx/store/3510.3.2: no such file or directory" path=/usr/share/oem/torcx/store/3510.3.2 Feb 12 20:24:00.762812 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-12T20:24:00Z" level=info msg="store skipped" err="open /usr/share/oem/torcx/store: no such file or directory" path=/usr/share/oem/torcx/store Feb 12 20:24:00.762860 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-12T20:24:00Z" level=info msg="store skipped" err="open /var/lib/torcx/store/3510.3.2: no such file or directory" path=/var/lib/torcx/store/3510.3.2 Feb 12 20:24:00.762899 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-12T20:24:00Z" level=info msg="store skipped" err="open /var/lib/torcx/store: no such file or directory" path=/var/lib/torcx/store Feb 12 20:24:03.986286 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-12T20:24:03Z" level=debug msg="image unpacked" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Feb 12 20:24:05.321146 systemd[1]: Finished systemd-network-generator.service. Feb 12 20:24:03.986826 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-12T20:24:03Z" level=debug msg="binaries propagated" assets="[/bin/containerd /bin/containerd-shim /bin/ctr /bin/docker /bin/docker-containerd /bin/docker-containerd-shim /bin/docker-init /bin/docker-proxy /bin/docker-runc /bin/dockerd /bin/runc /bin/tini]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Feb 12 20:24:03.987098 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-12T20:24:03Z" level=debug msg="networkd units propagated" assets="[/lib/systemd/network/50-docker.network /lib/systemd/network/90-docker-veth.network]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Feb 12 20:24:03.987768 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-12T20:24:03Z" level=debug msg="systemd units propagated" assets="[/lib/systemd/system/containerd.service /lib/systemd/system/docker.service /lib/systemd/system/docker.socket /lib/systemd/system/sockets.target.wants /lib/systemd/system/multi-user.target.wants]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Feb 12 20:24:03.987932 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-12T20:24:03Z" level=debug msg="profile applied" sealed profile=/run/torcx/profile.json upper profile= Feb 12 20:24:03.988125 /usr/lib/systemd/system-generators/torcx-generator[1413]: time="2024-02-12T20:24:03Z" level=debug msg="system state sealed" content="[TORCX_LOWER_PROFILES=\"vendor\" TORCX_UPPER_PROFILE=\"\" TORCX_PROFILE_PATH=\"/run/torcx/profile.json\" TORCX_BINDIR=\"/run/torcx/bin\" TORCX_UNPACKDIR=\"/run/torcx/unpack\"]" path=/run/metadata/torcx Feb 12 20:24:05.324000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-network-generator comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:05.327000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-remount-fs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:05.326789 systemd[1]: Finished systemd-remount-fs.service. Feb 12 20:24:05.329799 systemd[1]: Reached target network-pre.target. Feb 12 20:24:05.335445 systemd[1]: Mounting sys-fs-fuse-connections.mount... Feb 12 20:24:05.339806 systemd[1]: Mounting sys-kernel-config.mount... Feb 12 20:24:05.347678 systemd[1]: remount-root.service was skipped because of an unmet condition check (ConditionPathIsReadWrite=!/). Feb 12 20:24:05.351477 systemd[1]: Starting systemd-hwdb-update.service... Feb 12 20:24:05.356838 systemd[1]: Starting systemd-journal-flush.service... Feb 12 20:24:05.358784 systemd[1]: systemd-pstore.service was skipped because of an unmet condition check (ConditionDirectoryNotEmpty=/sys/fs/pstore). Feb 12 20:24:05.361172 systemd[1]: Starting systemd-random-seed.service... Feb 12 20:24:05.363880 systemd[1]: systemd-repart.service was skipped because no trigger condition checks were met. Feb 12 20:24:05.366275 systemd[1]: Starting systemd-sysctl.service... Feb 12 20:24:05.375544 systemd[1]: Mounted sys-fs-fuse-connections.mount. Feb 12 20:24:05.378440 systemd[1]: Mounted sys-kernel-config.mount. Feb 12 20:24:05.392210 systemd-journald[1491]: Time spent on flushing to /var/log/journal/ec21a60c073e718f9ea2b2c53444f248 is 66.357ms for 1149 entries. Feb 12 20:24:05.392210 systemd-journald[1491]: System Journal (/var/log/journal/ec21a60c073e718f9ea2b2c53444f248) is 8.0M, max 195.6M, 187.6M free. Feb 12 20:24:05.471998 systemd-journald[1491]: Received client request to flush runtime journal. Feb 12 20:24:05.410000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-random-seed comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:05.418000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=flatcar-tmpfiles comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:05.454000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:05.406950 systemd[1]: Finished systemd-random-seed.service. Feb 12 20:24:05.476000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journal-flush comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:05.415516 systemd[1]: Finished flatcar-tmpfiles.service. Feb 12 20:24:05.420088 systemd[1]: Reached target first-boot-complete.target. Feb 12 20:24:05.426893 systemd[1]: Starting systemd-sysusers.service... Feb 12 20:24:05.450857 systemd[1]: Finished systemd-sysctl.service. Feb 12 20:24:05.473598 systemd[1]: Finished systemd-journal-flush.service. Feb 12 20:24:05.556390 systemd[1]: Finished systemd-udev-trigger.service. Feb 12 20:24:05.557000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:05.560935 systemd[1]: Starting systemd-udev-settle.service... Feb 12 20:24:05.581892 systemd[1]: Finished systemd-sysusers.service. Feb 12 20:24:05.582000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysusers comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:05.584807 udevadm[1531]: systemd-udev-settle.service is deprecated. Please fix lvm2-activation-early.service, lvm2-activation.service not to pull it in. Feb 12 20:24:06.294210 systemd[1]: Finished systemd-hwdb-update.service. Feb 12 20:24:06.296000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-hwdb-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:06.297000 audit: BPF prog-id=21 op=LOAD Feb 12 20:24:06.297000 audit: BPF prog-id=22 op=LOAD Feb 12 20:24:06.297000 audit: BPF prog-id=7 op=UNLOAD Feb 12 20:24:06.297000 audit: BPF prog-id=8 op=UNLOAD Feb 12 20:24:06.300153 systemd[1]: Starting systemd-udevd.service... Feb 12 20:24:06.341580 systemd-udevd[1532]: Using default interface naming scheme 'v252'. Feb 12 20:24:06.394511 systemd[1]: Started systemd-udevd.service. Feb 12 20:24:06.395000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:06.397000 audit: BPF prog-id=23 op=LOAD Feb 12 20:24:06.400011 systemd[1]: Starting systemd-networkd.service... Feb 12 20:24:06.408000 audit: BPF prog-id=24 op=LOAD Feb 12 20:24:06.408000 audit: BPF prog-id=25 op=LOAD Feb 12 20:24:06.408000 audit: BPF prog-id=26 op=LOAD Feb 12 20:24:06.411527 systemd[1]: Starting systemd-userdbd.service... Feb 12 20:24:06.493625 systemd[1]: Condition check resulted in dev-ttyS0.device being skipped. Feb 12 20:24:06.504069 systemd[1]: Started systemd-userdbd.service. Feb 12 20:24:06.504000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-userdbd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:06.563106 (udev-worker)[1541]: Network interface NamePolicy= disabled on kernel command line. Feb 12 20:24:06.668106 systemd-networkd[1538]: lo: Link UP Feb 12 20:24:06.668657 systemd-networkd[1538]: lo: Gained carrier Feb 12 20:24:06.670557 systemd-networkd[1538]: Enumeration completed Feb 12 20:24:06.671288 systemd[1]: Started systemd-networkd.service. Feb 12 20:24:06.672000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:06.675842 systemd[1]: Starting systemd-networkd-wait-online.service... Feb 12 20:24:06.681050 systemd-networkd[1538]: eth0: Configuring with /usr/lib/systemd/network/zz-default.network. Feb 12 20:24:06.687014 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 12 20:24:06.687344 systemd-networkd[1538]: eth0: Link UP Feb 12 20:24:06.687677 systemd-networkd[1538]: eth0: Gained carrier Feb 12 20:24:06.698261 systemd-networkd[1538]: eth0: DHCPv4 address 172.31.16.56/20, gateway 172.31.16.1 acquired from 172.31.16.1 Feb 12 20:24:06.782044 kernel: BTRFS info: devid 1 device path /dev/disk/by-label/OEM changed to /dev/nvme0n1p6 scanned by (udev-worker) (1536) Feb 12 20:24:06.922046 systemd[1]: Found device dev-disk-by\x2dlabel-OEM.device. Feb 12 20:24:06.924753 systemd[1]: Finished systemd-udev-settle.service. Feb 12 20:24:06.925000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udev-settle comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:06.929605 systemd[1]: Starting lvm2-activation-early.service... Feb 12 20:24:06.981413 lvm[1646]: WARNING: Failed to connect to lvmetad. Falling back to device scanning. Feb 12 20:24:07.018554 systemd[1]: Finished lvm2-activation-early.service. Feb 12 20:24:07.019000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=lvm2-activation-early comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:07.020696 systemd[1]: Reached target cryptsetup.target. Feb 12 20:24:07.024654 systemd[1]: Starting lvm2-activation.service... Feb 12 20:24:07.033149 lvm[1647]: WARNING: Failed to connect to lvmetad. Falling back to device scanning. Feb 12 20:24:07.069760 systemd[1]: Finished lvm2-activation.service. Feb 12 20:24:07.070000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=lvm2-activation comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:07.071947 systemd[1]: Reached target local-fs-pre.target. Feb 12 20:24:07.073891 systemd[1]: var-lib-machines.mount was skipped because of an unmet condition check (ConditionPathExists=/var/lib/machines.raw). Feb 12 20:24:07.073941 systemd[1]: Reached target local-fs.target. Feb 12 20:24:07.075824 systemd[1]: Reached target machines.target. Feb 12 20:24:07.080593 systemd[1]: Starting ldconfig.service... Feb 12 20:24:07.083003 systemd[1]: systemd-binfmt.service was skipped because no trigger condition checks were met. Feb 12 20:24:07.083180 systemd[1]: systemd-boot-system-token.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/LoaderFeatures-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Feb 12 20:24:07.086105 systemd[1]: Starting systemd-boot-update.service... Feb 12 20:24:07.089930 systemd[1]: Starting systemd-fsck@dev-disk-by\x2dlabel-OEM.service... Feb 12 20:24:07.096596 systemd[1]: Starting systemd-machine-id-commit.service... Feb 12 20:24:07.099686 systemd[1]: systemd-sysext.service was skipped because no trigger condition checks were met. Feb 12 20:24:07.099851 systemd[1]: ensure-sysext.service was skipped because no trigger condition checks were met. Feb 12 20:24:07.105225 systemd[1]: Starting systemd-tmpfiles-setup.service... Feb 12 20:24:07.117190 systemd[1]: boot.automount: Got automount request for /boot, triggered by 1649 (bootctl) Feb 12 20:24:07.119749 systemd[1]: Starting systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM.service... Feb 12 20:24:07.147431 systemd[1]: Finished systemd-fsck@dev-disk-by\x2dlabel-OEM.service. Feb 12 20:24:07.146000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck@dev-disk-by\x2dlabel-OEM comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:07.165195 systemd-tmpfiles[1652]: /usr/lib/tmpfiles.d/legacy.conf:13: Duplicate line for path "/run/lock", ignoring. Feb 12 20:24:07.201214 systemd-tmpfiles[1652]: /usr/lib/tmpfiles.d/provision.conf:20: Duplicate line for path "/root", ignoring. Feb 12 20:24:07.216943 systemd-tmpfiles[1652]: /usr/lib/tmpfiles.d/systemd.conf:29: Duplicate line for path "/var/lib/systemd", ignoring. Feb 12 20:24:07.261687 systemd-fsck[1658]: fsck.fat 4.2 (2021-01-31) Feb 12 20:24:07.261687 systemd-fsck[1658]: /dev/nvme0n1p1: 236 files, 113719/258078 clusters Feb 12 20:24:07.266588 systemd[1]: Finished systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM.service. Feb 12 20:24:07.268000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:07.271478 systemd[1]: Mounting boot.mount... Feb 12 20:24:07.292853 systemd[1]: Mounted boot.mount. Feb 12 20:24:07.316734 systemd[1]: Finished systemd-boot-update.service. Feb 12 20:24:07.317000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-boot-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:07.554467 systemd[1]: Finished systemd-tmpfiles-setup.service. Feb 12 20:24:07.555000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-tmpfiles-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:07.559334 systemd[1]: Starting audit-rules.service... Feb 12 20:24:07.563781 systemd[1]: Starting clean-ca-certificates.service... Feb 12 20:24:07.569793 systemd[1]: Starting systemd-journal-catalog-update.service... Feb 12 20:24:07.574000 audit: BPF prog-id=27 op=LOAD Feb 12 20:24:07.580000 audit: BPF prog-id=28 op=LOAD Feb 12 20:24:07.577871 systemd[1]: Starting systemd-resolved.service... Feb 12 20:24:07.585504 systemd[1]: Starting systemd-timesyncd.service... Feb 12 20:24:07.590143 systemd[1]: Starting systemd-update-utmp.service... Feb 12 20:24:07.598605 systemd[1]: Finished clean-ca-certificates.service. Feb 12 20:24:07.599000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=clean-ca-certificates comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:07.601060 systemd[1]: update-ca-certificates.service was skipped because of an unmet condition check (ConditionPathIsSymbolicLink=!/etc/ssl/certs/ca-certificates.crt). Feb 12 20:24:07.623000 audit[1678]: SYSTEM_BOOT pid=1678 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg=' comm="systemd-update-utmp" exe="/usr/lib/systemd/systemd-update-utmp" hostname=? addr=? terminal=? res=success' Feb 12 20:24:07.635745 systemd[1]: Finished systemd-update-utmp.service. Feb 12 20:24:07.636000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-update-utmp comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:07.684095 systemd[1]: Finished systemd-journal-catalog-update.service. Feb 12 20:24:07.685000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journal-catalog-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:07.739000 audit: CONFIG_CHANGE auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=add_rule key=(null) list=5 res=1 Feb 12 20:24:07.739000 audit[1692]: SYSCALL arch=c00000b7 syscall=206 success=yes exit=1056 a0=3 a1=ffffc13ca930 a2=420 a3=0 items=0 ppid=1672 pid=1692 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:07.739000 audit: PROCTITLE proctitle=2F7362696E2F617564697463746C002D52002F6574632F61756469742F61756469742E72756C6573 Feb 12 20:24:07.741321 augenrules[1692]: No rules Feb 12 20:24:07.745937 systemd[1]: Finished audit-rules.service. Feb 12 20:24:07.765155 systemd[1]: Started systemd-timesyncd.service. Feb 12 20:24:07.767310 systemd[1]: Reached target time-set.target. Feb 12 20:24:07.801014 systemd-resolved[1676]: Positive Trust Anchors: Feb 12 20:24:07.801604 systemd-resolved[1676]: . IN DS 20326 8 2 e06d44b80b8f1d39a95c0b0d7c65d08458e880409bbc683457104237c7f8ec8d Feb 12 20:24:07.801801 systemd-resolved[1676]: Negative trust anchors: home.arpa 10.in-addr.arpa 16.172.in-addr.arpa 17.172.in-addr.arpa 18.172.in-addr.arpa 19.172.in-addr.arpa 20.172.in-addr.arpa 21.172.in-addr.arpa 22.172.in-addr.arpa 23.172.in-addr.arpa 24.172.in-addr.arpa 25.172.in-addr.arpa 26.172.in-addr.arpa 27.172.in-addr.arpa 28.172.in-addr.arpa 29.172.in-addr.arpa 30.172.in-addr.arpa 31.172.in-addr.arpa 168.192.in-addr.arpa d.f.ip6.arpa corp home internal intranet lan local private test Feb 12 20:24:07.859797 systemd-resolved[1676]: Defaulting to hostname 'linux'. Feb 12 20:24:07.861246 systemd-timesyncd[1677]: Contacted time server 72.30.35.89:123 (0.flatcar.pool.ntp.org). Feb 12 20:24:07.861359 systemd-timesyncd[1677]: Initial clock synchronization to Mon 2024-02-12 20:24:07.729152 UTC. Feb 12 20:24:07.863159 systemd[1]: Started systemd-resolved.service. Feb 12 20:24:07.865174 systemd[1]: Reached target network.target. Feb 12 20:24:07.867022 systemd[1]: Reached target nss-lookup.target. Feb 12 20:24:08.193112 systemd[1]: etc-machine\x2did.mount: Deactivated successfully. Feb 12 20:24:08.194318 systemd[1]: Finished systemd-machine-id-commit.service. Feb 12 20:24:08.420657 ldconfig[1648]: /sbin/ldconfig: /lib/ld.so.conf is not an ELF file - it has the wrong magic bytes at the start. Feb 12 20:24:08.428686 systemd[1]: Finished ldconfig.service. Feb 12 20:24:08.432653 systemd[1]: Starting systemd-update-done.service... Feb 12 20:24:08.446470 systemd[1]: Finished systemd-update-done.service. Feb 12 20:24:08.448809 systemd[1]: Reached target sysinit.target. Feb 12 20:24:08.450601 systemd[1]: Started motdgen.path. Feb 12 20:24:08.452130 systemd[1]: Started user-cloudinit@var-lib-flatcar\x2dinstall-user_data.path. Feb 12 20:24:08.454550 systemd[1]: Started logrotate.timer. Feb 12 20:24:08.456318 systemd[1]: Started mdadm.timer. Feb 12 20:24:08.457843 systemd[1]: Started systemd-tmpfiles-clean.timer. Feb 12 20:24:08.459586 systemd[1]: update-engine-stub.timer was skipped because of an unmet condition check (ConditionPathExists=/usr/.noupdate). Feb 12 20:24:08.459644 systemd[1]: Reached target paths.target. Feb 12 20:24:08.461189 systemd[1]: Reached target timers.target. Feb 12 20:24:08.463631 systemd[1]: Listening on dbus.socket. Feb 12 20:24:08.467474 systemd[1]: Starting docker.socket... Feb 12 20:24:08.473723 systemd[1]: Listening on sshd.socket. Feb 12 20:24:08.476048 systemd[1]: systemd-pcrphase-sysinit.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/StubPcrKernelImage-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Feb 12 20:24:08.477050 systemd[1]: Listening on docker.socket. Feb 12 20:24:08.478940 systemd[1]: Reached target sockets.target. Feb 12 20:24:08.480765 systemd[1]: Reached target basic.target. Feb 12 20:24:08.482610 systemd[1]: addon-config@usr-share-oem.service was skipped because no trigger condition checks were met. Feb 12 20:24:08.482863 systemd[1]: addon-run@usr-share-oem.service was skipped because no trigger condition checks were met. Feb 12 20:24:08.494177 systemd[1]: Starting containerd.service... Feb 12 20:24:08.498421 systemd[1]: Starting coreos-metadata-sshkeys@core.service... Feb 12 20:24:08.503347 systemd[1]: Starting dbus.service... Feb 12 20:24:08.512694 systemd[1]: Starting enable-oem-cloudinit.service... Feb 12 20:24:08.516774 systemd[1]: Starting extend-filesystems.service... Feb 12 20:24:08.518610 systemd[1]: flatcar-setup-environment.service was skipped because of an unmet condition check (ConditionPathExists=/usr/share/oem/bin/flatcar-setup-environment). Feb 12 20:24:08.521692 systemd[1]: Starting motdgen.service... Feb 12 20:24:08.547207 jq[1707]: false Feb 12 20:24:08.525481 systemd[1]: Starting prepare-cni-plugins.service... Feb 12 20:24:08.529826 systemd[1]: Starting prepare-critools.service... Feb 12 20:24:08.537450 systemd[1]: Starting ssh-key-proc-cmdline.service... Feb 12 20:24:08.541907 systemd[1]: Starting sshd-keygen.service... Feb 12 20:24:08.551300 systemd[1]: Starting systemd-logind.service... Feb 12 20:24:08.553008 systemd[1]: systemd-pcrphase.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/StubPcrKernelImage-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Feb 12 20:24:08.553155 systemd[1]: tcsd.service was skipped because of an unmet condition check (ConditionPathExists=/dev/tpm0). Feb 12 20:24:08.554082 systemd[1]: cgroup compatibility translation between legacy and unified hierarchy settings activated. See cgroup-compat debug messages for details. Feb 12 20:24:08.555726 systemd[1]: Starting update-engine.service... Feb 12 20:24:08.559547 systemd[1]: Starting update-ssh-keys-after-ignition.service... Feb 12 20:24:08.567933 systemd[1]: enable-oem-cloudinit.service: Skipped due to 'exec-condition'. Feb 12 20:24:08.568464 systemd[1]: Condition check resulted in enable-oem-cloudinit.service being skipped. Feb 12 20:24:08.595801 tar[1719]: crictl Feb 12 20:24:08.604234 jq[1716]: true Feb 12 20:24:08.616833 tar[1724]: ./ Feb 12 20:24:08.616833 tar[1724]: ./loopback Feb 12 20:24:08.634952 dbus-daemon[1706]: [system] SELinux support is enabled Feb 12 20:24:08.637637 systemd[1]: ssh-key-proc-cmdline.service: Deactivated successfully. Feb 12 20:24:08.638129 systemd[1]: Finished ssh-key-proc-cmdline.service. Feb 12 20:24:08.640805 systemd[1]: Started dbus.service. Feb 12 20:24:08.646755 systemd[1]: system-cloudinit@usr-share-oem-cloud\x2dconfig.yml.service was skipped because of an unmet condition check (ConditionFileNotEmpty=/usr/share/oem/cloud-config.yml). Feb 12 20:24:08.646829 systemd[1]: Reached target system-config.target. Feb 12 20:24:08.648910 systemd[1]: user-cloudinit-proc-cmdline.service was skipped because of an unmet condition check (ConditionKernelCommandLine=cloud-config-url). Feb 12 20:24:08.649042 systemd[1]: Reached target user-config.target. Feb 12 20:24:08.662468 jq[1727]: true Feb 12 20:24:08.670188 systemd-networkd[1538]: eth0: Gained IPv6LL Feb 12 20:24:08.673556 systemd[1]: Finished systemd-networkd-wait-online.service. Feb 12 20:24:08.676129 systemd[1]: Reached target network-online.target. Feb 12 20:24:08.680442 systemd[1]: Started amazon-ssm-agent.service. Feb 12 20:24:08.684917 systemd[1]: Started nvidia.service. Feb 12 20:24:08.729326 dbus-daemon[1706]: [system] Activating systemd to hand-off: service name='org.freedesktop.hostname1' unit='dbus-org.freedesktop.hostname1.service' requested by ':1.0' (uid=244 pid=1538 comm="/usr/lib/systemd/systemd-networkd" label="system_u:system_r:kernel_t:s0") Feb 12 20:24:08.737323 dbus-daemon[1706]: [system] Successfully activated service 'org.freedesktop.systemd1' Feb 12 20:24:08.743550 systemd[1]: Starting systemd-hostnamed.service... Feb 12 20:24:08.840066 extend-filesystems[1708]: Found nvme0n1 Feb 12 20:24:08.842405 extend-filesystems[1708]: Found nvme0n1p1 Feb 12 20:24:08.844318 extend-filesystems[1708]: Found nvme0n1p2 Feb 12 20:24:08.846848 systemd[1]: motdgen.service: Deactivated successfully. Feb 12 20:24:08.848292 extend-filesystems[1708]: Found nvme0n1p3 Feb 12 20:24:08.850027 extend-filesystems[1708]: Found usr Feb 12 20:24:08.858071 extend-filesystems[1708]: Found nvme0n1p4 Feb 12 20:24:08.858071 extend-filesystems[1708]: Found nvme0n1p6 Feb 12 20:24:08.858071 extend-filesystems[1708]: Found nvme0n1p7 Feb 12 20:24:08.858071 extend-filesystems[1708]: Found nvme0n1p9 Feb 12 20:24:08.858071 extend-filesystems[1708]: Checking size of /dev/nvme0n1p9 Feb 12 20:24:08.862418 systemd[1]: Finished motdgen.service. Feb 12 20:24:08.928078 update_engine[1715]: I0212 20:24:08.925798 1715 main.cc:92] Flatcar Update Engine starting Feb 12 20:24:08.950372 systemd[1]: Started update-engine.service. Feb 12 20:24:08.950879 update_engine[1715]: I0212 20:24:08.950479 1715 update_check_scheduler.cc:74] Next update check in 5m44s Feb 12 20:24:08.955323 systemd[1]: Started locksmithd.service. Feb 12 20:24:08.985278 extend-filesystems[1708]: Resized partition /dev/nvme0n1p9 Feb 12 20:24:08.995650 extend-filesystems[1770]: resize2fs 1.46.5 (30-Dec-2021) Feb 12 20:24:09.023997 kernel: EXT4-fs (nvme0n1p9): resizing filesystem from 553472 to 1489915 blocks Feb 12 20:24:09.084911 amazon-ssm-agent[1743]: 2024/02/12 20:24:09 Failed to load instance info from vault. RegistrationKey does not exist. Feb 12 20:24:09.094820 env[1721]: time="2024-02-12T20:24:09.094714043Z" level=info msg="starting containerd" revision=92b3a9d6f1b3bcc6dc74875cfdea653fe39f09c2 version=1.6.16 Feb 12 20:24:09.098280 amazon-ssm-agent[1743]: Initializing new seelog logger Feb 12 20:24:09.099005 kernel: EXT4-fs (nvme0n1p9): resized filesystem to 1489915 Feb 12 20:24:09.123147 amazon-ssm-agent[1743]: New Seelog Logger Creation Complete Feb 12 20:24:09.123147 amazon-ssm-agent[1743]: 2024/02/12 20:24:09 Found config file at /etc/amazon/ssm/amazon-ssm-agent.json. Feb 12 20:24:09.123147 amazon-ssm-agent[1743]: Applying config override from /etc/amazon/ssm/amazon-ssm-agent.json. Feb 12 20:24:09.124723 bash[1769]: Updated "/home/core/.ssh/authorized_keys" Feb 12 20:24:09.126492 systemd[1]: Finished update-ssh-keys-after-ignition.service. Feb 12 20:24:09.133919 extend-filesystems[1770]: Filesystem at /dev/nvme0n1p9 is mounted on /; on-line resizing required Feb 12 20:24:09.133919 extend-filesystems[1770]: old_desc_blocks = 1, new_desc_blocks = 1 Feb 12 20:24:09.133919 extend-filesystems[1770]: The filesystem on /dev/nvme0n1p9 is now 1489915 (4k) blocks long. Feb 12 20:24:09.132557 systemd[1]: extend-filesystems.service: Deactivated successfully. Feb 12 20:24:09.144460 extend-filesystems[1708]: Resized filesystem in /dev/nvme0n1p9 Feb 12 20:24:09.132936 systemd[1]: Finished extend-filesystems.service. Feb 12 20:24:09.154088 amazon-ssm-agent[1743]: 2024/02/12 20:24:09 processing appconfig overrides Feb 12 20:24:09.213845 systemd-logind[1714]: Watching system buttons on /dev/input/event0 (Power Button) Feb 12 20:24:09.222875 tar[1724]: ./bandwidth Feb 12 20:24:09.223001 systemd-logind[1714]: New seat seat0. Feb 12 20:24:09.235119 systemd[1]: Started systemd-logind.service. Feb 12 20:24:09.296373 env[1721]: time="2024-02-12T20:24:09.296311840Z" level=info msg="loading plugin \"io.containerd.content.v1.content\"..." type=io.containerd.content.v1 Feb 12 20:24:09.301359 env[1721]: time="2024-02-12T20:24:09.301293841Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.aufs\"..." type=io.containerd.snapshotter.v1 Feb 12 20:24:09.308054 env[1721]: time="2024-02-12T20:24:09.306372053Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.aufs\"..." error="aufs is not supported (modprobe aufs failed: exit status 1 \"modprobe: FATAL: Module aufs not found in directory /lib/modules/5.15.148-flatcar\\n\"): skip plugin" type=io.containerd.snapshotter.v1 Feb 12 20:24:09.309056 env[1721]: time="2024-02-12T20:24:09.308997868Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.btrfs\"..." type=io.containerd.snapshotter.v1 Feb 12 20:24:09.309709 env[1721]: time="2024-02-12T20:24:09.309646536Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.btrfs\"..." error="path /var/lib/containerd/io.containerd.snapshotter.v1.btrfs (ext4) must be a btrfs filesystem to be used with the btrfs snapshotter: skip plugin" type=io.containerd.snapshotter.v1 Feb 12 20:24:09.315834 systemd[1]: nvidia.service: Deactivated successfully. Feb 12 20:24:09.318041 env[1721]: time="2024-02-12T20:24:09.315054529Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.devmapper\"..." type=io.containerd.snapshotter.v1 Feb 12 20:24:09.321091 env[1721]: time="2024-02-12T20:24:09.321028544Z" level=warning msg="failed to load plugin io.containerd.snapshotter.v1.devmapper" error="devmapper not configured" Feb 12 20:24:09.323077 env[1721]: time="2024-02-12T20:24:09.323019445Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.native\"..." type=io.containerd.snapshotter.v1 Feb 12 20:24:09.323499 env[1721]: time="2024-02-12T20:24:09.323458162Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.overlayfs\"..." type=io.containerd.snapshotter.v1 Feb 12 20:24:09.324203 env[1721]: time="2024-02-12T20:24:09.324148568Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.zfs\"..." type=io.containerd.snapshotter.v1 Feb 12 20:24:09.327378 env[1721]: time="2024-02-12T20:24:09.327317307Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.zfs\"..." error="path /var/lib/containerd/io.containerd.snapshotter.v1.zfs must be a zfs filesystem to be used with the zfs snapshotter: skip plugin" type=io.containerd.snapshotter.v1 Feb 12 20:24:09.327597 env[1721]: time="2024-02-12T20:24:09.327563460Z" level=info msg="loading plugin \"io.containerd.metadata.v1.bolt\"..." type=io.containerd.metadata.v1 Feb 12 20:24:09.327857 env[1721]: time="2024-02-12T20:24:09.327815929Z" level=warning msg="could not use snapshotter devmapper in metadata plugin" error="devmapper not configured" Feb 12 20:24:09.331081 env[1721]: time="2024-02-12T20:24:09.331016009Z" level=info msg="metadata content store policy set" policy=shared Feb 12 20:24:09.337390 env[1721]: time="2024-02-12T20:24:09.337327575Z" level=info msg="loading plugin \"io.containerd.differ.v1.walking\"..." type=io.containerd.differ.v1 Feb 12 20:24:09.337625 env[1721]: time="2024-02-12T20:24:09.337589020Z" level=info msg="loading plugin \"io.containerd.event.v1.exchange\"..." type=io.containerd.event.v1 Feb 12 20:24:09.337760 env[1721]: time="2024-02-12T20:24:09.337728802Z" level=info msg="loading plugin \"io.containerd.gc.v1.scheduler\"..." type=io.containerd.gc.v1 Feb 12 20:24:09.337971 env[1721]: time="2024-02-12T20:24:09.337912284Z" level=info msg="loading plugin \"io.containerd.service.v1.introspection-service\"..." type=io.containerd.service.v1 Feb 12 20:24:09.338279 env[1721]: time="2024-02-12T20:24:09.338232969Z" level=info msg="loading plugin \"io.containerd.service.v1.containers-service\"..." type=io.containerd.service.v1 Feb 12 20:24:09.338507 env[1721]: time="2024-02-12T20:24:09.338441631Z" level=info msg="loading plugin \"io.containerd.service.v1.content-service\"..." type=io.containerd.service.v1 Feb 12 20:24:09.338683 env[1721]: time="2024-02-12T20:24:09.338639708Z" level=info msg="loading plugin \"io.containerd.service.v1.diff-service\"..." type=io.containerd.service.v1 Feb 12 20:24:09.339481 env[1721]: time="2024-02-12T20:24:09.339413114Z" level=info msg="loading plugin \"io.containerd.service.v1.images-service\"..." type=io.containerd.service.v1 Feb 12 20:24:09.339709 env[1721]: time="2024-02-12T20:24:09.339668610Z" level=info msg="loading plugin \"io.containerd.service.v1.leases-service\"..." type=io.containerd.service.v1 Feb 12 20:24:09.339881 env[1721]: time="2024-02-12T20:24:09.339841022Z" level=info msg="loading plugin \"io.containerd.service.v1.namespaces-service\"..." type=io.containerd.service.v1 Feb 12 20:24:09.340135 env[1721]: time="2024-02-12T20:24:09.340082338Z" level=info msg="loading plugin \"io.containerd.service.v1.snapshots-service\"..." type=io.containerd.service.v1 Feb 12 20:24:09.340342 env[1721]: time="2024-02-12T20:24:09.340301301Z" level=info msg="loading plugin \"io.containerd.runtime.v1.linux\"..." type=io.containerd.runtime.v1 Feb 12 20:24:09.340757 env[1721]: time="2024-02-12T20:24:09.340710097Z" level=info msg="loading plugin \"io.containerd.runtime.v2.task\"..." type=io.containerd.runtime.v2 Feb 12 20:24:09.346114 env[1721]: time="2024-02-12T20:24:09.341543206Z" level=info msg="loading plugin \"io.containerd.monitor.v1.cgroups\"..." type=io.containerd.monitor.v1 Feb 12 20:24:09.347904 env[1721]: time="2024-02-12T20:24:09.347825263Z" level=info msg="loading plugin \"io.containerd.service.v1.tasks-service\"..." type=io.containerd.service.v1 Feb 12 20:24:09.348117 env[1721]: time="2024-02-12T20:24:09.347917998Z" level=info msg="loading plugin \"io.containerd.grpc.v1.introspection\"..." type=io.containerd.grpc.v1 Feb 12 20:24:09.348117 env[1721]: time="2024-02-12T20:24:09.347984429Z" level=info msg="loading plugin \"io.containerd.internal.v1.restart\"..." type=io.containerd.internal.v1 Feb 12 20:24:09.348117 env[1721]: time="2024-02-12T20:24:09.348096371Z" level=info msg="loading plugin \"io.containerd.grpc.v1.containers\"..." type=io.containerd.grpc.v1 Feb 12 20:24:09.348292 env[1721]: time="2024-02-12T20:24:09.348132052Z" level=info msg="loading plugin \"io.containerd.grpc.v1.content\"..." type=io.containerd.grpc.v1 Feb 12 20:24:09.348292 env[1721]: time="2024-02-12T20:24:09.348163938Z" level=info msg="loading plugin \"io.containerd.grpc.v1.diff\"..." type=io.containerd.grpc.v1 Feb 12 20:24:09.348292 env[1721]: time="2024-02-12T20:24:09.348193150Z" level=info msg="loading plugin \"io.containerd.grpc.v1.events\"..." type=io.containerd.grpc.v1 Feb 12 20:24:09.348292 env[1721]: time="2024-02-12T20:24:09.348223214Z" level=info msg="loading plugin \"io.containerd.grpc.v1.healthcheck\"..." type=io.containerd.grpc.v1 Feb 12 20:24:09.348292 env[1721]: time="2024-02-12T20:24:09.348253302Z" level=info msg="loading plugin \"io.containerd.grpc.v1.images\"..." type=io.containerd.grpc.v1 Feb 12 20:24:09.348292 env[1721]: time="2024-02-12T20:24:09.348282266Z" level=info msg="loading plugin \"io.containerd.grpc.v1.leases\"..." type=io.containerd.grpc.v1 Feb 12 20:24:09.348630 env[1721]: time="2024-02-12T20:24:09.348311230Z" level=info msg="loading plugin \"io.containerd.grpc.v1.namespaces\"..." type=io.containerd.grpc.v1 Feb 12 20:24:09.348630 env[1721]: time="2024-02-12T20:24:09.348370305Z" level=info msg="loading plugin \"io.containerd.internal.v1.opt\"..." type=io.containerd.internal.v1 Feb 12 20:24:09.348755 env[1721]: time="2024-02-12T20:24:09.348677591Z" level=info msg="loading plugin \"io.containerd.grpc.v1.snapshots\"..." type=io.containerd.grpc.v1 Feb 12 20:24:09.348755 env[1721]: time="2024-02-12T20:24:09.348718062Z" level=info msg="loading plugin \"io.containerd.grpc.v1.tasks\"..." type=io.containerd.grpc.v1 Feb 12 20:24:09.348873 env[1721]: time="2024-02-12T20:24:09.348748741Z" level=info msg="loading plugin \"io.containerd.grpc.v1.version\"..." type=io.containerd.grpc.v1 Feb 12 20:24:09.348873 env[1721]: time="2024-02-12T20:24:09.348780307Z" level=info msg="loading plugin \"io.containerd.tracing.processor.v1.otlp\"..." type=io.containerd.tracing.processor.v1 Feb 12 20:24:09.348873 env[1721]: time="2024-02-12T20:24:09.348813150Z" level=info msg="skip loading plugin \"io.containerd.tracing.processor.v1.otlp\"..." error="no OpenTelemetry endpoint: skip plugin" type=io.containerd.tracing.processor.v1 Feb 12 20:24:09.348873 env[1721]: time="2024-02-12T20:24:09.348844338Z" level=info msg="loading plugin \"io.containerd.internal.v1.tracing\"..." type=io.containerd.internal.v1 Feb 12 20:24:09.349128 env[1721]: time="2024-02-12T20:24:09.348879026Z" level=error msg="failed to initialize a tracing processor \"otlp\"" error="no OpenTelemetry endpoint: skip plugin" Feb 12 20:24:09.349128 env[1721]: time="2024-02-12T20:24:09.348978277Z" level=info msg="loading plugin \"io.containerd.grpc.v1.cri\"..." type=io.containerd.grpc.v1 Feb 12 20:24:09.349438 env[1721]: time="2024-02-12T20:24:09.349318536Z" level=info msg="Start cri plugin with config {PluginConfig:{ContainerdConfig:{Snapshotter:overlayfs DefaultRuntimeName:runc DefaultRuntime:{Type: Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0} UntrustedWorkloadRuntime:{Type: Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0} Runtimes:map[runc:{Type:io.containerd.runc.v2 Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[SystemdCgroup:true] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0}] NoPivot:false DisableSnapshotAnnotations:true DiscardUnpackedLayers:false IgnoreRdtNotEnabledErrors:false} CniConfig:{NetworkPluginBinDir:/opt/cni/bin NetworkPluginConfDir:/etc/cni/net.d NetworkPluginMaxConfNum:1 NetworkPluginConfTemplate: IPPreference:} Registry:{ConfigPath: Mirrors:map[] Configs:map[] Auths:map[] Headers:map[]} ImageDecryption:{KeyModel:node} DisableTCPService:true StreamServerAddress:127.0.0.1 StreamServerPort:0 StreamIdleTimeout:4h0m0s EnableSelinux:true SelinuxCategoryRange:1024 SandboxImage:registry.k8s.io/pause:3.6 StatsCollectPeriod:10 SystemdCgroup:false EnableTLSStreaming:false X509KeyPairStreaming:{TLSCertFile: TLSKeyFile:} MaxContainerLogLineSize:16384 DisableCgroup:false DisableApparmor:false RestrictOOMScoreAdj:false MaxConcurrentDownloads:3 DisableProcMount:false UnsetSeccompProfile: TolerateMissingHugetlbController:true DisableHugetlbController:true DeviceOwnershipFromSecurityContext:false IgnoreImageDefinedVolumes:false NetNSMountsUnderStateDir:false EnableUnprivilegedPorts:false EnableUnprivilegedICMP:false} ContainerdRootDir:/var/lib/containerd ContainerdEndpoint:/run/containerd/containerd.sock RootDir:/var/lib/containerd/io.containerd.grpc.v1.cri StateDir:/run/containerd/io.containerd.grpc.v1.cri}" Feb 12 20:24:09.350471 env[1721]: time="2024-02-12T20:24:09.349439206Z" level=info msg="Connect containerd service" Feb 12 20:24:09.350471 env[1721]: time="2024-02-12T20:24:09.349501522Z" level=info msg="Get image filesystem path \"/var/lib/containerd/io.containerd.snapshotter.v1.overlayfs\"" Feb 12 20:24:09.351139 env[1721]: time="2024-02-12T20:24:09.351060789Z" level=error msg="failed to load cni during init, please check CRI plugin status before setting up network for pods" error="cni config load failed: no network config found in /etc/cni/net.d: cni plugin not initialized: failed to load cni config" Feb 12 20:24:09.351858 env[1721]: time="2024-02-12T20:24:09.351780312Z" level=info msg=serving... address=/run/containerd/containerd.sock.ttrpc Feb 12 20:24:09.352054 env[1721]: time="2024-02-12T20:24:09.352008477Z" level=info msg=serving... address=/run/containerd/containerd.sock Feb 12 20:24:09.353181 env[1721]: time="2024-02-12T20:24:09.352173426Z" level=info msg="containerd successfully booted in 0.312269s" Feb 12 20:24:09.352288 systemd[1]: Started containerd.service. Feb 12 20:24:09.400983 env[1721]: time="2024-02-12T20:24:09.400753866Z" level=info msg="Start subscribing containerd event" Feb 12 20:24:09.401143 env[1721]: time="2024-02-12T20:24:09.401101967Z" level=info msg="Start recovering state" Feb 12 20:24:09.401719 env[1721]: time="2024-02-12T20:24:09.401384653Z" level=info msg="Start event monitor" Feb 12 20:24:09.401888 env[1721]: time="2024-02-12T20:24:09.401730719Z" level=info msg="Start snapshots syncer" Feb 12 20:24:09.401888 env[1721]: time="2024-02-12T20:24:09.401765123Z" level=info msg="Start cni network conf syncer for default" Feb 12 20:24:09.401888 env[1721]: time="2024-02-12T20:24:09.401786341Z" level=info msg="Start streaming server" Feb 12 20:24:09.424942 dbus-daemon[1706]: [system] Successfully activated service 'org.freedesktop.hostname1' Feb 12 20:24:09.425241 systemd[1]: Started systemd-hostnamed.service. Feb 12 20:24:09.431328 dbus-daemon[1706]: [system] Activating via systemd: service name='org.freedesktop.PolicyKit1' unit='polkit.service' requested by ':1.6' (uid=0 pid=1746 comm="/usr/lib/systemd/systemd-hostnamed" label="system_u:system_r:kernel_t:s0") Feb 12 20:24:09.436435 systemd[1]: Starting polkit.service... Feb 12 20:24:09.475643 polkitd[1803]: Started polkitd version 121 Feb 12 20:24:09.500928 polkitd[1803]: Loading rules from directory /etc/polkit-1/rules.d Feb 12 20:24:09.501090 polkitd[1803]: Loading rules from directory /usr/share/polkit-1/rules.d Feb 12 20:24:09.503223 polkitd[1803]: Finished loading, compiling and executing 2 rules Feb 12 20:24:09.508342 dbus-daemon[1706]: [system] Successfully activated service 'org.freedesktop.PolicyKit1' Feb 12 20:24:09.508621 systemd[1]: Started polkit.service. Feb 12 20:24:09.511229 polkitd[1803]: Acquired the name org.freedesktop.PolicyKit1 on the system bus Feb 12 20:24:09.529193 tar[1724]: ./ptp Feb 12 20:24:09.545779 systemd-hostnamed[1746]: Hostname set to <ip-172-31-16-56> (transient) Feb 12 20:24:09.545950 systemd-resolved[1676]: System hostname changed to 'ip-172-31-16-56'. Feb 12 20:24:09.732001 coreos-metadata[1705]: Feb 12 20:24:09.730 INFO Putting http://169.254.169.254/latest/api/token: Attempt #1 Feb 12 20:24:09.738349 coreos-metadata[1705]: Feb 12 20:24:09.738 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/public-keys: Attempt #1 Feb 12 20:24:09.742494 coreos-metadata[1705]: Feb 12 20:24:09.742 INFO Fetch successful Feb 12 20:24:09.742822 coreos-metadata[1705]: Feb 12 20:24:09.742 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/public-keys/0/openssh-key: Attempt #1 Feb 12 20:24:09.744446 coreos-metadata[1705]: Feb 12 20:24:09.744 INFO Fetch successful Feb 12 20:24:09.749322 unknown[1705]: wrote ssh authorized keys file for user: core Feb 12 20:24:09.779725 update-ssh-keys[1851]: Updated "/home/core/.ssh/authorized_keys" Feb 12 20:24:09.780911 systemd[1]: Finished coreos-metadata-sshkeys@core.service. Feb 12 20:24:09.794573 tar[1724]: ./vlan Feb 12 20:24:09.977558 tar[1724]: ./host-device Feb 12 20:24:10.043162 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO Create new startup processor Feb 12 20:24:10.051463 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [LongRunningPluginsManager] registered plugins: {} Feb 12 20:24:10.051689 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO Initializing bookkeeping folders Feb 12 20:24:10.051839 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO removing the completed state files Feb 12 20:24:10.052051 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO Initializing bookkeeping folders for long running plugins Feb 12 20:24:10.052192 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO Initializing replies folder for MDS reply requests that couldn't reach the service Feb 12 20:24:10.052315 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO Initializing healthcheck folders for long running plugins Feb 12 20:24:10.052438 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO Initializing locations for inventory plugin Feb 12 20:24:10.052585 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO Initializing default location for custom inventory Feb 12 20:24:10.052715 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO Initializing default location for file inventory Feb 12 20:24:10.052842 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO Initializing default location for role inventory Feb 12 20:24:10.052986 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO Init the cloudwatchlogs publisher Feb 12 20:24:10.053121 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [instanceID=i-03d03f3d844de243c] Successfully loaded platform independent plugin aws:downloadContent Feb 12 20:24:10.053251 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [instanceID=i-03d03f3d844de243c] Successfully loaded platform independent plugin aws:runDocument Feb 12 20:24:10.053413 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [instanceID=i-03d03f3d844de243c] Successfully loaded platform independent plugin aws:softwareInventory Feb 12 20:24:10.053563 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [instanceID=i-03d03f3d844de243c] Successfully loaded platform independent plugin aws:configureDocker Feb 12 20:24:10.053701 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [instanceID=i-03d03f3d844de243c] Successfully loaded platform independent plugin aws:runDockerAction Feb 12 20:24:10.053846 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [instanceID=i-03d03f3d844de243c] Successfully loaded platform independent plugin aws:refreshAssociation Feb 12 20:24:10.054016 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [instanceID=i-03d03f3d844de243c] Successfully loaded platform independent plugin aws:runPowerShellScript Feb 12 20:24:10.054178 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [instanceID=i-03d03f3d844de243c] Successfully loaded platform independent plugin aws:updateSsmAgent Feb 12 20:24:10.054307 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [instanceID=i-03d03f3d844de243c] Successfully loaded platform independent plugin aws:configurePackage Feb 12 20:24:10.054453 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [instanceID=i-03d03f3d844de243c] Successfully loaded platform dependent plugin aws:runShellScript Feb 12 20:24:10.054575 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO Starting Agent: amazon-ssm-agent - v2.3.1319.0 Feb 12 20:24:10.054707 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO OS: linux, Arch: arm64 Feb 12 20:24:10.055894 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [MessageGatewayService] Starting session document processing engine... Feb 12 20:24:10.061470 amazon-ssm-agent[1743]: datastore file /var/lib/amazon/ssm/i-03d03f3d844de243c/longrunningplugins/datastore/store doesn't exist - no long running plugins to execute Feb 12 20:24:10.153838 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [MessageGatewayService] [EngineProcessor] Starting Feb 12 20:24:10.225157 tar[1724]: ./tuning Feb 12 20:24:10.248750 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [MessageGatewayService] SSM Agent is trying to setup control channel for Session Manager module. Feb 12 20:24:10.309046 tar[1724]: ./vrf Feb 12 20:24:10.343253 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [MessageGatewayService] Setting up websocket for controlchannel for instance: i-03d03f3d844de243c, requestId: 104baa04-5023-469d-bb09-cb5e06e12e8f Feb 12 20:24:10.390516 tar[1724]: ./sbr Feb 12 20:24:10.438077 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [MessagingDeliveryService] Starting document processing engine... Feb 12 20:24:10.464293 tar[1724]: ./tap Feb 12 20:24:10.532975 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [MessagingDeliveryService] [EngineProcessor] Starting Feb 12 20:24:10.548224 tar[1724]: ./dhcp Feb 12 20:24:10.628285 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [MessagingDeliveryService] [EngineProcessor] Initial processing Feb 12 20:24:10.723488 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [MessagingDeliveryService] Starting message polling Feb 12 20:24:10.790822 systemd[1]: Finished prepare-critools.service. Feb 12 20:24:10.819060 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [MessagingDeliveryService] Starting send replies to MDS Feb 12 20:24:10.819703 tar[1724]: ./static Feb 12 20:24:10.871469 tar[1724]: ./firewall Feb 12 20:24:10.914787 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [instanceID=i-03d03f3d844de243c] Starting association polling Feb 12 20:24:10.945653 tar[1724]: ./macvlan Feb 12 20:24:11.010696 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [MessagingDeliveryService] [Association] [EngineProcessor] Starting Feb 12 20:24:11.014674 tar[1724]: ./dummy Feb 12 20:24:11.081800 tar[1724]: ./bridge Feb 12 20:24:11.106751 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [MessagingDeliveryService] [Association] Launching response handler Feb 12 20:24:11.162192 tar[1724]: ./ipvlan Feb 12 20:24:11.204032 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [MessagingDeliveryService] [Association] [EngineProcessor] Initial processing Feb 12 20:24:11.229356 tar[1724]: ./portmap Feb 12 20:24:11.293919 tar[1724]: ./host-local Feb 12 20:24:11.300475 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [MessagingDeliveryService] [Association] Initializing association scheduling service Feb 12 20:24:11.375360 systemd[1]: Finished prepare-cni-plugins.service. Feb 12 20:24:11.397168 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [MessagingDeliveryService] [Association] Association scheduling service initialized Feb 12 20:24:11.449661 locksmithd[1768]: locksmithd starting currentOperation="UPDATE_STATUS_IDLE" strategy="reboot" Feb 12 20:24:11.494120 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [MessageGatewayService] listening reply. Feb 12 20:24:11.591228 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [HealthCheck] HealthCheck reporting agent health. Feb 12 20:24:11.688523 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [OfflineService] Starting document processing engine... Feb 12 20:24:11.786156 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [OfflineService] [EngineProcessor] Starting Feb 12 20:24:11.883692 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [OfflineService] [EngineProcessor] Initial processing Feb 12 20:24:11.981600 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [OfflineService] Starting message polling Feb 12 20:24:12.079723 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [OfflineService] Starting send replies to MDS Feb 12 20:24:12.177937 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [LongRunningPluginsManager] starting long running plugin manager Feb 12 20:24:12.276407 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [LongRunningPluginsManager] there aren't any long running plugin to execute Feb 12 20:24:12.375128 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [LongRunningPluginsManager] There are no long running plugins currently getting executed - skipping their healthcheck Feb 12 20:24:12.473947 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [StartupProcessor] Executing startup processor tasks Feb 12 20:24:12.572986 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [StartupProcessor] Write to serial port: Amazon SSM Agent v2.3.1319.0 is running Feb 12 20:24:12.672336 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [StartupProcessor] Write to serial port: OsProductName: Flatcar Container Linux by Kinvolk Feb 12 20:24:12.771641 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [StartupProcessor] Write to serial port: OsVersion: 3510.3.2 Feb 12 20:24:12.871261 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [MessageGatewayService] Opening websocket connection to: wss://ssmmessages.us-west-2.amazonaws.com/v1/control-channel/i-03d03f3d844de243c?role=subscribe&stream=input Feb 12 20:24:12.971079 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [MessageGatewayService] Successfully opened websocket connection to: wss://ssmmessages.us-west-2.amazonaws.com/v1/control-channel/i-03d03f3d844de243c?role=subscribe&stream=input Feb 12 20:24:13.071103 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [MessageGatewayService] Starting receiving message from control channel Feb 12 20:24:13.171310 amazon-ssm-agent[1743]: 2024-02-12 20:24:10 INFO [MessageGatewayService] [EngineProcessor] Initial processing Feb 12 20:24:13.850653 sshd_keygen[1734]: ssh-keygen: generating new host keys: RSA ECDSA ED25519 Feb 12 20:24:13.888549 systemd[1]: Finished sshd-keygen.service. Feb 12 20:24:13.893288 systemd[1]: Starting issuegen.service... Feb 12 20:24:13.904175 systemd[1]: issuegen.service: Deactivated successfully. Feb 12 20:24:13.904522 systemd[1]: Finished issuegen.service. Feb 12 20:24:13.908922 systemd[1]: Starting systemd-user-sessions.service... Feb 12 20:24:13.922745 systemd[1]: Finished systemd-user-sessions.service. Feb 12 20:24:13.927296 systemd[1]: Started getty@tty1.service. Feb 12 20:24:13.931637 systemd[1]: Started serial-getty@ttyS0.service. Feb 12 20:24:13.933899 systemd[1]: Reached target getty.target. Feb 12 20:24:13.935636 systemd[1]: Reached target multi-user.target. Feb 12 20:24:13.940087 systemd[1]: Starting systemd-update-utmp-runlevel.service... Feb 12 20:24:13.954561 systemd[1]: systemd-update-utmp-runlevel.service: Deactivated successfully. Feb 12 20:24:13.954978 systemd[1]: Finished systemd-update-utmp-runlevel.service. Feb 12 20:24:13.957160 systemd[1]: Startup finished in 1.178s (kernel) + 10.668s (initrd) + 13.695s (userspace) = 25.542s. Feb 12 20:24:17.732223 systemd[1]: Created slice system-sshd.slice. Feb 12 20:24:17.735677 systemd[1]: Started sshd@0-172.31.16.56:22-147.75.109.163:43482.service. Feb 12 20:24:17.917928 sshd[1920]: Accepted publickey for core from 147.75.109.163 port 43482 ssh2: RSA SHA256:ecUhSIJgyplxxRcBUTSxTp+B0aPr5wgDdA3tvIID0Hc Feb 12 20:24:17.921868 sshd[1920]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 12 20:24:17.941078 systemd[1]: Created slice user-500.slice. Feb 12 20:24:17.945104 systemd[1]: Starting user-runtime-dir@500.service... Feb 12 20:24:17.954248 systemd-logind[1714]: New session 1 of user core. Feb 12 20:24:17.964825 systemd[1]: Finished user-runtime-dir@500.service. Feb 12 20:24:17.969273 systemd[1]: Starting user@500.service... Feb 12 20:24:17.975943 (systemd)[1923]: pam_unix(systemd-user:session): session opened for user core(uid=500) by (uid=0) Feb 12 20:24:18.164872 systemd[1923]: Queued start job for default target default.target. Feb 12 20:24:18.166108 systemd[1923]: Reached target paths.target. Feb 12 20:24:18.166174 systemd[1923]: Reached target sockets.target. Feb 12 20:24:18.166211 systemd[1923]: Reached target timers.target. Feb 12 20:24:18.166245 systemd[1923]: Reached target basic.target. Feb 12 20:24:18.166359 systemd[1923]: Reached target default.target. Feb 12 20:24:18.166434 systemd[1923]: Startup finished in 177ms. Feb 12 20:24:18.167162 systemd[1]: Started user@500.service. Feb 12 20:24:18.169495 systemd[1]: Started session-1.scope. Feb 12 20:24:18.321838 systemd[1]: Started sshd@1-172.31.16.56:22-147.75.109.163:43494.service. Feb 12 20:24:18.497457 sshd[1932]: Accepted publickey for core from 147.75.109.163 port 43494 ssh2: RSA SHA256:ecUhSIJgyplxxRcBUTSxTp+B0aPr5wgDdA3tvIID0Hc Feb 12 20:24:18.499888 sshd[1932]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 12 20:24:18.507269 systemd-logind[1714]: New session 2 of user core. Feb 12 20:24:18.509232 systemd[1]: Started session-2.scope. Feb 12 20:24:18.643512 sshd[1932]: pam_unix(sshd:session): session closed for user core Feb 12 20:24:18.648583 systemd-logind[1714]: Session 2 logged out. Waiting for processes to exit. Feb 12 20:24:18.649194 systemd[1]: sshd@1-172.31.16.56:22-147.75.109.163:43494.service: Deactivated successfully. Feb 12 20:24:18.650439 systemd[1]: session-2.scope: Deactivated successfully. Feb 12 20:24:18.651906 systemd-logind[1714]: Removed session 2. Feb 12 20:24:18.674833 systemd[1]: Started sshd@2-172.31.16.56:22-147.75.109.163:43502.service. Feb 12 20:24:18.846826 sshd[1938]: Accepted publickey for core from 147.75.109.163 port 43502 ssh2: RSA SHA256:ecUhSIJgyplxxRcBUTSxTp+B0aPr5wgDdA3tvIID0Hc Feb 12 20:24:18.850152 sshd[1938]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 12 20:24:18.859281 systemd-logind[1714]: New session 3 of user core. Feb 12 20:24:18.859439 systemd[1]: Started session-3.scope. Feb 12 20:24:18.985837 sshd[1938]: pam_unix(sshd:session): session closed for user core Feb 12 20:24:18.991066 systemd-logind[1714]: Session 3 logged out. Waiting for processes to exit. Feb 12 20:24:18.991711 systemd[1]: sshd@2-172.31.16.56:22-147.75.109.163:43502.service: Deactivated successfully. Feb 12 20:24:18.993060 systemd[1]: session-3.scope: Deactivated successfully. Feb 12 20:24:18.994744 systemd-logind[1714]: Removed session 3. Feb 12 20:24:19.013725 systemd[1]: Started sshd@3-172.31.16.56:22-147.75.109.163:43514.service. Feb 12 20:24:19.187074 sshd[1944]: Accepted publickey for core from 147.75.109.163 port 43514 ssh2: RSA SHA256:ecUhSIJgyplxxRcBUTSxTp+B0aPr5wgDdA3tvIID0Hc Feb 12 20:24:19.190270 sshd[1944]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 12 20:24:19.200610 systemd[1]: Started session-4.scope. Feb 12 20:24:19.201531 systemd-logind[1714]: New session 4 of user core. Feb 12 20:24:19.337016 sshd[1944]: pam_unix(sshd:session): session closed for user core Feb 12 20:24:19.342794 systemd-logind[1714]: Session 4 logged out. Waiting for processes to exit. Feb 12 20:24:19.343382 systemd[1]: sshd@3-172.31.16.56:22-147.75.109.163:43514.service: Deactivated successfully. Feb 12 20:24:19.344589 systemd[1]: session-4.scope: Deactivated successfully. Feb 12 20:24:19.346268 systemd-logind[1714]: Removed session 4. Feb 12 20:24:19.365693 systemd[1]: Started sshd@4-172.31.16.56:22-147.75.109.163:43522.service. Feb 12 20:24:19.537950 sshd[1950]: Accepted publickey for core from 147.75.109.163 port 43522 ssh2: RSA SHA256:ecUhSIJgyplxxRcBUTSxTp+B0aPr5wgDdA3tvIID0Hc Feb 12 20:24:19.540936 sshd[1950]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 12 20:24:19.548577 systemd-logind[1714]: New session 5 of user core. Feb 12 20:24:19.549582 systemd[1]: Started session-5.scope. Feb 12 20:24:19.669723 sudo[1953]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/sbin/setenforce 1 Feb 12 20:24:19.670862 sudo[1953]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Feb 12 20:24:19.688299 dbus-daemon[1706]: avc: received setenforce notice (enforcing=1) Feb 12 20:24:19.692090 sudo[1953]: pam_unix(sudo:session): session closed for user root Feb 12 20:24:19.718429 sshd[1950]: pam_unix(sshd:session): session closed for user core Feb 12 20:24:19.723492 systemd[1]: session-5.scope: Deactivated successfully. Feb 12 20:24:19.724831 systemd-logind[1714]: Session 5 logged out. Waiting for processes to exit. Feb 12 20:24:19.726161 systemd[1]: sshd@4-172.31.16.56:22-147.75.109.163:43522.service: Deactivated successfully. Feb 12 20:24:19.728453 systemd-logind[1714]: Removed session 5. Feb 12 20:24:19.748006 systemd[1]: Started sshd@5-172.31.16.56:22-147.75.109.163:43536.service. Feb 12 20:24:19.926003 sshd[1957]: Accepted publickey for core from 147.75.109.163 port 43536 ssh2: RSA SHA256:ecUhSIJgyplxxRcBUTSxTp+B0aPr5wgDdA3tvIID0Hc Feb 12 20:24:19.928619 sshd[1957]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 12 20:24:19.936584 systemd-logind[1714]: New session 6 of user core. Feb 12 20:24:19.937554 systemd[1]: Started session-6.scope. Feb 12 20:24:20.046973 sudo[1961]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/bin/rm -rf /etc/audit/rules.d/80-selinux.rules /etc/audit/rules.d/99-default.rules Feb 12 20:24:20.047494 sudo[1961]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Feb 12 20:24:20.052496 sudo[1961]: pam_unix(sudo:session): session closed for user root Feb 12 20:24:20.061448 sudo[1960]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/bin/systemctl restart audit-rules Feb 12 20:24:20.062419 sudo[1960]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Feb 12 20:24:20.080577 systemd[1]: Stopping audit-rules.service... Feb 12 20:24:20.081000 audit: CONFIG_CHANGE auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=remove_rule key=(null) list=5 res=1 Feb 12 20:24:20.084099 kernel: kauditd_printk_skb: 70 callbacks suppressed Feb 12 20:24:20.084179 kernel: audit: type=1305 audit(1707769460.081:164): auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=remove_rule key=(null) list=5 res=1 Feb 12 20:24:20.084382 auditctl[1964]: No rules Feb 12 20:24:20.085614 systemd[1]: audit-rules.service: Deactivated successfully. Feb 12 20:24:20.085974 systemd[1]: Stopped audit-rules.service. Feb 12 20:24:20.090567 systemd[1]: Starting audit-rules.service... Feb 12 20:24:20.103008 kernel: audit: type=1300 audit(1707769460.081:164): arch=c00000b7 syscall=206 success=yes exit=1056 a0=3 a1=ffffd2f10e30 a2=420 a3=0 items=0 ppid=1 pid=1964 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:20.103123 kernel: audit: type=1327 audit(1707769460.081:164): proctitle=2F7362696E2F617564697463746C002D44 Feb 12 20:24:20.081000 audit[1964]: SYSCALL arch=c00000b7 syscall=206 success=yes exit=1056 a0=3 a1=ffffd2f10e30 a2=420 a3=0 items=0 ppid=1 pid=1964 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:20.081000 audit: PROCTITLE proctitle=2F7362696E2F617564697463746C002D44 Feb 12 20:24:20.084000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:20.114474 kernel: audit: type=1131 audit(1707769460.084:165): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:20.126560 augenrules[1981]: No rules Feb 12 20:24:20.128151 systemd[1]: Finished audit-rules.service. Feb 12 20:24:20.127000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:20.129886 sudo[1960]: pam_unix(sudo:session): session closed for user root Feb 12 20:24:20.128000 audit[1960]: USER_END pid=1960 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 12 20:24:20.147334 kernel: audit: type=1130 audit(1707769460.127:166): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:20.147436 kernel: audit: type=1106 audit(1707769460.128:167): pid=1960 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 12 20:24:20.147479 kernel: audit: type=1104 audit(1707769460.129:168): pid=1960 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 12 20:24:20.129000 audit[1960]: CRED_DISP pid=1960 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 12 20:24:20.161132 sshd[1957]: pam_unix(sshd:session): session closed for user core Feb 12 20:24:20.162000 audit[1957]: USER_END pid=1957 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:24:20.174990 systemd[1]: sshd@5-172.31.16.56:22-147.75.109.163:43536.service: Deactivated successfully. Feb 12 20:24:20.162000 audit[1957]: CRED_DISP pid=1957 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:24:20.176240 systemd[1]: session-6.scope: Deactivated successfully. Feb 12 20:24:20.184467 kernel: audit: type=1106 audit(1707769460.162:169): pid=1957 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:24:20.184549 kernel: audit: type=1104 audit(1707769460.162:170): pid=1957 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:24:20.174000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@5-172.31.16.56:22-147.75.109.163:43536 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:20.194494 kernel: audit: type=1131 audit(1707769460.174:171): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@5-172.31.16.56:22-147.75.109.163:43536 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:20.194670 systemd-logind[1714]: Session 6 logged out. Waiting for processes to exit. Feb 12 20:24:20.202388 systemd[1]: Started sshd@6-172.31.16.56:22-147.75.109.163:43540.service. Feb 12 20:24:20.202000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@6-172.31.16.56:22-147.75.109.163:43540 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:20.204683 systemd-logind[1714]: Removed session 6. Feb 12 20:24:20.376000 audit[1988]: USER_ACCT pid=1988 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_access,pam_unix,pam_faillock,pam_permit acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:24:20.377681 sshd[1988]: Accepted publickey for core from 147.75.109.163 port 43540 ssh2: RSA SHA256:ecUhSIJgyplxxRcBUTSxTp+B0aPr5wgDdA3tvIID0Hc Feb 12 20:24:20.378000 audit[1988]: CRED_ACQ pid=1988 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:24:20.378000 audit[1988]: SYSCALL arch=c00000b7 syscall=64 success=yes exit=3 a0=5 a1=fffff0b9ada0 a2=3 a3=1 items=0 ppid=1 pid=1988 auid=500 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=7 comm="sshd" exe="/usr/sbin/sshd" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:20.378000 audit: PROCTITLE proctitle=737368643A20636F7265205B707269765D Feb 12 20:24:20.380584 sshd[1988]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 12 20:24:20.389070 systemd[1]: Started session-7.scope. Feb 12 20:24:20.391074 systemd-logind[1714]: New session 7 of user core. Feb 12 20:24:20.399000 audit[1988]: USER_START pid=1988 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:24:20.401000 audit[1990]: CRED_ACQ pid=1990 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:24:20.496000 audit[1991]: USER_ACCT pid=1991 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_unix,pam_faillock,pam_permit acct="core" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 12 20:24:20.497811 sudo[1991]: core : PWD=/home/core ; USER=root ; COMMAND=/home/core/install.sh Feb 12 20:24:20.497000 audit[1991]: CRED_REFR pid=1991 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 12 20:24:20.498374 sudo[1991]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Feb 12 20:24:20.500000 audit[1991]: USER_START pid=1991 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 12 20:24:21.154372 systemd[1]: Reloading. Feb 12 20:24:21.285884 /usr/lib/systemd/system-generators/torcx-generator[2020]: time="2024-02-12T20:24:21Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.2 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.2 /var/lib/torcx/store]" Feb 12 20:24:21.286931 /usr/lib/systemd/system-generators/torcx-generator[2020]: time="2024-02-12T20:24:21Z" level=info msg="torcx already run" Feb 12 20:24:21.445478 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Feb 12 20:24:21.446034 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Feb 12 20:24:21.484229 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Feb 12 20:24:21.639000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.639000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.639000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.639000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.639000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.639000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.639000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.640000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.640000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.640000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.640000 audit: BPF prog-id=37 op=LOAD Feb 12 20:24:21.640000 audit: BPF prog-id=35 op=UNLOAD Feb 12 20:24:21.644000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.644000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.644000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.644000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.644000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.644000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.644000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.644000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.644000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.645000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.645000 audit: BPF prog-id=38 op=LOAD Feb 12 20:24:21.645000 audit: BPF prog-id=29 op=UNLOAD Feb 12 20:24:21.646000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.646000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.646000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.646000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.646000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.646000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.646000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.646000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.646000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.647000 audit: BPF prog-id=39 op=LOAD Feb 12 20:24:21.647000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.647000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.647000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.647000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.647000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.647000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.647000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.647000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.648000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.648000 audit: BPF prog-id=40 op=LOAD Feb 12 20:24:21.648000 audit: BPF prog-id=30 op=UNLOAD Feb 12 20:24:21.648000 audit: BPF prog-id=31 op=UNLOAD Feb 12 20:24:21.654000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.654000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.654000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.654000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.654000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.654000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.654000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.654000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.655000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.655000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.655000 audit: BPF prog-id=41 op=LOAD Feb 12 20:24:21.655000 audit: BPF prog-id=23 op=UNLOAD Feb 12 20:24:21.656000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.656000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.656000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.656000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.656000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.657000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.657000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.657000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.657000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.657000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.657000 audit: BPF prog-id=42 op=LOAD Feb 12 20:24:21.657000 audit: BPF prog-id=24 op=UNLOAD Feb 12 20:24:21.658000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.658000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.658000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.658000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.658000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.658000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.658000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.658000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.659000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.659000 audit: BPF prog-id=43 op=LOAD Feb 12 20:24:21.659000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.659000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.659000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.659000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.659000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.659000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.659000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.660000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.660000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.660000 audit: BPF prog-id=44 op=LOAD Feb 12 20:24:21.660000 audit: BPF prog-id=25 op=UNLOAD Feb 12 20:24:21.660000 audit: BPF prog-id=26 op=UNLOAD Feb 12 20:24:21.661000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.661000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.662000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.662000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.662000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.662000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.662000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.662000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.662000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.662000 audit: BPF prog-id=45 op=LOAD Feb 12 20:24:21.662000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.663000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.663000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.663000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.663000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.663000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.663000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.663000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.663000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.664000 audit: BPF prog-id=46 op=LOAD Feb 12 20:24:21.664000 audit: BPF prog-id=21 op=UNLOAD Feb 12 20:24:21.664000 audit: BPF prog-id=22 op=UNLOAD Feb 12 20:24:21.666000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.666000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.666000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.666000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.666000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.666000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.666000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.666000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.667000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.667000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.667000 audit: BPF prog-id=47 op=LOAD Feb 12 20:24:21.667000 audit: BPF prog-id=27 op=UNLOAD Feb 12 20:24:21.669000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.669000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.669000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.669000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.669000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.669000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.670000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.670000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.670000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.670000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.670000 audit: BPF prog-id=48 op=LOAD Feb 12 20:24:21.670000 audit: BPF prog-id=28 op=UNLOAD Feb 12 20:24:21.672000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.672000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.672000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.672000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.672000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.672000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.672000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.673000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.673000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.673000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.673000 audit: BPF prog-id=49 op=LOAD Feb 12 20:24:21.673000 audit: BPF prog-id=32 op=UNLOAD Feb 12 20:24:21.673000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.674000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.674000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.674000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.674000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.674000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.674000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.674000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.674000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.675000 audit: BPF prog-id=50 op=LOAD Feb 12 20:24:21.675000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.675000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.675000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.675000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.675000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.675000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.675000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.675000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.675000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.677000 audit: BPF prog-id=51 op=LOAD Feb 12 20:24:21.677000 audit: BPF prog-id=33 op=UNLOAD Feb 12 20:24:21.677000 audit: BPF prog-id=34 op=UNLOAD Feb 12 20:24:21.678000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.678000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.678000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.678000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.678000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.678000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.678000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.678000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.678000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.679000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.679000 audit: BPF prog-id=52 op=LOAD Feb 12 20:24:21.679000 audit: BPF prog-id=18 op=UNLOAD Feb 12 20:24:21.679000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.679000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.680000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.680000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.680000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.680000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.680000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.680000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.680000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.680000 audit: BPF prog-id=53 op=LOAD Feb 12 20:24:21.680000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.681000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.681000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.681000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.681000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.681000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.681000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.681000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.681000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:21.681000 audit: BPF prog-id=54 op=LOAD Feb 12 20:24:21.682000 audit: BPF prog-id=19 op=UNLOAD Feb 12 20:24:21.682000 audit: BPF prog-id=20 op=UNLOAD Feb 12 20:24:21.706608 systemd[1]: Started kubelet.service. Feb 12 20:24:21.706000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:21.727638 systemd[1]: Starting coreos-metadata.service... Feb 12 20:24:21.829427 kubelet[2075]: E0212 20:24:21.829346 2075 run.go:74] "command failed" err="failed to load kubelet config file, path: /var/lib/kubelet/config.yaml, error: failed to load Kubelet config file /var/lib/kubelet/config.yaml, error failed to read kubelet config file \"/var/lib/kubelet/config.yaml\", error: open /var/lib/kubelet/config.yaml: no such file or directory" Feb 12 20:24:21.834000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=failed' Feb 12 20:24:21.834264 systemd[1]: kubelet.service: Main process exited, code=exited, status=1/FAILURE Feb 12 20:24:21.834577 systemd[1]: kubelet.service: Failed with result 'exit-code'. Feb 12 20:24:21.895097 coreos-metadata[2082]: Feb 12 20:24:21.894 INFO Putting http://169.254.169.254/latest/api/token: Attempt #1 Feb 12 20:24:21.896325 coreos-metadata[2082]: Feb 12 20:24:21.896 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/instance-id: Attempt #1 Feb 12 20:24:21.897034 coreos-metadata[2082]: Feb 12 20:24:21.896 INFO Fetch successful Feb 12 20:24:21.897577 coreos-metadata[2082]: Feb 12 20:24:21.897 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/instance-type: Attempt #1 Feb 12 20:24:21.898108 coreos-metadata[2082]: Feb 12 20:24:21.897 INFO Fetch successful Feb 12 20:24:21.898596 coreos-metadata[2082]: Feb 12 20:24:21.898 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/local-ipv4: Attempt #1 Feb 12 20:24:21.899060 coreos-metadata[2082]: Feb 12 20:24:21.898 INFO Fetch successful Feb 12 20:24:21.899464 coreos-metadata[2082]: Feb 12 20:24:21.899 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/public-ipv4: Attempt #1 Feb 12 20:24:21.899886 coreos-metadata[2082]: Feb 12 20:24:21.899 INFO Fetch successful Feb 12 20:24:21.900434 coreos-metadata[2082]: Feb 12 20:24:21.900 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/placement/availability-zone: Attempt #1 Feb 12 20:24:21.901038 coreos-metadata[2082]: Feb 12 20:24:21.900 INFO Fetch successful Feb 12 20:24:21.901315 coreos-metadata[2082]: Feb 12 20:24:21.901 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/hostname: Attempt #1 Feb 12 20:24:21.901576 coreos-metadata[2082]: Feb 12 20:24:21.901 INFO Fetch successful Feb 12 20:24:21.901876 coreos-metadata[2082]: Feb 12 20:24:21.901 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/public-hostname: Attempt #1 Feb 12 20:24:21.902184 coreos-metadata[2082]: Feb 12 20:24:21.901 INFO Fetch successful Feb 12 20:24:21.902446 coreos-metadata[2082]: Feb 12 20:24:21.902 INFO Fetching http://169.254.169.254/2019-10-01/dynamic/instance-identity/document: Attempt #1 Feb 12 20:24:21.902740 coreos-metadata[2082]: Feb 12 20:24:21.902 INFO Fetch successful Feb 12 20:24:21.914994 systemd[1]: Finished coreos-metadata.service. Feb 12 20:24:21.914000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=coreos-metadata comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:22.342866 systemd[1]: Stopped kubelet.service. Feb 12 20:24:22.342000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:22.342000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:22.372119 systemd[1]: Reloading. Feb 12 20:24:22.526011 /usr/lib/systemd/system-generators/torcx-generator[2146]: time="2024-02-12T20:24:22Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.2 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.2 /var/lib/torcx/store]" Feb 12 20:24:22.531119 /usr/lib/systemd/system-generators/torcx-generator[2146]: time="2024-02-12T20:24:22Z" level=info msg="torcx already run" Feb 12 20:24:22.652664 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Feb 12 20:24:22.652939 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Feb 12 20:24:22.691692 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Feb 12 20:24:22.847000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.847000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.847000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.847000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.847000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.847000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.847000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.847000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.848000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.848000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.848000 audit: BPF prog-id=55 op=LOAD Feb 12 20:24:22.849000 audit: BPF prog-id=37 op=UNLOAD Feb 12 20:24:22.852000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.852000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.852000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.852000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.852000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.852000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.852000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.852000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.852000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.853000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.853000 audit: BPF prog-id=56 op=LOAD Feb 12 20:24:22.853000 audit: BPF prog-id=38 op=UNLOAD Feb 12 20:24:22.854000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.854000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.854000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.854000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.854000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.854000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.854000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.854000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.854000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.854000 audit: BPF prog-id=57 op=LOAD Feb 12 20:24:22.855000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.855000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.855000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.855000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.855000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.855000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.855000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.855000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.855000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.855000 audit: BPF prog-id=58 op=LOAD Feb 12 20:24:22.856000 audit: BPF prog-id=39 op=UNLOAD Feb 12 20:24:22.856000 audit: BPF prog-id=40 op=UNLOAD Feb 12 20:24:22.861000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.861000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.861000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.862000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.862000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.862000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.862000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.862000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.862000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.862000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.862000 audit: BPF prog-id=59 op=LOAD Feb 12 20:24:22.863000 audit: BPF prog-id=41 op=UNLOAD Feb 12 20:24:22.864000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.864000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.864000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.864000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.864000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.864000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.864000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.864000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.865000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.865000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.865000 audit: BPF prog-id=60 op=LOAD Feb 12 20:24:22.865000 audit: BPF prog-id=42 op=UNLOAD Feb 12 20:24:22.865000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.865000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.866000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.866000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.866000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.866000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.866000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.866000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.866000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.866000 audit: BPF prog-id=61 op=LOAD Feb 12 20:24:22.866000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.867000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.867000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.867000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.867000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.867000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.867000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.867000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.867000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.867000 audit: BPF prog-id=62 op=LOAD Feb 12 20:24:22.867000 audit: BPF prog-id=43 op=UNLOAD Feb 12 20:24:22.868000 audit: BPF prog-id=44 op=UNLOAD Feb 12 20:24:22.868000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.868000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.868000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.869000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.869000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.869000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.869000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.869000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.869000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.869000 audit: BPF prog-id=63 op=LOAD Feb 12 20:24:22.869000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.869000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.869000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.870000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.870000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.870000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.870000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.870000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.870000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.870000 audit: BPF prog-id=64 op=LOAD Feb 12 20:24:22.870000 audit: BPF prog-id=45 op=UNLOAD Feb 12 20:24:22.870000 audit: BPF prog-id=46 op=UNLOAD Feb 12 20:24:22.873000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.873000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.873000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.873000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.873000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.873000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.873000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.873000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.873000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.873000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.873000 audit: BPF prog-id=65 op=LOAD Feb 12 20:24:22.873000 audit: BPF prog-id=47 op=UNLOAD Feb 12 20:24:22.875000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.875000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.875000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.875000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.875000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.875000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.875000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.875000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.875000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.875000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.875000 audit: BPF prog-id=66 op=LOAD Feb 12 20:24:22.875000 audit: BPF prog-id=48 op=UNLOAD Feb 12 20:24:22.876000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.876000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.876000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.876000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.876000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.876000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.876000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.876000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.876000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.877000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.877000 audit: BPF prog-id=67 op=LOAD Feb 12 20:24:22.877000 audit: BPF prog-id=49 op=UNLOAD Feb 12 20:24:22.877000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.877000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.877000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.877000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.877000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.877000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.877000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.877000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.877000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.877000 audit: BPF prog-id=68 op=LOAD Feb 12 20:24:22.877000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.877000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.877000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.877000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.877000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.877000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.877000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.877000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.877000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.877000 audit: BPF prog-id=69 op=LOAD Feb 12 20:24:22.877000 audit: BPF prog-id=50 op=UNLOAD Feb 12 20:24:22.877000 audit: BPF prog-id=51 op=UNLOAD Feb 12 20:24:22.878000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.878000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.878000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.878000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.878000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.878000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.878000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.878000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.878000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.878000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.878000 audit: BPF prog-id=70 op=LOAD Feb 12 20:24:22.878000 audit: BPF prog-id=52 op=UNLOAD Feb 12 20:24:22.878000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.878000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.878000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.878000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.878000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.878000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.878000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.878000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.878000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.878000 audit: BPF prog-id=71 op=LOAD Feb 12 20:24:22.878000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.879000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.879000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.879000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.879000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.879000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.879000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.879000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.879000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:22.879000 audit: BPF prog-id=72 op=LOAD Feb 12 20:24:22.879000 audit: BPF prog-id=53 op=UNLOAD Feb 12 20:24:22.879000 audit: BPF prog-id=54 op=UNLOAD Feb 12 20:24:22.926047 systemd[1]: Started kubelet.service. Feb 12 20:24:22.930000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:23.025718 kubelet[2196]: Flag --container-runtime-endpoint has been deprecated, This parameter should be set via the config file specified by the Kubelet's --config flag. See https://kubernetes.io/docs/tasks/administer-cluster/kubelet-config-file/ for more information. Feb 12 20:24:23.025718 kubelet[2196]: Flag --pod-infra-container-image has been deprecated, will be removed in a future release. Image garbage collector will get sandbox image information from CRI. Feb 12 20:24:23.026362 kubelet[2196]: Flag --volume-plugin-dir has been deprecated, This parameter should be set via the config file specified by the Kubelet's --config flag. See https://kubernetes.io/docs/tasks/administer-cluster/kubelet-config-file/ for more information. Feb 12 20:24:23.026362 kubelet[2196]: I0212 20:24:23.025837 2196 server.go:203] "--pod-infra-container-image will not be pruned by the image garbage collector in kubelet and should also be set in the remote runtime" Feb 12 20:24:24.107195 kubelet[2196]: I0212 20:24:24.107147 2196 server.go:467] "Kubelet version" kubeletVersion="v1.28.1" Feb 12 20:24:24.107195 kubelet[2196]: I0212 20:24:24.107193 2196 server.go:469] "Golang settings" GOGC="" GOMAXPROCS="" GOTRACEBACK="" Feb 12 20:24:24.107909 kubelet[2196]: I0212 20:24:24.107572 2196 server.go:895] "Client rotation is on, will bootstrap in background" Feb 12 20:24:24.112772 kubelet[2196]: I0212 20:24:24.112716 2196 dynamic_cafile_content.go:157] "Starting controller" name="client-ca-bundle::/etc/kubernetes/pki/ca.crt" Feb 12 20:24:24.119533 kubelet[2196]: W0212 20:24:24.119500 2196 machine.go:65] Cannot read vendor id correctly, set empty. Feb 12 20:24:24.120713 kubelet[2196]: I0212 20:24:24.120684 2196 server.go:725] "--cgroups-per-qos enabled, but --cgroup-root was not specified. defaulting to /" Feb 12 20:24:24.121336 kubelet[2196]: I0212 20:24:24.121310 2196 container_manager_linux.go:265] "Container manager verified user specified cgroup-root exists" cgroupRoot=[] Feb 12 20:24:24.121864 kubelet[2196]: I0212 20:24:24.121831 2196 container_manager_linux.go:270] "Creating Container Manager object based on Node Config" nodeConfig={"RuntimeCgroupsName":"","SystemCgroupsName":"","KubeletCgroupsName":"","KubeletOOMScoreAdj":-999,"ContainerRuntime":"","CgroupsPerQOS":true,"CgroupRoot":"/","CgroupDriver":"systemd","KubeletRootDir":"/var/lib/kubelet","ProtectKernelDefaults":false,"KubeReservedCgroupName":"","SystemReservedCgroupName":"","ReservedSystemCPUs":{},"EnforceNodeAllocatable":{"pods":{}},"KubeReserved":null,"SystemReserved":null,"HardEvictionThresholds":[{"Signal":"memory.available","Operator":"LessThan","Value":{"Quantity":"100Mi","Percentage":0},"GracePeriod":0,"MinReclaim":null},{"Signal":"nodefs.available","Operator":"LessThan","Value":{"Quantity":null,"Percentage":0.1},"GracePeriod":0,"MinReclaim":null},{"Signal":"nodefs.inodesFree","Operator":"LessThan","Value":{"Quantity":null,"Percentage":0.05},"GracePeriod":0,"MinReclaim":null},{"Signal":"imagefs.available","Operator":"LessThan","Value":{"Quantity":null,"Percentage":0.15},"GracePeriod":0,"MinReclaim":null}],"QOSReserved":{},"CPUManagerPolicy":"none","CPUManagerPolicyOptions":null,"TopologyManagerScope":"container","CPUManagerReconcilePeriod":10000000000,"ExperimentalMemoryManagerPolicy":"None","ExperimentalMemoryManagerReservedMemory":null,"PodPidsLimit":-1,"EnforceCPULimits":true,"CPUCFSQuotaPeriod":100000000,"TopologyManagerPolicy":"none","TopologyManagerPolicyOptions":null} Feb 12 20:24:24.122097 kubelet[2196]: I0212 20:24:24.121878 2196 topology_manager.go:138] "Creating topology manager with none policy" Feb 12 20:24:24.122097 kubelet[2196]: I0212 20:24:24.121900 2196 container_manager_linux.go:301] "Creating device plugin manager" Feb 12 20:24:24.122097 kubelet[2196]: I0212 20:24:24.122088 2196 state_mem.go:36] "Initialized new in-memory state store" Feb 12 20:24:24.122322 kubelet[2196]: I0212 20:24:24.122296 2196 kubelet.go:393] "Attempting to sync node with API server" Feb 12 20:24:24.122773 kubelet[2196]: I0212 20:24:24.122745 2196 kubelet.go:298] "Adding static pod path" path="/etc/kubernetes/manifests" Feb 12 20:24:24.122860 kubelet[2196]: I0212 20:24:24.122810 2196 kubelet.go:309] "Adding apiserver pod source" Feb 12 20:24:24.123048 kubelet[2196]: E0212 20:24:24.122932 2196 file.go:98] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:24.123048 kubelet[2196]: E0212 20:24:24.123025 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:24.123204 kubelet[2196]: I0212 20:24:24.123068 2196 apiserver.go:42] "Waiting for node sync before watching apiserver pods" Feb 12 20:24:24.125406 kubelet[2196]: I0212 20:24:24.125367 2196 kuberuntime_manager.go:257] "Container runtime initialized" containerRuntime="containerd" version="1.6.16" apiVersion="v1" Feb 12 20:24:24.125883 kubelet[2196]: W0212 20:24:24.125854 2196 probe.go:268] Flexvolume plugin directory at /opt/libexec/kubernetes/kubelet-plugins/volume/exec/ does not exist. Recreating. Feb 12 20:24:24.126829 kubelet[2196]: I0212 20:24:24.126777 2196 server.go:1232] "Started kubelet" Feb 12 20:24:24.127421 kubelet[2196]: I0212 20:24:24.127380 2196 server.go:162] "Starting to listen" address="0.0.0.0" port=10250 Feb 12 20:24:24.128491 kubelet[2196]: I0212 20:24:24.128443 2196 server.go:462] "Adding debug handlers to kubelet server" Feb 12 20:24:24.127000 audit[2196]: AVC avc: denied { mac_admin } for pid=2196 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:24.127000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Feb 12 20:24:24.127000 audit[2196]: SYSCALL arch=c00000b7 syscall=5 success=no exit=-22 a0=4000bb4360 a1=4000ce32f0 a2=4000bb4330 a3=25 items=0 ppid=1 pid=2196 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:24.127000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Feb 12 20:24:24.130202 kubelet[2196]: I0212 20:24:24.130171 2196 kubelet.go:1386] "Unprivileged containerized plugins might not work, could not set selinux context on plugin registration dir" path="/var/lib/kubelet/plugins_registry" err="setxattr /var/lib/kubelet/plugins_registry: invalid argument" Feb 12 20:24:24.128000 audit[2196]: AVC avc: denied { mac_admin } for pid=2196 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:24.128000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Feb 12 20:24:24.128000 audit[2196]: SYSCALL arch=c00000b7 syscall=5 success=no exit=-22 a0=4000ce8f20 a1=4000ce3308 a2=4000bb43f0 a3=25 items=0 ppid=1 pid=2196 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:24.128000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Feb 12 20:24:24.130850 kubelet[2196]: I0212 20:24:24.130825 2196 kubelet.go:1390] "Unprivileged containerized plugins might not work, could not set selinux context on plugins dir" path="/var/lib/kubelet/plugins" err="setxattr /var/lib/kubelet/plugins: invalid argument" Feb 12 20:24:24.131122 kubelet[2196]: I0212 20:24:24.131100 2196 fs_resource_analyzer.go:67] "Starting FS ResourceAnalyzer" Feb 12 20:24:24.139022 kubelet[2196]: I0212 20:24:24.130284 2196 ratelimit.go:65] "Setting rate limiting for podresources endpoint" qps=100 burstTokens=10 Feb 12 20:24:24.139332 kubelet[2196]: I0212 20:24:24.139298 2196 server.go:233] "Starting to serve the podresources API" endpoint="unix:/var/lib/kubelet/pod-resources/kubelet.sock" Feb 12 20:24:24.144821 kubelet[2196]: E0212 20:24:24.144760 2196 cri_stats_provider.go:448] "Failed to get the info of the filesystem with mountpoint" err="unable to find data in memory cache" mountpoint="/var/lib/containerd/io.containerd.snapshotter.v1.overlayfs" Feb 12 20:24:24.144821 kubelet[2196]: E0212 20:24:24.144815 2196 kubelet.go:1431] "Image garbage collection failed once. Stats initialization may not have completed yet" err="invalid capacity 0 on image filesystem" Feb 12 20:24:24.148570 kubelet[2196]: I0212 20:24:24.148523 2196 volume_manager.go:291] "Starting Kubelet Volume Manager" Feb 12 20:24:24.149173 kubelet[2196]: I0212 20:24:24.149139 2196 desired_state_of_world_populator.go:151] "Desired state populator starts to run" Feb 12 20:24:24.149310 kubelet[2196]: I0212 20:24:24.149259 2196 reconciler_new.go:29] "Reconciler: start to sync state" Feb 12 20:24:24.150919 kubelet[2196]: W0212 20:24:24.150881 2196 reflector.go:535] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.Service: services is forbidden: User "system:anonymous" cannot list resource "services" in API group "" at the cluster scope Feb 12 20:24:24.151217 kubelet[2196]: E0212 20:24:24.151172 2196 reflector.go:147] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.Service: failed to list *v1.Service: services is forbidden: User "system:anonymous" cannot list resource "services" in API group "" at the cluster scope Feb 12 20:24:24.153080 kubelet[2196]: E0212 20:24:24.152886 2196 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.16.56.17b337478b88a387", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:<nil>, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.16.56", UID:"172.31.16.56", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"Starting", Message:"Starting kubelet.", Source:v1.EventSource{Component:"kubelet", Host:"172.31.16.56"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 24, 24, 126743431, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 24, 24, 126743431, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"172.31.16.56"}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:24:24.154180 kubelet[2196]: W0212 20:24:24.154149 2196 reflector.go:535] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.Node: nodes "172.31.16.56" is forbidden: User "system:anonymous" cannot list resource "nodes" in API group "" at the cluster scope Feb 12 20:24:24.154630 kubelet[2196]: E0212 20:24:24.154511 2196 reflector.go:147] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.Node: failed to list *v1.Node: nodes "172.31.16.56" is forbidden: User "system:anonymous" cannot list resource "nodes" in API group "" at the cluster scope Feb 12 20:24:24.155522 kubelet[2196]: E0212 20:24:24.155470 2196 controller.go:146] "Failed to ensure lease exists, will retry" err="leases.coordination.k8s.io \"172.31.16.56\" is forbidden: User \"system:anonymous\" cannot get resource \"leases\" in API group \"coordination.k8s.io\" in the namespace \"kube-node-lease\"" interval="200ms" Feb 12 20:24:24.155701 kubelet[2196]: W0212 20:24:24.155555 2196 reflector.go:535] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.CSIDriver: csidrivers.storage.k8s.io is forbidden: User "system:anonymous" cannot list resource "csidrivers" in API group "storage.k8s.io" at the cluster scope Feb 12 20:24:24.155701 kubelet[2196]: E0212 20:24:24.155585 2196 reflector.go:147] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.CSIDriver: failed to list *v1.CSIDriver: csidrivers.storage.k8s.io is forbidden: User "system:anonymous" cannot list resource "csidrivers" in API group "storage.k8s.io" at the cluster scope Feb 12 20:24:24.164913 kubelet[2196]: E0212 20:24:24.164756 2196 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.16.56.17b337478c9c1e19", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:<nil>, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.16.56", UID:"172.31.16.56", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"InvalidDiskCapacity", Message:"invalid capacity 0 on image filesystem", Source:v1.EventSource{Component:"kubelet", Host:"172.31.16.56"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 24, 24, 144797209, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 24, 24, 144797209, time.Local), Count:1, Type:"Warning", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"172.31.16.56"}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:24:24.191000 audit[2210]: NETFILTER_CFG table=mangle:2 family=2 entries=2 op=nft_register_chain pid=2210 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:24.191000 audit[2210]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=136 a0=3 a1=ffffdcf76bb0 a2=0 a3=1 items=0 ppid=2196 pid=2210 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:24.191000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D49505441424C45532D48494E54002D74006D616E676C65 Feb 12 20:24:24.195000 audit[2214]: NETFILTER_CFG table=filter:3 family=2 entries=2 op=nft_register_chain pid=2214 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:24.195000 audit[2214]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=132 a0=3 a1=ffffe911bf10 a2=0 a3=1 items=0 ppid=2196 pid=2214 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:24.195000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4649524557414C4C002D740066696C746572 Feb 12 20:24:24.214274 kubelet[2196]: I0212 20:24:24.214239 2196 cpu_manager.go:214] "Starting CPU manager" policy="none" Feb 12 20:24:24.214496 kubelet[2196]: I0212 20:24:24.214473 2196 cpu_manager.go:215] "Reconciling" reconcilePeriod="10s" Feb 12 20:24:24.214624 kubelet[2196]: I0212 20:24:24.214603 2196 state_mem.go:36] "Initialized new in-memory state store" Feb 12 20:24:24.220316 kubelet[2196]: I0212 20:24:24.220282 2196 policy_none.go:49] "None policy: Start" Feb 12 20:24:24.220628 kubelet[2196]: E0212 20:24:24.220382 2196 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.16.56.17b3374790a860cf", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:<nil>, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.16.56", UID:"172.31.16.56", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 172.31.16.56 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"172.31.16.56"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 24, 24, 212709583, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 24, 24, 212709583, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"172.31.16.56"}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:24:24.222381 kubelet[2196]: I0212 20:24:24.222344 2196 memory_manager.go:169] "Starting memorymanager" policy="None" Feb 12 20:24:24.222508 kubelet[2196]: I0212 20:24:24.222396 2196 state_mem.go:35] "Initializing new in-memory state store" Feb 12 20:24:24.224230 kubelet[2196]: E0212 20:24:24.224074 2196 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.16.56.17b3374790a88654", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:<nil>, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.16.56", UID:"172.31.16.56", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 172.31.16.56 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"172.31.16.56"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 24, 24, 212719188, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 24, 24, 212719188, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"172.31.16.56"}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:24:24.227173 kubelet[2196]: E0212 20:24:24.227004 2196 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.16.56.17b3374790a89c81", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:<nil>, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.16.56", UID:"172.31.16.56", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 172.31.16.56 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"172.31.16.56"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 24, 24, 212724865, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 24, 24, 212724865, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"172.31.16.56"}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:24:24.232638 systemd[1]: Created slice kubepods.slice. Feb 12 20:24:24.204000 audit[2216]: NETFILTER_CFG table=filter:4 family=2 entries=2 op=nft_register_chain pid=2216 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:24.204000 audit[2216]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=312 a0=3 a1=ffffc71148e0 a2=0 a3=1 items=0 ppid=2196 pid=2216 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:24.204000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6A004B5542452D4649524557414C4C Feb 12 20:24:24.243434 systemd[1]: Created slice kubepods-besteffort.slice. Feb 12 20:24:24.247000 audit[2221]: NETFILTER_CFG table=filter:5 family=2 entries=2 op=nft_register_chain pid=2221 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:24.247000 audit[2221]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=312 a0=3 a1=ffffde52d140 a2=0 a3=1 items=0 ppid=2196 pid=2221 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:24.247000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6A004B5542452D4649524557414C4C Feb 12 20:24:24.249927 kubelet[2196]: I0212 20:24:24.249890 2196 kubelet_node_status.go:70] "Attempting to register node" node="172.31.16.56" Feb 12 20:24:24.255591 systemd[1]: Created slice kubepods-burstable.slice. Feb 12 20:24:24.258766 kubelet[2196]: E0212 20:24:24.258642 2196 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.16.56.17b3374790a860cf", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:<nil>, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.16.56", UID:"172.31.16.56", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 172.31.16.56 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"172.31.16.56"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 24, 24, 212709583, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 24, 24, 249833705, time.Local), Count:2, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"172.31.16.56"}': 'events "172.31.16.56.17b3374790a860cf" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:24:24.259905 kubelet[2196]: I0212 20:24:24.259857 2196 manager.go:471] "Failed to read data from checkpoint" checkpoint="kubelet_internal_checkpoint" err="checkpoint is not found" Feb 12 20:24:24.259000 audit[2196]: AVC avc: denied { mac_admin } for pid=2196 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:24.261028 kubelet[2196]: E0212 20:24:24.259985 2196 kubelet_node_status.go:92] "Unable to register node with API server" err="nodes is forbidden: User \"system:anonymous\" cannot create resource \"nodes\" in API group \"\" at the cluster scope" node="172.31.16.56" Feb 12 20:24:24.259000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Feb 12 20:24:24.259000 audit[2196]: SYSCALL arch=c00000b7 syscall=5 success=no exit=-22 a0=400082d080 a1=40008370b0 a2=400082d050 a3=25 items=0 ppid=1 pid=2196 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:24.259000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Feb 12 20:24:24.261760 kubelet[2196]: I0212 20:24:24.261731 2196 server.go:88] "Unprivileged containerized plugins might not work. Could not set selinux context on socket dir" path="/var/lib/kubelet/device-plugins/" err="setxattr /var/lib/kubelet/device-plugins/: invalid argument" Feb 12 20:24:24.263422 kubelet[2196]: E0212 20:24:24.263292 2196 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.16.56.17b3374790a88654", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:<nil>, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.16.56", UID:"172.31.16.56", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 172.31.16.56 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"172.31.16.56"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 24, 24, 212719188, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 24, 24, 249841705, time.Local), Count:2, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"172.31.16.56"}': 'events "172.31.16.56.17b3374790a88654" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:24:24.264054 kubelet[2196]: I0212 20:24:24.263944 2196 plugin_manager.go:118] "Starting Kubelet Plugin Manager" Feb 12 20:24:24.264390 kubelet[2196]: E0212 20:24:24.264353 2196 eviction_manager.go:258] "Eviction manager: failed to get summary stats" err="failed to get node info: node \"172.31.16.56\" not found" Feb 12 20:24:24.267916 kubelet[2196]: E0212 20:24:24.267771 2196 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.16.56.17b3374790a89c81", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:<nil>, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.16.56", UID:"172.31.16.56", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 172.31.16.56 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"172.31.16.56"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 24, 24, 212724865, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 24, 24, 249849095, time.Local), Count:2, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"172.31.16.56"}': 'events "172.31.16.56.17b3374790a89c81" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:24:24.270442 kubelet[2196]: E0212 20:24:24.270312 2196 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.16.56.17b3374793f8ea15", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:<nil>, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.16.56", UID:"172.31.16.56", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeAllocatableEnforced", Message:"Updated Node Allocatable limit across pods", Source:v1.EventSource{Component:"kubelet", Host:"172.31.16.56"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 24, 24, 268319253, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 24, 24, 268319253, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"172.31.16.56"}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:24:24.315000 audit[2226]: NETFILTER_CFG table=filter:6 family=2 entries=1 op=nft_register_rule pid=2226 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:24.315000 audit[2226]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=924 a0=3 a1=ffffcf86b2e0 a2=0 a3=1 items=0 ppid=2196 pid=2226 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:24.315000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D41004B5542452D4649524557414C4C002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E7400626C6F636B20696E636F6D696E67206C6F63616C6E657420636F6E6E656374696F6E73002D2D647374003132372E302E302E302F38 Feb 12 20:24:24.317791 kubelet[2196]: I0212 20:24:24.317748 2196 kubelet_network_linux.go:50] "Initialized iptables rules." protocol="IPv4" Feb 12 20:24:24.318000 audit[2228]: NETFILTER_CFG table=mangle:7 family=2 entries=1 op=nft_register_chain pid=2228 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:24.318000 audit[2228]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffed95d5b0 a2=0 a3=1 items=0 ppid=2196 pid=2228 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:24.318000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006D616E676C65 Feb 12 20:24:24.319000 audit[2227]: NETFILTER_CFG table=mangle:8 family=10 entries=2 op=nft_register_chain pid=2227 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:24.319000 audit[2227]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=136 a0=3 a1=ffffeea40790 a2=0 a3=1 items=0 ppid=2196 pid=2227 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:24.319000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D49505441424C45532D48494E54002D74006D616E676C65 Feb 12 20:24:24.320815 kubelet[2196]: I0212 20:24:24.320796 2196 kubelet_network_linux.go:50] "Initialized iptables rules." protocol="IPv6" Feb 12 20:24:24.320892 kubelet[2196]: I0212 20:24:24.320846 2196 status_manager.go:217] "Starting to sync pod status with apiserver" Feb 12 20:24:24.320892 kubelet[2196]: I0212 20:24:24.320877 2196 kubelet.go:2303] "Starting kubelet main sync loop" Feb 12 20:24:24.321052 kubelet[2196]: E0212 20:24:24.321004 2196 kubelet.go:2327] "Skipping pod synchronization" err="PLEG is not healthy: pleg has yet to be successful" Feb 12 20:24:24.322000 audit[2229]: NETFILTER_CFG table=nat:9 family=2 entries=2 op=nft_register_chain pid=2229 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:24.322000 audit[2229]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=128 a0=3 a1=ffffee6fcf30 a2=0 a3=1 items=0 ppid=2196 pid=2229 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:24.322000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006E6174 Feb 12 20:24:24.324533 kubelet[2196]: W0212 20:24:24.324425 2196 reflector.go:535] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.RuntimeClass: runtimeclasses.node.k8s.io is forbidden: User "system:anonymous" cannot list resource "runtimeclasses" in API group "node.k8s.io" at the cluster scope Feb 12 20:24:24.324533 kubelet[2196]: E0212 20:24:24.324465 2196 reflector.go:147] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.RuntimeClass: failed to list *v1.RuntimeClass: runtimeclasses.node.k8s.io is forbidden: User "system:anonymous" cannot list resource "runtimeclasses" in API group "node.k8s.io" at the cluster scope Feb 12 20:24:24.324000 audit[2230]: NETFILTER_CFG table=mangle:10 family=10 entries=1 op=nft_register_chain pid=2230 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:24.324000 audit[2230]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffd469c060 a2=0 a3=1 items=0 ppid=2196 pid=2230 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:24.324000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006D616E676C65 Feb 12 20:24:24.326000 audit[2232]: NETFILTER_CFG table=nat:11 family=10 entries=2 op=nft_register_chain pid=2232 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:24.326000 audit[2232]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=128 a0=3 a1=fffffd71c1b0 a2=0 a3=1 items=0 ppid=2196 pid=2232 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:24.326000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006E6174 Feb 12 20:24:24.326000 audit[2231]: NETFILTER_CFG table=filter:12 family=2 entries=1 op=nft_register_chain pid=2231 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:24.326000 audit[2231]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=fffff3f26be0 a2=0 a3=1 items=0 ppid=2196 pid=2231 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:24.326000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D740066696C746572 Feb 12 20:24:24.327000 audit[2233]: NETFILTER_CFG table=filter:13 family=10 entries=2 op=nft_register_chain pid=2233 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:24.327000 audit[2233]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=136 a0=3 a1=ffffe3885960 a2=0 a3=1 items=0 ppid=2196 pid=2233 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:24.327000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D740066696C746572 Feb 12 20:24:24.358341 kubelet[2196]: E0212 20:24:24.357636 2196 controller.go:146] "Failed to ensure lease exists, will retry" err="leases.coordination.k8s.io \"172.31.16.56\" is forbidden: User \"system:anonymous\" cannot get resource \"leases\" in API group \"coordination.k8s.io\" in the namespace \"kube-node-lease\"" interval="400ms" Feb 12 20:24:24.462657 kubelet[2196]: I0212 20:24:24.462626 2196 kubelet_node_status.go:70] "Attempting to register node" node="172.31.16.56" Feb 12 20:24:24.464633 kubelet[2196]: E0212 20:24:24.464587 2196 kubelet_node_status.go:92] "Unable to register node with API server" err="nodes is forbidden: User \"system:anonymous\" cannot create resource \"nodes\" in API group \"\" at the cluster scope" node="172.31.16.56" Feb 12 20:24:24.464854 kubelet[2196]: E0212 20:24:24.464568 2196 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.16.56.17b3374790a860cf", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:<nil>, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.16.56", UID:"172.31.16.56", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 172.31.16.56 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"172.31.16.56"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 24, 24, 212709583, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 24, 24, 462547138, time.Local), Count:3, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"172.31.16.56"}': 'events "172.31.16.56.17b3374790a860cf" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:24:24.467356 kubelet[2196]: E0212 20:24:24.467259 2196 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.16.56.17b3374790a88654", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:<nil>, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.16.56", UID:"172.31.16.56", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 172.31.16.56 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"172.31.16.56"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 24, 24, 212719188, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 24, 24, 462555354, time.Local), Count:3, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"172.31.16.56"}': 'events "172.31.16.56.17b3374790a88654" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:24:24.469493 kubelet[2196]: E0212 20:24:24.469386 2196 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.16.56.17b3374790a89c81", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:<nil>, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.16.56", UID:"172.31.16.56", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 172.31.16.56 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"172.31.16.56"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 24, 24, 212724865, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 24, 24, 462588074, time.Local), Count:3, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"172.31.16.56"}': 'events "172.31.16.56.17b3374790a89c81" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:24:24.680870 amazon-ssm-agent[1743]: 2024-02-12 20:24:24 INFO [MessagingDeliveryService] [Association] No associations on boot. Requerying for associations after 30 seconds. Feb 12 20:24:24.760640 kubelet[2196]: E0212 20:24:24.760599 2196 controller.go:146] "Failed to ensure lease exists, will retry" err="leases.coordination.k8s.io \"172.31.16.56\" is forbidden: User \"system:anonymous\" cannot get resource \"leases\" in API group \"coordination.k8s.io\" in the namespace \"kube-node-lease\"" interval="800ms" Feb 12 20:24:24.866008 kubelet[2196]: I0212 20:24:24.865932 2196 kubelet_node_status.go:70] "Attempting to register node" node="172.31.16.56" Feb 12 20:24:24.867948 kubelet[2196]: E0212 20:24:24.867898 2196 kubelet_node_status.go:92] "Unable to register node with API server" err="nodes is forbidden: User \"system:anonymous\" cannot create resource \"nodes\" in API group \"\" at the cluster scope" node="172.31.16.56" Feb 12 20:24:24.868313 kubelet[2196]: E0212 20:24:24.868204 2196 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.16.56.17b3374790a860cf", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:<nil>, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.16.56", UID:"172.31.16.56", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 172.31.16.56 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"172.31.16.56"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 24, 24, 212709583, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 24, 24, 865832119, time.Local), Count:4, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"172.31.16.56"}': 'events "172.31.16.56.17b3374790a860cf" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:24:24.869653 kubelet[2196]: E0212 20:24:24.869541 2196 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.16.56.17b3374790a88654", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:<nil>, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.16.56", UID:"172.31.16.56", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 172.31.16.56 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"172.31.16.56"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 24, 24, 212719188, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 24, 24, 865889882, time.Local), Count:4, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"172.31.16.56"}': 'events "172.31.16.56.17b3374790a88654" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:24:24.871982 kubelet[2196]: E0212 20:24:24.871826 2196 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.16.56.17b3374790a89c81", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:<nil>, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.16.56", UID:"172.31.16.56", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 172.31.16.56 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"172.31.16.56"}, FirstTimestamp:time.Date(2024, time.February, 12, 20, 24, 24, 212724865, time.Local), LastTimestamp:time.Date(2024, time.February, 12, 20, 24, 24, 865895236, time.Local), Count:4, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"172.31.16.56"}': 'events "172.31.16.56.17b3374790a89c81" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 12 20:24:25.025208 kubelet[2196]: W0212 20:24:25.025131 2196 reflector.go:535] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.CSIDriver: csidrivers.storage.k8s.io is forbidden: User "system:anonymous" cannot list resource "csidrivers" in API group "storage.k8s.io" at the cluster scope Feb 12 20:24:25.025208 kubelet[2196]: E0212 20:24:25.025207 2196 reflector.go:147] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.CSIDriver: failed to list *v1.CSIDriver: csidrivers.storage.k8s.io is forbidden: User "system:anonymous" cannot list resource "csidrivers" in API group "storage.k8s.io" at the cluster scope Feb 12 20:24:25.114459 kubelet[2196]: I0212 20:24:25.114389 2196 transport.go:147] "Certificate rotation detected, shutting down client connections to start using new credentials" Feb 12 20:24:25.123874 kubelet[2196]: E0212 20:24:25.123799 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:25.552219 kubelet[2196]: E0212 20:24:25.552160 2196 csi_plugin.go:295] Failed to initialize CSINode: error updating CSINode annotation: timed out waiting for the condition; caused by: nodes "172.31.16.56" not found Feb 12 20:24:25.575692 kubelet[2196]: E0212 20:24:25.575648 2196 nodelease.go:49] "Failed to get node when trying to set owner ref to the node lease" err="nodes \"172.31.16.56\" not found" node="172.31.16.56" Feb 12 20:24:25.669183 kubelet[2196]: I0212 20:24:25.669131 2196 kubelet_node_status.go:70] "Attempting to register node" node="172.31.16.56" Feb 12 20:24:25.679586 kubelet[2196]: I0212 20:24:25.679538 2196 kubelet_node_status.go:73] "Successfully registered node" node="172.31.16.56" Feb 12 20:24:25.844638 kubelet[2196]: I0212 20:24:25.844489 2196 kuberuntime_manager.go:1463] "Updating runtime config through cri with podcidr" CIDR="192.168.1.0/24" Feb 12 20:24:25.845629 env[1721]: time="2024-02-12T20:24:25.845422907Z" level=info msg="No cni config template is specified, wait for other system components to drop the config." Feb 12 20:24:25.846612 kubelet[2196]: I0212 20:24:25.846565 2196 kubelet_network.go:61] "Updating Pod CIDR" originalPodCIDR="" newPodCIDR="192.168.1.0/24" Feb 12 20:24:25.972854 kernel: kauditd_printk_skb: 477 callbacks suppressed Feb 12 20:24:25.973051 kernel: audit: type=1106 audit(1707769465.968:614): pid=1991 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 12 20:24:25.968000 audit[1991]: USER_END pid=1991 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 12 20:24:25.969310 sudo[1991]: pam_unix(sudo:session): session closed for user root Feb 12 20:24:25.970000 audit[1991]: CRED_DISP pid=1991 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 12 20:24:25.989367 kernel: audit: type=1104 audit(1707769465.970:615): pid=1991 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 12 20:24:26.003132 sshd[1988]: pam_unix(sshd:session): session closed for user core Feb 12 20:24:26.004000 audit[1988]: USER_END pid=1988 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:24:26.008582 systemd-logind[1714]: Session 7 logged out. Waiting for processes to exit. Feb 12 20:24:26.011123 systemd[1]: session-7.scope: Deactivated successfully. Feb 12 20:24:26.013434 systemd-logind[1714]: Removed session 7. Feb 12 20:24:26.014716 systemd[1]: sshd@6-172.31.16.56:22-147.75.109.163:43540.service: Deactivated successfully. Feb 12 20:24:26.005000 audit[1988]: CRED_DISP pid=1988 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:24:26.026253 kernel: audit: type=1106 audit(1707769466.004:616): pid=1988 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:24:26.026348 kernel: audit: type=1104 audit(1707769466.005:617): pid=1988 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Feb 12 20:24:26.026392 kernel: audit: type=1131 audit(1707769466.014:618): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@6-172.31.16.56:22-147.75.109.163:43540 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:26.014000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@6-172.31.16.56:22-147.75.109.163:43540 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:26.125014 kubelet[2196]: E0212 20:24:26.124847 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:26.125014 kubelet[2196]: I0212 20:24:26.124926 2196 apiserver.go:52] "Watching apiserver" Feb 12 20:24:26.128342 kubelet[2196]: I0212 20:24:26.128304 2196 topology_manager.go:215] "Topology Admit Handler" podUID="35f7bd03-4a35-4720-ad36-681c9fcd445d" podNamespace="calico-system" podName="calico-node-6blkt" Feb 12 20:24:26.128645 kubelet[2196]: I0212 20:24:26.128621 2196 topology_manager.go:215] "Topology Admit Handler" podUID="3c8a710a-15e9-494c-819c-4ba8a0bd2c53" podNamespace="calico-system" podName="csi-node-driver-xhn8p" Feb 12 20:24:26.128837 kubelet[2196]: I0212 20:24:26.128816 2196 topology_manager.go:215] "Topology Admit Handler" podUID="a6278cd3-5f63-475f-af14-2cfa45dd413d" podNamespace="kube-system" podName="kube-proxy-b8ls2" Feb 12 20:24:26.130513 kubelet[2196]: E0212 20:24:26.130477 2196 pod_workers.go:1300] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-xhn8p" podUID="3c8a710a-15e9-494c-819c-4ba8a0bd2c53" Feb 12 20:24:26.139241 systemd[1]: Created slice kubepods-besteffort-poda6278cd3_5f63_475f_af14_2cfa45dd413d.slice. Feb 12 20:24:26.150030 kubelet[2196]: I0212 20:24:26.149852 2196 desired_state_of_world_populator.go:159] "Finished populating initial desired state of world" Feb 12 20:24:26.152643 systemd[1]: Created slice kubepods-besteffort-pod35f7bd03_4a35_4720_ad36_681c9fcd445d.slice. Feb 12 20:24:26.157998 kubelet[2196]: I0212 20:24:26.157916 2196 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"xtables-lock\" (UniqueName: \"kubernetes.io/host-path/35f7bd03-4a35-4720-ad36-681c9fcd445d-xtables-lock\") pod \"calico-node-6blkt\" (UID: \"35f7bd03-4a35-4720-ad36-681c9fcd445d\") " pod="calico-system/calico-node-6blkt" Feb 12 20:24:26.158143 kubelet[2196]: I0212 20:24:26.158014 2196 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"var-run-calico\" (UniqueName: \"kubernetes.io/host-path/35f7bd03-4a35-4720-ad36-681c9fcd445d-var-run-calico\") pod \"calico-node-6blkt\" (UID: \"35f7bd03-4a35-4720-ad36-681c9fcd445d\") " pod="calico-system/calico-node-6blkt" Feb 12 20:24:26.158143 kubelet[2196]: I0212 20:24:26.158063 2196 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"var-lib-calico\" (UniqueName: \"kubernetes.io/host-path/35f7bd03-4a35-4720-ad36-681c9fcd445d-var-lib-calico\") pod \"calico-node-6blkt\" (UID: \"35f7bd03-4a35-4720-ad36-681c9fcd445d\") " pod="calico-system/calico-node-6blkt" Feb 12 20:24:26.158143 kubelet[2196]: I0212 20:24:26.158110 2196 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-pq42d\" (UniqueName: \"kubernetes.io/projected/35f7bd03-4a35-4720-ad36-681c9fcd445d-kube-api-access-pq42d\") pod \"calico-node-6blkt\" (UID: \"35f7bd03-4a35-4720-ad36-681c9fcd445d\") " pod="calico-system/calico-node-6blkt" Feb 12 20:24:26.158354 kubelet[2196]: I0212 20:24:26.158159 2196 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"xtables-lock\" (UniqueName: \"kubernetes.io/host-path/a6278cd3-5f63-475f-af14-2cfa45dd413d-xtables-lock\") pod \"kube-proxy-b8ls2\" (UID: \"a6278cd3-5f63-475f-af14-2cfa45dd413d\") " pod="kube-system/kube-proxy-b8ls2" Feb 12 20:24:26.158354 kubelet[2196]: I0212 20:24:26.158204 2196 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"lib-modules\" (UniqueName: \"kubernetes.io/host-path/a6278cd3-5f63-475f-af14-2cfa45dd413d-lib-modules\") pod \"kube-proxy-b8ls2\" (UID: \"a6278cd3-5f63-475f-af14-2cfa45dd413d\") " pod="kube-system/kube-proxy-b8ls2" Feb 12 20:24:26.158354 kubelet[2196]: I0212 20:24:26.158248 2196 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"policysync\" (UniqueName: \"kubernetes.io/host-path/35f7bd03-4a35-4720-ad36-681c9fcd445d-policysync\") pod \"calico-node-6blkt\" (UID: \"35f7bd03-4a35-4720-ad36-681c9fcd445d\") " pod="calico-system/calico-node-6blkt" Feb 12 20:24:26.158354 kubelet[2196]: I0212 20:24:26.158290 2196 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"tigera-ca-bundle\" (UniqueName: \"kubernetes.io/configmap/35f7bd03-4a35-4720-ad36-681c9fcd445d-tigera-ca-bundle\") pod \"calico-node-6blkt\" (UID: \"35f7bd03-4a35-4720-ad36-681c9fcd445d\") " pod="calico-system/calico-node-6blkt" Feb 12 20:24:26.158354 kubelet[2196]: I0212 20:24:26.158330 2196 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-log-dir\" (UniqueName: \"kubernetes.io/host-path/35f7bd03-4a35-4720-ad36-681c9fcd445d-cni-log-dir\") pod \"calico-node-6blkt\" (UID: \"35f7bd03-4a35-4720-ad36-681c9fcd445d\") " pod="calico-system/calico-node-6blkt" Feb 12 20:24:26.158626 kubelet[2196]: I0212 20:24:26.158370 2196 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"socket-dir\" (UniqueName: \"kubernetes.io/host-path/3c8a710a-15e9-494c-819c-4ba8a0bd2c53-socket-dir\") pod \"csi-node-driver-xhn8p\" (UID: \"3c8a710a-15e9-494c-819c-4ba8a0bd2c53\") " pod="calico-system/csi-node-driver-xhn8p" Feb 12 20:24:26.158626 kubelet[2196]: I0212 20:24:26.158412 2196 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"registration-dir\" (UniqueName: \"kubernetes.io/host-path/3c8a710a-15e9-494c-819c-4ba8a0bd2c53-registration-dir\") pod \"csi-node-driver-xhn8p\" (UID: \"3c8a710a-15e9-494c-819c-4ba8a0bd2c53\") " pod="calico-system/csi-node-driver-xhn8p" Feb 12 20:24:26.158626 kubelet[2196]: I0212 20:24:26.158457 2196 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-546x7\" (UniqueName: \"kubernetes.io/projected/3c8a710a-15e9-494c-819c-4ba8a0bd2c53-kube-api-access-546x7\") pod \"csi-node-driver-xhn8p\" (UID: \"3c8a710a-15e9-494c-819c-4ba8a0bd2c53\") " pod="calico-system/csi-node-driver-xhn8p" Feb 12 20:24:26.158626 kubelet[2196]: I0212 20:24:26.158583 2196 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-bdl4m\" (UniqueName: \"kubernetes.io/projected/a6278cd3-5f63-475f-af14-2cfa45dd413d-kube-api-access-bdl4m\") pod \"kube-proxy-b8ls2\" (UID: \"a6278cd3-5f63-475f-af14-2cfa45dd413d\") " pod="kube-system/kube-proxy-b8ls2" Feb 12 20:24:26.158863 kubelet[2196]: I0212 20:24:26.158658 2196 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"lib-modules\" (UniqueName: \"kubernetes.io/host-path/35f7bd03-4a35-4720-ad36-681c9fcd445d-lib-modules\") pod \"calico-node-6blkt\" (UID: \"35f7bd03-4a35-4720-ad36-681c9fcd445d\") " pod="calico-system/calico-node-6blkt" Feb 12 20:24:26.158863 kubelet[2196]: I0212 20:24:26.158752 2196 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-bin-dir\" (UniqueName: \"kubernetes.io/host-path/35f7bd03-4a35-4720-ad36-681c9fcd445d-cni-bin-dir\") pod \"calico-node-6blkt\" (UID: \"35f7bd03-4a35-4720-ad36-681c9fcd445d\") " pod="calico-system/calico-node-6blkt" Feb 12 20:24:26.158863 kubelet[2196]: I0212 20:24:26.158841 2196 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-net-dir\" (UniqueName: \"kubernetes.io/host-path/35f7bd03-4a35-4720-ad36-681c9fcd445d-cni-net-dir\") pod \"calico-node-6blkt\" (UID: \"35f7bd03-4a35-4720-ad36-681c9fcd445d\") " pod="calico-system/calico-node-6blkt" Feb 12 20:24:26.159086 kubelet[2196]: I0212 20:24:26.158894 2196 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"flexvol-driver-host\" (UniqueName: \"kubernetes.io/host-path/35f7bd03-4a35-4720-ad36-681c9fcd445d-flexvol-driver-host\") pod \"calico-node-6blkt\" (UID: \"35f7bd03-4a35-4720-ad36-681c9fcd445d\") " pod="calico-system/calico-node-6blkt" Feb 12 20:24:26.159086 kubelet[2196]: I0212 20:24:26.159008 2196 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"varrun\" (UniqueName: \"kubernetes.io/host-path/3c8a710a-15e9-494c-819c-4ba8a0bd2c53-varrun\") pod \"csi-node-driver-xhn8p\" (UID: \"3c8a710a-15e9-494c-819c-4ba8a0bd2c53\") " pod="calico-system/csi-node-driver-xhn8p" Feb 12 20:24:26.159086 kubelet[2196]: I0212 20:24:26.159084 2196 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-proxy\" (UniqueName: \"kubernetes.io/configmap/a6278cd3-5f63-475f-af14-2cfa45dd413d-kube-proxy\") pod \"kube-proxy-b8ls2\" (UID: \"a6278cd3-5f63-475f-af14-2cfa45dd413d\") " pod="kube-system/kube-proxy-b8ls2" Feb 12 20:24:26.159288 kubelet[2196]: I0212 20:24:26.159159 2196 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"node-certs\" (UniqueName: \"kubernetes.io/secret/35f7bd03-4a35-4720-ad36-681c9fcd445d-node-certs\") pod \"calico-node-6blkt\" (UID: \"35f7bd03-4a35-4720-ad36-681c9fcd445d\") " pod="calico-system/calico-node-6blkt" Feb 12 20:24:26.159288 kubelet[2196]: I0212 20:24:26.159276 2196 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kubelet-dir\" (UniqueName: \"kubernetes.io/host-path/3c8a710a-15e9-494c-819c-4ba8a0bd2c53-kubelet-dir\") pod \"csi-node-driver-xhn8p\" (UID: \"3c8a710a-15e9-494c-819c-4ba8a0bd2c53\") " pod="calico-system/csi-node-driver-xhn8p" Feb 12 20:24:26.265653 kubelet[2196]: E0212 20:24:26.265603 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:26.265653 kubelet[2196]: W0212 20:24:26.265643 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:26.265885 kubelet[2196]: E0212 20:24:26.265694 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:26.274743 kubelet[2196]: E0212 20:24:26.274693 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:26.274743 kubelet[2196]: W0212 20:24:26.274733 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:26.275048 kubelet[2196]: E0212 20:24:26.275004 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:26.275292 kubelet[2196]: E0212 20:24:26.275263 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:26.275393 kubelet[2196]: W0212 20:24:26.275290 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:26.276115 kubelet[2196]: E0212 20:24:26.276082 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:26.276379 kubelet[2196]: E0212 20:24:26.276354 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:26.276503 kubelet[2196]: W0212 20:24:26.276380 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:26.276628 kubelet[2196]: E0212 20:24:26.276601 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:26.276737 kubelet[2196]: E0212 20:24:26.276705 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:26.276737 kubelet[2196]: W0212 20:24:26.276731 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:26.276932 kubelet[2196]: E0212 20:24:26.276910 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:26.277088 kubelet[2196]: E0212 20:24:26.277039 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:26.277228 kubelet[2196]: W0212 20:24:26.277204 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:26.277359 kubelet[2196]: E0212 20:24:26.277338 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:26.277654 kubelet[2196]: E0212 20:24:26.277628 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:26.277729 kubelet[2196]: W0212 20:24:26.277653 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:26.277729 kubelet[2196]: E0212 20:24:26.277687 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:26.278075 kubelet[2196]: E0212 20:24:26.278048 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:26.278188 kubelet[2196]: W0212 20:24:26.278073 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:26.278188 kubelet[2196]: E0212 20:24:26.278112 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:26.278490 kubelet[2196]: E0212 20:24:26.278464 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:26.278570 kubelet[2196]: W0212 20:24:26.278489 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:26.278680 kubelet[2196]: E0212 20:24:26.278654 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:26.278886 kubelet[2196]: E0212 20:24:26.278861 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:26.279004 kubelet[2196]: W0212 20:24:26.278885 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:26.279004 kubelet[2196]: E0212 20:24:26.278912 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:26.358441 kubelet[2196]: E0212 20:24:26.358383 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:26.358441 kubelet[2196]: W0212 20:24:26.358424 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:26.358663 kubelet[2196]: E0212 20:24:26.358468 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:26.376228 kubelet[2196]: E0212 20:24:26.376100 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:26.376228 kubelet[2196]: W0212 20:24:26.376132 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:26.376228 kubelet[2196]: E0212 20:24:26.376169 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:26.379644 kubelet[2196]: E0212 20:24:26.379599 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:26.379644 kubelet[2196]: W0212 20:24:26.379637 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:26.379908 kubelet[2196]: E0212 20:24:26.379883 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:26.380076 kubelet[2196]: E0212 20:24:26.380044 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:26.380076 kubelet[2196]: W0212 20:24:26.380070 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:26.380244 kubelet[2196]: E0212 20:24:26.380096 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:26.381434 kubelet[2196]: E0212 20:24:26.381394 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:26.381434 kubelet[2196]: W0212 20:24:26.381425 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:26.381598 kubelet[2196]: E0212 20:24:26.381458 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:26.450002 env[1721]: time="2024-02-12T20:24:26.449889196Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:kube-proxy-b8ls2,Uid:a6278cd3-5f63-475f-af14-2cfa45dd413d,Namespace:kube-system,Attempt:0,}" Feb 12 20:24:26.466881 env[1721]: time="2024-02-12T20:24:26.466322846Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-node-6blkt,Uid:35f7bd03-4a35-4720-ad36-681c9fcd445d,Namespace:calico-system,Attempt:0,}" Feb 12 20:24:27.033718 env[1721]: time="2024-02-12T20:24:27.033645029Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:27.035743 env[1721]: time="2024-02-12T20:24:27.035675118Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:27.041190 env[1721]: time="2024-02-12T20:24:27.041137321Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:7d46a07936af93fcce097459055f93ab07331509aa55f4a2a90d95a3ace1850e,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:27.043398 env[1721]: time="2024-02-12T20:24:27.043317502Z" level=info msg="ImageUpdate event &ImageUpdate{Name:sha256:7d46a07936af93fcce097459055f93ab07331509aa55f4a2a90d95a3ace1850e,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:27.044841 env[1721]: time="2024-02-12T20:24:27.044800686Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:27.049041 env[1721]: time="2024-02-12T20:24:27.048989839Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/pause@sha256:3d380ca8864549e74af4b29c10f9cb0956236dfb01c40ca076fb6c37253234db,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:27.052263 env[1721]: time="2024-02-12T20:24:27.052198469Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:27.056811 env[1721]: time="2024-02-12T20:24:27.056737051Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause@sha256:3d380ca8864549e74af4b29c10f9cb0956236dfb01c40ca076fb6c37253234db,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:27.093195 env[1721]: time="2024-02-12T20:24:27.092352035Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 12 20:24:27.093195 env[1721]: time="2024-02-12T20:24:27.092432055Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 12 20:24:27.093195 env[1721]: time="2024-02-12T20:24:27.092458013Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 12 20:24:27.093195 env[1721]: time="2024-02-12T20:24:27.092833135Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/ab44c20cef95dfa9fbebef94cd8aa38feac937b0013fbac0451391a8031c2f29 pid=2268 runtime=io.containerd.runc.v2 Feb 12 20:24:27.097358 env[1721]: time="2024-02-12T20:24:27.097230733Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 12 20:24:27.097520 env[1721]: time="2024-02-12T20:24:27.097388890Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 12 20:24:27.097520 env[1721]: time="2024-02-12T20:24:27.097459694Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 12 20:24:27.097830 env[1721]: time="2024-02-12T20:24:27.097741542Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/79389d396ce26c5ae0d97aa1a97e8d470bdd161d3afd21ca324574792ea11d59 pid=2271 runtime=io.containerd.runc.v2 Feb 12 20:24:27.121059 systemd[1]: Started cri-containerd-ab44c20cef95dfa9fbebef94cd8aa38feac937b0013fbac0451391a8031c2f29.scope. Feb 12 20:24:27.128371 kubelet[2196]: E0212 20:24:27.125571 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:27.144217 systemd[1]: Started cri-containerd-79389d396ce26c5ae0d97aa1a97e8d470bdd161d3afd21ca324574792ea11d59.scope. Feb 12 20:24:27.169000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.169000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.185609 kernel: audit: type=1400 audit(1707769467.169:619): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.185755 kernel: audit: type=1400 audit(1707769467.169:620): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.185799 kernel: audit: type=1400 audit(1707769467.169:621): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.169000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.193212 kernel: audit: type=1400 audit(1707769467.169:622): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.169000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.210149 kernel: audit: type=1400 audit(1707769467.169:623): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.169000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.169000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.169000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.169000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.169000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.177000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.177000 audit: BPF prog-id=73 op=LOAD Feb 12 20:24:27.185000 audit[2291]: AVC avc: denied { bpf } for pid=2291 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.185000 audit[2291]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000145b38 a2=10 a3=0 items=0 ppid=2268 pid=2291 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:27.185000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6162343463323063656639356466613966626562656639346364386161 Feb 12 20:24:27.185000 audit[2291]: AVC avc: denied { perfmon } for pid=2291 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.185000 audit[2291]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=2268 pid=2291 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:27.185000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6162343463323063656639356466613966626562656639346364386161 Feb 12 20:24:27.185000 audit[2291]: AVC avc: denied { bpf } for pid=2291 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.185000 audit[2291]: AVC avc: denied { bpf } for pid=2291 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.185000 audit[2291]: AVC avc: denied { bpf } for pid=2291 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.185000 audit[2291]: AVC avc: denied { perfmon } for pid=2291 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.185000 audit[2291]: AVC avc: denied { perfmon } for pid=2291 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.185000 audit[2291]: AVC avc: denied { perfmon } for pid=2291 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.185000 audit[2291]: AVC avc: denied { perfmon } for pid=2291 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.185000 audit[2291]: AVC avc: denied { perfmon } for pid=2291 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.185000 audit[2291]: AVC avc: denied { bpf } for pid=2291 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.185000 audit[2291]: AVC avc: denied { bpf } for pid=2291 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.185000 audit: BPF prog-id=74 op=LOAD Feb 12 20:24:27.185000 audit[2291]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=2268 pid=2291 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:27.185000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6162343463323063656639356466613966626562656639346364386161 Feb 12 20:24:27.192000 audit[2291]: AVC avc: denied { bpf } for pid=2291 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.192000 audit[2291]: AVC avc: denied { bpf } for pid=2291 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.192000 audit[2291]: AVC avc: denied { perfmon } for pid=2291 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.192000 audit[2291]: AVC avc: denied { perfmon } for pid=2291 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.192000 audit[2291]: AVC avc: denied { perfmon } for pid=2291 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.192000 audit[2291]: AVC avc: denied { perfmon } for pid=2291 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.192000 audit[2291]: AVC avc: denied { perfmon } for pid=2291 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.192000 audit[2291]: AVC avc: denied { bpf } for pid=2291 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.192000 audit[2291]: AVC avc: denied { bpf } for pid=2291 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.192000 audit: BPF prog-id=75 op=LOAD Feb 12 20:24:27.192000 audit[2291]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=2268 pid=2291 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:27.192000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6162343463323063656639356466613966626562656639346364386161 Feb 12 20:24:27.200000 audit: BPF prog-id=75 op=UNLOAD Feb 12 20:24:27.200000 audit: BPF prog-id=74 op=UNLOAD Feb 12 20:24:27.200000 audit[2291]: AVC avc: denied { bpf } for pid=2291 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.200000 audit[2291]: AVC avc: denied { bpf } for pid=2291 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.200000 audit[2291]: AVC avc: denied { bpf } for pid=2291 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.200000 audit[2291]: AVC avc: denied { perfmon } for pid=2291 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.200000 audit[2291]: AVC avc: denied { perfmon } for pid=2291 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.200000 audit[2291]: AVC avc: denied { perfmon } for pid=2291 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.200000 audit[2291]: AVC avc: denied { perfmon } for pid=2291 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.200000 audit[2291]: AVC avc: denied { perfmon } for pid=2291 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.200000 audit[2291]: AVC avc: denied { bpf } for pid=2291 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.202000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.202000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.202000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.202000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.202000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.202000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.202000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.202000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.202000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.208000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.208000 audit: BPF prog-id=76 op=LOAD Feb 12 20:24:27.211000 audit[2293]: AVC avc: denied { bpf } for pid=2293 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.211000 audit[2293]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000145b38 a2=10 a3=0 items=0 ppid=2271 pid=2293 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:27.211000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3739333839643339366365323663356165306439376161316139376538 Feb 12 20:24:27.211000 audit[2293]: AVC avc: denied { perfmon } for pid=2293 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.211000 audit[2293]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=2271 pid=2293 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:27.211000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3739333839643339366365323663356165306439376161316139376538 Feb 12 20:24:27.211000 audit[2293]: AVC avc: denied { bpf } for pid=2293 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.211000 audit[2293]: AVC avc: denied { bpf } for pid=2293 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.211000 audit[2293]: AVC avc: denied { bpf } for pid=2293 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.211000 audit[2293]: AVC avc: denied { perfmon } for pid=2293 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.211000 audit[2293]: AVC avc: denied { perfmon } for pid=2293 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.211000 audit[2293]: AVC avc: denied { perfmon } for pid=2293 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.211000 audit[2293]: AVC avc: denied { perfmon } for pid=2293 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.211000 audit[2293]: AVC avc: denied { perfmon } for pid=2293 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.211000 audit[2293]: AVC avc: denied { bpf } for pid=2293 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.211000 audit[2293]: AVC avc: denied { bpf } for pid=2293 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.211000 audit: BPF prog-id=77 op=LOAD Feb 12 20:24:27.211000 audit[2293]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=2271 pid=2293 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:27.211000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3739333839643339366365323663356165306439376161316139376538 Feb 12 20:24:27.211000 audit[2293]: AVC avc: denied { bpf } for pid=2293 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.211000 audit[2293]: AVC avc: denied { bpf } for pid=2293 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.211000 audit[2293]: AVC avc: denied { perfmon } for pid=2293 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.211000 audit[2293]: AVC avc: denied { perfmon } for pid=2293 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.211000 audit[2293]: AVC avc: denied { perfmon } for pid=2293 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.211000 audit[2293]: AVC avc: denied { perfmon } for pid=2293 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.211000 audit[2293]: AVC avc: denied { perfmon } for pid=2293 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.211000 audit[2293]: AVC avc: denied { bpf } for pid=2293 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.211000 audit[2293]: AVC avc: denied { bpf } for pid=2293 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.211000 audit: BPF prog-id=78 op=LOAD Feb 12 20:24:27.211000 audit[2293]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=2271 pid=2293 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:27.211000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3739333839643339366365323663356165306439376161316139376538 Feb 12 20:24:27.211000 audit: BPF prog-id=78 op=UNLOAD Feb 12 20:24:27.211000 audit: BPF prog-id=77 op=UNLOAD Feb 12 20:24:27.211000 audit[2293]: AVC avc: denied { bpf } for pid=2293 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.211000 audit[2293]: AVC avc: denied { bpf } for pid=2293 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.211000 audit[2293]: AVC avc: denied { bpf } for pid=2293 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.211000 audit[2293]: AVC avc: denied { perfmon } for pid=2293 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.211000 audit[2293]: AVC avc: denied { perfmon } for pid=2293 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.211000 audit[2293]: AVC avc: denied { perfmon } for pid=2293 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.211000 audit[2293]: AVC avc: denied { perfmon } for pid=2293 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.211000 audit[2293]: AVC avc: denied { perfmon } for pid=2293 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.211000 audit[2293]: AVC avc: denied { bpf } for pid=2293 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.211000 audit[2293]: AVC avc: denied { bpf } for pid=2293 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.211000 audit: BPF prog-id=79 op=LOAD Feb 12 20:24:27.211000 audit[2293]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=2271 pid=2293 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:27.211000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3739333839643339366365323663356165306439376161316139376538 Feb 12 20:24:27.200000 audit[2291]: AVC avc: denied { bpf } for pid=2291 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:27.200000 audit: BPF prog-id=80 op=LOAD Feb 12 20:24:27.200000 audit[2291]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=2268 pid=2291 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:27.200000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6162343463323063656639356466613966626562656639346364386161 Feb 12 20:24:27.246923 env[1721]: time="2024-02-12T20:24:27.246864432Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:kube-proxy-b8ls2,Uid:a6278cd3-5f63-475f-af14-2cfa45dd413d,Namespace:kube-system,Attempt:0,} returns sandbox id \"ab44c20cef95dfa9fbebef94cd8aa38feac937b0013fbac0451391a8031c2f29\"" Feb 12 20:24:27.252871 env[1721]: time="2024-02-12T20:24:27.252812469Z" level=info msg="PullImage \"registry.k8s.io/kube-proxy:v1.28.6\"" Feb 12 20:24:27.261370 env[1721]: time="2024-02-12T20:24:27.261297066Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-node-6blkt,Uid:35f7bd03-4a35-4720-ad36-681c9fcd445d,Namespace:calico-system,Attempt:0,} returns sandbox id \"79389d396ce26c5ae0d97aa1a97e8d470bdd161d3afd21ca324574792ea11d59\"" Feb 12 20:24:27.276294 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2161430119.mount: Deactivated successfully. Feb 12 20:24:27.322624 kubelet[2196]: E0212 20:24:27.322458 2196 pod_workers.go:1300] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-xhn8p" podUID="3c8a710a-15e9-494c-819c-4ba8a0bd2c53" Feb 12 20:24:28.126047 kubelet[2196]: E0212 20:24:28.125921 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:28.533382 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount4184755809.mount: Deactivated successfully. Feb 12 20:24:29.127194 kubelet[2196]: E0212 20:24:29.127136 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:29.322578 kubelet[2196]: E0212 20:24:29.322149 2196 pod_workers.go:1300] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-xhn8p" podUID="3c8a710a-15e9-494c-819c-4ba8a0bd2c53" Feb 12 20:24:29.322913 env[1721]: time="2024-02-12T20:24:29.322859339Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/kube-proxy:v1.28.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:29.325351 env[1721]: time="2024-02-12T20:24:29.325303265Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:2d8b4f784b5f439fa536676861ad1144130a981e5ac011d08829ed921477ec74,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:29.336997 env[1721]: time="2024-02-12T20:24:29.336926200Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/kube-proxy:v1.28.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:29.338077 env[1721]: time="2024-02-12T20:24:29.338027683Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/kube-proxy@sha256:3898a1671ae42be1cd3c2e777549bc7b5b306b8da3a224b747365f6679fb902a,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:29.339306 env[1721]: time="2024-02-12T20:24:29.339258817Z" level=info msg="PullImage \"registry.k8s.io/kube-proxy:v1.28.6\" returns image reference \"sha256:2d8b4f784b5f439fa536676861ad1144130a981e5ac011d08829ed921477ec74\"" Feb 12 20:24:29.341333 env[1721]: time="2024-02-12T20:24:29.341286590Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.0\"" Feb 12 20:24:29.345173 env[1721]: time="2024-02-12T20:24:29.345116462Z" level=info msg="CreateContainer within sandbox \"ab44c20cef95dfa9fbebef94cd8aa38feac937b0013fbac0451391a8031c2f29\" for container &ContainerMetadata{Name:kube-proxy,Attempt:0,}" Feb 12 20:24:29.367822 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2390361769.mount: Deactivated successfully. Feb 12 20:24:29.379235 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2459562361.mount: Deactivated successfully. Feb 12 20:24:29.387601 env[1721]: time="2024-02-12T20:24:29.387527422Z" level=info msg="CreateContainer within sandbox \"ab44c20cef95dfa9fbebef94cd8aa38feac937b0013fbac0451391a8031c2f29\" for &ContainerMetadata{Name:kube-proxy,Attempt:0,} returns container id \"06b2a545486b563f3ff13b0517990509b666692e922aada57dc2b41a71ca5579\"" Feb 12 20:24:29.388828 env[1721]: time="2024-02-12T20:24:29.388766827Z" level=info msg="StartContainer for \"06b2a545486b563f3ff13b0517990509b666692e922aada57dc2b41a71ca5579\"" Feb 12 20:24:29.420428 systemd[1]: Started cri-containerd-06b2a545486b563f3ff13b0517990509b666692e922aada57dc2b41a71ca5579.scope. Feb 12 20:24:29.458000 audit[2345]: AVC avc: denied { perfmon } for pid=2345 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:29.458000 audit[2345]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=2268 pid=2345 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.458000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3036623261353435343836623536336633666631336230353137393930 Feb 12 20:24:29.458000 audit[2345]: AVC avc: denied { bpf } for pid=2345 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:29.458000 audit[2345]: AVC avc: denied { bpf } for pid=2345 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:29.458000 audit[2345]: AVC avc: denied { bpf } for pid=2345 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:29.458000 audit[2345]: AVC avc: denied { perfmon } for pid=2345 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:29.458000 audit[2345]: AVC avc: denied { perfmon } for pid=2345 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:29.458000 audit[2345]: AVC avc: denied { perfmon } for pid=2345 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:29.458000 audit[2345]: AVC avc: denied { perfmon } for pid=2345 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:29.458000 audit[2345]: AVC avc: denied { perfmon } for pid=2345 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:29.458000 audit[2345]: AVC avc: denied { bpf } for pid=2345 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:29.458000 audit[2345]: AVC avc: denied { bpf } for pid=2345 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:29.458000 audit: BPF prog-id=81 op=LOAD Feb 12 20:24:29.458000 audit[2345]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=2268 pid=2345 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.458000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3036623261353435343836623536336633666631336230353137393930 Feb 12 20:24:29.460000 audit[2345]: AVC avc: denied { bpf } for pid=2345 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:29.460000 audit[2345]: AVC avc: denied { bpf } for pid=2345 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:29.460000 audit[2345]: AVC avc: denied { perfmon } for pid=2345 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:29.460000 audit[2345]: AVC avc: denied { perfmon } for pid=2345 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:29.460000 audit[2345]: AVC avc: denied { perfmon } for pid=2345 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:29.460000 audit[2345]: AVC avc: denied { perfmon } for pid=2345 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:29.460000 audit[2345]: AVC avc: denied { perfmon } for pid=2345 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:29.460000 audit[2345]: AVC avc: denied { bpf } for pid=2345 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:29.460000 audit[2345]: AVC avc: denied { bpf } for pid=2345 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:29.460000 audit: BPF prog-id=82 op=LOAD Feb 12 20:24:29.460000 audit[2345]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=2268 pid=2345 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.460000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3036623261353435343836623536336633666631336230353137393930 Feb 12 20:24:29.462000 audit: BPF prog-id=82 op=UNLOAD Feb 12 20:24:29.462000 audit: BPF prog-id=81 op=UNLOAD Feb 12 20:24:29.462000 audit[2345]: AVC avc: denied { bpf } for pid=2345 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:29.462000 audit[2345]: AVC avc: denied { bpf } for pid=2345 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:29.462000 audit[2345]: AVC avc: denied { bpf } for pid=2345 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:29.462000 audit[2345]: AVC avc: denied { perfmon } for pid=2345 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:29.462000 audit[2345]: AVC avc: denied { perfmon } for pid=2345 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:29.462000 audit[2345]: AVC avc: denied { perfmon } for pid=2345 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:29.462000 audit[2345]: AVC avc: denied { perfmon } for pid=2345 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:29.462000 audit[2345]: AVC avc: denied { perfmon } for pid=2345 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:29.462000 audit[2345]: AVC avc: denied { bpf } for pid=2345 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:29.462000 audit[2345]: AVC avc: denied { bpf } for pid=2345 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:29.462000 audit: BPF prog-id=83 op=LOAD Feb 12 20:24:29.462000 audit[2345]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=2268 pid=2345 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.462000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3036623261353435343836623536336633666631336230353137393930 Feb 12 20:24:29.495532 env[1721]: time="2024-02-12T20:24:29.495452170Z" level=info msg="StartContainer for \"06b2a545486b563f3ff13b0517990509b666692e922aada57dc2b41a71ca5579\" returns successfully" Feb 12 20:24:29.604000 audit[2397]: NETFILTER_CFG table=mangle:14 family=2 entries=1 op=nft_register_chain pid=2397 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:29.604000 audit[2397]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffd97c0750 a2=0 a3=ffffaf8806c0 items=0 ppid=2356 pid=2397 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.604000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006D616E676C65 Feb 12 20:24:29.606000 audit[2398]: NETFILTER_CFG table=mangle:15 family=10 entries=1 op=nft_register_chain pid=2398 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:29.606000 audit[2398]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=fffff90fb4b0 a2=0 a3=ffff961246c0 items=0 ppid=2356 pid=2398 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.606000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006D616E676C65 Feb 12 20:24:29.606000 audit[2399]: NETFILTER_CFG table=nat:16 family=2 entries=1 op=nft_register_chain pid=2399 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:29.606000 audit[2399]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffe52e3480 a2=0 a3=ffff90c7c6c0 items=0 ppid=2356 pid=2399 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.606000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006E6174 Feb 12 20:24:29.609000 audit[2400]: NETFILTER_CFG table=filter:17 family=2 entries=1 op=nft_register_chain pid=2400 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:29.609000 audit[2400]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=fffff27d28c0 a2=0 a3=ffff9bc896c0 items=0 ppid=2356 pid=2400 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.609000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D740066696C746572 Feb 12 20:24:29.611000 audit[2401]: NETFILTER_CFG table=nat:18 family=10 entries=1 op=nft_register_chain pid=2401 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:29.611000 audit[2401]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffe197a200 a2=0 a3=ffff82d616c0 items=0 ppid=2356 pid=2401 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.611000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006E6174 Feb 12 20:24:29.614000 audit[2402]: NETFILTER_CFG table=filter:19 family=10 entries=1 op=nft_register_chain pid=2402 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:29.614000 audit[2402]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=fffffbce39b0 a2=0 a3=ffffb30f66c0 items=0 ppid=2356 pid=2402 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.614000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D740066696C746572 Feb 12 20:24:29.710000 audit[2403]: NETFILTER_CFG table=filter:20 family=2 entries=1 op=nft_register_chain pid=2403 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:29.710000 audit[2403]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=108 a0=3 a1=ffffdfa45770 a2=0 a3=ffff903fc6c0 items=0 ppid=2356 pid=2403 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.710000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D45585445524E414C2D5345525649434553002D740066696C746572 Feb 12 20:24:29.717000 audit[2405]: NETFILTER_CFG table=filter:21 family=2 entries=1 op=nft_register_rule pid=2405 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:29.717000 audit[2405]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=752 a0=3 a1=ffffc39b8b70 a2=0 a3=ffff8c9a66c0 items=0 ppid=2356 pid=2405 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.717000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C652073657276696365 Feb 12 20:24:29.724000 audit[2408]: NETFILTER_CFG table=filter:22 family=2 entries=2 op=nft_register_chain pid=2408 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:29.724000 audit[2408]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=836 a0=3 a1=ffffe723e3c0 a2=0 a3=ffffb28646c0 items=0 ppid=2356 pid=2408 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.724000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C65207365727669 Feb 12 20:24:29.726000 audit[2409]: NETFILTER_CFG table=filter:23 family=2 entries=1 op=nft_register_chain pid=2409 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:29.726000 audit[2409]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffc66f3fd0 a2=0 a3=ffff9fcf66c0 items=0 ppid=2356 pid=2409 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.726000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4E4F4445504F525453002D740066696C746572 Feb 12 20:24:29.731000 audit[2411]: NETFILTER_CFG table=filter:24 family=2 entries=1 op=nft_register_rule pid=2411 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:29.731000 audit[2411]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=528 a0=3 a1=ffffd77fd310 a2=0 a3=ffff86be46c0 items=0 ppid=2356 pid=2411 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.731000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206865616C746820636865636B207365727669636520706F727473002D6A004B5542452D4E4F4445504F525453 Feb 12 20:24:29.734000 audit[2412]: NETFILTER_CFG table=filter:25 family=2 entries=1 op=nft_register_chain pid=2412 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:29.734000 audit[2412]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffe3d9a950 a2=0 a3=ffffb73106c0 items=0 ppid=2356 pid=2412 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.734000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D740066696C746572 Feb 12 20:24:29.739000 audit[2414]: NETFILTER_CFG table=filter:26 family=2 entries=1 op=nft_register_rule pid=2414 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:29.739000 audit[2414]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=744 a0=3 a1=ffffcebcede0 a2=0 a3=ffffb4a346c0 items=0 ppid=2356 pid=2414 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.739000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D Feb 12 20:24:29.747000 audit[2417]: NETFILTER_CFG table=filter:27 family=2 entries=1 op=nft_register_rule pid=2417 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:29.747000 audit[2417]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=744 a0=3 a1=ffffe0c90290 a2=0 a3=ffff9413a6c0 items=0 ppid=2356 pid=2417 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.747000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D53 Feb 12 20:24:29.749000 audit[2418]: NETFILTER_CFG table=filter:28 family=2 entries=1 op=nft_register_chain pid=2418 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:29.749000 audit[2418]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffe8b678a0 a2=0 a3=ffffa784a6c0 items=0 ppid=2356 pid=2418 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.749000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D464F5257415244002D740066696C746572 Feb 12 20:24:29.753000 audit[2420]: NETFILTER_CFG table=filter:29 family=2 entries=1 op=nft_register_rule pid=2420 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:29.753000 audit[2420]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=528 a0=3 a1=fffffca96eb0 a2=0 a3=ffffafb4f6c0 items=0 ppid=2356 pid=2420 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.753000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320666F7277617264696E672072756C6573002D6A004B5542452D464F5257415244 Feb 12 20:24:29.756000 audit[2421]: NETFILTER_CFG table=filter:30 family=2 entries=1 op=nft_register_chain pid=2421 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:29.756000 audit[2421]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffc809fa60 a2=0 a3=ffff8b5016c0 items=0 ppid=2356 pid=2421 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.756000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D4649524557414C4C002D740066696C746572 Feb 12 20:24:29.761000 audit[2423]: NETFILTER_CFG table=filter:31 family=2 entries=1 op=nft_register_rule pid=2423 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:29.761000 audit[2423]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffeb6cf210 a2=0 a3=ffff927706c0 items=0 ppid=2356 pid=2423 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.761000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Feb 12 20:24:29.769000 audit[2426]: NETFILTER_CFG table=filter:32 family=2 entries=1 op=nft_register_rule pid=2426 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:29.769000 audit[2426]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=fffffb465aa0 a2=0 a3=ffffa37af6c0 items=0 ppid=2356 pid=2426 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.769000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Feb 12 20:24:29.776000 audit[2429]: NETFILTER_CFG table=filter:33 family=2 entries=1 op=nft_register_rule pid=2429 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:29.776000 audit[2429]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffd9b8f1b0 a2=0 a3=ffffa98896c0 items=0 ppid=2356 pid=2429 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.776000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D Feb 12 20:24:29.780000 audit[2430]: NETFILTER_CFG table=nat:34 family=2 entries=1 op=nft_register_chain pid=2430 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:29.780000 audit[2430]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=96 a0=3 a1=fffffc085630 a2=0 a3=ffff88c256c0 items=0 ppid=2356 pid=2430 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.780000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D74006E6174 Feb 12 20:24:29.785000 audit[2432]: NETFILTER_CFG table=nat:35 family=2 entries=2 op=nft_register_chain pid=2432 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:29.785000 audit[2432]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=600 a0=3 a1=ffffc52b3ed0 a2=0 a3=ffff83e646c0 items=0 ppid=2356 pid=2432 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.785000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Feb 12 20:24:29.822000 audit[2438]: NETFILTER_CFG table=nat:36 family=2 entries=2 op=nft_register_chain pid=2438 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:29.822000 audit[2438]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=608 a0=3 a1=ffffdb1caaa0 a2=0 a3=ffffb62996c0 items=0 ppid=2356 pid=2438 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.822000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900505245524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Feb 12 20:24:29.824000 audit[2439]: NETFILTER_CFG table=nat:37 family=2 entries=1 op=nft_register_chain pid=2439 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:29.824000 audit[2439]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffd13b7a30 a2=0 a3=ffffaca276c0 items=0 ppid=2356 pid=2439 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.824000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D504F5354524F5554494E47002D74006E6174 Feb 12 20:24:29.831000 audit[2441]: NETFILTER_CFG table=nat:38 family=2 entries=2 op=nft_register_chain pid=2441 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 12 20:24:29.831000 audit[2441]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=612 a0=3 a1=ffffdcb7f110 a2=0 a3=ffffb62026c0 items=0 ppid=2356 pid=2441 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.831000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900504F5354524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320706F7374726F7574696E672072756C6573002D6A004B5542452D504F5354524F5554494E47 Feb 12 20:24:29.853000 audit[2447]: NETFILTER_CFG table=filter:39 family=2 entries=5 op=nft_register_rule pid=2447 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:24:29.853000 audit[2447]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=2844 a0=3 a1=ffffd5126b50 a2=0 a3=ffffabb0a6c0 items=0 ppid=2356 pid=2447 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.853000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:24:29.882000 audit[2447]: NETFILTER_CFG table=nat:40 family=2 entries=54 op=nft_register_chain pid=2447 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:24:29.882000 audit[2447]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=24988 a0=3 a1=ffffd5126b50 a2=0 a3=ffffabb0a6c0 items=0 ppid=2356 pid=2447 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.882000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:24:29.901000 audit[2455]: NETFILTER_CFG table=filter:41 family=10 entries=1 op=nft_register_chain pid=2455 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:29.901000 audit[2455]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=108 a0=3 a1=ffffe1dd5200 a2=0 a3=ffff877e46c0 items=0 ppid=2356 pid=2455 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.901000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D45585445524E414C2D5345525649434553002D740066696C746572 Feb 12 20:24:29.907000 audit[2457]: NETFILTER_CFG table=filter:42 family=10 entries=2 op=nft_register_chain pid=2457 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:29.907000 audit[2457]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=836 a0=3 a1=ffffe5d054f0 a2=0 a3=ffff949bf6c0 items=0 ppid=2356 pid=2457 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.907000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C6520736572766963 Feb 12 20:24:29.915000 audit[2460]: NETFILTER_CFG table=filter:43 family=10 entries=2 op=nft_register_chain pid=2460 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:29.915000 audit[2460]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=836 a0=3 a1=fffff0a4c040 a2=0 a3=ffff96b726c0 items=0 ppid=2356 pid=2460 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.915000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C652073657276 Feb 12 20:24:29.917000 audit[2461]: NETFILTER_CFG table=filter:44 family=10 entries=1 op=nft_register_chain pid=2461 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:29.917000 audit[2461]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=fffff8015c20 a2=0 a3=ffffa715f6c0 items=0 ppid=2356 pid=2461 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.917000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4E4F4445504F525453002D740066696C746572 Feb 12 20:24:29.923000 audit[2463]: NETFILTER_CFG table=filter:45 family=10 entries=1 op=nft_register_rule pid=2463 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:29.923000 audit[2463]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=528 a0=3 a1=ffffd2080070 a2=0 a3=ffff87dbe6c0 items=0 ppid=2356 pid=2463 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.923000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206865616C746820636865636B207365727669636520706F727473002D6A004B5542452D4E4F4445504F525453 Feb 12 20:24:29.925000 audit[2464]: NETFILTER_CFG table=filter:46 family=10 entries=1 op=nft_register_chain pid=2464 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:29.925000 audit[2464]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffdafd0f30 a2=0 a3=ffff93c256c0 items=0 ppid=2356 pid=2464 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.925000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D740066696C746572 Feb 12 20:24:29.931000 audit[2466]: NETFILTER_CFG table=filter:47 family=10 entries=1 op=nft_register_rule pid=2466 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:29.931000 audit[2466]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=744 a0=3 a1=ffffea3bc100 a2=0 a3=ffffbbf7e6c0 items=0 ppid=2356 pid=2466 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.931000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B554245 Feb 12 20:24:29.937000 audit[2469]: NETFILTER_CFG table=filter:48 family=10 entries=2 op=nft_register_chain pid=2469 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:29.937000 audit[2469]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=828 a0=3 a1=fffff6bd2ed0 a2=0 a3=ffff81edd6c0 items=0 ppid=2356 pid=2469 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.937000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D Feb 12 20:24:29.940000 audit[2470]: NETFILTER_CFG table=filter:49 family=10 entries=1 op=nft_register_chain pid=2470 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:29.940000 audit[2470]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffeb3bd120 a2=0 a3=ffff8458a6c0 items=0 ppid=2356 pid=2470 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.940000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D464F5257415244002D740066696C746572 Feb 12 20:24:29.945000 audit[2472]: NETFILTER_CFG table=filter:50 family=10 entries=1 op=nft_register_rule pid=2472 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:29.945000 audit[2472]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=528 a0=3 a1=ffffed91f210 a2=0 a3=ffff8f9d66c0 items=0 ppid=2356 pid=2472 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.945000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320666F7277617264696E672072756C6573002D6A004B5542452D464F5257415244 Feb 12 20:24:29.948000 audit[2473]: NETFILTER_CFG table=filter:51 family=10 entries=1 op=nft_register_chain pid=2473 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:29.948000 audit[2473]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffea567d80 a2=0 a3=ffffa35be6c0 items=0 ppid=2356 pid=2473 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.948000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D4649524557414C4C002D740066696C746572 Feb 12 20:24:29.955000 audit[2475]: NETFILTER_CFG table=filter:52 family=10 entries=1 op=nft_register_rule pid=2475 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:29.955000 audit[2475]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=fffff9328850 a2=0 a3=ffff948e26c0 items=0 ppid=2356 pid=2475 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.955000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Feb 12 20:24:29.962000 audit[2478]: NETFILTER_CFG table=filter:53 family=10 entries=1 op=nft_register_rule pid=2478 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:29.962000 audit[2478]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=fffff3606900 a2=0 a3=ffff841cc6c0 items=0 ppid=2356 pid=2478 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.962000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D Feb 12 20:24:29.975000 audit[2481]: NETFILTER_CFG table=filter:54 family=10 entries=1 op=nft_register_rule pid=2481 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:29.975000 audit[2481]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffda6e30f0 a2=0 a3=ffffa0c736c0 items=0 ppid=2356 pid=2481 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.975000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C Feb 12 20:24:29.977000 audit[2482]: NETFILTER_CFG table=nat:55 family=10 entries=1 op=nft_register_chain pid=2482 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:29.977000 audit[2482]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=96 a0=3 a1=fffff1a68ea0 a2=0 a3=ffff9652c6c0 items=0 ppid=2356 pid=2482 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.977000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D74006E6174 Feb 12 20:24:29.982000 audit[2484]: NETFILTER_CFG table=nat:56 family=10 entries=2 op=nft_register_chain pid=2484 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:29.982000 audit[2484]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=600 a0=3 a1=ffffe9340800 a2=0 a3=ffff896616c0 items=0 ppid=2356 pid=2484 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.982000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Feb 12 20:24:29.990000 audit[2487]: NETFILTER_CFG table=nat:57 family=10 entries=2 op=nft_register_chain pid=2487 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:29.990000 audit[2487]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=608 a0=3 a1=ffffef5a8ac0 a2=0 a3=ffffabee96c0 items=0 ppid=2356 pid=2487 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.990000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900505245524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Feb 12 20:24:29.993000 audit[2488]: NETFILTER_CFG table=nat:58 family=10 entries=1 op=nft_register_chain pid=2488 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:29.993000 audit[2488]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffceae15f0 a2=0 a3=ffff8f5836c0 items=0 ppid=2356 pid=2488 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.993000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D504F5354524F5554494E47002D74006E6174 Feb 12 20:24:29.999000 audit[2490]: NETFILTER_CFG table=nat:59 family=10 entries=2 op=nft_register_chain pid=2490 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:29.999000 audit[2490]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=612 a0=3 a1=ffffd396b840 a2=0 a3=ffffabf6d6c0 items=0 ppid=2356 pid=2490 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:29.999000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900504F5354524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320706F7374726F7574696E672072756C6573002D6A004B5542452D504F5354524F5554494E47 Feb 12 20:24:30.002000 audit[2491]: NETFILTER_CFG table=filter:60 family=10 entries=1 op=nft_register_chain pid=2491 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:30.002000 audit[2491]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=fffff1e195a0 a2=0 a3=ffff9c05d6c0 items=0 ppid=2356 pid=2491 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:30.002000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4649524557414C4C002D740066696C746572 Feb 12 20:24:30.007000 audit[2493]: NETFILTER_CFG table=filter:61 family=10 entries=1 op=nft_register_rule pid=2493 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:30.007000 audit[2493]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=228 a0=3 a1=ffffe3f62650 a2=0 a3=ffff969886c0 items=0 ppid=2356 pid=2493 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:30.007000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6A004B5542452D4649524557414C4C Feb 12 20:24:30.014000 audit[2496]: NETFILTER_CFG table=filter:62 family=10 entries=1 op=nft_register_rule pid=2496 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 12 20:24:30.014000 audit[2496]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=228 a0=3 a1=ffffe884de80 a2=0 a3=ffffad6d46c0 items=0 ppid=2356 pid=2496 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:30.014000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6A004B5542452D4649524557414C4C Feb 12 20:24:30.020000 audit[2498]: NETFILTER_CFG table=filter:63 family=10 entries=3 op=nft_register_rule pid=2498 subj=system_u:system_r:kernel_t:s0 comm="ip6tables-resto" Feb 12 20:24:30.020000 audit[2498]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=1916 a0=3 a1=fffffcfcd6e0 a2=0 a3=ffffb17836c0 items=0 ppid=2356 pid=2498 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables-resto" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:30.020000 audit: PROCTITLE proctitle=6970367461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:24:30.021000 audit[2498]: NETFILTER_CFG table=nat:64 family=10 entries=7 op=nft_register_chain pid=2498 subj=system_u:system_r:kernel_t:s0 comm="ip6tables-resto" Feb 12 20:24:30.021000 audit[2498]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=1968 a0=3 a1=fffffcfcd6e0 a2=0 a3=ffffb17836c0 items=0 ppid=2356 pid=2498 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables-resto" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:30.021000 audit: PROCTITLE proctitle=6970367461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:24:30.127814 kubelet[2196]: E0212 20:24:30.127696 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:30.358994 kubelet[2196]: I0212 20:24:30.358872 2196 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="kube-system/kube-proxy-b8ls2" podStartSLOduration=3.270500454 podCreationTimestamp="2024-02-12 20:24:25 +0000 UTC" firstStartedPulling="2024-02-12 20:24:27.251669486 +0000 UTC m=+4.318592460" lastFinishedPulling="2024-02-12 20:24:29.339937434 +0000 UTC m=+6.406860420" observedRunningTime="2024-02-12 20:24:30.358221417 +0000 UTC m=+7.425144415" watchObservedRunningTime="2024-02-12 20:24:30.358768414 +0000 UTC m=+7.425691448" Feb 12 20:24:30.384100 kubelet[2196]: E0212 20:24:30.384064 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:30.384457 kubelet[2196]: W0212 20:24:30.384264 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:30.384457 kubelet[2196]: E0212 20:24:30.384310 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:30.384718 kubelet[2196]: E0212 20:24:30.384698 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:30.384842 kubelet[2196]: W0212 20:24:30.384805 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:30.384970 kubelet[2196]: E0212 20:24:30.384936 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:30.385424 kubelet[2196]: E0212 20:24:30.385403 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:30.385542 kubelet[2196]: W0212 20:24:30.385519 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:30.385670 kubelet[2196]: E0212 20:24:30.385635 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:30.386116 kubelet[2196]: E0212 20:24:30.386094 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:30.386244 kubelet[2196]: W0212 20:24:30.386220 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:30.386358 kubelet[2196]: E0212 20:24:30.386338 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:30.386801 kubelet[2196]: E0212 20:24:30.386780 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:30.386951 kubelet[2196]: W0212 20:24:30.386929 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:30.387097 kubelet[2196]: E0212 20:24:30.387076 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:30.387522 kubelet[2196]: E0212 20:24:30.387501 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:30.387663 kubelet[2196]: W0212 20:24:30.387641 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:30.387788 kubelet[2196]: E0212 20:24:30.387768 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:30.388218 kubelet[2196]: E0212 20:24:30.388198 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:30.388358 kubelet[2196]: W0212 20:24:30.388336 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:30.388472 kubelet[2196]: E0212 20:24:30.388452 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:30.388865 kubelet[2196]: E0212 20:24:30.388845 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:30.389042 kubelet[2196]: W0212 20:24:30.389019 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:30.389155 kubelet[2196]: E0212 20:24:30.389135 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:30.389552 kubelet[2196]: E0212 20:24:30.389532 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:30.389690 kubelet[2196]: W0212 20:24:30.389668 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:30.389802 kubelet[2196]: E0212 20:24:30.389782 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:30.390223 kubelet[2196]: E0212 20:24:30.390204 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:30.390336 kubelet[2196]: W0212 20:24:30.390314 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:30.390447 kubelet[2196]: E0212 20:24:30.390427 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:30.390826 kubelet[2196]: E0212 20:24:30.390806 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:30.390954 kubelet[2196]: W0212 20:24:30.390932 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:30.391110 kubelet[2196]: E0212 20:24:30.391090 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:30.391491 kubelet[2196]: E0212 20:24:30.391472 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:30.391613 kubelet[2196]: W0212 20:24:30.391579 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:30.391726 kubelet[2196]: E0212 20:24:30.391706 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:30.392145 kubelet[2196]: E0212 20:24:30.392125 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:30.392279 kubelet[2196]: W0212 20:24:30.392256 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:30.392402 kubelet[2196]: E0212 20:24:30.392382 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:30.392779 kubelet[2196]: E0212 20:24:30.392758 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:30.392888 kubelet[2196]: W0212 20:24:30.392866 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:30.393072 kubelet[2196]: E0212 20:24:30.393052 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:30.393456 kubelet[2196]: E0212 20:24:30.393435 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:30.393677 kubelet[2196]: W0212 20:24:30.393651 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:30.393826 kubelet[2196]: E0212 20:24:30.393805 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:30.394289 kubelet[2196]: E0212 20:24:30.394267 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:30.394442 kubelet[2196]: W0212 20:24:30.394417 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:30.394565 kubelet[2196]: E0212 20:24:30.394543 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:30.395072 kubelet[2196]: E0212 20:24:30.395049 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:30.395239 kubelet[2196]: W0212 20:24:30.395215 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:30.395354 kubelet[2196]: E0212 20:24:30.395334 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:30.395781 kubelet[2196]: E0212 20:24:30.395760 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:30.395897 kubelet[2196]: W0212 20:24:30.395875 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:30.396042 kubelet[2196]: E0212 20:24:30.396021 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:30.396420 kubelet[2196]: E0212 20:24:30.396401 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:30.396556 kubelet[2196]: W0212 20:24:30.396533 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:30.396687 kubelet[2196]: E0212 20:24:30.396667 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:30.397141 kubelet[2196]: E0212 20:24:30.397119 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:30.397257 kubelet[2196]: W0212 20:24:30.397234 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:30.397384 kubelet[2196]: E0212 20:24:30.397364 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:30.407480 kubelet[2196]: E0212 20:24:30.407435 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:30.407480 kubelet[2196]: W0212 20:24:30.407468 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:30.407711 kubelet[2196]: E0212 20:24:30.407499 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:30.407982 kubelet[2196]: E0212 20:24:30.407934 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:30.408057 kubelet[2196]: W0212 20:24:30.407986 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:30.408057 kubelet[2196]: E0212 20:24:30.408023 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:30.408780 kubelet[2196]: E0212 20:24:30.408732 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:30.408780 kubelet[2196]: W0212 20:24:30.408768 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:30.409019 kubelet[2196]: E0212 20:24:30.408805 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:30.409241 kubelet[2196]: E0212 20:24:30.409204 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:30.409241 kubelet[2196]: W0212 20:24:30.409234 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:30.409369 kubelet[2196]: E0212 20:24:30.409275 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:30.409634 kubelet[2196]: E0212 20:24:30.409600 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:30.409713 kubelet[2196]: W0212 20:24:30.409636 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:30.409713 kubelet[2196]: E0212 20:24:30.409665 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:30.410066 kubelet[2196]: E0212 20:24:30.410031 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:30.410066 kubelet[2196]: W0212 20:24:30.410060 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:30.410199 kubelet[2196]: E0212 20:24:30.410088 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:30.410814 kubelet[2196]: E0212 20:24:30.410773 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:30.410814 kubelet[2196]: W0212 20:24:30.410804 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:30.411014 kubelet[2196]: E0212 20:24:30.410835 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:30.412600 kubelet[2196]: E0212 20:24:30.412543 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:30.412600 kubelet[2196]: W0212 20:24:30.412584 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:30.412909 kubelet[2196]: E0212 20:24:30.412632 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:30.413105 kubelet[2196]: E0212 20:24:30.413053 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:30.413193 kubelet[2196]: W0212 20:24:30.413112 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:30.413193 kubelet[2196]: E0212 20:24:30.413153 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:30.413565 kubelet[2196]: E0212 20:24:30.413527 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:30.413565 kubelet[2196]: W0212 20:24:30.413557 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:30.413701 kubelet[2196]: E0212 20:24:30.413589 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:30.414029 kubelet[2196]: E0212 20:24:30.413993 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:30.414029 kubelet[2196]: W0212 20:24:30.414023 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:30.414161 kubelet[2196]: E0212 20:24:30.414057 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:30.414878 kubelet[2196]: E0212 20:24:30.414830 2196 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 12 20:24:30.414878 kubelet[2196]: W0212 20:24:30.414866 2196 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 12 20:24:30.415071 kubelet[2196]: E0212 20:24:30.414900 2196 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 12 20:24:30.991757 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount689644267.mount: Deactivated successfully. Feb 12 20:24:31.128999 kubelet[2196]: E0212 20:24:31.128900 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:31.167536 env[1721]: time="2024-02-12T20:24:31.167477732Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:31.172552 env[1721]: time="2024-02-12T20:24:31.172500977Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:cbddd33ed55a4a5c129e8f09945d426860425b9778d9402efe7bcefea7990a57,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:31.176520 env[1721]: time="2024-02-12T20:24:31.176471379Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:31.180396 env[1721]: time="2024-02-12T20:24:31.180347894Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol@sha256:b05edbd1f80db4ada229e6001a666a7dd36bb6ab617143684fb3d28abfc4b71e,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:31.181678 env[1721]: time="2024-02-12T20:24:31.181624317Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.0\" returns image reference \"sha256:cbddd33ed55a4a5c129e8f09945d426860425b9778d9402efe7bcefea7990a57\"" Feb 12 20:24:31.185951 env[1721]: time="2024-02-12T20:24:31.185877391Z" level=info msg="CreateContainer within sandbox \"79389d396ce26c5ae0d97aa1a97e8d470bdd161d3afd21ca324574792ea11d59\" for container &ContainerMetadata{Name:flexvol-driver,Attempt:0,}" Feb 12 20:24:31.210001 env[1721]: time="2024-02-12T20:24:31.209917212Z" level=info msg="CreateContainer within sandbox \"79389d396ce26c5ae0d97aa1a97e8d470bdd161d3afd21ca324574792ea11d59\" for &ContainerMetadata{Name:flexvol-driver,Attempt:0,} returns container id \"f410469805b6549ba95d13e5d9e0b252539bf7944ff7214e9bf1e36487984d70\"" Feb 12 20:24:31.211414 env[1721]: time="2024-02-12T20:24:31.211349468Z" level=info msg="StartContainer for \"f410469805b6549ba95d13e5d9e0b252539bf7944ff7214e9bf1e36487984d70\"" Feb 12 20:24:31.251260 systemd[1]: Started cri-containerd-f410469805b6549ba95d13e5d9e0b252539bf7944ff7214e9bf1e36487984d70.scope. Feb 12 20:24:31.284000 audit[2539]: AVC avc: denied { perfmon } for pid=2539 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.287690 kernel: kauditd_printk_skb: 305 callbacks suppressed Feb 12 20:24:31.287767 kernel: audit: type=1400 audit(1707769471.284:712): avc: denied { perfmon } for pid=2539 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.284000 audit[2539]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=2271 pid=2539 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:31.306901 kernel: audit: type=1300 audit(1707769471.284:712): arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=2271 pid=2539 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:31.284000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6634313034363938303562363534396261393564313365356439653062 Feb 12 20:24:31.317513 kernel: audit: type=1327 audit(1707769471.284:712): proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6634313034363938303562363534396261393564313365356439653062 Feb 12 20:24:31.284000 audit[2539]: AVC avc: denied { bpf } for pid=2539 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.325894 kernel: audit: type=1400 audit(1707769471.284:713): avc: denied { bpf } for pid=2539 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.326605 kubelet[2196]: E0212 20:24:31.326559 2196 pod_workers.go:1300] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-xhn8p" podUID="3c8a710a-15e9-494c-819c-4ba8a0bd2c53" Feb 12 20:24:31.284000 audit[2539]: AVC avc: denied { bpf } for pid=2539 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.335678 kernel: audit: type=1400 audit(1707769471.284:713): avc: denied { bpf } for pid=2539 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.284000 audit[2539]: AVC avc: denied { bpf } for pid=2539 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.343574 kernel: audit: type=1400 audit(1707769471.284:713): avc: denied { bpf } for pid=2539 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.284000 audit[2539]: AVC avc: denied { perfmon } for pid=2539 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.356273 kernel: audit: type=1400 audit(1707769471.284:713): avc: denied { perfmon } for pid=2539 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.284000 audit[2539]: AVC avc: denied { perfmon } for pid=2539 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.364074 kernel: audit: type=1400 audit(1707769471.284:713): avc: denied { perfmon } for pid=2539 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.364621 kernel: audit: type=1400 audit(1707769471.284:713): avc: denied { perfmon } for pid=2539 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.284000 audit[2539]: AVC avc: denied { perfmon } for pid=2539 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.284000 audit[2539]: AVC avc: denied { perfmon } for pid=2539 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.380745 kernel: audit: type=1400 audit(1707769471.284:713): avc: denied { perfmon } for pid=2539 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.284000 audit[2539]: AVC avc: denied { perfmon } for pid=2539 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.284000 audit[2539]: AVC avc: denied { bpf } for pid=2539 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.284000 audit[2539]: AVC avc: denied { bpf } for pid=2539 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.284000 audit: BPF prog-id=84 op=LOAD Feb 12 20:24:31.284000 audit[2539]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=2271 pid=2539 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:31.284000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6634313034363938303562363534396261393564313365356439653062 Feb 12 20:24:31.287000 audit[2539]: AVC avc: denied { bpf } for pid=2539 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.287000 audit[2539]: AVC avc: denied { bpf } for pid=2539 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.287000 audit[2539]: AVC avc: denied { perfmon } for pid=2539 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.287000 audit[2539]: AVC avc: denied { perfmon } for pid=2539 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.287000 audit[2539]: AVC avc: denied { perfmon } for pid=2539 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.287000 audit[2539]: AVC avc: denied { perfmon } for pid=2539 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.287000 audit[2539]: AVC avc: denied { perfmon } for pid=2539 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.287000 audit[2539]: AVC avc: denied { bpf } for pid=2539 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.287000 audit[2539]: AVC avc: denied { bpf } for pid=2539 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.287000 audit: BPF prog-id=85 op=LOAD Feb 12 20:24:31.287000 audit[2539]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=2271 pid=2539 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:31.287000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6634313034363938303562363534396261393564313365356439653062 Feb 12 20:24:31.294000 audit: BPF prog-id=85 op=UNLOAD Feb 12 20:24:31.294000 audit: BPF prog-id=84 op=UNLOAD Feb 12 20:24:31.294000 audit[2539]: AVC avc: denied { bpf } for pid=2539 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.294000 audit[2539]: AVC avc: denied { bpf } for pid=2539 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.294000 audit[2539]: AVC avc: denied { bpf } for pid=2539 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.294000 audit[2539]: AVC avc: denied { perfmon } for pid=2539 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.294000 audit[2539]: AVC avc: denied { perfmon } for pid=2539 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.294000 audit[2539]: AVC avc: denied { perfmon } for pid=2539 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.294000 audit[2539]: AVC avc: denied { perfmon } for pid=2539 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.294000 audit[2539]: AVC avc: denied { perfmon } for pid=2539 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.294000 audit[2539]: AVC avc: denied { bpf } for pid=2539 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.294000 audit[2539]: SYSCALL arch=c00000b7 syscall=280 success=no exit=-11 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=2271 pid=2539 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:31.294000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6634313034363938303562363534396261393564313365356439653062 Feb 12 20:24:31.294000 audit[2539]: AVC avc: denied { bpf } for pid=2539 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.294000 audit[2539]: AVC avc: denied { bpf } for pid=2539 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.294000 audit[2539]: AVC avc: denied { bpf } for pid=2539 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.294000 audit[2539]: AVC avc: denied { perfmon } for pid=2539 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.294000 audit[2539]: AVC avc: denied { perfmon } for pid=2539 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.294000 audit[2539]: AVC avc: denied { perfmon } for pid=2539 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.294000 audit[2539]: AVC avc: denied { perfmon } for pid=2539 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.294000 audit[2539]: AVC avc: denied { perfmon } for pid=2539 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.294000 audit[2539]: AVC avc: denied { bpf } for pid=2539 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.294000 audit[2539]: AVC avc: denied { bpf } for pid=2539 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:31.294000 audit: BPF prog-id=86 op=LOAD Feb 12 20:24:31.294000 audit[2539]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=2271 pid=2539 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:31.294000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6634313034363938303562363534396261393564313365356439653062 Feb 12 20:24:31.387348 env[1721]: time="2024-02-12T20:24:31.386188034Z" level=info msg="StartContainer for \"f410469805b6549ba95d13e5d9e0b252539bf7944ff7214e9bf1e36487984d70\" returns successfully" Feb 12 20:24:31.399278 systemd[1]: cri-containerd-f410469805b6549ba95d13e5d9e0b252539bf7944ff7214e9bf1e36487984d70.scope: Deactivated successfully. Feb 12 20:24:31.402000 audit: BPF prog-id=86 op=UNLOAD Feb 12 20:24:31.782349 env[1721]: time="2024-02-12T20:24:31.782287554Z" level=info msg="shim disconnected" id=f410469805b6549ba95d13e5d9e0b252539bf7944ff7214e9bf1e36487984d70 Feb 12 20:24:31.782754 env[1721]: time="2024-02-12T20:24:31.782720339Z" level=warning msg="cleaning up after shim disconnected" id=f410469805b6549ba95d13e5d9e0b252539bf7944ff7214e9bf1e36487984d70 namespace=k8s.io Feb 12 20:24:31.782901 env[1721]: time="2024-02-12T20:24:31.782873594Z" level=info msg="cleaning up dead shim" Feb 12 20:24:31.795169 env[1721]: time="2024-02-12T20:24:31.795112223Z" level=warning msg="cleanup warnings time=\"2024-02-12T20:24:31Z\" level=info msg=\"starting signal loop\" namespace=k8s.io pid=2583 runtime=io.containerd.runc.v2\n" Feb 12 20:24:31.823592 systemd[1]: run-containerd-io.containerd.runtime.v2.task-k8s.io-f410469805b6549ba95d13e5d9e0b252539bf7944ff7214e9bf1e36487984d70-rootfs.mount: Deactivated successfully. Feb 12 20:24:32.129770 kubelet[2196]: E0212 20:24:32.129604 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:32.358305 env[1721]: time="2024-02-12T20:24:32.358246170Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/cni:v3.27.0\"" Feb 12 20:24:33.130885 kubelet[2196]: E0212 20:24:33.130781 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:33.322016 kubelet[2196]: E0212 20:24:33.321780 2196 pod_workers.go:1300] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-xhn8p" podUID="3c8a710a-15e9-494c-819c-4ba8a0bd2c53" Feb 12 20:24:33.803508 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount92446407.mount: Deactivated successfully. Feb 12 20:24:34.132062 kubelet[2196]: E0212 20:24:34.131832 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:35.132883 kubelet[2196]: E0212 20:24:35.132824 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:35.321289 kubelet[2196]: E0212 20:24:35.321236 2196 pod_workers.go:1300] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-xhn8p" podUID="3c8a710a-15e9-494c-819c-4ba8a0bd2c53" Feb 12 20:24:36.133490 kubelet[2196]: E0212 20:24:36.133378 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:37.134249 kubelet[2196]: E0212 20:24:37.134193 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:37.321313 kubelet[2196]: E0212 20:24:37.321254 2196 pod_workers.go:1300] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-xhn8p" podUID="3c8a710a-15e9-494c-819c-4ba8a0bd2c53" Feb 12 20:24:37.374321 env[1721]: time="2024-02-12T20:24:37.374249724Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/cni:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:37.378452 env[1721]: time="2024-02-12T20:24:37.378383182Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:9c9318f5fbf505fc3d84676966009a3887e58ea1e3eac10039e5a96dfceb254b,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:37.387344 env[1721]: time="2024-02-12T20:24:37.387199844Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/cni:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:37.392996 env[1721]: time="2024-02-12T20:24:37.392881058Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/cni:v3.27.0\" returns image reference \"sha256:9c9318f5fbf505fc3d84676966009a3887e58ea1e3eac10039e5a96dfceb254b\"" Feb 12 20:24:37.393702 env[1721]: time="2024-02-12T20:24:37.393640817Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/cni@sha256:d943b4c23e82a39b0186a1a3b2fe8f728e543d503df72d7be521501a82b7e7b4,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:37.398231 env[1721]: time="2024-02-12T20:24:37.398174349Z" level=info msg="CreateContainer within sandbox \"79389d396ce26c5ae0d97aa1a97e8d470bdd161d3afd21ca324574792ea11d59\" for container &ContainerMetadata{Name:install-cni,Attempt:0,}" Feb 12 20:24:37.418902 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3077125961.mount: Deactivated successfully. Feb 12 20:24:37.427015 env[1721]: time="2024-02-12T20:24:37.426905233Z" level=info msg="CreateContainer within sandbox \"79389d396ce26c5ae0d97aa1a97e8d470bdd161d3afd21ca324574792ea11d59\" for &ContainerMetadata{Name:install-cni,Attempt:0,} returns container id \"4a51be372c0f6b26e51625092867f5d8dd21d450acfe358deb018dcc06a21453\"" Feb 12 20:24:37.428579 env[1721]: time="2024-02-12T20:24:37.428530663Z" level=info msg="StartContainer for \"4a51be372c0f6b26e51625092867f5d8dd21d450acfe358deb018dcc06a21453\"" Feb 12 20:24:37.465533 systemd[1]: run-containerd-runc-k8s.io-4a51be372c0f6b26e51625092867f5d8dd21d450acfe358deb018dcc06a21453-runc.WJvYrr.mount: Deactivated successfully. Feb 12 20:24:37.475461 systemd[1]: Started cri-containerd-4a51be372c0f6b26e51625092867f5d8dd21d450acfe358deb018dcc06a21453.scope. Feb 12 20:24:37.507000 audit[2603]: AVC avc: denied { perfmon } for pid=2603 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.510361 kernel: kauditd_printk_skb: 45 callbacks suppressed Feb 12 20:24:37.510467 kernel: audit: type=1400 audit(1707769477.507:720): avc: denied { perfmon } for pid=2603 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.507000 audit[2603]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=2271 pid=2603 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:37.529350 kernel: audit: type=1300 audit(1707769477.507:720): arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=2271 pid=2603 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:37.529452 kernel: audit: type=1327 audit(1707769477.507:720): proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3461353162653337326330663662323665353136323530393238363766 Feb 12 20:24:37.507000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3461353162653337326330663662323665353136323530393238363766 Feb 12 20:24:37.540050 kernel: audit: type=1400 audit(1707769477.507:721): avc: denied { bpf } for pid=2603 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.507000 audit[2603]: AVC avc: denied { bpf } for pid=2603 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.507000 audit[2603]: AVC avc: denied { bpf } for pid=2603 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.555323 kernel: audit: type=1400 audit(1707769477.507:721): avc: denied { bpf } for pid=2603 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.507000 audit[2603]: AVC avc: denied { bpf } for pid=2603 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.563596 kernel: audit: type=1400 audit(1707769477.507:721): avc: denied { bpf } for pid=2603 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.507000 audit[2603]: AVC avc: denied { perfmon } for pid=2603 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.572354 kernel: audit: type=1400 audit(1707769477.507:721): avc: denied { perfmon } for pid=2603 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.507000 audit[2603]: AVC avc: denied { perfmon } for pid=2603 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.582259 kernel: audit: type=1400 audit(1707769477.507:721): avc: denied { perfmon } for pid=2603 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.507000 audit[2603]: AVC avc: denied { perfmon } for pid=2603 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.590332 kernel: audit: type=1400 audit(1707769477.507:721): avc: denied { perfmon } for pid=2603 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.603325 kernel: audit: type=1400 audit(1707769477.507:721): avc: denied { perfmon } for pid=2603 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.507000 audit[2603]: AVC avc: denied { perfmon } for pid=2603 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.507000 audit[2603]: AVC avc: denied { perfmon } for pid=2603 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.507000 audit[2603]: AVC avc: denied { bpf } for pid=2603 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.507000 audit[2603]: AVC avc: denied { bpf } for pid=2603 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.507000 audit: BPF prog-id=87 op=LOAD Feb 12 20:24:37.507000 audit[2603]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=2271 pid=2603 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:37.507000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3461353162653337326330663662323665353136323530393238363766 Feb 12 20:24:37.509000 audit[2603]: AVC avc: denied { bpf } for pid=2603 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.509000 audit[2603]: AVC avc: denied { bpf } for pid=2603 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.509000 audit[2603]: AVC avc: denied { perfmon } for pid=2603 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.509000 audit[2603]: AVC avc: denied { perfmon } for pid=2603 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.509000 audit[2603]: AVC avc: denied { perfmon } for pid=2603 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.509000 audit[2603]: AVC avc: denied { perfmon } for pid=2603 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.509000 audit[2603]: AVC avc: denied { perfmon } for pid=2603 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.509000 audit[2603]: AVC avc: denied { bpf } for pid=2603 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.509000 audit[2603]: AVC avc: denied { bpf } for pid=2603 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.509000 audit: BPF prog-id=88 op=LOAD Feb 12 20:24:37.509000 audit[2603]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=2271 pid=2603 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:37.509000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3461353162653337326330663662323665353136323530393238363766 Feb 12 20:24:37.517000 audit: BPF prog-id=88 op=UNLOAD Feb 12 20:24:37.517000 audit: BPF prog-id=87 op=UNLOAD Feb 12 20:24:37.517000 audit[2603]: AVC avc: denied { bpf } for pid=2603 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.517000 audit[2603]: AVC avc: denied { bpf } for pid=2603 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.517000 audit[2603]: AVC avc: denied { bpf } for pid=2603 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.517000 audit[2603]: AVC avc: denied { perfmon } for pid=2603 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.517000 audit[2603]: AVC avc: denied { perfmon } for pid=2603 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.517000 audit[2603]: AVC avc: denied { perfmon } for pid=2603 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.517000 audit[2603]: AVC avc: denied { perfmon } for pid=2603 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.517000 audit[2603]: AVC avc: denied { perfmon } for pid=2603 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.517000 audit[2603]: AVC avc: denied { bpf } for pid=2603 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.517000 audit[2603]: AVC avc: denied { bpf } for pid=2603 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:37.517000 audit: BPF prog-id=89 op=LOAD Feb 12 20:24:37.517000 audit[2603]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=2271 pid=2603 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:37.517000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3461353162653337326330663662323665353136323530393238363766 Feb 12 20:24:37.609952 env[1721]: time="2024-02-12T20:24:37.608643676Z" level=info msg="StartContainer for \"4a51be372c0f6b26e51625092867f5d8dd21d450acfe358deb018dcc06a21453\" returns successfully" Feb 12 20:24:38.134763 kubelet[2196]: E0212 20:24:38.134721 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:38.854514 env[1721]: time="2024-02-12T20:24:38.854445406Z" level=error msg="failed to reload cni configuration after receiving fs change event(\"/etc/cni/net.d/calico-kubeconfig\": WRITE)" error="cni config load failed: no network config found in /etc/cni/net.d: cni plugin not initialized: failed to load cni config" Feb 12 20:24:38.861316 systemd[1]: cri-containerd-4a51be372c0f6b26e51625092867f5d8dd21d450acfe358deb018dcc06a21453.scope: Deactivated successfully. Feb 12 20:24:38.865000 audit: BPF prog-id=89 op=UNLOAD Feb 12 20:24:38.896137 systemd[1]: run-containerd-io.containerd.runtime.v2.task-k8s.io-4a51be372c0f6b26e51625092867f5d8dd21d450acfe358deb018dcc06a21453-rootfs.mount: Deactivated successfully. Feb 12 20:24:38.941709 kubelet[2196]: I0212 20:24:38.941330 2196 kubelet_node_status.go:493] "Fast updating node status as it just became ready" Feb 12 20:24:39.136414 kubelet[2196]: E0212 20:24:39.136217 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:39.330270 systemd[1]: Created slice kubepods-besteffort-pod3c8a710a_15e9_494c_819c_4ba8a0bd2c53.slice. Feb 12 20:24:39.336549 env[1721]: time="2024-02-12T20:24:39.336461092Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-xhn8p,Uid:3c8a710a-15e9-494c-819c-4ba8a0bd2c53,Namespace:calico-system,Attempt:0,}" Feb 12 20:24:39.567892 systemd[1]: systemd-hostnamed.service: Deactivated successfully. Feb 12 20:24:39.567000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-hostnamed comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 12 20:24:39.594000 audit: BPF prog-id=69 op=UNLOAD Feb 12 20:24:39.594000 audit: BPF prog-id=68 op=UNLOAD Feb 12 20:24:39.594000 audit: BPF prog-id=67 op=UNLOAD Feb 12 20:24:39.819168 env[1721]: time="2024-02-12T20:24:39.819014518Z" level=info msg="shim disconnected" id=4a51be372c0f6b26e51625092867f5d8dd21d450acfe358deb018dcc06a21453 Feb 12 20:24:39.819168 env[1721]: time="2024-02-12T20:24:39.819082912Z" level=warning msg="cleaning up after shim disconnected" id=4a51be372c0f6b26e51625092867f5d8dd21d450acfe358deb018dcc06a21453 namespace=k8s.io Feb 12 20:24:39.819168 env[1721]: time="2024-02-12T20:24:39.819105862Z" level=info msg="cleaning up dead shim" Feb 12 20:24:39.841698 env[1721]: time="2024-02-12T20:24:39.841631420Z" level=warning msg="cleanup warnings time=\"2024-02-12T20:24:39Z\" level=info msg=\"starting signal loop\" namespace=k8s.io pid=2661 runtime=io.containerd.runc.v2\n" Feb 12 20:24:39.908695 env[1721]: time="2024-02-12T20:24:39.908588072Z" level=error msg="Failed to destroy network for sandbox \"01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae\"" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 12 20:24:39.913411 systemd[1]: run-containerd-io.containerd.grpc.v1.cri-sandboxes-01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae-shm.mount: Deactivated successfully. Feb 12 20:24:39.914899 env[1721]: time="2024-02-12T20:24:39.914806806Z" level=error msg="encountered an error cleaning up failed sandbox \"01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae\", marking sandbox state as SANDBOX_UNKNOWN" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 12 20:24:39.915109 env[1721]: time="2024-02-12T20:24:39.914930829Z" level=error msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-xhn8p,Uid:3c8a710a-15e9-494c-819c-4ba8a0bd2c53,Namespace:calico-system,Attempt:0,} failed, error" error="failed to setup network for sandbox \"01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 12 20:24:39.915497 kubelet[2196]: E0212 20:24:39.915440 2196 remote_runtime.go:193] "RunPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 12 20:24:39.915607 kubelet[2196]: E0212 20:24:39.915573 2196 kuberuntime_sandbox.go:72] "Failed to create sandbox for pod" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="calico-system/csi-node-driver-xhn8p" Feb 12 20:24:39.915683 kubelet[2196]: E0212 20:24:39.915614 2196 kuberuntime_manager.go:1119] "CreatePodSandbox for pod failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="calico-system/csi-node-driver-xhn8p" Feb 12 20:24:39.916285 kubelet[2196]: E0212 20:24:39.916175 2196 pod_workers.go:1300] "Error syncing pod, skipping" err="failed to \"CreatePodSandbox\" for \"csi-node-driver-xhn8p_calico-system(3c8a710a-15e9-494c-819c-4ba8a0bd2c53)\" with CreatePodSandboxError: \"Failed to create sandbox for pod \\\"csi-node-driver-xhn8p_calico-system(3c8a710a-15e9-494c-819c-4ba8a0bd2c53)\\\": rpc error: code = Unknown desc = failed to setup network for sandbox \\\"01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae\\\": plugin type=\\\"calico\\\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="calico-system/csi-node-driver-xhn8p" podUID="3c8a710a-15e9-494c-819c-4ba8a0bd2c53" Feb 12 20:24:40.137457 kubelet[2196]: E0212 20:24:40.137300 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:40.376800 kubelet[2196]: I0212 20:24:40.376765 2196 pod_container_deletor.go:80] "Container not found in pod's containers" containerID="01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" Feb 12 20:24:40.378141 env[1721]: time="2024-02-12T20:24:40.378089197Z" level=info msg="StopPodSandbox for \"01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae\"" Feb 12 20:24:40.384726 env[1721]: time="2024-02-12T20:24:40.384656861Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node:v3.27.0\"" Feb 12 20:24:40.435524 env[1721]: time="2024-02-12T20:24:40.435327292Z" level=error msg="StopPodSandbox for \"01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae\" failed" error="failed to destroy network for sandbox \"01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 12 20:24:40.436355 kubelet[2196]: E0212 20:24:40.436096 2196 remote_runtime.go:222] "StopPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to destroy network for sandbox \"01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" podSandboxID="01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" Feb 12 20:24:40.436355 kubelet[2196]: E0212 20:24:40.436202 2196 kuberuntime_manager.go:1315] "Failed to stop sandbox" podSandboxID={"Type":"containerd","ID":"01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae"} Feb 12 20:24:40.436355 kubelet[2196]: E0212 20:24:40.436267 2196 kuberuntime_manager.go:1028] "killPodWithSyncResult failed" err="failed to \"KillPodSandbox\" for \"3c8a710a-15e9-494c-819c-4ba8a0bd2c53\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" Feb 12 20:24:40.436355 kubelet[2196]: E0212 20:24:40.436319 2196 pod_workers.go:1300] "Error syncing pod, skipping" err="failed to \"KillPodSandbox\" for \"3c8a710a-15e9-494c-819c-4ba8a0bd2c53\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="calico-system/csi-node-driver-xhn8p" podUID="3c8a710a-15e9-494c-819c-4ba8a0bd2c53" Feb 12 20:24:41.138318 kubelet[2196]: E0212 20:24:41.138242 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:42.139567 kubelet[2196]: E0212 20:24:42.139421 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:43.140692 kubelet[2196]: E0212 20:24:43.140602 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:43.958981 kubelet[2196]: I0212 20:24:43.958915 2196 topology_manager.go:215] "Topology Admit Handler" podUID="a1464691-a148-4817-9310-0be8c06c5603" podNamespace="default" podName="nginx-deployment-6d5f899847-k2jpn" Feb 12 20:24:43.968775 systemd[1]: Created slice kubepods-besteffort-poda1464691_a148_4817_9310_0be8c06c5603.slice. Feb 12 20:24:44.006106 kubelet[2196]: I0212 20:24:44.006052 2196 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-g9c9c\" (UniqueName: \"kubernetes.io/projected/a1464691-a148-4817-9310-0be8c06c5603-kube-api-access-g9c9c\") pod \"nginx-deployment-6d5f899847-k2jpn\" (UID: \"a1464691-a148-4817-9310-0be8c06c5603\") " pod="default/nginx-deployment-6d5f899847-k2jpn" Feb 12 20:24:44.123602 kubelet[2196]: E0212 20:24:44.123532 2196 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:44.141451 kubelet[2196]: E0212 20:24:44.141388 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:44.280176 env[1721]: time="2024-02-12T20:24:44.280100273Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-6d5f899847-k2jpn,Uid:a1464691-a148-4817-9310-0be8c06c5603,Namespace:default,Attempt:0,}" Feb 12 20:24:44.448267 env[1721]: time="2024-02-12T20:24:44.448162091Z" level=error msg="Failed to destroy network for sandbox \"9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839\"" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 12 20:24:44.454255 systemd[1]: run-containerd-io.containerd.grpc.v1.cri-sandboxes-9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839-shm.mount: Deactivated successfully. Feb 12 20:24:44.455985 env[1721]: time="2024-02-12T20:24:44.455868162Z" level=error msg="encountered an error cleaning up failed sandbox \"9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839\", marking sandbox state as SANDBOX_UNKNOWN" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 12 20:24:44.456185 env[1721]: time="2024-02-12T20:24:44.456023392Z" level=error msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-6d5f899847-k2jpn,Uid:a1464691-a148-4817-9310-0be8c06c5603,Namespace:default,Attempt:0,} failed, error" error="failed to setup network for sandbox \"9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 12 20:24:44.456487 kubelet[2196]: E0212 20:24:44.456438 2196 remote_runtime.go:193] "RunPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 12 20:24:44.456604 kubelet[2196]: E0212 20:24:44.456545 2196 kuberuntime_sandbox.go:72] "Failed to create sandbox for pod" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="default/nginx-deployment-6d5f899847-k2jpn" Feb 12 20:24:44.456681 kubelet[2196]: E0212 20:24:44.456612 2196 kuberuntime_manager.go:1119] "CreatePodSandbox for pod failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="default/nginx-deployment-6d5f899847-k2jpn" Feb 12 20:24:44.457300 kubelet[2196]: E0212 20:24:44.456726 2196 pod_workers.go:1300] "Error syncing pod, skipping" err="failed to \"CreatePodSandbox\" for \"nginx-deployment-6d5f899847-k2jpn_default(a1464691-a148-4817-9310-0be8c06c5603)\" with CreatePodSandboxError: \"Failed to create sandbox for pod \\\"nginx-deployment-6d5f899847-k2jpn_default(a1464691-a148-4817-9310-0be8c06c5603)\\\": rpc error: code = Unknown desc = failed to setup network for sandbox \\\"9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839\\\": plugin type=\\\"calico\\\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="default/nginx-deployment-6d5f899847-k2jpn" podUID="a1464691-a148-4817-9310-0be8c06c5603" Feb 12 20:24:45.141914 kubelet[2196]: E0212 20:24:45.141853 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:45.406855 kubelet[2196]: I0212 20:24:45.406714 2196 pod_container_deletor.go:80] "Container not found in pod's containers" containerID="9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" Feb 12 20:24:45.411011 env[1721]: time="2024-02-12T20:24:45.410906335Z" level=info msg="StopPodSandbox for \"9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839\"" Feb 12 20:24:45.486714 env[1721]: time="2024-02-12T20:24:45.486631389Z" level=error msg="StopPodSandbox for \"9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839\" failed" error="failed to destroy network for sandbox \"9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 12 20:24:45.487336 kubelet[2196]: E0212 20:24:45.487274 2196 remote_runtime.go:222] "StopPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to destroy network for sandbox \"9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" podSandboxID="9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" Feb 12 20:24:45.487522 kubelet[2196]: E0212 20:24:45.487353 2196 kuberuntime_manager.go:1315] "Failed to stop sandbox" podSandboxID={"Type":"containerd","ID":"9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839"} Feb 12 20:24:45.487522 kubelet[2196]: E0212 20:24:45.487421 2196 kuberuntime_manager.go:1028] "killPodWithSyncResult failed" err="failed to \"KillPodSandbox\" for \"a1464691-a148-4817-9310-0be8c06c5603\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" Feb 12 20:24:45.487522 kubelet[2196]: E0212 20:24:45.487480 2196 pod_workers.go:1300] "Error syncing pod, skipping" err="failed to \"KillPodSandbox\" for \"a1464691-a148-4817-9310-0be8c06c5603\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="default/nginx-deployment-6d5f899847-k2jpn" podUID="a1464691-a148-4817-9310-0be8c06c5603" Feb 12 20:24:46.142555 kubelet[2196]: E0212 20:24:46.142480 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:47.143279 kubelet[2196]: E0212 20:24:47.143215 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:48.143448 kubelet[2196]: E0212 20:24:48.143379 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:49.058611 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2858785840.mount: Deactivated successfully. Feb 12 20:24:49.143808 kubelet[2196]: E0212 20:24:49.143754 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:49.155751 env[1721]: time="2024-02-12T20:24:49.155685496Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:49.158207 env[1721]: time="2024-02-12T20:24:49.158153082Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:c445639cb28807ced09724016dc3b273b170b14d3b3d0c39b1affa1cc6b68774,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:49.160751 env[1721]: time="2024-02-12T20:24:49.160697456Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/node:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:49.162917 env[1721]: time="2024-02-12T20:24:49.162863617Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node@sha256:a45dffb21a0e9ca8962f36359a2ab776beeecd93843543c2fa1745d7bbb0f754,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:49.163852 env[1721]: time="2024-02-12T20:24:49.163804649Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node:v3.27.0\" returns image reference \"sha256:c445639cb28807ced09724016dc3b273b170b14d3b3d0c39b1affa1cc6b68774\"" Feb 12 20:24:49.189898 env[1721]: time="2024-02-12T20:24:49.189838637Z" level=info msg="CreateContainer within sandbox \"79389d396ce26c5ae0d97aa1a97e8d470bdd161d3afd21ca324574792ea11d59\" for container &ContainerMetadata{Name:calico-node,Attempt:0,}" Feb 12 20:24:49.216214 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1809039269.mount: Deactivated successfully. Feb 12 20:24:49.227156 env[1721]: time="2024-02-12T20:24:49.227089766Z" level=info msg="CreateContainer within sandbox \"79389d396ce26c5ae0d97aa1a97e8d470bdd161d3afd21ca324574792ea11d59\" for &ContainerMetadata{Name:calico-node,Attempt:0,} returns container id \"95cfbf5f5d88efe356e703a1ac0bac8c53a36a885d130c1bb1c938f5cd1b37e2\"" Feb 12 20:24:49.228447 env[1721]: time="2024-02-12T20:24:49.228375291Z" level=info msg="StartContainer for \"95cfbf5f5d88efe356e703a1ac0bac8c53a36a885d130c1bb1c938f5cd1b37e2\"" Feb 12 20:24:49.258617 systemd[1]: Started cri-containerd-95cfbf5f5d88efe356e703a1ac0bac8c53a36a885d130c1bb1c938f5cd1b37e2.scope. Feb 12 20:24:49.311634 kernel: kauditd_printk_skb: 38 callbacks suppressed Feb 12 20:24:49.311802 kernel: audit: type=1400 audit(1707769489.300:731): avc: denied { perfmon } for pid=2782 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.300000 audit[2782]: AVC avc: denied { perfmon } for pid=2782 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.300000 audit[2782]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=2271 pid=2782 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:49.324860 kernel: audit: type=1300 audit(1707769489.300:731): arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=2271 pid=2782 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:49.300000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3935636662663566356438386566653335366537303361316163306261 Feb 12 20:24:49.336007 kernel: audit: type=1327 audit(1707769489.300:731): proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3935636662663566356438386566653335366537303361316163306261 Feb 12 20:24:49.300000 audit[2782]: AVC avc: denied { bpf } for pid=2782 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.346289 kernel: audit: type=1400 audit(1707769489.300:732): avc: denied { bpf } for pid=2782 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.300000 audit[2782]: AVC avc: denied { bpf } for pid=2782 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.354546 kernel: audit: type=1400 audit(1707769489.300:732): avc: denied { bpf } for pid=2782 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.300000 audit[2782]: AVC avc: denied { bpf } for pid=2782 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.363171 kernel: audit: type=1400 audit(1707769489.300:732): avc: denied { bpf } for pid=2782 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.300000 audit[2782]: AVC avc: denied { perfmon } for pid=2782 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.371139 kernel: audit: type=1400 audit(1707769489.300:732): avc: denied { perfmon } for pid=2782 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.300000 audit[2782]: AVC avc: denied { perfmon } for pid=2782 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.380352 kernel: audit: type=1400 audit(1707769489.300:732): avc: denied { perfmon } for pid=2782 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.380510 kernel: audit: type=1400 audit(1707769489.300:732): avc: denied { perfmon } for pid=2782 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.300000 audit[2782]: AVC avc: denied { perfmon } for pid=2782 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.300000 audit[2782]: AVC avc: denied { perfmon } for pid=2782 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.396636 kernel: audit: type=1400 audit(1707769489.300:732): avc: denied { perfmon } for pid=2782 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.300000 audit[2782]: AVC avc: denied { perfmon } for pid=2782 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.300000 audit[2782]: AVC avc: denied { bpf } for pid=2782 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.300000 audit[2782]: AVC avc: denied { bpf } for pid=2782 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.300000 audit: BPF prog-id=90 op=LOAD Feb 12 20:24:49.300000 audit[2782]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=2271 pid=2782 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:49.300000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3935636662663566356438386566653335366537303361316163306261 Feb 12 20:24:49.303000 audit[2782]: AVC avc: denied { bpf } for pid=2782 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.303000 audit[2782]: AVC avc: denied { bpf } for pid=2782 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.303000 audit[2782]: AVC avc: denied { perfmon } for pid=2782 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.303000 audit[2782]: AVC avc: denied { perfmon } for pid=2782 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.303000 audit[2782]: AVC avc: denied { perfmon } for pid=2782 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.303000 audit[2782]: AVC avc: denied { perfmon } for pid=2782 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.303000 audit[2782]: AVC avc: denied { perfmon } for pid=2782 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.303000 audit[2782]: AVC avc: denied { bpf } for pid=2782 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.303000 audit[2782]: AVC avc: denied { bpf } for pid=2782 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.303000 audit: BPF prog-id=91 op=LOAD Feb 12 20:24:49.303000 audit[2782]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=2271 pid=2782 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:49.303000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3935636662663566356438386566653335366537303361316163306261 Feb 12 20:24:49.310000 audit: BPF prog-id=91 op=UNLOAD Feb 12 20:24:49.310000 audit: BPF prog-id=90 op=UNLOAD Feb 12 20:24:49.310000 audit[2782]: AVC avc: denied { bpf } for pid=2782 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.310000 audit[2782]: AVC avc: denied { bpf } for pid=2782 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.310000 audit[2782]: AVC avc: denied { bpf } for pid=2782 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.310000 audit[2782]: AVC avc: denied { perfmon } for pid=2782 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.310000 audit[2782]: AVC avc: denied { perfmon } for pid=2782 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.310000 audit[2782]: AVC avc: denied { perfmon } for pid=2782 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.310000 audit[2782]: AVC avc: denied { perfmon } for pid=2782 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.310000 audit[2782]: AVC avc: denied { perfmon } for pid=2782 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.310000 audit[2782]: AVC avc: denied { bpf } for pid=2782 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.310000 audit[2782]: AVC avc: denied { bpf } for pid=2782 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:49.310000 audit: BPF prog-id=92 op=LOAD Feb 12 20:24:49.310000 audit[2782]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=2271 pid=2782 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:49.310000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3935636662663566356438386566653335366537303361316163306261 Feb 12 20:24:49.399380 env[1721]: time="2024-02-12T20:24:49.397309125Z" level=info msg="StartContainer for \"95cfbf5f5d88efe356e703a1ac0bac8c53a36a885d130c1bb1c938f5cd1b37e2\" returns successfully" Feb 12 20:24:49.504902 kernel: wireguard: WireGuard 1.0.0 loaded. See www.wireguard.com for information. Feb 12 20:24:49.505137 kernel: wireguard: Copyright (C) 2015-2019 Jason A. Donenfeld <Jason@zx2c4.com>. All Rights Reserved. Feb 12 20:24:50.145024 kubelet[2196]: E0212 20:24:50.144909 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:51.032000 audit[2896]: AVC avc: denied { write } for pid=2896 comm="tee" name="fd" dev="proc" ino=15549 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 12 20:24:51.032000 audit[2896]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffe7db6986 a2=241 a3=1b6 items=1 ppid=2855 pid=2896 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:51.032000 audit: CWD cwd="/etc/service/enabled/confd/log" Feb 12 20:24:51.032000 audit: PATH item=0 name="/dev/fd/63" inode=15541 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:24:51.048000 audit[2898]: AVC avc: denied { write } for pid=2898 comm="tee" name="fd" dev="proc" ino=15556 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 12 20:24:51.032000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 12 20:24:51.048000 audit[2898]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=fffff24e4986 a2=241 a3=1b6 items=1 ppid=2850 pid=2898 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:51.048000 audit: CWD cwd="/etc/service/enabled/bird6/log" Feb 12 20:24:51.048000 audit: PATH item=0 name="/dev/fd/63" inode=15542 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:24:51.048000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 12 20:24:51.055000 audit[2900]: AVC avc: denied { write } for pid=2900 comm="tee" name="fd" dev="proc" ino=15299 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 12 20:24:51.055000 audit[2900]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffe470b976 a2=241 a3=1b6 items=1 ppid=2857 pid=2900 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:51.055000 audit: CWD cwd="/etc/service/enabled/allocate-tunnel-addrs/log" Feb 12 20:24:51.055000 audit: PATH item=0 name="/dev/fd/63" inode=15543 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:24:51.055000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 12 20:24:51.055000 audit[2904]: AVC avc: denied { write } for pid=2904 comm="tee" name="fd" dev="proc" ino=15303 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 12 20:24:51.055000 audit[2904]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffe5a86987 a2=241 a3=1b6 items=1 ppid=2851 pid=2904 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:51.055000 audit: CWD cwd="/etc/service/enabled/bird/log" Feb 12 20:24:51.055000 audit: PATH item=0 name="/dev/fd/63" inode=15291 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:24:51.055000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 12 20:24:51.056000 audit[2902]: AVC avc: denied { write } for pid=2902 comm="tee" name="fd" dev="proc" ino=15307 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 12 20:24:51.056000 audit[2902]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=fffffb029988 a2=241 a3=1b6 items=1 ppid=2854 pid=2902 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:51.056000 audit: CWD cwd="/etc/service/enabled/cni/log" Feb 12 20:24:51.056000 audit: PATH item=0 name="/dev/fd/63" inode=15546 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:24:51.056000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 12 20:24:51.067000 audit[2912]: AVC avc: denied { write } for pid=2912 comm="tee" name="fd" dev="proc" ino=15311 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 12 20:24:51.067000 audit[2912]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffd286a977 a2=241 a3=1b6 items=1 ppid=2858 pid=2912 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:51.067000 audit: CWD cwd="/etc/service/enabled/node-status-reporter/log" Feb 12 20:24:51.067000 audit: PATH item=0 name="/dev/fd/63" inode=15296 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:24:51.067000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 12 20:24:51.069000 audit[2910]: AVC avc: denied { write } for pid=2910 comm="tee" name="fd" dev="proc" ino=15560 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 12 20:24:51.069000 audit[2910]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffd48f5986 a2=241 a3=1b6 items=1 ppid=2848 pid=2910 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:51.069000 audit: CWD cwd="/etc/service/enabled/felix/log" Feb 12 20:24:51.069000 audit: PATH item=0 name="/dev/fd/63" inode=15295 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:24:51.069000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 12 20:24:51.145603 kubelet[2196]: E0212 20:24:51.145524 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:51.429526 kernel: Initializing XFRM netlink socket Feb 12 20:24:51.654868 (udev-worker)[2984]: Network interface NamePolicy= disabled on kernel command line. Feb 12 20:24:51.656173 (udev-worker)[2813]: Network interface NamePolicy= disabled on kernel command line. Feb 12 20:24:51.659000 audit[2987]: AVC avc: denied { bpf } for pid=2987 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:51.659000 audit[2987]: AVC avc: denied { bpf } for pid=2987 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:51.659000 audit[2987]: AVC avc: denied { perfmon } for pid=2987 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:51.659000 audit[2987]: AVC avc: denied { perfmon } for pid=2987 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:51.659000 audit[2987]: AVC avc: denied { perfmon } for pid=2987 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:51.659000 audit[2987]: AVC avc: denied { perfmon } for pid=2987 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:51.659000 audit[2987]: AVC avc: denied { perfmon } for pid=2987 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:51.659000 audit[2987]: AVC avc: denied { bpf } for pid=2987 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:51.659000 audit[2987]: AVC avc: denied { bpf } for pid=2987 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:51.659000 audit: BPF prog-id=93 op=LOAD Feb 12 20:24:51.659000 audit[2987]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=3 a0=5 a1=ffffe6fc1728 a2=70 a3=0 items=0 ppid=2849 pid=2987 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:51.659000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 12 20:24:51.659000 audit: BPF prog-id=93 op=UNLOAD Feb 12 20:24:51.659000 audit[2987]: AVC avc: denied { bpf } for pid=2987 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:51.659000 audit[2987]: AVC avc: denied { bpf } for pid=2987 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:51.659000 audit[2987]: AVC avc: denied { perfmon } for pid=2987 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:51.659000 audit[2987]: AVC avc: denied { perfmon } for pid=2987 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:51.659000 audit[2987]: AVC avc: denied { perfmon } for pid=2987 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:51.659000 audit[2987]: AVC avc: denied { perfmon } for pid=2987 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:51.659000 audit[2987]: AVC avc: denied { perfmon } for pid=2987 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:51.659000 audit[2987]: AVC avc: denied { bpf } for pid=2987 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:51.659000 audit[2987]: AVC avc: denied { bpf } for pid=2987 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:51.659000 audit: BPF prog-id=94 op=LOAD Feb 12 20:24:51.659000 audit[2987]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=3 a0=5 a1=ffffe6fc1728 a2=70 a3=4a174c items=0 ppid=2849 pid=2987 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:51.659000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 12 20:24:51.659000 audit: BPF prog-id=94 op=UNLOAD Feb 12 20:24:51.659000 audit[2987]: AVC avc: denied { bpf } for pid=2987 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:51.659000 audit[2987]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=3 a0=0 a1=ffffe6fc1758 a2=70 a3=3f4bd73f items=0 ppid=2849 pid=2987 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:51.659000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 12 20:24:51.660000 audit[2987]: AVC avc: denied { bpf } for pid=2987 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:51.660000 audit[2987]: AVC avc: denied { bpf } for pid=2987 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:51.660000 audit[2987]: AVC avc: denied { bpf } for pid=2987 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:51.660000 audit[2987]: AVC avc: denied { perfmon } for pid=2987 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:51.660000 audit[2987]: AVC avc: denied { perfmon } for pid=2987 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:51.660000 audit[2987]: AVC avc: denied { perfmon } for pid=2987 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:51.660000 audit[2987]: AVC avc: denied { perfmon } for pid=2987 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:51.660000 audit[2987]: AVC avc: denied { perfmon } for pid=2987 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:51.660000 audit[2987]: AVC avc: denied { bpf } for pid=2987 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:51.660000 audit[2987]: AVC avc: denied { bpf } for pid=2987 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:51.660000 audit: BPF prog-id=95 op=LOAD Feb 12 20:24:51.660000 audit[2987]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=5 a0=5 a1=ffffe6fc16a8 a2=70 a3=3f4bd759 items=0 ppid=2849 pid=2987 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:51.660000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 12 20:24:51.674000 audit[2989]: AVC avc: denied { bpf } for pid=2989 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:51.674000 audit[2989]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=ffffcf752608 a2=70 a3=0 items=0 ppid=2849 pid=2989 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:51.674000 audit: PROCTITLE proctitle=627066746F6F6C002D2D6A736F6E002D2D7072657474790070726F670073686F770070696E6E6564002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41 Feb 12 20:24:51.674000 audit[2989]: AVC avc: denied { bpf } for pid=2989 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:51.674000 audit[2989]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=ffffcf7524e8 a2=70 a3=2 items=0 ppid=2849 pid=2989 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:51.674000 audit: PROCTITLE proctitle=627066746F6F6C002D2D6A736F6E002D2D7072657474790070726F670073686F770070696E6E6564002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41 Feb 12 20:24:51.690000 audit: BPF prog-id=95 op=UNLOAD Feb 12 20:24:51.690000 audit[2984]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=18 a0=11 a1=aaab0e50ce10 a2=288000 a3=0 items=1 ppid=1532 pid=2984 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="(udev-worker)" exe="/usr/bin/udevadm" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:51.690000 audit: CWD cwd="/" Feb 12 20:24:51.690000 audit: PATH item=0 name="virtual" inode=83 dev=00:15 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:sysfs_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:24:51.690000 audit: PROCTITLE proctitle="(udev-worker)" Feb 12 20:24:51.784000 audit[3010]: NETFILTER_CFG table=raw:65 family=2 entries=19 op=nft_register_chain pid=3010 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 12 20:24:51.784000 audit[3010]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=6132 a0=3 a1=ffffe0f88b20 a2=0 a3=ffff8976afa8 items=0 ppid=2849 pid=3010 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:51.784000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 12 20:24:51.788000 audit[3011]: NETFILTER_CFG table=nat:66 family=2 entries=16 op=nft_register_chain pid=3011 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 12 20:24:51.788000 audit[3011]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5188 a0=3 a1=ffffe8406e20 a2=0 a3=ffffacaf1fa8 items=0 ppid=2849 pid=3011 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:51.788000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 12 20:24:51.789000 audit[3012]: NETFILTER_CFG table=mangle:67 family=2 entries=19 op=nft_register_chain pid=3012 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 12 20:24:51.789000 audit[3012]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=6800 a0=3 a1=ffffed73ddf0 a2=0 a3=ffffa34e8fa8 items=0 ppid=2849 pid=3012 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:51.789000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 12 20:24:51.793000 audit[3014]: NETFILTER_CFG table=filter:68 family=2 entries=39 op=nft_register_chain pid=3014 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 12 20:24:51.793000 audit[3014]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=18472 a0=3 a1=fffff37e3db0 a2=0 a3=ffff9178efa8 items=0 ppid=2849 pid=3014 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:51.793000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 12 20:24:52.146600 kubelet[2196]: E0212 20:24:52.146471 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:52.452356 systemd-networkd[1538]: vxlan.calico: Link UP Feb 12 20:24:52.452374 systemd-networkd[1538]: vxlan.calico: Gained carrier Feb 12 20:24:53.147666 kubelet[2196]: E0212 20:24:53.147592 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:53.657248 kubelet[2196]: I0212 20:24:53.657197 2196 prober_manager.go:312] "Failed to trigger a manual run" probe="Readiness" Feb 12 20:24:53.690296 systemd[1]: run-containerd-runc-k8s.io-95cfbf5f5d88efe356e703a1ac0bac8c53a36a885d130c1bb1c938f5cd1b37e2-runc.g8xrEN.mount: Deactivated successfully. Feb 12 20:24:53.806042 systemd[1]: run-containerd-runc-k8s.io-95cfbf5f5d88efe356e703a1ac0bac8c53a36a885d130c1bb1c938f5cd1b37e2-runc.SwE3KA.mount: Deactivated successfully. Feb 12 20:24:53.973628 kubelet[2196]: I0212 20:24:53.973578 2196 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="calico-system/calico-node-6blkt" podStartSLOduration=7.072575648 podCreationTimestamp="2024-02-12 20:24:25 +0000 UTC" firstStartedPulling="2024-02-12 20:24:27.26335328 +0000 UTC m=+4.330276266" lastFinishedPulling="2024-02-12 20:24:49.164301157 +0000 UTC m=+26.231224155" observedRunningTime="2024-02-12 20:24:49.445837947 +0000 UTC m=+26.512760969" watchObservedRunningTime="2024-02-12 20:24:53.973523537 +0000 UTC m=+31.040446523" Feb 12 20:24:54.148249 kubelet[2196]: E0212 20:24:54.148207 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:54.331494 env[1721]: time="2024-02-12T20:24:54.330933644Z" level=info msg="StopPodSandbox for \"01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae\"" Feb 12 20:24:54.420268 update_engine[1715]: I0212 20:24:54.420208 1715 update_attempter.cc:509] Updating boot flags... Feb 12 20:24:54.431809 systemd-networkd[1538]: vxlan.calico: Gained IPv6LL Feb 12 20:24:54.539368 env[1721]: 2024-02-12 20:24:54.426 [INFO][3088] k8s.go 578: Cleaning up netns ContainerID="01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" Feb 12 20:24:54.539368 env[1721]: 2024-02-12 20:24:54.426 [INFO][3088] dataplane_linux.go 530: Deleting workload's device in netns. ContainerID="01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" iface="eth0" netns="/var/run/netns/cni-e0067726-c2e5-57eb-e153-00871e1e9f8e" Feb 12 20:24:54.539368 env[1721]: 2024-02-12 20:24:54.427 [INFO][3088] dataplane_linux.go 541: Entered netns, deleting veth. ContainerID="01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" iface="eth0" netns="/var/run/netns/cni-e0067726-c2e5-57eb-e153-00871e1e9f8e" Feb 12 20:24:54.539368 env[1721]: 2024-02-12 20:24:54.427 [INFO][3088] dataplane_linux.go 568: Workload's veth was already gone. Nothing to do. ContainerID="01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" iface="eth0" netns="/var/run/netns/cni-e0067726-c2e5-57eb-e153-00871e1e9f8e" Feb 12 20:24:54.539368 env[1721]: 2024-02-12 20:24:54.427 [INFO][3088] k8s.go 585: Releasing IP address(es) ContainerID="01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" Feb 12 20:24:54.539368 env[1721]: 2024-02-12 20:24:54.427 [INFO][3088] utils.go 188: Calico CNI releasing IP address ContainerID="01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" Feb 12 20:24:54.539368 env[1721]: 2024-02-12 20:24:54.509 [INFO][3096] ipam_plugin.go 415: Releasing address using handleID ContainerID="01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" HandleID="k8s-pod-network.01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" Workload="172.31.16.56-k8s-csi--node--driver--xhn8p-eth0" Feb 12 20:24:54.539368 env[1721]: 2024-02-12 20:24:54.510 [INFO][3096] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 12 20:24:54.539368 env[1721]: 2024-02-12 20:24:54.510 [INFO][3096] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 12 20:24:54.539368 env[1721]: 2024-02-12 20:24:54.528 [WARNING][3096] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" HandleID="k8s-pod-network.01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" Workload="172.31.16.56-k8s-csi--node--driver--xhn8p-eth0" Feb 12 20:24:54.539368 env[1721]: 2024-02-12 20:24:54.528 [INFO][3096] ipam_plugin.go 443: Releasing address using workloadID ContainerID="01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" HandleID="k8s-pod-network.01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" Workload="172.31.16.56-k8s-csi--node--driver--xhn8p-eth0" Feb 12 20:24:54.539368 env[1721]: 2024-02-12 20:24:54.534 [INFO][3096] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 12 20:24:54.539368 env[1721]: 2024-02-12 20:24:54.536 [INFO][3088] k8s.go 591: Teardown processing complete. ContainerID="01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" Feb 12 20:24:54.540779 env[1721]: time="2024-02-12T20:24:54.539650499Z" level=info msg="TearDown network for sandbox \"01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae\" successfully" Feb 12 20:24:54.540779 env[1721]: time="2024-02-12T20:24:54.539702447Z" level=info msg="StopPodSandbox for \"01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae\" returns successfully" Feb 12 20:24:54.541905 env[1721]: time="2024-02-12T20:24:54.541822208Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-xhn8p,Uid:3c8a710a-15e9-494c-819c-4ba8a0bd2c53,Namespace:calico-system,Attempt:1,}" Feb 12 20:24:54.691312 systemd[1]: run-netns-cni\x2de0067726\x2dc2e5\x2d57eb\x2de153\x2d00871e1e9f8e.mount: Deactivated successfully. Feb 12 20:24:54.728975 amazon-ssm-agent[1743]: 2024-02-12 20:24:54 INFO [MessagingDeliveryService] [Association] Schedule manager refreshed with 0 associations, 0 new associations associated Feb 12 20:24:54.835601 (udev-worker)[3113]: Network interface NamePolicy= disabled on kernel command line. Feb 12 20:24:54.837255 systemd-networkd[1538]: calic77df5fbb14: Link UP Feb 12 20:24:54.843103 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 12 20:24:54.843506 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): calic77df5fbb14: link becomes ready Feb 12 20:24:54.843764 systemd-networkd[1538]: calic77df5fbb14: Gained carrier Feb 12 20:24:54.867293 env[1721]: 2024-02-12 20:24:54.641 [INFO][3150] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.16.56-k8s-csi--node--driver--xhn8p-eth0 csi-node-driver- calico-system 3c8a710a-15e9-494c-819c-4ba8a0bd2c53 952 0 2024-02-12 20:24:25 +0000 UTC <nil> <nil> map[app.kubernetes.io/name:csi-node-driver controller-revision-hash:676488fcc9 k8s-app:csi-node-driver name:csi-node-driver pod-template-generation:1 projectcalico.org/namespace:calico-system projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 172.31.16.56 csi-node-driver-xhn8p eth0 default [] [] [kns.calico-system ksa.calico-system.default] calic77df5fbb14 [] []}} ContainerID="49ce943c4e715c768575706c349343f4dc21d80fa7eb61e1ee60ce97bd9ba917" Namespace="calico-system" Pod="csi-node-driver-xhn8p" WorkloadEndpoint="172.31.16.56-k8s-csi--node--driver--xhn8p-" Feb 12 20:24:54.867293 env[1721]: 2024-02-12 20:24:54.641 [INFO][3150] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="49ce943c4e715c768575706c349343f4dc21d80fa7eb61e1ee60ce97bd9ba917" Namespace="calico-system" Pod="csi-node-driver-xhn8p" WorkloadEndpoint="172.31.16.56-k8s-csi--node--driver--xhn8p-eth0" Feb 12 20:24:54.867293 env[1721]: 2024-02-12 20:24:54.752 [INFO][3199] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="49ce943c4e715c768575706c349343f4dc21d80fa7eb61e1ee60ce97bd9ba917" HandleID="k8s-pod-network.49ce943c4e715c768575706c349343f4dc21d80fa7eb61e1ee60ce97bd9ba917" Workload="172.31.16.56-k8s-csi--node--driver--xhn8p-eth0" Feb 12 20:24:54.867293 env[1721]: 2024-02-12 20:24:54.775 [INFO][3199] ipam_plugin.go 268: Auto assigning IP ContainerID="49ce943c4e715c768575706c349343f4dc21d80fa7eb61e1ee60ce97bd9ba917" HandleID="k8s-pod-network.49ce943c4e715c768575706c349343f4dc21d80fa7eb61e1ee60ce97bd9ba917" Workload="172.31.16.56-k8s-csi--node--driver--xhn8p-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x40002ba7c0), Attrs:map[string]string{"namespace":"calico-system", "node":"172.31.16.56", "pod":"csi-node-driver-xhn8p", "timestamp":"2024-02-12 20:24:54.746281204 +0000 UTC"}, Hostname:"172.31.16.56", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 12 20:24:54.867293 env[1721]: 2024-02-12 20:24:54.775 [INFO][3199] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 12 20:24:54.867293 env[1721]: 2024-02-12 20:24:54.776 [INFO][3199] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 12 20:24:54.867293 env[1721]: 2024-02-12 20:24:54.776 [INFO][3199] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.16.56' Feb 12 20:24:54.867293 env[1721]: 2024-02-12 20:24:54.779 [INFO][3199] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.49ce943c4e715c768575706c349343f4dc21d80fa7eb61e1ee60ce97bd9ba917" host="172.31.16.56" Feb 12 20:24:54.867293 env[1721]: 2024-02-12 20:24:54.790 [INFO][3199] ipam.go 372: Looking up existing affinities for host host="172.31.16.56" Feb 12 20:24:54.867293 env[1721]: 2024-02-12 20:24:54.800 [INFO][3199] ipam.go 489: Trying affinity for 192.168.44.64/26 host="172.31.16.56" Feb 12 20:24:54.867293 env[1721]: 2024-02-12 20:24:54.803 [INFO][3199] ipam.go 155: Attempting to load block cidr=192.168.44.64/26 host="172.31.16.56" Feb 12 20:24:54.867293 env[1721]: 2024-02-12 20:24:54.810 [INFO][3199] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.44.64/26 host="172.31.16.56" Feb 12 20:24:54.867293 env[1721]: 2024-02-12 20:24:54.810 [INFO][3199] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.44.64/26 handle="k8s-pod-network.49ce943c4e715c768575706c349343f4dc21d80fa7eb61e1ee60ce97bd9ba917" host="172.31.16.56" Feb 12 20:24:54.867293 env[1721]: 2024-02-12 20:24:54.812 [INFO][3199] ipam.go 1682: Creating new handle: k8s-pod-network.49ce943c4e715c768575706c349343f4dc21d80fa7eb61e1ee60ce97bd9ba917 Feb 12 20:24:54.867293 env[1721]: 2024-02-12 20:24:54.818 [INFO][3199] ipam.go 1203: Writing block in order to claim IPs block=192.168.44.64/26 handle="k8s-pod-network.49ce943c4e715c768575706c349343f4dc21d80fa7eb61e1ee60ce97bd9ba917" host="172.31.16.56" Feb 12 20:24:54.867293 env[1721]: 2024-02-12 20:24:54.826 [INFO][3199] ipam.go 1216: Successfully claimed IPs: [192.168.44.65/26] block=192.168.44.64/26 handle="k8s-pod-network.49ce943c4e715c768575706c349343f4dc21d80fa7eb61e1ee60ce97bd9ba917" host="172.31.16.56" Feb 12 20:24:54.867293 env[1721]: 2024-02-12 20:24:54.826 [INFO][3199] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.44.65/26] handle="k8s-pod-network.49ce943c4e715c768575706c349343f4dc21d80fa7eb61e1ee60ce97bd9ba917" host="172.31.16.56" Feb 12 20:24:54.867293 env[1721]: 2024-02-12 20:24:54.826 [INFO][3199] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 12 20:24:54.867293 env[1721]: 2024-02-12 20:24:54.827 [INFO][3199] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.44.65/26] IPv6=[] ContainerID="49ce943c4e715c768575706c349343f4dc21d80fa7eb61e1ee60ce97bd9ba917" HandleID="k8s-pod-network.49ce943c4e715c768575706c349343f4dc21d80fa7eb61e1ee60ce97bd9ba917" Workload="172.31.16.56-k8s-csi--node--driver--xhn8p-eth0" Feb 12 20:24:54.868781 env[1721]: 2024-02-12 20:24:54.832 [INFO][3150] k8s.go 385: Populated endpoint ContainerID="49ce943c4e715c768575706c349343f4dc21d80fa7eb61e1ee60ce97bd9ba917" Namespace="calico-system" Pod="csi-node-driver-xhn8p" WorkloadEndpoint="172.31.16.56-k8s-csi--node--driver--xhn8p-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.16.56-k8s-csi--node--driver--xhn8p-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"3c8a710a-15e9-494c-819c-4ba8a0bd2c53", ResourceVersion:"952", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 24, 25, 0, time.Local), DeletionTimestamp:<nil>, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"676488fcc9", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.16.56", ContainerID:"", Pod:"csi-node-driver-xhn8p", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.44.65/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"calic77df5fbb14", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:24:54.868781 env[1721]: 2024-02-12 20:24:54.832 [INFO][3150] k8s.go 386: Calico CNI using IPs: [192.168.44.65/32] ContainerID="49ce943c4e715c768575706c349343f4dc21d80fa7eb61e1ee60ce97bd9ba917" Namespace="calico-system" Pod="csi-node-driver-xhn8p" WorkloadEndpoint="172.31.16.56-k8s-csi--node--driver--xhn8p-eth0" Feb 12 20:24:54.868781 env[1721]: 2024-02-12 20:24:54.832 [INFO][3150] dataplane_linux.go 68: Setting the host side veth name to calic77df5fbb14 ContainerID="49ce943c4e715c768575706c349343f4dc21d80fa7eb61e1ee60ce97bd9ba917" Namespace="calico-system" Pod="csi-node-driver-xhn8p" WorkloadEndpoint="172.31.16.56-k8s-csi--node--driver--xhn8p-eth0" Feb 12 20:24:54.868781 env[1721]: 2024-02-12 20:24:54.843 [INFO][3150] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="49ce943c4e715c768575706c349343f4dc21d80fa7eb61e1ee60ce97bd9ba917" Namespace="calico-system" Pod="csi-node-driver-xhn8p" WorkloadEndpoint="172.31.16.56-k8s-csi--node--driver--xhn8p-eth0" Feb 12 20:24:54.868781 env[1721]: 2024-02-12 20:24:54.845 [INFO][3150] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="49ce943c4e715c768575706c349343f4dc21d80fa7eb61e1ee60ce97bd9ba917" Namespace="calico-system" Pod="csi-node-driver-xhn8p" WorkloadEndpoint="172.31.16.56-k8s-csi--node--driver--xhn8p-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.16.56-k8s-csi--node--driver--xhn8p-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"3c8a710a-15e9-494c-819c-4ba8a0bd2c53", ResourceVersion:"952", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 24, 25, 0, time.Local), DeletionTimestamp:<nil>, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"676488fcc9", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.16.56", ContainerID:"49ce943c4e715c768575706c349343f4dc21d80fa7eb61e1ee60ce97bd9ba917", Pod:"csi-node-driver-xhn8p", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.44.65/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"calic77df5fbb14", MAC:"d6:da:3e:49:08:9d", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:24:54.868781 env[1721]: 2024-02-12 20:24:54.861 [INFO][3150] k8s.go 491: Wrote updated endpoint to datastore ContainerID="49ce943c4e715c768575706c349343f4dc21d80fa7eb61e1ee60ce97bd9ba917" Namespace="calico-system" Pod="csi-node-driver-xhn8p" WorkloadEndpoint="172.31.16.56-k8s-csi--node--driver--xhn8p-eth0" Feb 12 20:24:54.899384 env[1721]: time="2024-02-12T20:24:54.899243701Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 12 20:24:54.899755 env[1721]: time="2024-02-12T20:24:54.899643010Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 12 20:24:54.900021 env[1721]: time="2024-02-12T20:24:54.899923136Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 12 20:24:54.900503 env[1721]: time="2024-02-12T20:24:54.900444352Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/49ce943c4e715c768575706c349343f4dc21d80fa7eb61e1ee60ce97bd9ba917 pid=3233 runtime=io.containerd.runc.v2 Feb 12 20:24:54.943669 systemd[1]: Started cri-containerd-49ce943c4e715c768575706c349343f4dc21d80fa7eb61e1ee60ce97bd9ba917.scope. Feb 12 20:24:54.951607 systemd[1]: run-containerd-runc-k8s.io-49ce943c4e715c768575706c349343f4dc21d80fa7eb61e1ee60ce97bd9ba917-runc.YKhajS.mount: Deactivated successfully. Feb 12 20:24:54.960000 audit[3256]: NETFILTER_CFG table=filter:69 family=2 entries=36 op=nft_register_chain pid=3256 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 12 20:24:54.965014 kernel: kauditd_printk_skb: 133 callbacks suppressed Feb 12 20:24:54.965184 kernel: audit: type=1325 audit(1707769494.960:757): table=filter:69 family=2 entries=36 op=nft_register_chain pid=3256 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 12 20:24:54.960000 audit[3256]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=19908 a0=3 a1=ffffe8db76f0 a2=0 a3=ffff8f34efa8 items=0 ppid=2849 pid=3256 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:54.986479 kernel: audit: type=1300 audit(1707769494.960:757): arch=c00000b7 syscall=211 success=yes exit=19908 a0=3 a1=ffffe8db76f0 a2=0 a3=ffff8f34efa8 items=0 ppid=2849 pid=3256 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:54.960000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 12 20:24:54.993752 kernel: audit: type=1327 audit(1707769494.960:757): proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 12 20:24:54.996000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:54.996000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.013214 kernel: audit: type=1400 audit(1707769494.996:758): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.013377 kernel: audit: type=1400 audit(1707769494.996:759): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:54.996000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:54.996000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.022053 kernel: audit: type=1400 audit(1707769494.996:760): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:54.996000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.041337 kernel: audit: type=1400 audit(1707769494.996:761): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.041499 kernel: audit: type=1400 audit(1707769494.996:762): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:54.996000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.049940 kernel: audit: type=1400 audit(1707769494.996:763): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.050264 kernel: audit: type=1400 audit(1707769494.996:764): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:54.996000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:54.996000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:54.996000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.004000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.004000 audit: BPF prog-id=96 op=LOAD Feb 12 20:24:55.011000 audit[3243]: AVC avc: denied { bpf } for pid=3243 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.011000 audit[3243]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000145b38 a2=10 a3=0 items=0 ppid=3233 pid=3243 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:55.011000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3439636539343363346537313563373638353735373036633334393334 Feb 12 20:24:55.011000 audit[3243]: AVC avc: denied { perfmon } for pid=3243 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.011000 audit[3243]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=3233 pid=3243 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:55.011000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3439636539343363346537313563373638353735373036633334393334 Feb 12 20:24:55.011000 audit[3243]: AVC avc: denied { bpf } for pid=3243 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.011000 audit[3243]: AVC avc: denied { bpf } for pid=3243 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.011000 audit[3243]: AVC avc: denied { bpf } for pid=3243 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.011000 audit[3243]: AVC avc: denied { perfmon } for pid=3243 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.011000 audit[3243]: AVC avc: denied { perfmon } for pid=3243 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.011000 audit[3243]: AVC avc: denied { perfmon } for pid=3243 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.011000 audit[3243]: AVC avc: denied { perfmon } for pid=3243 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.011000 audit[3243]: AVC avc: denied { perfmon } for pid=3243 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.011000 audit[3243]: AVC avc: denied { bpf } for pid=3243 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.011000 audit[3243]: AVC avc: denied { bpf } for pid=3243 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.011000 audit: BPF prog-id=97 op=LOAD Feb 12 20:24:55.011000 audit[3243]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=3233 pid=3243 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:55.011000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3439636539343363346537313563373638353735373036633334393334 Feb 12 20:24:55.012000 audit[3243]: AVC avc: denied { bpf } for pid=3243 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.012000 audit[3243]: AVC avc: denied { bpf } for pid=3243 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.012000 audit[3243]: AVC avc: denied { perfmon } for pid=3243 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.012000 audit[3243]: AVC avc: denied { perfmon } for pid=3243 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.012000 audit[3243]: AVC avc: denied { perfmon } for pid=3243 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.012000 audit[3243]: AVC avc: denied { perfmon } for pid=3243 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.012000 audit[3243]: AVC avc: denied { perfmon } for pid=3243 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.012000 audit[3243]: AVC avc: denied { bpf } for pid=3243 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.012000 audit[3243]: AVC avc: denied { bpf } for pid=3243 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.012000 audit: BPF prog-id=98 op=LOAD Feb 12 20:24:55.012000 audit[3243]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=3233 pid=3243 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:55.012000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3439636539343363346537313563373638353735373036633334393334 Feb 12 20:24:55.020000 audit: BPF prog-id=98 op=UNLOAD Feb 12 20:24:55.020000 audit: BPF prog-id=97 op=UNLOAD Feb 12 20:24:55.020000 audit[3243]: AVC avc: denied { bpf } for pid=3243 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.020000 audit[3243]: AVC avc: denied { bpf } for pid=3243 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.020000 audit[3243]: AVC avc: denied { bpf } for pid=3243 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.020000 audit[3243]: AVC avc: denied { perfmon } for pid=3243 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.020000 audit[3243]: AVC avc: denied { perfmon } for pid=3243 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.020000 audit[3243]: AVC avc: denied { perfmon } for pid=3243 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.020000 audit[3243]: AVC avc: denied { perfmon } for pid=3243 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.020000 audit[3243]: AVC avc: denied { perfmon } for pid=3243 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.020000 audit[3243]: AVC avc: denied { bpf } for pid=3243 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.020000 audit[3243]: AVC avc: denied { bpf } for pid=3243 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:55.020000 audit: BPF prog-id=99 op=LOAD Feb 12 20:24:55.020000 audit[3243]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=3233 pid=3243 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:55.020000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3439636539343363346537313563373638353735373036633334393334 Feb 12 20:24:55.078236 env[1721]: time="2024-02-12T20:24:55.078162574Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-xhn8p,Uid:3c8a710a-15e9-494c-819c-4ba8a0bd2c53,Namespace:calico-system,Attempt:1,} returns sandbox id \"49ce943c4e715c768575706c349343f4dc21d80fa7eb61e1ee60ce97bd9ba917\"" Feb 12 20:24:55.082269 env[1721]: time="2024-02-12T20:24:55.082207736Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/csi:v3.27.0\"" Feb 12 20:24:55.149351 kubelet[2196]: E0212 20:24:55.149276 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:56.150534 kubelet[2196]: E0212 20:24:56.150456 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:56.323243 env[1721]: time="2024-02-12T20:24:56.323149938Z" level=info msg="StopPodSandbox for \"9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839\"" Feb 12 20:24:56.461173 env[1721]: 2024-02-12 20:24:56.399 [INFO][3286] k8s.go 578: Cleaning up netns ContainerID="9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" Feb 12 20:24:56.461173 env[1721]: 2024-02-12 20:24:56.399 [INFO][3286] dataplane_linux.go 530: Deleting workload's device in netns. ContainerID="9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" iface="eth0" netns="/var/run/netns/cni-c43f3a82-1901-1ae5-4cd3-62866bfc12b3" Feb 12 20:24:56.461173 env[1721]: 2024-02-12 20:24:56.400 [INFO][3286] dataplane_linux.go 541: Entered netns, deleting veth. ContainerID="9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" iface="eth0" netns="/var/run/netns/cni-c43f3a82-1901-1ae5-4cd3-62866bfc12b3" Feb 12 20:24:56.461173 env[1721]: 2024-02-12 20:24:56.400 [INFO][3286] dataplane_linux.go 568: Workload's veth was already gone. Nothing to do. ContainerID="9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" iface="eth0" netns="/var/run/netns/cni-c43f3a82-1901-1ae5-4cd3-62866bfc12b3" Feb 12 20:24:56.461173 env[1721]: 2024-02-12 20:24:56.400 [INFO][3286] k8s.go 585: Releasing IP address(es) ContainerID="9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" Feb 12 20:24:56.461173 env[1721]: 2024-02-12 20:24:56.400 [INFO][3286] utils.go 188: Calico CNI releasing IP address ContainerID="9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" Feb 12 20:24:56.461173 env[1721]: 2024-02-12 20:24:56.437 [INFO][3292] ipam_plugin.go 415: Releasing address using handleID ContainerID="9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" HandleID="k8s-pod-network.9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" Workload="172.31.16.56-k8s-nginx--deployment--6d5f899847--k2jpn-eth0" Feb 12 20:24:56.461173 env[1721]: 2024-02-12 20:24:56.437 [INFO][3292] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 12 20:24:56.461173 env[1721]: 2024-02-12 20:24:56.437 [INFO][3292] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 12 20:24:56.461173 env[1721]: 2024-02-12 20:24:56.453 [WARNING][3292] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" HandleID="k8s-pod-network.9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" Workload="172.31.16.56-k8s-nginx--deployment--6d5f899847--k2jpn-eth0" Feb 12 20:24:56.461173 env[1721]: 2024-02-12 20:24:56.453 [INFO][3292] ipam_plugin.go 443: Releasing address using workloadID ContainerID="9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" HandleID="k8s-pod-network.9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" Workload="172.31.16.56-k8s-nginx--deployment--6d5f899847--k2jpn-eth0" Feb 12 20:24:56.461173 env[1721]: 2024-02-12 20:24:56.456 [INFO][3292] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 12 20:24:56.461173 env[1721]: 2024-02-12 20:24:56.458 [INFO][3286] k8s.go 591: Teardown processing complete. ContainerID="9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" Feb 12 20:24:56.467954 env[1721]: time="2024-02-12T20:24:56.461797100Z" level=info msg="TearDown network for sandbox \"9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839\" successfully" Feb 12 20:24:56.467954 env[1721]: time="2024-02-12T20:24:56.461864636Z" level=info msg="StopPodSandbox for \"9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839\" returns successfully" Feb 12 20:24:56.467954 env[1721]: time="2024-02-12T20:24:56.466141385Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-6d5f899847-k2jpn,Uid:a1464691-a148-4817-9310-0be8c06c5603,Namespace:default,Attempt:1,}" Feb 12 20:24:56.464769 systemd[1]: run-netns-cni\x2dc43f3a82\x2d1901\x2d1ae5\x2d4cd3\x2d62866bfc12b3.mount: Deactivated successfully. Feb 12 20:24:56.740227 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 12 20:24:56.740414 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali88129912ffe: link becomes ready Feb 12 20:24:56.734426 systemd-networkd[1538]: cali88129912ffe: Link UP Feb 12 20:24:56.740420 systemd-networkd[1538]: cali88129912ffe: Gained carrier Feb 12 20:24:56.763497 env[1721]: 2024-02-12 20:24:56.591 [INFO][3299] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.16.56-k8s-nginx--deployment--6d5f899847--k2jpn-eth0 nginx-deployment-6d5f899847- default a1464691-a148-4817-9310-0be8c06c5603 964 0 2024-02-12 20:24:43 +0000 UTC <nil> <nil> map[app:nginx pod-template-hash:6d5f899847 projectcalico.org/namespace:default projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 172.31.16.56 nginx-deployment-6d5f899847-k2jpn eth0 default [] [] [kns.default ksa.default.default] cali88129912ffe [] []}} ContainerID="9b07dd946f1d557971d2fb63d7bfb0db5963acd2c490c112c221445df7083c1c" Namespace="default" Pod="nginx-deployment-6d5f899847-k2jpn" WorkloadEndpoint="172.31.16.56-k8s-nginx--deployment--6d5f899847--k2jpn-" Feb 12 20:24:56.763497 env[1721]: 2024-02-12 20:24:56.591 [INFO][3299] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="9b07dd946f1d557971d2fb63d7bfb0db5963acd2c490c112c221445df7083c1c" Namespace="default" Pod="nginx-deployment-6d5f899847-k2jpn" WorkloadEndpoint="172.31.16.56-k8s-nginx--deployment--6d5f899847--k2jpn-eth0" Feb 12 20:24:56.763497 env[1721]: 2024-02-12 20:24:56.650 [INFO][3309] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="9b07dd946f1d557971d2fb63d7bfb0db5963acd2c490c112c221445df7083c1c" HandleID="k8s-pod-network.9b07dd946f1d557971d2fb63d7bfb0db5963acd2c490c112c221445df7083c1c" Workload="172.31.16.56-k8s-nginx--deployment--6d5f899847--k2jpn-eth0" Feb 12 20:24:56.763497 env[1721]: 2024-02-12 20:24:56.672 [INFO][3309] ipam_plugin.go 268: Auto assigning IP ContainerID="9b07dd946f1d557971d2fb63d7bfb0db5963acd2c490c112c221445df7083c1c" HandleID="k8s-pod-network.9b07dd946f1d557971d2fb63d7bfb0db5963acd2c490c112c221445df7083c1c" Workload="172.31.16.56-k8s-nginx--deployment--6d5f899847--k2jpn-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x4000212c20), Attrs:map[string]string{"namespace":"default", "node":"172.31.16.56", "pod":"nginx-deployment-6d5f899847-k2jpn", "timestamp":"2024-02-12 20:24:56.650198657 +0000 UTC"}, Hostname:"172.31.16.56", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 12 20:24:56.763497 env[1721]: 2024-02-12 20:24:56.672 [INFO][3309] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 12 20:24:56.763497 env[1721]: 2024-02-12 20:24:56.672 [INFO][3309] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 12 20:24:56.763497 env[1721]: 2024-02-12 20:24:56.672 [INFO][3309] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.16.56' Feb 12 20:24:56.763497 env[1721]: 2024-02-12 20:24:56.676 [INFO][3309] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.9b07dd946f1d557971d2fb63d7bfb0db5963acd2c490c112c221445df7083c1c" host="172.31.16.56" Feb 12 20:24:56.763497 env[1721]: 2024-02-12 20:24:56.682 [INFO][3309] ipam.go 372: Looking up existing affinities for host host="172.31.16.56" Feb 12 20:24:56.763497 env[1721]: 2024-02-12 20:24:56.690 [INFO][3309] ipam.go 489: Trying affinity for 192.168.44.64/26 host="172.31.16.56" Feb 12 20:24:56.763497 env[1721]: 2024-02-12 20:24:56.693 [INFO][3309] ipam.go 155: Attempting to load block cidr=192.168.44.64/26 host="172.31.16.56" Feb 12 20:24:56.763497 env[1721]: 2024-02-12 20:24:56.697 [INFO][3309] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.44.64/26 host="172.31.16.56" Feb 12 20:24:56.763497 env[1721]: 2024-02-12 20:24:56.697 [INFO][3309] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.44.64/26 handle="k8s-pod-network.9b07dd946f1d557971d2fb63d7bfb0db5963acd2c490c112c221445df7083c1c" host="172.31.16.56" Feb 12 20:24:56.763497 env[1721]: 2024-02-12 20:24:56.700 [INFO][3309] ipam.go 1682: Creating new handle: k8s-pod-network.9b07dd946f1d557971d2fb63d7bfb0db5963acd2c490c112c221445df7083c1c Feb 12 20:24:56.763497 env[1721]: 2024-02-12 20:24:56.713 [INFO][3309] ipam.go 1203: Writing block in order to claim IPs block=192.168.44.64/26 handle="k8s-pod-network.9b07dd946f1d557971d2fb63d7bfb0db5963acd2c490c112c221445df7083c1c" host="172.31.16.56" Feb 12 20:24:56.763497 env[1721]: 2024-02-12 20:24:56.721 [INFO][3309] ipam.go 1216: Successfully claimed IPs: [192.168.44.66/26] block=192.168.44.64/26 handle="k8s-pod-network.9b07dd946f1d557971d2fb63d7bfb0db5963acd2c490c112c221445df7083c1c" host="172.31.16.56" Feb 12 20:24:56.763497 env[1721]: 2024-02-12 20:24:56.721 [INFO][3309] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.44.66/26] handle="k8s-pod-network.9b07dd946f1d557971d2fb63d7bfb0db5963acd2c490c112c221445df7083c1c" host="172.31.16.56" Feb 12 20:24:56.763497 env[1721]: 2024-02-12 20:24:56.721 [INFO][3309] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 12 20:24:56.763497 env[1721]: 2024-02-12 20:24:56.721 [INFO][3309] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.44.66/26] IPv6=[] ContainerID="9b07dd946f1d557971d2fb63d7bfb0db5963acd2c490c112c221445df7083c1c" HandleID="k8s-pod-network.9b07dd946f1d557971d2fb63d7bfb0db5963acd2c490c112c221445df7083c1c" Workload="172.31.16.56-k8s-nginx--deployment--6d5f899847--k2jpn-eth0" Feb 12 20:24:56.764809 env[1721]: 2024-02-12 20:24:56.725 [INFO][3299] k8s.go 385: Populated endpoint ContainerID="9b07dd946f1d557971d2fb63d7bfb0db5963acd2c490c112c221445df7083c1c" Namespace="default" Pod="nginx-deployment-6d5f899847-k2jpn" WorkloadEndpoint="172.31.16.56-k8s-nginx--deployment--6d5f899847--k2jpn-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.16.56-k8s-nginx--deployment--6d5f899847--k2jpn-eth0", GenerateName:"nginx-deployment-6d5f899847-", Namespace:"default", SelfLink:"", UID:"a1464691-a148-4817-9310-0be8c06c5603", ResourceVersion:"964", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 24, 43, 0, time.Local), DeletionTimestamp:<nil>, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"6d5f899847", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.16.56", ContainerID:"", Pod:"nginx-deployment-6d5f899847-k2jpn", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.44.66/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali88129912ffe", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:24:56.764809 env[1721]: 2024-02-12 20:24:56.725 [INFO][3299] k8s.go 386: Calico CNI using IPs: [192.168.44.66/32] ContainerID="9b07dd946f1d557971d2fb63d7bfb0db5963acd2c490c112c221445df7083c1c" Namespace="default" Pod="nginx-deployment-6d5f899847-k2jpn" WorkloadEndpoint="172.31.16.56-k8s-nginx--deployment--6d5f899847--k2jpn-eth0" Feb 12 20:24:56.764809 env[1721]: 2024-02-12 20:24:56.725 [INFO][3299] dataplane_linux.go 68: Setting the host side veth name to cali88129912ffe ContainerID="9b07dd946f1d557971d2fb63d7bfb0db5963acd2c490c112c221445df7083c1c" Namespace="default" Pod="nginx-deployment-6d5f899847-k2jpn" WorkloadEndpoint="172.31.16.56-k8s-nginx--deployment--6d5f899847--k2jpn-eth0" Feb 12 20:24:56.764809 env[1721]: 2024-02-12 20:24:56.742 [INFO][3299] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="9b07dd946f1d557971d2fb63d7bfb0db5963acd2c490c112c221445df7083c1c" Namespace="default" Pod="nginx-deployment-6d5f899847-k2jpn" WorkloadEndpoint="172.31.16.56-k8s-nginx--deployment--6d5f899847--k2jpn-eth0" Feb 12 20:24:56.764809 env[1721]: 2024-02-12 20:24:56.742 [INFO][3299] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="9b07dd946f1d557971d2fb63d7bfb0db5963acd2c490c112c221445df7083c1c" Namespace="default" Pod="nginx-deployment-6d5f899847-k2jpn" WorkloadEndpoint="172.31.16.56-k8s-nginx--deployment--6d5f899847--k2jpn-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.16.56-k8s-nginx--deployment--6d5f899847--k2jpn-eth0", GenerateName:"nginx-deployment-6d5f899847-", Namespace:"default", SelfLink:"", UID:"a1464691-a148-4817-9310-0be8c06c5603", ResourceVersion:"964", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 24, 43, 0, time.Local), DeletionTimestamp:<nil>, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"6d5f899847", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.16.56", ContainerID:"9b07dd946f1d557971d2fb63d7bfb0db5963acd2c490c112c221445df7083c1c", Pod:"nginx-deployment-6d5f899847-k2jpn", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.44.66/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali88129912ffe", MAC:"e6:72:43:dd:01:69", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:24:56.764809 env[1721]: 2024-02-12 20:24:56.759 [INFO][3299] k8s.go 491: Wrote updated endpoint to datastore ContainerID="9b07dd946f1d557971d2fb63d7bfb0db5963acd2c490c112c221445df7083c1c" Namespace="default" Pod="nginx-deployment-6d5f899847-k2jpn" WorkloadEndpoint="172.31.16.56-k8s-nginx--deployment--6d5f899847--k2jpn-eth0" Feb 12 20:24:56.798449 systemd-networkd[1538]: calic77df5fbb14: Gained IPv6LL Feb 12 20:24:56.803000 audit[3330]: NETFILTER_CFG table=filter:70 family=2 entries=40 op=nft_register_chain pid=3330 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 12 20:24:56.803000 audit[3330]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=21064 a0=3 a1=ffffc300f560 a2=0 a3=ffff8c868fa8 items=0 ppid=2849 pid=3330 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:56.803000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 12 20:24:56.830626 env[1721]: time="2024-02-12T20:24:56.830488047Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 12 20:24:56.830626 env[1721]: time="2024-02-12T20:24:56.830573798Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 12 20:24:56.831032 env[1721]: time="2024-02-12T20:24:56.830898684Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 12 20:24:56.835232 env[1721]: time="2024-02-12T20:24:56.835108138Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/9b07dd946f1d557971d2fb63d7bfb0db5963acd2c490c112c221445df7083c1c pid=3339 runtime=io.containerd.runc.v2 Feb 12 20:24:56.881542 systemd[1]: Started cri-containerd-9b07dd946f1d557971d2fb63d7bfb0db5963acd2c490c112c221445df7083c1c.scope. Feb 12 20:24:56.929000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.929000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.929000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.929000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.929000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.929000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.929000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.929000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.929000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.929000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.929000 audit: BPF prog-id=100 op=LOAD Feb 12 20:24:56.931000 audit[3353]: AVC avc: denied { bpf } for pid=3353 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.931000 audit[3353]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000145b38 a2=10 a3=0 items=0 ppid=3339 pid=3353 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:56.931000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3962303764643934366631643535373937316432666236336437626662 Feb 12 20:24:56.931000 audit[3353]: AVC avc: denied { perfmon } for pid=3353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.931000 audit[3353]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=3339 pid=3353 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:56.931000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3962303764643934366631643535373937316432666236336437626662 Feb 12 20:24:56.931000 audit[3353]: AVC avc: denied { bpf } for pid=3353 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.931000 audit[3353]: AVC avc: denied { bpf } for pid=3353 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.931000 audit[3353]: AVC avc: denied { bpf } for pid=3353 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.931000 audit[3353]: AVC avc: denied { perfmon } for pid=3353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.931000 audit[3353]: AVC avc: denied { perfmon } for pid=3353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.931000 audit[3353]: AVC avc: denied { perfmon } for pid=3353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.931000 audit[3353]: AVC avc: denied { perfmon } for pid=3353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.931000 audit[3353]: AVC avc: denied { perfmon } for pid=3353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.931000 audit[3353]: AVC avc: denied { bpf } for pid=3353 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.931000 audit[3353]: AVC avc: denied { bpf } for pid=3353 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.931000 audit: BPF prog-id=101 op=LOAD Feb 12 20:24:56.931000 audit[3353]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=3339 pid=3353 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:56.931000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3962303764643934366631643535373937316432666236336437626662 Feb 12 20:24:56.931000 audit[3353]: AVC avc: denied { bpf } for pid=3353 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.931000 audit[3353]: AVC avc: denied { bpf } for pid=3353 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.931000 audit[3353]: AVC avc: denied { perfmon } for pid=3353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.931000 audit[3353]: AVC avc: denied { perfmon } for pid=3353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.931000 audit[3353]: AVC avc: denied { perfmon } for pid=3353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.931000 audit[3353]: AVC avc: denied { perfmon } for pid=3353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.931000 audit[3353]: AVC avc: denied { perfmon } for pid=3353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.931000 audit[3353]: AVC avc: denied { bpf } for pid=3353 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.931000 audit[3353]: AVC avc: denied { bpf } for pid=3353 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.931000 audit: BPF prog-id=102 op=LOAD Feb 12 20:24:56.931000 audit[3353]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=3339 pid=3353 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:56.931000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3962303764643934366631643535373937316432666236336437626662 Feb 12 20:24:56.931000 audit: BPF prog-id=102 op=UNLOAD Feb 12 20:24:56.932000 audit: BPF prog-id=101 op=UNLOAD Feb 12 20:24:56.932000 audit[3353]: AVC avc: denied { bpf } for pid=3353 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.932000 audit[3353]: AVC avc: denied { bpf } for pid=3353 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.932000 audit[3353]: AVC avc: denied { bpf } for pid=3353 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.932000 audit[3353]: AVC avc: denied { perfmon } for pid=3353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.932000 audit[3353]: AVC avc: denied { perfmon } for pid=3353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.932000 audit[3353]: AVC avc: denied { perfmon } for pid=3353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.932000 audit[3353]: AVC avc: denied { perfmon } for pid=3353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.932000 audit[3353]: AVC avc: denied { perfmon } for pid=3353 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.932000 audit[3353]: AVC avc: denied { bpf } for pid=3353 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.932000 audit[3353]: AVC avc: denied { bpf } for pid=3353 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:56.932000 audit: BPF prog-id=103 op=LOAD Feb 12 20:24:56.932000 audit[3353]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=3339 pid=3353 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:56.932000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3962303764643934366631643535373937316432666236336437626662 Feb 12 20:24:56.983178 env[1721]: time="2024-02-12T20:24:56.983121399Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-6d5f899847-k2jpn,Uid:a1464691-a148-4817-9310-0be8c06c5603,Namespace:default,Attempt:1,} returns sandbox id \"9b07dd946f1d557971d2fb63d7bfb0db5963acd2c490c112c221445df7083c1c\"" Feb 12 20:24:56.998339 env[1721]: time="2024-02-12T20:24:56.992808075Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/csi:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:56.998339 env[1721]: time="2024-02-12T20:24:56.997797213Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:4b71e7439e0eba34a97844591560a009f37e8e6c17a386a34d416c1cc872dee8,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:57.001919 env[1721]: time="2024-02-12T20:24:57.001853464Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/csi:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:57.006079 env[1721]: time="2024-02-12T20:24:57.005998480Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/csi@sha256:2b9021393c17e87ba8a3c89f5b3719941812f4e4751caa0b71eb2233bff48738,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:24:57.008618 env[1721]: time="2024-02-12T20:24:57.007469371Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/csi:v3.27.0\" returns image reference \"sha256:4b71e7439e0eba34a97844591560a009f37e8e6c17a386a34d416c1cc872dee8\"" Feb 12 20:24:57.010115 env[1721]: time="2024-02-12T20:24:57.010019764Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\"" Feb 12 20:24:57.012148 env[1721]: time="2024-02-12T20:24:57.012065368Z" level=info msg="CreateContainer within sandbox \"49ce943c4e715c768575706c349343f4dc21d80fa7eb61e1ee60ce97bd9ba917\" for container &ContainerMetadata{Name:calico-csi,Attempt:0,}" Feb 12 20:24:57.038291 env[1721]: time="2024-02-12T20:24:57.038147684Z" level=info msg="CreateContainer within sandbox \"49ce943c4e715c768575706c349343f4dc21d80fa7eb61e1ee60ce97bd9ba917\" for &ContainerMetadata{Name:calico-csi,Attempt:0,} returns container id \"33e19943423455fa4bb77d0f2a3e980f44ea27943c2b5790c8d8e2d39899624a\"" Feb 12 20:24:57.039383 env[1721]: time="2024-02-12T20:24:57.039323857Z" level=info msg="StartContainer for \"33e19943423455fa4bb77d0f2a3e980f44ea27943c2b5790c8d8e2d39899624a\"" Feb 12 20:24:57.075794 systemd[1]: Started cri-containerd-33e19943423455fa4bb77d0f2a3e980f44ea27943c2b5790c8d8e2d39899624a.scope. Feb 12 20:24:57.122000 audit[3387]: AVC avc: denied { perfmon } for pid=3387 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:57.122000 audit[3387]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001c55a0 a2=3c a3=0 items=0 ppid=3233 pid=3387 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:57.122000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3333653139393433343233343535666134626237376430663261336539 Feb 12 20:24:57.122000 audit[3387]: AVC avc: denied { bpf } for pid=3387 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:57.122000 audit[3387]: AVC avc: denied { bpf } for pid=3387 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:57.122000 audit[3387]: AVC avc: denied { bpf } for pid=3387 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:57.122000 audit[3387]: AVC avc: denied { perfmon } for pid=3387 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:57.122000 audit[3387]: AVC avc: denied { perfmon } for pid=3387 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:57.122000 audit[3387]: AVC avc: denied { perfmon } for pid=3387 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:57.122000 audit[3387]: AVC avc: denied { perfmon } for pid=3387 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:57.122000 audit[3387]: AVC avc: denied { perfmon } for pid=3387 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:57.122000 audit[3387]: AVC avc: denied { bpf } for pid=3387 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:57.122000 audit[3387]: AVC avc: denied { bpf } for pid=3387 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:57.122000 audit: BPF prog-id=104 op=LOAD Feb 12 20:24:57.122000 audit[3387]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001c58e0 a2=78 a3=0 items=0 ppid=3233 pid=3387 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:57.122000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3333653139393433343233343535666134626237376430663261336539 Feb 12 20:24:57.122000 audit[3387]: AVC avc: denied { bpf } for pid=3387 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:57.122000 audit[3387]: AVC avc: denied { bpf } for pid=3387 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:57.122000 audit[3387]: AVC avc: denied { perfmon } for pid=3387 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:57.122000 audit[3387]: AVC avc: denied { perfmon } for pid=3387 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:57.122000 audit[3387]: AVC avc: denied { perfmon } for pid=3387 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:57.122000 audit[3387]: AVC avc: denied { perfmon } for pid=3387 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:57.122000 audit[3387]: AVC avc: denied { perfmon } for pid=3387 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:57.122000 audit[3387]: AVC avc: denied { bpf } for pid=3387 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:57.122000 audit[3387]: AVC avc: denied { bpf } for pid=3387 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:57.122000 audit: BPF prog-id=105 op=LOAD Feb 12 20:24:57.122000 audit[3387]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=40001c5670 a2=78 a3=0 items=0 ppid=3233 pid=3387 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:57.122000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3333653139393433343233343535666134626237376430663261336539 Feb 12 20:24:57.122000 audit: BPF prog-id=105 op=UNLOAD Feb 12 20:24:57.122000 audit: BPF prog-id=104 op=UNLOAD Feb 12 20:24:57.123000 audit[3387]: AVC avc: denied { bpf } for pid=3387 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:57.123000 audit[3387]: AVC avc: denied { bpf } for pid=3387 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:57.123000 audit[3387]: AVC avc: denied { bpf } for pid=3387 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:57.123000 audit[3387]: AVC avc: denied { perfmon } for pid=3387 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:57.123000 audit[3387]: AVC avc: denied { perfmon } for pid=3387 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:57.123000 audit[3387]: AVC avc: denied { perfmon } for pid=3387 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:57.123000 audit[3387]: AVC avc: denied { perfmon } for pid=3387 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:57.123000 audit[3387]: AVC avc: denied { perfmon } for pid=3387 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:57.123000 audit[3387]: AVC avc: denied { bpf } for pid=3387 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:57.123000 audit[3387]: AVC avc: denied { bpf } for pid=3387 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:57.123000 audit: BPF prog-id=106 op=LOAD Feb 12 20:24:57.123000 audit[3387]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001c5b40 a2=78 a3=0 items=0 ppid=3233 pid=3387 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:57.123000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3333653139393433343233343535666134626237376430663261336539 Feb 12 20:24:57.151645 kubelet[2196]: E0212 20:24:57.151577 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:57.156815 env[1721]: time="2024-02-12T20:24:57.156739823Z" level=info msg="StartContainer for \"33e19943423455fa4bb77d0f2a3e980f44ea27943c2b5790c8d8e2d39899624a\" returns successfully" Feb 12 20:24:57.815000 audit[3414]: NETFILTER_CFG table=filter:71 family=2 entries=9 op=nft_register_rule pid=3414 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:24:57.815000 audit[3414]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=3548 a0=3 a1=ffffdb897180 a2=0 a3=ffffa65f86c0 items=0 ppid=2356 pid=3414 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:57.815000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:24:57.820773 kubelet[2196]: I0212 20:24:57.819798 2196 topology_manager.go:215] "Topology Admit Handler" podUID="1c5cb5aa-fbc6-46c9-a1e4-6599fabe58d8" podNamespace="calico-apiserver" podName="calico-apiserver-ff7f5f55f-qf9bv" Feb 12 20:24:57.823000 audit[3414]: NETFILTER_CFG table=nat:72 family=2 entries=20 op=nft_register_rule pid=3414 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:24:57.823000 audit[3414]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5484 a0=3 a1=ffffdb897180 a2=0 a3=ffffa65f86c0 items=0 ppid=2356 pid=3414 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:57.823000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:24:57.831532 systemd[1]: Created slice kubepods-besteffort-pod1c5cb5aa_fbc6_46c9_a1e4_6599fabe58d8.slice. Feb 12 20:24:57.847000 audit[3417]: NETFILTER_CFG table=filter:73 family=2 entries=10 op=nft_register_rule pid=3417 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:24:57.847000 audit[3417]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=3548 a0=3 a1=ffffca7b8700 a2=0 a3=ffff9640b6c0 items=0 ppid=2356 pid=3417 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:57.847000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:24:57.848000 audit[3417]: NETFILTER_CFG table=nat:74 family=2 entries=20 op=nft_register_rule pid=3417 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:24:57.848000 audit[3417]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5484 a0=3 a1=ffffca7b8700 a2=0 a3=ffff9640b6c0 items=0 ppid=2356 pid=3417 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:57.848000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:24:57.914443 kubelet[2196]: I0212 20:24:57.914375 2196 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"calico-apiserver-certs\" (UniqueName: \"kubernetes.io/secret/1c5cb5aa-fbc6-46c9-a1e4-6599fabe58d8-calico-apiserver-certs\") pod \"calico-apiserver-ff7f5f55f-qf9bv\" (UID: \"1c5cb5aa-fbc6-46c9-a1e4-6599fabe58d8\") " pod="calico-apiserver/calico-apiserver-ff7f5f55f-qf9bv" Feb 12 20:24:57.914760 kubelet[2196]: I0212 20:24:57.914733 2196 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-8ddz2\" (UniqueName: \"kubernetes.io/projected/1c5cb5aa-fbc6-46c9-a1e4-6599fabe58d8-kube-api-access-8ddz2\") pod \"calico-apiserver-ff7f5f55f-qf9bv\" (UID: \"1c5cb5aa-fbc6-46c9-a1e4-6599fabe58d8\") " pod="calico-apiserver/calico-apiserver-ff7f5f55f-qf9bv" Feb 12 20:24:58.015892 kubelet[2196]: E0212 20:24:58.015831 2196 secret.go:194] Couldn't get secret calico-apiserver/calico-apiserver-certs: secret "calico-apiserver-certs" not found Feb 12 20:24:58.016185 kubelet[2196]: E0212 20:24:58.015994 2196 nestedpendingoperations.go:348] Operation for "{volumeName:kubernetes.io/secret/1c5cb5aa-fbc6-46c9-a1e4-6599fabe58d8-calico-apiserver-certs podName:1c5cb5aa-fbc6-46c9-a1e4-6599fabe58d8 nodeName:}" failed. No retries permitted until 2024-02-12 20:24:58.515923525 +0000 UTC m=+35.582846511 (durationBeforeRetry 500ms). Error: MountVolume.SetUp failed for volume "calico-apiserver-certs" (UniqueName: "kubernetes.io/secret/1c5cb5aa-fbc6-46c9-a1e4-6599fabe58d8-calico-apiserver-certs") pod "calico-apiserver-ff7f5f55f-qf9bv" (UID: "1c5cb5aa-fbc6-46c9-a1e4-6599fabe58d8") : secret "calico-apiserver-certs" not found Feb 12 20:24:58.153655 kubelet[2196]: E0212 20:24:58.152135 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:58.718302 systemd-networkd[1538]: cali88129912ffe: Gained IPv6LL Feb 12 20:24:58.739626 env[1721]: time="2024-02-12T20:24:58.739562524Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-apiserver-ff7f5f55f-qf9bv,Uid:1c5cb5aa-fbc6-46c9-a1e4-6599fabe58d8,Namespace:calico-apiserver,Attempt:0,}" Feb 12 20:24:59.004646 systemd-networkd[1538]: cali5f76a888938: Link UP Feb 12 20:24:59.012807 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 12 20:24:59.013021 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali5f76a888938: link becomes ready Feb 12 20:24:59.013129 systemd-networkd[1538]: cali5f76a888938: Gained carrier Feb 12 20:24:59.038082 env[1721]: 2024-02-12 20:24:58.851 [INFO][3421] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.16.56-k8s-calico--apiserver--ff7f5f55f--qf9bv-eth0 calico-apiserver-ff7f5f55f- calico-apiserver 1c5cb5aa-fbc6-46c9-a1e4-6599fabe58d8 1014 0 2024-02-12 20:24:57 +0000 UTC <nil> <nil> map[apiserver:true app.kubernetes.io/name:calico-apiserver k8s-app:calico-apiserver pod-template-hash:ff7f5f55f projectcalico.org/namespace:calico-apiserver projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:calico-apiserver] map[] [] [] []} {k8s 172.31.16.56 calico-apiserver-ff7f5f55f-qf9bv eth0 calico-apiserver [] [] [kns.calico-apiserver ksa.calico-apiserver.calico-apiserver] cali5f76a888938 [] []}} ContainerID="c3adc137eb0fda751b03fc3232ec978b4fb355eaa135a6fe6e7a079bfe3a6498" Namespace="calico-apiserver" Pod="calico-apiserver-ff7f5f55f-qf9bv" WorkloadEndpoint="172.31.16.56-k8s-calico--apiserver--ff7f5f55f--qf9bv-" Feb 12 20:24:59.038082 env[1721]: 2024-02-12 20:24:58.852 [INFO][3421] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="c3adc137eb0fda751b03fc3232ec978b4fb355eaa135a6fe6e7a079bfe3a6498" Namespace="calico-apiserver" Pod="calico-apiserver-ff7f5f55f-qf9bv" WorkloadEndpoint="172.31.16.56-k8s-calico--apiserver--ff7f5f55f--qf9bv-eth0" Feb 12 20:24:59.038082 env[1721]: 2024-02-12 20:24:58.917 [INFO][3431] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="c3adc137eb0fda751b03fc3232ec978b4fb355eaa135a6fe6e7a079bfe3a6498" HandleID="k8s-pod-network.c3adc137eb0fda751b03fc3232ec978b4fb355eaa135a6fe6e7a079bfe3a6498" Workload="172.31.16.56-k8s-calico--apiserver--ff7f5f55f--qf9bv-eth0" Feb 12 20:24:59.038082 env[1721]: 2024-02-12 20:24:58.941 [INFO][3431] ipam_plugin.go 268: Auto assigning IP ContainerID="c3adc137eb0fda751b03fc3232ec978b4fb355eaa135a6fe6e7a079bfe3a6498" HandleID="k8s-pod-network.c3adc137eb0fda751b03fc3232ec978b4fb355eaa135a6fe6e7a079bfe3a6498" Workload="172.31.16.56-k8s-calico--apiserver--ff7f5f55f--qf9bv-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x40002b3950), Attrs:map[string]string{"namespace":"calico-apiserver", "node":"172.31.16.56", "pod":"calico-apiserver-ff7f5f55f-qf9bv", "timestamp":"2024-02-12 20:24:58.917480648 +0000 UTC"}, Hostname:"172.31.16.56", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 12 20:24:59.038082 env[1721]: 2024-02-12 20:24:58.941 [INFO][3431] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 12 20:24:59.038082 env[1721]: 2024-02-12 20:24:58.942 [INFO][3431] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 12 20:24:59.038082 env[1721]: 2024-02-12 20:24:58.942 [INFO][3431] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.16.56' Feb 12 20:24:59.038082 env[1721]: 2024-02-12 20:24:58.945 [INFO][3431] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.c3adc137eb0fda751b03fc3232ec978b4fb355eaa135a6fe6e7a079bfe3a6498" host="172.31.16.56" Feb 12 20:24:59.038082 env[1721]: 2024-02-12 20:24:58.952 [INFO][3431] ipam.go 372: Looking up existing affinities for host host="172.31.16.56" Feb 12 20:24:59.038082 env[1721]: 2024-02-12 20:24:58.960 [INFO][3431] ipam.go 489: Trying affinity for 192.168.44.64/26 host="172.31.16.56" Feb 12 20:24:59.038082 env[1721]: 2024-02-12 20:24:58.965 [INFO][3431] ipam.go 155: Attempting to load block cidr=192.168.44.64/26 host="172.31.16.56" Feb 12 20:24:59.038082 env[1721]: 2024-02-12 20:24:58.969 [INFO][3431] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.44.64/26 host="172.31.16.56" Feb 12 20:24:59.038082 env[1721]: 2024-02-12 20:24:58.969 [INFO][3431] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.44.64/26 handle="k8s-pod-network.c3adc137eb0fda751b03fc3232ec978b4fb355eaa135a6fe6e7a079bfe3a6498" host="172.31.16.56" Feb 12 20:24:59.038082 env[1721]: 2024-02-12 20:24:58.972 [INFO][3431] ipam.go 1682: Creating new handle: k8s-pod-network.c3adc137eb0fda751b03fc3232ec978b4fb355eaa135a6fe6e7a079bfe3a6498 Feb 12 20:24:59.038082 env[1721]: 2024-02-12 20:24:58.979 [INFO][3431] ipam.go 1203: Writing block in order to claim IPs block=192.168.44.64/26 handle="k8s-pod-network.c3adc137eb0fda751b03fc3232ec978b4fb355eaa135a6fe6e7a079bfe3a6498" host="172.31.16.56" Feb 12 20:24:59.038082 env[1721]: 2024-02-12 20:24:58.988 [INFO][3431] ipam.go 1216: Successfully claimed IPs: [192.168.44.67/26] block=192.168.44.64/26 handle="k8s-pod-network.c3adc137eb0fda751b03fc3232ec978b4fb355eaa135a6fe6e7a079bfe3a6498" host="172.31.16.56" Feb 12 20:24:59.038082 env[1721]: 2024-02-12 20:24:58.988 [INFO][3431] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.44.67/26] handle="k8s-pod-network.c3adc137eb0fda751b03fc3232ec978b4fb355eaa135a6fe6e7a079bfe3a6498" host="172.31.16.56" Feb 12 20:24:59.038082 env[1721]: 2024-02-12 20:24:58.988 [INFO][3431] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 12 20:24:59.038082 env[1721]: 2024-02-12 20:24:58.988 [INFO][3431] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.44.67/26] IPv6=[] ContainerID="c3adc137eb0fda751b03fc3232ec978b4fb355eaa135a6fe6e7a079bfe3a6498" HandleID="k8s-pod-network.c3adc137eb0fda751b03fc3232ec978b4fb355eaa135a6fe6e7a079bfe3a6498" Workload="172.31.16.56-k8s-calico--apiserver--ff7f5f55f--qf9bv-eth0" Feb 12 20:24:59.039415 env[1721]: 2024-02-12 20:24:58.992 [INFO][3421] k8s.go 385: Populated endpoint ContainerID="c3adc137eb0fda751b03fc3232ec978b4fb355eaa135a6fe6e7a079bfe3a6498" Namespace="calico-apiserver" Pod="calico-apiserver-ff7f5f55f-qf9bv" WorkloadEndpoint="172.31.16.56-k8s-calico--apiserver--ff7f5f55f--qf9bv-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.16.56-k8s-calico--apiserver--ff7f5f55f--qf9bv-eth0", GenerateName:"calico-apiserver-ff7f5f55f-", Namespace:"calico-apiserver", SelfLink:"", UID:"1c5cb5aa-fbc6-46c9-a1e4-6599fabe58d8", ResourceVersion:"1014", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 24, 57, 0, time.Local), DeletionTimestamp:<nil>, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"apiserver":"true", "app.kubernetes.io/name":"calico-apiserver", "k8s-app":"calico-apiserver", "pod-template-hash":"ff7f5f55f", "projectcalico.org/namespace":"calico-apiserver", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"calico-apiserver"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.16.56", ContainerID:"", Pod:"calico-apiserver-ff7f5f55f-qf9bv", Endpoint:"eth0", ServiceAccountName:"calico-apiserver", IPNetworks:[]string{"192.168.44.67/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-apiserver", "ksa.calico-apiserver.calico-apiserver"}, InterfaceName:"cali5f76a888938", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:24:59.039415 env[1721]: 2024-02-12 20:24:58.992 [INFO][3421] k8s.go 386: Calico CNI using IPs: [192.168.44.67/32] ContainerID="c3adc137eb0fda751b03fc3232ec978b4fb355eaa135a6fe6e7a079bfe3a6498" Namespace="calico-apiserver" Pod="calico-apiserver-ff7f5f55f-qf9bv" WorkloadEndpoint="172.31.16.56-k8s-calico--apiserver--ff7f5f55f--qf9bv-eth0" Feb 12 20:24:59.039415 env[1721]: 2024-02-12 20:24:58.992 [INFO][3421] dataplane_linux.go 68: Setting the host side veth name to cali5f76a888938 ContainerID="c3adc137eb0fda751b03fc3232ec978b4fb355eaa135a6fe6e7a079bfe3a6498" Namespace="calico-apiserver" Pod="calico-apiserver-ff7f5f55f-qf9bv" WorkloadEndpoint="172.31.16.56-k8s-calico--apiserver--ff7f5f55f--qf9bv-eth0" Feb 12 20:24:59.039415 env[1721]: 2024-02-12 20:24:59.014 [INFO][3421] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="c3adc137eb0fda751b03fc3232ec978b4fb355eaa135a6fe6e7a079bfe3a6498" Namespace="calico-apiserver" Pod="calico-apiserver-ff7f5f55f-qf9bv" WorkloadEndpoint="172.31.16.56-k8s-calico--apiserver--ff7f5f55f--qf9bv-eth0" Feb 12 20:24:59.039415 env[1721]: 2024-02-12 20:24:59.017 [INFO][3421] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="c3adc137eb0fda751b03fc3232ec978b4fb355eaa135a6fe6e7a079bfe3a6498" Namespace="calico-apiserver" Pod="calico-apiserver-ff7f5f55f-qf9bv" WorkloadEndpoint="172.31.16.56-k8s-calico--apiserver--ff7f5f55f--qf9bv-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.16.56-k8s-calico--apiserver--ff7f5f55f--qf9bv-eth0", GenerateName:"calico-apiserver-ff7f5f55f-", Namespace:"calico-apiserver", SelfLink:"", UID:"1c5cb5aa-fbc6-46c9-a1e4-6599fabe58d8", ResourceVersion:"1014", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 24, 57, 0, time.Local), DeletionTimestamp:<nil>, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"apiserver":"true", "app.kubernetes.io/name":"calico-apiserver", "k8s-app":"calico-apiserver", "pod-template-hash":"ff7f5f55f", "projectcalico.org/namespace":"calico-apiserver", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"calico-apiserver"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.16.56", ContainerID:"c3adc137eb0fda751b03fc3232ec978b4fb355eaa135a6fe6e7a079bfe3a6498", Pod:"calico-apiserver-ff7f5f55f-qf9bv", Endpoint:"eth0", ServiceAccountName:"calico-apiserver", IPNetworks:[]string{"192.168.44.67/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-apiserver", "ksa.calico-apiserver.calico-apiserver"}, InterfaceName:"cali5f76a888938", MAC:"8e:53:7c:d1:9a:62", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:24:59.039415 env[1721]: 2024-02-12 20:24:59.028 [INFO][3421] k8s.go 491: Wrote updated endpoint to datastore ContainerID="c3adc137eb0fda751b03fc3232ec978b4fb355eaa135a6fe6e7a079bfe3a6498" Namespace="calico-apiserver" Pod="calico-apiserver-ff7f5f55f-qf9bv" WorkloadEndpoint="172.31.16.56-k8s-calico--apiserver--ff7f5f55f--qf9bv-eth0" Feb 12 20:24:59.093920 env[1721]: time="2024-02-12T20:24:59.093804053Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 12 20:24:59.097686 env[1721]: time="2024-02-12T20:24:59.097617944Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 12 20:24:59.097909 env[1721]: time="2024-02-12T20:24:59.097858975Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 12 20:24:59.098495 env[1721]: time="2024-02-12T20:24:59.098407888Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/c3adc137eb0fda751b03fc3232ec978b4fb355eaa135a6fe6e7a079bfe3a6498 pid=3461 runtime=io.containerd.runc.v2 Feb 12 20:24:59.150777 systemd[1]: Started cri-containerd-c3adc137eb0fda751b03fc3232ec978b4fb355eaa135a6fe6e7a079bfe3a6498.scope. Feb 12 20:24:59.159049 kubelet[2196]: E0212 20:24:59.155864 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:24:59.170000 audit[3485]: NETFILTER_CFG table=filter:75 family=2 entries=51 op=nft_register_chain pid=3485 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 12 20:24:59.170000 audit[3485]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=26916 a0=3 a1=ffffe276d6c0 a2=0 a3=ffffbcd95fa8 items=0 ppid=2849 pid=3485 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:59.170000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 12 20:24:59.206000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.206000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.206000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.206000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.206000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.206000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.206000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.206000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.206000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.207000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.207000 audit: BPF prog-id=107 op=LOAD Feb 12 20:24:59.208000 audit[3472]: AVC avc: denied { bpf } for pid=3472 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.208000 audit[3472]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=400011db38 a2=10 a3=0 items=0 ppid=3461 pid=3472 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:59.208000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6333616463313337656230666461373531623033666333323332656339 Feb 12 20:24:59.208000 audit[3472]: AVC avc: denied { perfmon } for pid=3472 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.208000 audit[3472]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=400011d5a0 a2=3c a3=0 items=0 ppid=3461 pid=3472 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:59.208000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6333616463313337656230666461373531623033666333323332656339 Feb 12 20:24:59.209000 audit[3472]: AVC avc: denied { bpf } for pid=3472 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.209000 audit[3472]: AVC avc: denied { bpf } for pid=3472 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.209000 audit[3472]: AVC avc: denied { bpf } for pid=3472 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.209000 audit[3472]: AVC avc: denied { perfmon } for pid=3472 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.209000 audit[3472]: AVC avc: denied { perfmon } for pid=3472 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.209000 audit[3472]: AVC avc: denied { perfmon } for pid=3472 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.209000 audit[3472]: AVC avc: denied { perfmon } for pid=3472 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.209000 audit[3472]: AVC avc: denied { perfmon } for pid=3472 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.209000 audit[3472]: AVC avc: denied { bpf } for pid=3472 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.209000 audit[3472]: AVC avc: denied { bpf } for pid=3472 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.209000 audit: BPF prog-id=108 op=LOAD Feb 12 20:24:59.209000 audit[3472]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=400011d8e0 a2=78 a3=0 items=0 ppid=3461 pid=3472 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:59.209000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6333616463313337656230666461373531623033666333323332656339 Feb 12 20:24:59.211000 audit[3472]: AVC avc: denied { bpf } for pid=3472 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.211000 audit[3472]: AVC avc: denied { bpf } for pid=3472 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.211000 audit[3472]: AVC avc: denied { perfmon } for pid=3472 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.211000 audit[3472]: AVC avc: denied { perfmon } for pid=3472 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.211000 audit[3472]: AVC avc: denied { perfmon } for pid=3472 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.211000 audit[3472]: AVC avc: denied { perfmon } for pid=3472 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.211000 audit[3472]: AVC avc: denied { perfmon } for pid=3472 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.211000 audit[3472]: AVC avc: denied { bpf } for pid=3472 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.211000 audit[3472]: AVC avc: denied { bpf } for pid=3472 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.211000 audit: BPF prog-id=109 op=LOAD Feb 12 20:24:59.211000 audit[3472]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=400011d670 a2=78 a3=0 items=0 ppid=3461 pid=3472 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:59.211000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6333616463313337656230666461373531623033666333323332656339 Feb 12 20:24:59.212000 audit: BPF prog-id=109 op=UNLOAD Feb 12 20:24:59.212000 audit: BPF prog-id=108 op=UNLOAD Feb 12 20:24:59.212000 audit[3472]: AVC avc: denied { bpf } for pid=3472 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.212000 audit[3472]: AVC avc: denied { bpf } for pid=3472 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.212000 audit[3472]: AVC avc: denied { bpf } for pid=3472 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.212000 audit[3472]: AVC avc: denied { perfmon } for pid=3472 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.212000 audit[3472]: AVC avc: denied { perfmon } for pid=3472 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.212000 audit[3472]: AVC avc: denied { perfmon } for pid=3472 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.212000 audit[3472]: AVC avc: denied { perfmon } for pid=3472 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.212000 audit[3472]: AVC avc: denied { perfmon } for pid=3472 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.212000 audit[3472]: AVC avc: denied { bpf } for pid=3472 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.212000 audit[3472]: AVC avc: denied { bpf } for pid=3472 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:24:59.212000 audit: BPF prog-id=110 op=LOAD Feb 12 20:24:59.212000 audit[3472]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=400011db40 a2=78 a3=0 items=0 ppid=3461 pid=3472 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:24:59.212000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6333616463313337656230666461373531623033666333323332656339 Feb 12 20:24:59.271555 env[1721]: time="2024-02-12T20:24:59.266398342Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-apiserver-ff7f5f55f-qf9bv,Uid:1c5cb5aa-fbc6-46c9-a1e4-6599fabe58d8,Namespace:calico-apiserver,Attempt:0,} returns sandbox id \"c3adc137eb0fda751b03fc3232ec978b4fb355eaa135a6fe6e7a079bfe3a6498\"" Feb 12 20:25:00.127287 systemd-networkd[1538]: cali5f76a888938: Gained IPv6LL Feb 12 20:25:00.157065 kubelet[2196]: E0212 20:25:00.156977 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:00.985519 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount575241381.mount: Deactivated successfully. Feb 12 20:25:01.157888 kubelet[2196]: E0212 20:25:01.157819 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:02.159055 kubelet[2196]: E0212 20:25:02.158950 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:02.533833 env[1721]: time="2024-02-12T20:25:02.533750799Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:25:02.537262 env[1721]: time="2024-02-12T20:25:02.537123899Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:01bfff6bfbc6f0e8a890bad9e22c5392e6dbfd67def93467db6231d4be1b719b,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:25:02.540463 env[1721]: time="2024-02-12T20:25:02.540395108Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:25:02.543796 env[1721]: time="2024-02-12T20:25:02.543736396Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/nginx@sha256:e34a272f01984c973b1e034e197c02f77dda18981038e3a54e957554ada4fec6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:25:02.545328 env[1721]: time="2024-02-12T20:25:02.545271489Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\" returns image reference \"sha256:01bfff6bfbc6f0e8a890bad9e22c5392e6dbfd67def93467db6231d4be1b719b\"" Feb 12 20:25:02.547675 env[1721]: time="2024-02-12T20:25:02.547602538Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node-driver-registrar:v3.27.0\"" Feb 12 20:25:02.549307 env[1721]: time="2024-02-12T20:25:02.549211515Z" level=info msg="CreateContainer within sandbox \"9b07dd946f1d557971d2fb63d7bfb0db5963acd2c490c112c221445df7083c1c\" for container &ContainerMetadata{Name:nginx,Attempt:0,}" Feb 12 20:25:02.569707 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2303790307.mount: Deactivated successfully. Feb 12 20:25:02.580722 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3474053384.mount: Deactivated successfully. Feb 12 20:25:02.591930 env[1721]: time="2024-02-12T20:25:02.591868688Z" level=info msg="CreateContainer within sandbox \"9b07dd946f1d557971d2fb63d7bfb0db5963acd2c490c112c221445df7083c1c\" for &ContainerMetadata{Name:nginx,Attempt:0,} returns container id \"8bbd93e50bd6bb6cfd7c7f7c193ab775cf0ffcab9b28c5a03cb41a2b61d6708b\"" Feb 12 20:25:02.593392 env[1721]: time="2024-02-12T20:25:02.593340253Z" level=info msg="StartContainer for \"8bbd93e50bd6bb6cfd7c7f7c193ab775cf0ffcab9b28c5a03cb41a2b61d6708b\"" Feb 12 20:25:02.630952 systemd[1]: Started cri-containerd-8bbd93e50bd6bb6cfd7c7f7c193ab775cf0ffcab9b28c5a03cb41a2b61d6708b.scope. Feb 12 20:25:02.671012 kernel: kauditd_printk_skb: 225 callbacks suppressed Feb 12 20:25:02.671181 kernel: audit: type=1400 audit(1707769502.660:824): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.660000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.660000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.660000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.687562 kernel: audit: type=1400 audit(1707769502.660:825): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.687723 kernel: audit: type=1400 audit(1707769502.660:826): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.660000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.696360 kernel: audit: type=1400 audit(1707769502.660:827): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.660000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.660000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.707999 kernel: audit: type=1400 audit(1707769502.660:828): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.660000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.724375 kernel: audit: type=1400 audit(1707769502.660:829): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.724559 kernel: audit: type=1400 audit(1707769502.660:830): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.660000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.733346 kernel: audit: type=1400 audit(1707769502.660:831): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.660000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.662000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.750859 kernel: audit: type=1400 audit(1707769502.660:832): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.751051 kernel: audit: type=1400 audit(1707769502.662:833): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.751283 env[1721]: time="2024-02-12T20:25:02.751159691Z" level=info msg="StartContainer for \"8bbd93e50bd6bb6cfd7c7f7c193ab775cf0ffcab9b28c5a03cb41a2b61d6708b\" returns successfully" Feb 12 20:25:02.662000 audit: BPF prog-id=111 op=LOAD Feb 12 20:25:02.663000 audit[3518]: AVC avc: denied { bpf } for pid=3518 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.663000 audit[3518]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000145b38 a2=10 a3=0 items=0 ppid=3339 pid=3518 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:02.663000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3862626439336535306264366262366366643763376637633139336162 Feb 12 20:25:02.663000 audit[3518]: AVC avc: denied { perfmon } for pid=3518 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.663000 audit[3518]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=3339 pid=3518 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:02.663000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3862626439336535306264366262366366643763376637633139336162 Feb 12 20:25:02.663000 audit[3518]: AVC avc: denied { bpf } for pid=3518 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.663000 audit[3518]: AVC avc: denied { bpf } for pid=3518 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.663000 audit[3518]: AVC avc: denied { bpf } for pid=3518 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.663000 audit[3518]: AVC avc: denied { perfmon } for pid=3518 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.663000 audit[3518]: AVC avc: denied { perfmon } for pid=3518 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.663000 audit[3518]: AVC avc: denied { perfmon } for pid=3518 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.663000 audit[3518]: AVC avc: denied { perfmon } for pid=3518 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.663000 audit[3518]: AVC avc: denied { perfmon } for pid=3518 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.663000 audit[3518]: AVC avc: denied { bpf } for pid=3518 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.663000 audit[3518]: AVC avc: denied { bpf } for pid=3518 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.663000 audit: BPF prog-id=112 op=LOAD Feb 12 20:25:02.663000 audit[3518]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=3339 pid=3518 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:02.663000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3862626439336535306264366262366366643763376637633139336162 Feb 12 20:25:02.670000 audit[3518]: AVC avc: denied { bpf } for pid=3518 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.670000 audit[3518]: AVC avc: denied { bpf } for pid=3518 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.670000 audit[3518]: AVC avc: denied { perfmon } for pid=3518 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.670000 audit[3518]: AVC avc: denied { perfmon } for pid=3518 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.670000 audit[3518]: AVC avc: denied { perfmon } for pid=3518 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.670000 audit[3518]: AVC avc: denied { perfmon } for pid=3518 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.670000 audit[3518]: AVC avc: denied { perfmon } for pid=3518 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.670000 audit[3518]: AVC avc: denied { bpf } for pid=3518 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.670000 audit[3518]: AVC avc: denied { bpf } for pid=3518 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.670000 audit: BPF prog-id=113 op=LOAD Feb 12 20:25:02.670000 audit[3518]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=3339 pid=3518 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:02.670000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3862626439336535306264366262366366643763376637633139336162 Feb 12 20:25:02.670000 audit: BPF prog-id=113 op=UNLOAD Feb 12 20:25:02.670000 audit: BPF prog-id=112 op=UNLOAD Feb 12 20:25:02.670000 audit[3518]: AVC avc: denied { bpf } for pid=3518 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.670000 audit[3518]: AVC avc: denied { bpf } for pid=3518 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.670000 audit[3518]: AVC avc: denied { bpf } for pid=3518 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.670000 audit[3518]: AVC avc: denied { perfmon } for pid=3518 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.670000 audit[3518]: AVC avc: denied { perfmon } for pid=3518 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.670000 audit[3518]: AVC avc: denied { perfmon } for pid=3518 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.670000 audit[3518]: AVC avc: denied { perfmon } for pid=3518 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.670000 audit[3518]: AVC avc: denied { perfmon } for pid=3518 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.670000 audit[3518]: AVC avc: denied { bpf } for pid=3518 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.670000 audit[3518]: AVC avc: denied { bpf } for pid=3518 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:02.670000 audit: BPF prog-id=114 op=LOAD Feb 12 20:25:02.670000 audit[3518]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=3339 pid=3518 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:02.670000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3862626439336535306264366262366366643763376637633139336162 Feb 12 20:25:03.159804 kubelet[2196]: E0212 20:25:03.159721 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:04.123982 kubelet[2196]: E0212 20:25:04.123884 2196 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:04.160427 kubelet[2196]: E0212 20:25:04.160352 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:04.292000 audit[3570]: NETFILTER_CFG table=filter:76 family=2 entries=10 op=nft_register_rule pid=3570 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:04.292000 audit[3570]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=3548 a0=3 a1=ffffdd26ef70 a2=0 a3=ffffa2d076c0 items=0 ppid=2356 pid=3570 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:04.292000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:04.294000 audit[3570]: NETFILTER_CFG table=nat:77 family=2 entries=20 op=nft_register_rule pid=3570 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:04.294000 audit[3570]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5484 a0=3 a1=ffffdd26ef70 a2=0 a3=ffffa2d076c0 items=0 ppid=2356 pid=3570 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:04.294000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:04.636522 env[1721]: time="2024-02-12T20:25:04.636441803Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node-driver-registrar:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:25:04.640083 env[1721]: time="2024-02-12T20:25:04.640008788Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:9dbda087e98c46610fb8629cf530f1fe49eee4b17d2afe455664ca446ec39d43,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:25:04.642778 env[1721]: time="2024-02-12T20:25:04.642716181Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/node-driver-registrar:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:25:04.645185 env[1721]: time="2024-02-12T20:25:04.645130198Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node-driver-registrar@sha256:45a7aba6020a7cf7b866cb8a8d481b30c97e9b3407e1459aaa65a5b4cc06633a,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:25:04.646026 env[1721]: time="2024-02-12T20:25:04.645944515Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node-driver-registrar:v3.27.0\" returns image reference \"sha256:9dbda087e98c46610fb8629cf530f1fe49eee4b17d2afe455664ca446ec39d43\"" Feb 12 20:25:04.648259 env[1721]: time="2024-02-12T20:25:04.648211557Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/apiserver:v3.27.0\"" Feb 12 20:25:04.650822 env[1721]: time="2024-02-12T20:25:04.650740546Z" level=info msg="CreateContainer within sandbox \"49ce943c4e715c768575706c349343f4dc21d80fa7eb61e1ee60ce97bd9ba917\" for container &ContainerMetadata{Name:csi-node-driver-registrar,Attempt:0,}" Feb 12 20:25:04.673172 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1221938759.mount: Deactivated successfully. Feb 12 20:25:04.697783 env[1721]: time="2024-02-12T20:25:04.697695866Z" level=info msg="CreateContainer within sandbox \"49ce943c4e715c768575706c349343f4dc21d80fa7eb61e1ee60ce97bd9ba917\" for &ContainerMetadata{Name:csi-node-driver-registrar,Attempt:0,} returns container id \"be53098ef75e763854b59f40ccbbf4a4bc576ddecc162b0f40e570dd7bd672de\"" Feb 12 20:25:04.699597 env[1721]: time="2024-02-12T20:25:04.699539598Z" level=info msg="StartContainer for \"be53098ef75e763854b59f40ccbbf4a4bc576ddecc162b0f40e570dd7bd672de\"" Feb 12 20:25:04.742047 systemd[1]: Started cri-containerd-be53098ef75e763854b59f40ccbbf4a4bc576ddecc162b0f40e570dd7bd672de.scope. Feb 12 20:25:04.756704 systemd[1]: run-containerd-runc-k8s.io-be53098ef75e763854b59f40ccbbf4a4bc576ddecc162b0f40e570dd7bd672de-runc.CXnKM3.mount: Deactivated successfully. Feb 12 20:25:04.791000 audit[3580]: AVC avc: denied { perfmon } for pid=3580 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:04.791000 audit[3580]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001bd5a0 a2=3c a3=0 items=0 ppid=3233 pid=3580 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:04.791000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6265353330393865663735653736333835346235396634306363626266 Feb 12 20:25:04.792000 audit[3580]: AVC avc: denied { bpf } for pid=3580 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:04.792000 audit[3580]: AVC avc: denied { bpf } for pid=3580 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:04.792000 audit[3580]: AVC avc: denied { bpf } for pid=3580 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:04.792000 audit[3580]: AVC avc: denied { perfmon } for pid=3580 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:04.792000 audit[3580]: AVC avc: denied { perfmon } for pid=3580 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:04.792000 audit[3580]: AVC avc: denied { perfmon } for pid=3580 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:04.792000 audit[3580]: AVC avc: denied { perfmon } for pid=3580 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:04.792000 audit[3580]: AVC avc: denied { perfmon } for pid=3580 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:04.792000 audit[3580]: AVC avc: denied { bpf } for pid=3580 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:04.792000 audit[3580]: AVC avc: denied { bpf } for pid=3580 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:04.792000 audit: BPF prog-id=115 op=LOAD Feb 12 20:25:04.792000 audit[3580]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001bd8e0 a2=78 a3=0 items=0 ppid=3233 pid=3580 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:04.792000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6265353330393865663735653736333835346235396634306363626266 Feb 12 20:25:04.793000 audit[3580]: AVC avc: denied { bpf } for pid=3580 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:04.793000 audit[3580]: AVC avc: denied { bpf } for pid=3580 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:04.793000 audit[3580]: AVC avc: denied { perfmon } for pid=3580 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:04.793000 audit[3580]: AVC avc: denied { perfmon } for pid=3580 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:04.793000 audit[3580]: AVC avc: denied { perfmon } for pid=3580 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:04.793000 audit[3580]: AVC avc: denied { perfmon } for pid=3580 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:04.793000 audit[3580]: AVC avc: denied { perfmon } for pid=3580 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:04.793000 audit[3580]: AVC avc: denied { bpf } for pid=3580 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:04.793000 audit[3580]: AVC avc: denied { bpf } for pid=3580 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:04.793000 audit: BPF prog-id=116 op=LOAD Feb 12 20:25:04.793000 audit[3580]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=40001bd670 a2=78 a3=0 items=0 ppid=3233 pid=3580 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:04.793000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6265353330393865663735653736333835346235396634306363626266 Feb 12 20:25:04.794000 audit: BPF prog-id=116 op=UNLOAD Feb 12 20:25:04.795000 audit: BPF prog-id=115 op=UNLOAD Feb 12 20:25:04.795000 audit[3580]: AVC avc: denied { bpf } for pid=3580 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:04.795000 audit[3580]: AVC avc: denied { bpf } for pid=3580 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:04.795000 audit[3580]: AVC avc: denied { bpf } for pid=3580 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:04.795000 audit[3580]: AVC avc: denied { perfmon } for pid=3580 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:04.795000 audit[3580]: AVC avc: denied { perfmon } for pid=3580 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:04.795000 audit[3580]: AVC avc: denied { perfmon } for pid=3580 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:04.795000 audit[3580]: AVC avc: denied { perfmon } for pid=3580 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:04.795000 audit[3580]: AVC avc: denied { perfmon } for pid=3580 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:04.795000 audit[3580]: AVC avc: denied { bpf } for pid=3580 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:04.795000 audit[3580]: AVC avc: denied { bpf } for pid=3580 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:04.795000 audit: BPF prog-id=117 op=LOAD Feb 12 20:25:04.795000 audit[3580]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001bdb40 a2=78 a3=0 items=0 ppid=3233 pid=3580 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:04.795000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6265353330393865663735653736333835346235396634306363626266 Feb 12 20:25:04.826921 env[1721]: time="2024-02-12T20:25:04.826859018Z" level=info msg="StartContainer for \"be53098ef75e763854b59f40ccbbf4a4bc576ddecc162b0f40e570dd7bd672de\" returns successfully" Feb 12 20:25:05.161584 kubelet[2196]: E0212 20:25:05.161515 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:05.291573 kubelet[2196]: I0212 20:25:05.291519 2196 csi_plugin.go:99] kubernetes.io/csi: Trying to validate a new CSI Driver with name: csi.tigera.io endpoint: /var/lib/kubelet/plugins/csi.tigera.io/csi.sock versions: 1.0.0 Feb 12 20:25:05.291755 kubelet[2196]: I0212 20:25:05.291600 2196 csi_plugin.go:112] kubernetes.io/csi: Register new plugin with name: csi.tigera.io at endpoint: /var/lib/kubelet/plugins/csi.tigera.io/csi.sock Feb 12 20:25:05.510173 kubelet[2196]: I0212 20:25:05.510114 2196 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="calico-system/csi-node-driver-xhn8p" podStartSLOduration=30.944952312 podCreationTimestamp="2024-02-12 20:24:25 +0000 UTC" firstStartedPulling="2024-02-12 20:24:55.081605412 +0000 UTC m=+32.148528398" lastFinishedPulling="2024-02-12 20:25:04.646713783 +0000 UTC m=+41.713636769" observedRunningTime="2024-02-12 20:25:05.508215403 +0000 UTC m=+42.575138389" watchObservedRunningTime="2024-02-12 20:25:05.510060683 +0000 UTC m=+42.576983693" Feb 12 20:25:05.510438 kubelet[2196]: I0212 20:25:05.510336 2196 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="default/nginx-deployment-6d5f899847-k2jpn" podStartSLOduration=16.950190435 podCreationTimestamp="2024-02-12 20:24:43 +0000 UTC" firstStartedPulling="2024-02-12 20:24:56.985921882 +0000 UTC m=+34.052844868" lastFinishedPulling="2024-02-12 20:25:02.546031265 +0000 UTC m=+39.612954263" observedRunningTime="2024-02-12 20:25:03.516756927 +0000 UTC m=+40.583679937" watchObservedRunningTime="2024-02-12 20:25:05.51029983 +0000 UTC m=+42.577222816" Feb 12 20:25:05.858804 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount110949626.mount: Deactivated successfully. Feb 12 20:25:06.163114 kubelet[2196]: E0212 20:25:06.162161 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:07.162881 kubelet[2196]: E0212 20:25:07.162835 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:07.660396 env[1721]: time="2024-02-12T20:25:07.660336198Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/apiserver:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:25:07.663288 env[1721]: time="2024-02-12T20:25:07.663237559Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:24494ef6c7de0e2dcf21ad9fb6c94801c53f120443e256a5e1b54eccd57058a9,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:25:07.665612 env[1721]: time="2024-02-12T20:25:07.665552326Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/apiserver:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:25:07.668765 env[1721]: time="2024-02-12T20:25:07.668714134Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/apiserver@sha256:5ff0bdc8d0b2e9d7819703b18867f60f9153ed01da81e2bbfa22002abec9dc26,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:25:07.669989 env[1721]: time="2024-02-12T20:25:07.669907866Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/apiserver:v3.27.0\" returns image reference \"sha256:24494ef6c7de0e2dcf21ad9fb6c94801c53f120443e256a5e1b54eccd57058a9\"" Feb 12 20:25:07.674661 env[1721]: time="2024-02-12T20:25:07.674272045Z" level=info msg="CreateContainer within sandbox \"c3adc137eb0fda751b03fc3232ec978b4fb355eaa135a6fe6e7a079bfe3a6498\" for container &ContainerMetadata{Name:calico-apiserver,Attempt:0,}" Feb 12 20:25:07.694032 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount509913361.mount: Deactivated successfully. Feb 12 20:25:07.702200 env[1721]: time="2024-02-12T20:25:07.702131212Z" level=info msg="CreateContainer within sandbox \"c3adc137eb0fda751b03fc3232ec978b4fb355eaa135a6fe6e7a079bfe3a6498\" for &ContainerMetadata{Name:calico-apiserver,Attempt:0,} returns container id \"31e085dde0664f16de426c5880cc765a0f6d5cd70cb0cc42a3b7a475d3e28a90\"" Feb 12 20:25:07.703440 env[1721]: time="2024-02-12T20:25:07.703383143Z" level=info msg="StartContainer for \"31e085dde0664f16de426c5880cc765a0f6d5cd70cb0cc42a3b7a475d3e28a90\"" Feb 12 20:25:07.747884 systemd[1]: run-containerd-runc-k8s.io-31e085dde0664f16de426c5880cc765a0f6d5cd70cb0cc42a3b7a475d3e28a90-runc.Gz8VAs.mount: Deactivated successfully. Feb 12 20:25:07.752990 systemd[1]: Started cri-containerd-31e085dde0664f16de426c5880cc765a0f6d5cd70cb0cc42a3b7a475d3e28a90.scope. Feb 12 20:25:07.790739 kernel: kauditd_printk_skb: 96 callbacks suppressed Feb 12 20:25:07.790867 kernel: audit: type=1400 audit(1707769507.787:850): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.787000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.787000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.805705 kernel: audit: type=1400 audit(1707769507.787:851): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.787000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.813532 kernel: audit: type=1400 audit(1707769507.787:852): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.813647 kernel: audit: type=1400 audit(1707769507.787:853): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.787000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.821207 kernel: audit: type=1400 audit(1707769507.787:854): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.787000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.829364 kernel: audit: type=1400 audit(1707769507.787:855): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.787000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.787000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.844563 kernel: audit: type=1400 audit(1707769507.787:856): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.844673 kernel: audit: type=1400 audit(1707769507.787:857): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.787000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.787000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.859746 kernel: audit: type=1400 audit(1707769507.787:858): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.859853 kernel: audit: type=1400 audit(1707769507.789:859): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.789000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.789000 audit: BPF prog-id=118 op=LOAD Feb 12 20:25:07.797000 audit[3620]: AVC avc: denied { bpf } for pid=3620 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.797000 audit[3620]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000195b38 a2=10 a3=0 items=0 ppid=3461 pid=3620 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:07.797000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3331653038356464653036363466313664653432366335383830636337 Feb 12 20:25:07.797000 audit[3620]: AVC avc: denied { perfmon } for pid=3620 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.797000 audit[3620]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=3461 pid=3620 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:07.797000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3331653038356464653036363466313664653432366335383830636337 Feb 12 20:25:07.797000 audit[3620]: AVC avc: denied { bpf } for pid=3620 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.797000 audit[3620]: AVC avc: denied { bpf } for pid=3620 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.797000 audit[3620]: AVC avc: denied { bpf } for pid=3620 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.797000 audit[3620]: AVC avc: denied { perfmon } for pid=3620 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.797000 audit[3620]: AVC avc: denied { perfmon } for pid=3620 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.797000 audit[3620]: AVC avc: denied { perfmon } for pid=3620 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.797000 audit[3620]: AVC avc: denied { perfmon } for pid=3620 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.797000 audit[3620]: AVC avc: denied { perfmon } for pid=3620 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.797000 audit[3620]: AVC avc: denied { bpf } for pid=3620 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.797000 audit[3620]: AVC avc: denied { bpf } for pid=3620 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.797000 audit: BPF prog-id=119 op=LOAD Feb 12 20:25:07.797000 audit[3620]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=3461 pid=3620 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:07.797000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3331653038356464653036363466313664653432366335383830636337 Feb 12 20:25:07.805000 audit[3620]: AVC avc: denied { bpf } for pid=3620 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.805000 audit[3620]: AVC avc: denied { bpf } for pid=3620 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.805000 audit[3620]: AVC avc: denied { perfmon } for pid=3620 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.805000 audit[3620]: AVC avc: denied { perfmon } for pid=3620 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.805000 audit[3620]: AVC avc: denied { perfmon } for pid=3620 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.805000 audit[3620]: AVC avc: denied { perfmon } for pid=3620 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.805000 audit[3620]: AVC avc: denied { perfmon } for pid=3620 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.805000 audit[3620]: AVC avc: denied { bpf } for pid=3620 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.805000 audit[3620]: AVC avc: denied { bpf } for pid=3620 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.805000 audit: BPF prog-id=120 op=LOAD Feb 12 20:25:07.805000 audit[3620]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=3461 pid=3620 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:07.805000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3331653038356464653036363466313664653432366335383830636337 Feb 12 20:25:07.812000 audit: BPF prog-id=120 op=UNLOAD Feb 12 20:25:07.812000 audit: BPF prog-id=119 op=UNLOAD Feb 12 20:25:07.812000 audit[3620]: AVC avc: denied { bpf } for pid=3620 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.812000 audit[3620]: AVC avc: denied { bpf } for pid=3620 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.812000 audit[3620]: AVC avc: denied { bpf } for pid=3620 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.812000 audit[3620]: AVC avc: denied { perfmon } for pid=3620 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.812000 audit[3620]: AVC avc: denied { perfmon } for pid=3620 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.812000 audit[3620]: AVC avc: denied { perfmon } for pid=3620 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.812000 audit[3620]: AVC avc: denied { perfmon } for pid=3620 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.812000 audit[3620]: AVC avc: denied { perfmon } for pid=3620 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.812000 audit[3620]: AVC avc: denied { bpf } for pid=3620 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.812000 audit[3620]: AVC avc: denied { bpf } for pid=3620 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:07.812000 audit: BPF prog-id=121 op=LOAD Feb 12 20:25:07.812000 audit[3620]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=3461 pid=3620 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:07.812000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3331653038356464653036363466313664653432366335383830636337 Feb 12 20:25:07.896766 env[1721]: time="2024-02-12T20:25:07.896700215Z" level=info msg="StartContainer for \"31e085dde0664f16de426c5880cc765a0f6d5cd70cb0cc42a3b7a475d3e28a90\" returns successfully" Feb 12 20:25:08.163702 kubelet[2196]: E0212 20:25:08.163646 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:08.555000 audit[3650]: NETFILTER_CFG table=filter:78 family=2 entries=10 op=nft_register_rule pid=3650 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:08.555000 audit[3650]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=3548 a0=3 a1=ffffcefe02d0 a2=0 a3=ffffb71af6c0 items=0 ppid=2356 pid=3650 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:08.555000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:08.557000 audit[3650]: NETFILTER_CFG table=nat:79 family=2 entries=20 op=nft_register_rule pid=3650 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:08.557000 audit[3650]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5484 a0=3 a1=ffffcefe02d0 a2=0 a3=ffffb71af6c0 items=0 ppid=2356 pid=3650 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:08.557000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:09.164698 kubelet[2196]: E0212 20:25:09.164642 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:09.264000 audit[3654]: NETFILTER_CFG table=filter:80 family=2 entries=22 op=nft_register_rule pid=3654 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:09.264000 audit[3654]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=11996 a0=3 a1=ffffd7e886e0 a2=0 a3=ffffacc406c0 items=0 ppid=2356 pid=3654 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:09.264000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:09.266000 audit[3654]: NETFILTER_CFG table=nat:81 family=2 entries=20 op=nft_register_rule pid=3654 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:09.266000 audit[3654]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5484 a0=3 a1=ffffd7e886e0 a2=0 a3=ffffacc406c0 items=0 ppid=2356 pid=3654 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:09.266000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:09.421787 kubelet[2196]: I0212 20:25:09.421623 2196 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="calico-apiserver/calico-apiserver-ff7f5f55f-qf9bv" podStartSLOduration=4.024961751 podCreationTimestamp="2024-02-12 20:24:57 +0000 UTC" firstStartedPulling="2024-02-12 20:24:59.273773395 +0000 UTC m=+36.340696381" lastFinishedPulling="2024-02-12 20:25:07.670358848 +0000 UTC m=+44.737281822" observedRunningTime="2024-02-12 20:25:08.523981679 +0000 UTC m=+45.590904689" watchObservedRunningTime="2024-02-12 20:25:09.421547192 +0000 UTC m=+46.488470178" Feb 12 20:25:09.423512 kubelet[2196]: I0212 20:25:09.423401 2196 topology_manager.go:215] "Topology Admit Handler" podUID="b570d5e3-5072-411b-9e13-2afa0afd03c4" podNamespace="default" podName="nfs-server-provisioner-0" Feb 12 20:25:09.435186 systemd[1]: Created slice kubepods-besteffort-podb570d5e3_5072_411b_9e13_2afa0afd03c4.slice. Feb 12 20:25:09.518052 kubelet[2196]: I0212 20:25:09.517941 2196 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"data\" (UniqueName: \"kubernetes.io/empty-dir/b570d5e3-5072-411b-9e13-2afa0afd03c4-data\") pod \"nfs-server-provisioner-0\" (UID: \"b570d5e3-5072-411b-9e13-2afa0afd03c4\") " pod="default/nfs-server-provisioner-0" Feb 12 20:25:09.518272 kubelet[2196]: I0212 20:25:09.518089 2196 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-zj2vd\" (UniqueName: \"kubernetes.io/projected/b570d5e3-5072-411b-9e13-2afa0afd03c4-kube-api-access-zj2vd\") pod \"nfs-server-provisioner-0\" (UID: \"b570d5e3-5072-411b-9e13-2afa0afd03c4\") " pod="default/nfs-server-provisioner-0" Feb 12 20:25:09.756809 env[1721]: time="2024-02-12T20:25:09.756738715Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nfs-server-provisioner-0,Uid:b570d5e3-5072-411b-9e13-2afa0afd03c4,Namespace:default,Attempt:0,}" Feb 12 20:25:10.057078 systemd-networkd[1538]: cali60e51b789ff: Link UP Feb 12 20:25:10.066801 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 12 20:25:10.066994 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali60e51b789ff: link becomes ready Feb 12 20:25:10.071482 (udev-worker)[3674]: Network interface NamePolicy= disabled on kernel command line. Feb 12 20:25:10.071512 systemd-networkd[1538]: cali60e51b789ff: Gained carrier Feb 12 20:25:10.113529 env[1721]: 2024-02-12 20:25:09.860 [INFO][3656] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.16.56-k8s-nfs--server--provisioner--0-eth0 nfs-server-provisioner- default b570d5e3-5072-411b-9e13-2afa0afd03c4 1101 0 2024-02-12 20:25:09 +0000 UTC <nil> <nil> map[app:nfs-server-provisioner apps.kubernetes.io/pod-index:0 chart:nfs-server-provisioner-1.8.0 controller-revision-hash:nfs-server-provisioner-d5cbb7f57 heritage:Helm projectcalico.org/namespace:default projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:nfs-server-provisioner release:nfs-server-provisioner statefulset.kubernetes.io/pod-name:nfs-server-provisioner-0] map[] [] [] []} {k8s 172.31.16.56 nfs-server-provisioner-0 eth0 nfs-server-provisioner [] [] [kns.default ksa.default.nfs-server-provisioner] cali60e51b789ff [{nfs TCP 2049 0 } {nfs-udp UDP 2049 0 } {nlockmgr TCP 32803 0 } {nlockmgr-udp UDP 32803 0 } {mountd TCP 20048 0 } {mountd-udp UDP 20048 0 } {rquotad TCP 875 0 } {rquotad-udp UDP 875 0 } {rpcbind TCP 111 0 } {rpcbind-udp UDP 111 0 } {statd TCP 662 0 } {statd-udp UDP 662 0 }] []}} ContainerID="ad53124fb7364da47d4e056ca04d7c344c6690d2ef3dcccba0a7d024587fd6de" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.16.56-k8s-nfs--server--provisioner--0-" Feb 12 20:25:10.113529 env[1721]: 2024-02-12 20:25:09.861 [INFO][3656] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="ad53124fb7364da47d4e056ca04d7c344c6690d2ef3dcccba0a7d024587fd6de" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.16.56-k8s-nfs--server--provisioner--0-eth0" Feb 12 20:25:10.113529 env[1721]: 2024-02-12 20:25:09.931 [INFO][3668] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="ad53124fb7364da47d4e056ca04d7c344c6690d2ef3dcccba0a7d024587fd6de" HandleID="k8s-pod-network.ad53124fb7364da47d4e056ca04d7c344c6690d2ef3dcccba0a7d024587fd6de" Workload="172.31.16.56-k8s-nfs--server--provisioner--0-eth0" Feb 12 20:25:10.113529 env[1721]: 2024-02-12 20:25:09.964 [INFO][3668] ipam_plugin.go 268: Auto assigning IP ContainerID="ad53124fb7364da47d4e056ca04d7c344c6690d2ef3dcccba0a7d024587fd6de" HandleID="k8s-pod-network.ad53124fb7364da47d4e056ca04d7c344c6690d2ef3dcccba0a7d024587fd6de" Workload="172.31.16.56-k8s-nfs--server--provisioner--0-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x4000294460), Attrs:map[string]string{"namespace":"default", "node":"172.31.16.56", "pod":"nfs-server-provisioner-0", "timestamp":"2024-02-12 20:25:09.931572713 +0000 UTC"}, Hostname:"172.31.16.56", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 12 20:25:10.113529 env[1721]: 2024-02-12 20:25:09.964 [INFO][3668] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 12 20:25:10.113529 env[1721]: 2024-02-12 20:25:09.965 [INFO][3668] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 12 20:25:10.113529 env[1721]: 2024-02-12 20:25:09.965 [INFO][3668] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.16.56' Feb 12 20:25:10.113529 env[1721]: 2024-02-12 20:25:09.969 [INFO][3668] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.ad53124fb7364da47d4e056ca04d7c344c6690d2ef3dcccba0a7d024587fd6de" host="172.31.16.56" Feb 12 20:25:10.113529 env[1721]: 2024-02-12 20:25:09.978 [INFO][3668] ipam.go 372: Looking up existing affinities for host host="172.31.16.56" Feb 12 20:25:10.113529 env[1721]: 2024-02-12 20:25:09.991 [INFO][3668] ipam.go 489: Trying affinity for 192.168.44.64/26 host="172.31.16.56" Feb 12 20:25:10.113529 env[1721]: 2024-02-12 20:25:09.995 [INFO][3668] ipam.go 155: Attempting to load block cidr=192.168.44.64/26 host="172.31.16.56" Feb 12 20:25:10.113529 env[1721]: 2024-02-12 20:25:10.002 [INFO][3668] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.44.64/26 host="172.31.16.56" Feb 12 20:25:10.113529 env[1721]: 2024-02-12 20:25:10.002 [INFO][3668] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.44.64/26 handle="k8s-pod-network.ad53124fb7364da47d4e056ca04d7c344c6690d2ef3dcccba0a7d024587fd6de" host="172.31.16.56" Feb 12 20:25:10.113529 env[1721]: 2024-02-12 20:25:10.006 [INFO][3668] ipam.go 1682: Creating new handle: k8s-pod-network.ad53124fb7364da47d4e056ca04d7c344c6690d2ef3dcccba0a7d024587fd6de Feb 12 20:25:10.113529 env[1721]: 2024-02-12 20:25:10.017 [INFO][3668] ipam.go 1203: Writing block in order to claim IPs block=192.168.44.64/26 handle="k8s-pod-network.ad53124fb7364da47d4e056ca04d7c344c6690d2ef3dcccba0a7d024587fd6de" host="172.31.16.56" Feb 12 20:25:10.113529 env[1721]: 2024-02-12 20:25:10.041 [INFO][3668] ipam.go 1216: Successfully claimed IPs: [192.168.44.68/26] block=192.168.44.64/26 handle="k8s-pod-network.ad53124fb7364da47d4e056ca04d7c344c6690d2ef3dcccba0a7d024587fd6de" host="172.31.16.56" Feb 12 20:25:10.113529 env[1721]: 2024-02-12 20:25:10.041 [INFO][3668] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.44.68/26] handle="k8s-pod-network.ad53124fb7364da47d4e056ca04d7c344c6690d2ef3dcccba0a7d024587fd6de" host="172.31.16.56" Feb 12 20:25:10.113529 env[1721]: 2024-02-12 20:25:10.041 [INFO][3668] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 12 20:25:10.113529 env[1721]: 2024-02-12 20:25:10.042 [INFO][3668] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.44.68/26] IPv6=[] ContainerID="ad53124fb7364da47d4e056ca04d7c344c6690d2ef3dcccba0a7d024587fd6de" HandleID="k8s-pod-network.ad53124fb7364da47d4e056ca04d7c344c6690d2ef3dcccba0a7d024587fd6de" Workload="172.31.16.56-k8s-nfs--server--provisioner--0-eth0" Feb 12 20:25:10.114839 env[1721]: 2024-02-12 20:25:10.045 [INFO][3656] k8s.go 385: Populated endpoint ContainerID="ad53124fb7364da47d4e056ca04d7c344c6690d2ef3dcccba0a7d024587fd6de" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.16.56-k8s-nfs--server--provisioner--0-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.16.56-k8s-nfs--server--provisioner--0-eth0", GenerateName:"nfs-server-provisioner-", Namespace:"default", SelfLink:"", UID:"b570d5e3-5072-411b-9e13-2afa0afd03c4", ResourceVersion:"1101", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 25, 9, 0, time.Local), DeletionTimestamp:<nil>, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nfs-server-provisioner", "apps.kubernetes.io/pod-index":"0", "chart":"nfs-server-provisioner-1.8.0", "controller-revision-hash":"nfs-server-provisioner-d5cbb7f57", "heritage":"Helm", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"nfs-server-provisioner", "release":"nfs-server-provisioner", "statefulset.kubernetes.io/pod-name":"nfs-server-provisioner-0"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.16.56", ContainerID:"", Pod:"nfs-server-provisioner-0", Endpoint:"eth0", ServiceAccountName:"nfs-server-provisioner", IPNetworks:[]string{"192.168.44.68/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.nfs-server-provisioner"}, InterfaceName:"cali60e51b789ff", MAC:"", Ports:[]v3.WorkloadEndpointPort{v3.WorkloadEndpointPort{Name:"nfs", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nfs-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x296, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x296, HostPort:0x0, HostIP:""}}, AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:25:10.114839 env[1721]: 2024-02-12 20:25:10.045 [INFO][3656] k8s.go 386: Calico CNI using IPs: [192.168.44.68/32] ContainerID="ad53124fb7364da47d4e056ca04d7c344c6690d2ef3dcccba0a7d024587fd6de" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.16.56-k8s-nfs--server--provisioner--0-eth0" Feb 12 20:25:10.114839 env[1721]: 2024-02-12 20:25:10.045 [INFO][3656] dataplane_linux.go 68: Setting the host side veth name to cali60e51b789ff ContainerID="ad53124fb7364da47d4e056ca04d7c344c6690d2ef3dcccba0a7d024587fd6de" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.16.56-k8s-nfs--server--provisioner--0-eth0" Feb 12 20:25:10.114839 env[1721]: 2024-02-12 20:25:10.077 [INFO][3656] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="ad53124fb7364da47d4e056ca04d7c344c6690d2ef3dcccba0a7d024587fd6de" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.16.56-k8s-nfs--server--provisioner--0-eth0" Feb 12 20:25:10.115272 env[1721]: 2024-02-12 20:25:10.078 [INFO][3656] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="ad53124fb7364da47d4e056ca04d7c344c6690d2ef3dcccba0a7d024587fd6de" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.16.56-k8s-nfs--server--provisioner--0-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.16.56-k8s-nfs--server--provisioner--0-eth0", GenerateName:"nfs-server-provisioner-", Namespace:"default", SelfLink:"", UID:"b570d5e3-5072-411b-9e13-2afa0afd03c4", ResourceVersion:"1101", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 25, 9, 0, time.Local), DeletionTimestamp:<nil>, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nfs-server-provisioner", "apps.kubernetes.io/pod-index":"0", "chart":"nfs-server-provisioner-1.8.0", "controller-revision-hash":"nfs-server-provisioner-d5cbb7f57", "heritage":"Helm", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"nfs-server-provisioner", "release":"nfs-server-provisioner", "statefulset.kubernetes.io/pod-name":"nfs-server-provisioner-0"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.16.56", ContainerID:"ad53124fb7364da47d4e056ca04d7c344c6690d2ef3dcccba0a7d024587fd6de", Pod:"nfs-server-provisioner-0", Endpoint:"eth0", ServiceAccountName:"nfs-server-provisioner", IPNetworks:[]string{"192.168.44.68/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.nfs-server-provisioner"}, InterfaceName:"cali60e51b789ff", MAC:"76:d1:2f:0b:65:bc", Ports:[]v3.WorkloadEndpointPort{v3.WorkloadEndpointPort{Name:"nfs", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nfs-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x296, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x296, HostPort:0x0, HostIP:""}}, AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:25:10.115272 env[1721]: 2024-02-12 20:25:10.099 [INFO][3656] k8s.go 491: Wrote updated endpoint to datastore ContainerID="ad53124fb7364da47d4e056ca04d7c344c6690d2ef3dcccba0a7d024587fd6de" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.16.56-k8s-nfs--server--provisioner--0-eth0" Feb 12 20:25:10.152398 env[1721]: time="2024-02-12T20:25:10.152241338Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 12 20:25:10.152575 env[1721]: time="2024-02-12T20:25:10.152425141Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 12 20:25:10.152575 env[1721]: time="2024-02-12T20:25:10.152498197Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 12 20:25:10.153121 env[1721]: time="2024-02-12T20:25:10.152991995Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/ad53124fb7364da47d4e056ca04d7c344c6690d2ef3dcccba0a7d024587fd6de pid=3698 runtime=io.containerd.runc.v2 Feb 12 20:25:10.166998 kubelet[2196]: E0212 20:25:10.165615 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:10.197632 systemd[1]: Started cri-containerd-ad53124fb7364da47d4e056ca04d7c344c6690d2ef3dcccba0a7d024587fd6de.scope. Feb 12 20:25:10.207000 audit[3631]: AVC avc: denied { watch } for pid=3631 comm="apiserver" path="/calico-apiserver-certs/..2024_02_12_20_24_58.3441937368/tls.crt" dev="tmpfs" ino=3 scontext=system_u:system_r:svirt_lxc_net_t:s0:c593,c976 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c593,c976 tclass=file permissive=0 Feb 12 20:25:10.207000 audit[3631]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=8 a1=4000a8b5e0 a2=fc6 a3=0 items=0 ppid=3461 pid=3631 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="apiserver" exe="/code/apiserver" subj=system_u:system_r:svirt_lxc_net_t:s0:c593,c976 key=(null) Feb 12 20:25:10.207000 audit: PROCTITLE proctitle=2E2F617069736572766572002D2D7365637572652D706F72743D35343433002D2D746C732D707269766174652D6B65792D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C732E6B6579002D2D746C732D636572742D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C Feb 12 20:25:10.229000 audit[3719]: NETFILTER_CFG table=filter:82 family=2 entries=42 op=nft_register_chain pid=3719 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 12 20:25:10.229000 audit[3719]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=20688 a0=3 a1=ffffca48e6d0 a2=0 a3=ffff9e948fa8 items=0 ppid=2849 pid=3719 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:10.229000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 12 20:25:10.250000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.250000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.250000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.250000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.250000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.250000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.250000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.250000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.250000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.250000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.250000 audit: BPF prog-id=122 op=LOAD Feb 12 20:25:10.252000 audit[3709]: AVC avc: denied { bpf } for pid=3709 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.252000 audit[3709]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000145b38 a2=10 a3=0 items=0 ppid=3698 pid=3709 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:10.252000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6164353331323466623733363464613437643465303536636130346437 Feb 12 20:25:10.252000 audit[3709]: AVC avc: denied { perfmon } for pid=3709 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.252000 audit[3709]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=3698 pid=3709 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:10.252000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6164353331323466623733363464613437643465303536636130346437 Feb 12 20:25:10.252000 audit[3709]: AVC avc: denied { bpf } for pid=3709 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.252000 audit[3709]: AVC avc: denied { bpf } for pid=3709 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.252000 audit[3709]: AVC avc: denied { bpf } for pid=3709 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.252000 audit[3709]: AVC avc: denied { perfmon } for pid=3709 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.252000 audit[3709]: AVC avc: denied { perfmon } for pid=3709 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.252000 audit[3709]: AVC avc: denied { perfmon } for pid=3709 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.252000 audit[3709]: AVC avc: denied { perfmon } for pid=3709 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.252000 audit[3709]: AVC avc: denied { perfmon } for pid=3709 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.252000 audit[3709]: AVC avc: denied { bpf } for pid=3709 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.252000 audit[3709]: AVC avc: denied { bpf } for pid=3709 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.252000 audit: BPF prog-id=123 op=LOAD Feb 12 20:25:10.252000 audit[3709]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=3698 pid=3709 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:10.252000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6164353331323466623733363464613437643465303536636130346437 Feb 12 20:25:10.253000 audit[3709]: AVC avc: denied { bpf } for pid=3709 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.253000 audit[3709]: AVC avc: denied { bpf } for pid=3709 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.253000 audit[3709]: AVC avc: denied { perfmon } for pid=3709 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.253000 audit[3709]: AVC avc: denied { perfmon } for pid=3709 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.253000 audit[3709]: AVC avc: denied { perfmon } for pid=3709 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.253000 audit[3709]: AVC avc: denied { perfmon } for pid=3709 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.253000 audit[3709]: AVC avc: denied { perfmon } for pid=3709 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.253000 audit[3709]: AVC avc: denied { bpf } for pid=3709 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.253000 audit[3709]: AVC avc: denied { bpf } for pid=3709 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.253000 audit: BPF prog-id=124 op=LOAD Feb 12 20:25:10.253000 audit[3709]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=3698 pid=3709 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:10.253000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6164353331323466623733363464613437643465303536636130346437 Feb 12 20:25:10.253000 audit: BPF prog-id=124 op=UNLOAD Feb 12 20:25:10.253000 audit: BPF prog-id=123 op=UNLOAD Feb 12 20:25:10.253000 audit[3709]: AVC avc: denied { bpf } for pid=3709 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.253000 audit[3709]: AVC avc: denied { bpf } for pid=3709 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.253000 audit[3709]: AVC avc: denied { bpf } for pid=3709 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.253000 audit[3709]: AVC avc: denied { perfmon } for pid=3709 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.253000 audit[3709]: AVC avc: denied { perfmon } for pid=3709 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.253000 audit[3709]: AVC avc: denied { perfmon } for pid=3709 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.253000 audit[3709]: AVC avc: denied { perfmon } for pid=3709 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.253000 audit[3709]: AVC avc: denied { perfmon } for pid=3709 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.253000 audit[3709]: AVC avc: denied { bpf } for pid=3709 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.253000 audit[3709]: AVC avc: denied { bpf } for pid=3709 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:10.253000 audit: BPF prog-id=125 op=LOAD Feb 12 20:25:10.253000 audit[3709]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=3698 pid=3709 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:10.253000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6164353331323466623733363464613437643465303536636130346437 Feb 12 20:25:10.305430 env[1721]: time="2024-02-12T20:25:10.305305691Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nfs-server-provisioner-0,Uid:b570d5e3-5072-411b-9e13-2afa0afd03c4,Namespace:default,Attempt:0,} returns sandbox id \"ad53124fb7364da47d4e056ca04d7c344c6690d2ef3dcccba0a7d024587fd6de\"" Feb 12 20:25:10.309306 env[1721]: time="2024-02-12T20:25:10.309222694Z" level=info msg="PullImage \"registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8\"" Feb 12 20:25:10.314000 audit[3734]: NETFILTER_CFG table=filter:83 family=2 entries=34 op=nft_register_rule pid=3734 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:10.314000 audit[3734]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=11996 a0=3 a1=ffffe4ccf980 a2=0 a3=ffffbf5e86c0 items=0 ppid=2356 pid=3734 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:10.314000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:10.318000 audit[3734]: NETFILTER_CFG table=nat:84 family=2 entries=20 op=nft_register_rule pid=3734 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:10.318000 audit[3734]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5484 a0=3 a1=ffffe4ccf980 a2=0 a3=ffffbf5e86c0 items=0 ppid=2356 pid=3734 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:10.318000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:10.643834 systemd[1]: run-containerd-runc-k8s.io-ad53124fb7364da47d4e056ca04d7c344c6690d2ef3dcccba0a7d024587fd6de-runc.fDXQH0.mount: Deactivated successfully. Feb 12 20:25:11.166045 kubelet[2196]: E0212 20:25:11.165945 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:12.096154 systemd-networkd[1538]: cali60e51b789ff: Gained IPv6LL Feb 12 20:25:12.166720 kubelet[2196]: E0212 20:25:12.166611 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:13.167831 kubelet[2196]: E0212 20:25:13.167719 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:14.068127 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1511504999.mount: Deactivated successfully. Feb 12 20:25:14.168695 kubelet[2196]: E0212 20:25:14.168618 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:15.169540 kubelet[2196]: E0212 20:25:15.169473 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:16.170444 kubelet[2196]: E0212 20:25:16.170377 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:17.171526 kubelet[2196]: E0212 20:25:17.171472 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:17.754361 env[1721]: time="2024-02-12T20:25:17.754285309Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:25:17.758595 env[1721]: time="2024-02-12T20:25:17.758518141Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:5a42a519e0a8cf95c3c5f18f767c58c8c8b072aaea0a26e5e47a6f206c7df685,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:25:17.760907 env[1721]: time="2024-02-12T20:25:17.760854163Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:25:17.764124 env[1721]: time="2024-02-12T20:25:17.764059930Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/sig-storage/nfs-provisioner@sha256:c825f3d5e28bde099bd7a3daace28772d412c9157ad47fa752a9ad0baafc118d,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:25:17.765924 env[1721]: time="2024-02-12T20:25:17.765876065Z" level=info msg="PullImage \"registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8\" returns image reference \"sha256:5a42a519e0a8cf95c3c5f18f767c58c8c8b072aaea0a26e5e47a6f206c7df685\"" Feb 12 20:25:17.771356 env[1721]: time="2024-02-12T20:25:17.771287811Z" level=info msg="CreateContainer within sandbox \"ad53124fb7364da47d4e056ca04d7c344c6690d2ef3dcccba0a7d024587fd6de\" for container &ContainerMetadata{Name:nfs-server-provisioner,Attempt:0,}" Feb 12 20:25:17.791711 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2175325421.mount: Deactivated successfully. Feb 12 20:25:17.806019 env[1721]: time="2024-02-12T20:25:17.805862909Z" level=info msg="CreateContainer within sandbox \"ad53124fb7364da47d4e056ca04d7c344c6690d2ef3dcccba0a7d024587fd6de\" for &ContainerMetadata{Name:nfs-server-provisioner,Attempt:0,} returns container id \"81e664794dbcd4d5df086b70077bbf5ea0d91feb25a610a148446913888fdd36\"" Feb 12 20:25:17.807103 env[1721]: time="2024-02-12T20:25:17.807039290Z" level=info msg="StartContainer for \"81e664794dbcd4d5df086b70077bbf5ea0d91feb25a610a148446913888fdd36\"" Feb 12 20:25:17.846552 systemd[1]: Started cri-containerd-81e664794dbcd4d5df086b70077bbf5ea0d91feb25a610a148446913888fdd36.scope. Feb 12 20:25:17.890037 kernel: kauditd_printk_skb: 128 callbacks suppressed Feb 12 20:25:17.890197 kernel: audit: type=1400 audit(1707769517.885:894): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.885000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.885000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.904999 kernel: audit: type=1400 audit(1707769517.885:895): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.885000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.885000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.923653 kernel: audit: type=1400 audit(1707769517.885:896): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.923814 kernel: audit: type=1400 audit(1707769517.885:897): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.885000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.885000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.941761 kernel: audit: type=1400 audit(1707769517.885:898): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.941919 kernel: audit: type=1400 audit(1707769517.885:899): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.885000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.950488 kernel: audit: type=1400 audit(1707769517.885:900): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.885000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.956322 env[1721]: time="2024-02-12T20:25:17.956198022Z" level=info msg="StartContainer for \"81e664794dbcd4d5df086b70077bbf5ea0d91feb25a610a148446913888fdd36\" returns successfully" Feb 12 20:25:17.885000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.972015 kernel: audit: type=1400 audit(1707769517.885:901): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.972210 kernel: audit: type=1400 audit(1707769517.885:902): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.887000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.979932 kernel: audit: type=1400 audit(1707769517.887:903): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.887000 audit: BPF prog-id=126 op=LOAD Feb 12 20:25:17.895000 audit[3752]: AVC avc: denied { bpf } for pid=3752 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.895000 audit[3752]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000145b38 a2=10 a3=0 items=0 ppid=3698 pid=3752 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:17.895000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3831653636343739346462636434643564663038366237303037376262 Feb 12 20:25:17.896000 audit[3752]: AVC avc: denied { perfmon } for pid=3752 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.896000 audit[3752]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=3698 pid=3752 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:17.896000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3831653636343739346462636434643564663038366237303037376262 Feb 12 20:25:17.896000 audit[3752]: AVC avc: denied { bpf } for pid=3752 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.896000 audit[3752]: AVC avc: denied { bpf } for pid=3752 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.896000 audit[3752]: AVC avc: denied { bpf } for pid=3752 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.896000 audit[3752]: AVC avc: denied { perfmon } for pid=3752 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.896000 audit[3752]: AVC avc: denied { perfmon } for pid=3752 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.896000 audit[3752]: AVC avc: denied { perfmon } for pid=3752 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.896000 audit[3752]: AVC avc: denied { perfmon } for pid=3752 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.896000 audit[3752]: AVC avc: denied { perfmon } for pid=3752 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.896000 audit[3752]: AVC avc: denied { bpf } for pid=3752 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.896000 audit[3752]: AVC avc: denied { bpf } for pid=3752 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.896000 audit: BPF prog-id=127 op=LOAD Feb 12 20:25:17.896000 audit[3752]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=3698 pid=3752 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:17.896000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3831653636343739346462636434643564663038366237303037376262 Feb 12 20:25:17.896000 audit[3752]: AVC avc: denied { bpf } for pid=3752 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.896000 audit[3752]: AVC avc: denied { bpf } for pid=3752 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.896000 audit[3752]: AVC avc: denied { perfmon } for pid=3752 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.896000 audit[3752]: AVC avc: denied { perfmon } for pid=3752 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.896000 audit[3752]: AVC avc: denied { perfmon } for pid=3752 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.896000 audit[3752]: AVC avc: denied { perfmon } for pid=3752 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.896000 audit[3752]: AVC avc: denied { perfmon } for pid=3752 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.896000 audit[3752]: AVC avc: denied { bpf } for pid=3752 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.896000 audit[3752]: AVC avc: denied { bpf } for pid=3752 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.896000 audit: BPF prog-id=128 op=LOAD Feb 12 20:25:17.896000 audit[3752]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=3698 pid=3752 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:17.896000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3831653636343739346462636434643564663038366237303037376262 Feb 12 20:25:17.896000 audit: BPF prog-id=128 op=UNLOAD Feb 12 20:25:17.896000 audit: BPF prog-id=127 op=UNLOAD Feb 12 20:25:17.896000 audit[3752]: AVC avc: denied { bpf } for pid=3752 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.896000 audit[3752]: AVC avc: denied { bpf } for pid=3752 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.896000 audit[3752]: AVC avc: denied { bpf } for pid=3752 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.896000 audit[3752]: AVC avc: denied { perfmon } for pid=3752 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.896000 audit[3752]: AVC avc: denied { perfmon } for pid=3752 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.896000 audit[3752]: AVC avc: denied { perfmon } for pid=3752 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.896000 audit[3752]: AVC avc: denied { perfmon } for pid=3752 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.896000 audit[3752]: AVC avc: denied { perfmon } for pid=3752 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.896000 audit[3752]: AVC avc: denied { bpf } for pid=3752 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.896000 audit[3752]: AVC avc: denied { bpf } for pid=3752 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:17.896000 audit: BPF prog-id=129 op=LOAD Feb 12 20:25:17.896000 audit[3752]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=3698 pid=3752 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:17.896000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3831653636343739346462636434643564663038366237303037376262 Feb 12 20:25:18.083000 audit[3779]: AVC avc: denied { search } for pid=3779 comm="rpcbind" name="crypto" dev="proc" ino=20253 scontext=system_u:system_r:svirt_lxc_net_t:s0:c120,c839 tcontext=system_u:object_r:sysctl_crypto_t:s0 tclass=dir permissive=0 Feb 12 20:25:18.083000 audit[3779]: SYSCALL arch=c00000b7 syscall=56 success=no exit=-13 a0=ffffffffffffff9c a1=ffff8092f000 a2=0 a3=0 items=0 ppid=3762 pid=3779 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="rpcbind" exe="/usr/bin/rpcbind" subj=system_u:system_r:svirt_lxc_net_t:s0:c120,c839 key=(null) Feb 12 20:25:18.083000 audit: PROCTITLE proctitle=2F7573722F7362696E2F72706362696E64002D77 Feb 12 20:25:18.172220 kubelet[2196]: E0212 20:25:18.172117 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:18.171000 audit[3784]: AVC avc: denied { search } for pid=3784 comm="dbus-daemon" name="crypto" dev="proc" ino=20253 scontext=system_u:system_r:svirt_lxc_net_t:s0:c120,c839 tcontext=system_u:object_r:sysctl_crypto_t:s0 tclass=dir permissive=0 Feb 12 20:25:18.171000 audit[3784]: SYSCALL arch=c00000b7 syscall=56 success=no exit=-13 a0=ffffffffffffff9c a1=ffff83eef000 a2=0 a3=0 items=0 ppid=3762 pid=3784 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="dbus-daemon" exe="/usr/bin/dbus-daemon" subj=system_u:system_r:svirt_lxc_net_t:s0:c120,c839 key=(null) Feb 12 20:25:18.171000 audit: PROCTITLE proctitle=646275732D6461656D6F6E002D2D73797374656D002D2D6E6F70696466696C65 Feb 12 20:25:18.178000 audit[3785]: AVC avc: denied { watch } for pid=3785 comm="dbus-daemon" path="/usr/share/dbus-1/system.d" dev="overlay" ino=538071 scontext=system_u:system_r:svirt_lxc_net_t:s0:c120,c839 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c120,c839 tclass=dir permissive=0 Feb 12 20:25:18.178000 audit[3785]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=6 a1=aaaade300380 a2=2c8 a3=aaaade2eba60 items=0 ppid=3762 pid=3785 auid=4294967295 uid=81 gid=81 euid=81 suid=81 fsuid=81 egid=81 sgid=81 fsgid=81 tty=(none) ses=4294967295 comm="dbus-daemon" exe="/usr/bin/dbus-daemon" subj=system_u:system_r:svirt_lxc_net_t:s0:c120,c839 key=(null) Feb 12 20:25:18.178000 audit: PROCTITLE proctitle=646275732D6461656D6F6E002D2D73797374656D002D2D6E6F70696466696C65 Feb 12 20:25:18.187000 audit[3786]: AVC avc: denied { read } for pid=3786 comm="ganesha.nfsd" name="overcommit_memory" dev="proc" ino=20281 scontext=system_u:system_r:svirt_lxc_net_t:s0:c120,c839 tcontext=system_u:object_r:sysctl_vm_overcommit_t:s0 tclass=file permissive=0 Feb 12 20:25:18.187000 audit[3786]: SYSCALL arch=c00000b7 syscall=56 success=no exit=-13 a0=ffffff9c a1=ffff9fd0a570 a2=80000 a3=0 items=0 ppid=3762 pid=3786 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ganesha.nfsd" exe="/usr/local/bin/ganesha.nfsd" subj=system_u:system_r:svirt_lxc_net_t:s0:c120,c839 key=(null) Feb 12 20:25:18.187000 audit: PROCTITLE proctitle=67616E657368612E6E667364002D46002D4C002F6578706F72742F67616E657368612E6C6F67002D70002F7661722F72756E2F67616E657368612E706964002D66002F6578706F72742F7666732E636F6E66 Feb 12 20:25:18.188000 audit[3786]: AVC avc: denied { search } for pid=3786 comm="ganesha.nfsd" name="crypto" dev="proc" ino=20253 scontext=system_u:system_r:svirt_lxc_net_t:s0:c120,c839 tcontext=system_u:object_r:sysctl_crypto_t:s0 tclass=dir permissive=0 Feb 12 20:25:18.188000 audit[3786]: SYSCALL arch=c00000b7 syscall=56 success=no exit=-13 a0=ffffffffffffff9c a1=ffff9f09f000 a2=0 a3=0 items=0 ppid=3762 pid=3786 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ganesha.nfsd" exe="/usr/local/bin/ganesha.nfsd" subj=system_u:system_r:svirt_lxc_net_t:s0:c120,c839 key=(null) Feb 12 20:25:18.188000 audit: PROCTITLE proctitle=67616E657368612E6E667364002D46002D4C002F6578706F72742F67616E657368612E6C6F67002D70002F7661722F72756E2F67616E657368612E706964002D66002F6578706F72742F7666732E636F6E66 Feb 12 20:25:18.554387 kubelet[2196]: I0212 20:25:18.554326 2196 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="default/nfs-server-provisioner-0" podStartSLOduration=2.095776915 podCreationTimestamp="2024-02-12 20:25:09 +0000 UTC" firstStartedPulling="2024-02-12 20:25:10.307924766 +0000 UTC m=+47.374847800" lastFinishedPulling="2024-02-12 20:25:17.766401784 +0000 UTC m=+54.833324770" observedRunningTime="2024-02-12 20:25:18.553726979 +0000 UTC m=+55.620649977" watchObservedRunningTime="2024-02-12 20:25:18.554253885 +0000 UTC m=+55.621176979" Feb 12 20:25:18.581000 audit[3791]: NETFILTER_CFG table=filter:85 family=2 entries=22 op=nft_register_rule pid=3791 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:18.581000 audit[3791]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=3548 a0=3 a1=ffffd435a640 a2=0 a3=ffff8f62a6c0 items=0 ppid=2356 pid=3791 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:18.581000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:18.588000 audit[3791]: NETFILTER_CFG table=nat:86 family=2 entries=104 op=nft_register_chain pid=3791 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:18.588000 audit[3791]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=47436 a0=3 a1=ffffd435a640 a2=0 a3=ffff8f62a6c0 items=0 ppid=2356 pid=3791 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:18.588000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:19.172920 kubelet[2196]: E0212 20:25:19.172867 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:20.174529 kubelet[2196]: E0212 20:25:20.174475 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:21.175629 kubelet[2196]: E0212 20:25:21.175560 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:22.176438 kubelet[2196]: E0212 20:25:22.176358 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:23.177133 kubelet[2196]: E0212 20:25:23.177085 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:23.693265 systemd[1]: run-containerd-runc-k8s.io-95cfbf5f5d88efe356e703a1ac0bac8c53a36a885d130c1bb1c938f5cd1b37e2-runc.z6UyBn.mount: Deactivated successfully. Feb 12 20:25:24.122934 kubelet[2196]: E0212 20:25:24.122874 2196 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:24.156641 env[1721]: time="2024-02-12T20:25:24.156582985Z" level=info msg="StopPodSandbox for \"01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae\"" Feb 12 20:25:24.178753 kubelet[2196]: E0212 20:25:24.178673 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:24.281419 env[1721]: 2024-02-12 20:25:24.221 [WARNING][3831] k8s.go 542: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.16.56-k8s-csi--node--driver--xhn8p-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"3c8a710a-15e9-494c-819c-4ba8a0bd2c53", ResourceVersion:"1068", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 24, 25, 0, time.Local), DeletionTimestamp:<nil>, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"676488fcc9", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.16.56", ContainerID:"49ce943c4e715c768575706c349343f4dc21d80fa7eb61e1ee60ce97bd9ba917", Pod:"csi-node-driver-xhn8p", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.44.65/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"calic77df5fbb14", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:25:24.281419 env[1721]: 2024-02-12 20:25:24.222 [INFO][3831] k8s.go 578: Cleaning up netns ContainerID="01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" Feb 12 20:25:24.281419 env[1721]: 2024-02-12 20:25:24.222 [INFO][3831] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" iface="eth0" netns="" Feb 12 20:25:24.281419 env[1721]: 2024-02-12 20:25:24.222 [INFO][3831] k8s.go 585: Releasing IP address(es) ContainerID="01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" Feb 12 20:25:24.281419 env[1721]: 2024-02-12 20:25:24.222 [INFO][3831] utils.go 188: Calico CNI releasing IP address ContainerID="01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" Feb 12 20:25:24.281419 env[1721]: 2024-02-12 20:25:24.259 [INFO][3837] ipam_plugin.go 415: Releasing address using handleID ContainerID="01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" HandleID="k8s-pod-network.01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" Workload="172.31.16.56-k8s-csi--node--driver--xhn8p-eth0" Feb 12 20:25:24.281419 env[1721]: 2024-02-12 20:25:24.259 [INFO][3837] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 12 20:25:24.281419 env[1721]: 2024-02-12 20:25:24.260 [INFO][3837] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 12 20:25:24.281419 env[1721]: 2024-02-12 20:25:24.273 [WARNING][3837] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" HandleID="k8s-pod-network.01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" Workload="172.31.16.56-k8s-csi--node--driver--xhn8p-eth0" Feb 12 20:25:24.281419 env[1721]: 2024-02-12 20:25:24.273 [INFO][3837] ipam_plugin.go 443: Releasing address using workloadID ContainerID="01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" HandleID="k8s-pod-network.01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" Workload="172.31.16.56-k8s-csi--node--driver--xhn8p-eth0" Feb 12 20:25:24.281419 env[1721]: 2024-02-12 20:25:24.276 [INFO][3837] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 12 20:25:24.281419 env[1721]: 2024-02-12 20:25:24.278 [INFO][3831] k8s.go 591: Teardown processing complete. ContainerID="01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" Feb 12 20:25:24.282500 env[1721]: time="2024-02-12T20:25:24.281490845Z" level=info msg="TearDown network for sandbox \"01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae\" successfully" Feb 12 20:25:24.282500 env[1721]: time="2024-02-12T20:25:24.281587073Z" level=info msg="StopPodSandbox for \"01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae\" returns successfully" Feb 12 20:25:24.283028 env[1721]: time="2024-02-12T20:25:24.282982058Z" level=info msg="RemovePodSandbox for \"01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae\"" Feb 12 20:25:24.283238 env[1721]: time="2024-02-12T20:25:24.283176433Z" level=info msg="Forcibly stopping sandbox \"01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae\"" Feb 12 20:25:24.420287 env[1721]: 2024-02-12 20:25:24.354 [WARNING][3856] k8s.go 542: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.16.56-k8s-csi--node--driver--xhn8p-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"3c8a710a-15e9-494c-819c-4ba8a0bd2c53", ResourceVersion:"1068", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 24, 25, 0, time.Local), DeletionTimestamp:<nil>, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"676488fcc9", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.16.56", ContainerID:"49ce943c4e715c768575706c349343f4dc21d80fa7eb61e1ee60ce97bd9ba917", Pod:"csi-node-driver-xhn8p", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.44.65/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"calic77df5fbb14", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:25:24.420287 env[1721]: 2024-02-12 20:25:24.354 [INFO][3856] k8s.go 578: Cleaning up netns ContainerID="01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" Feb 12 20:25:24.420287 env[1721]: 2024-02-12 20:25:24.354 [INFO][3856] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" iface="eth0" netns="" Feb 12 20:25:24.420287 env[1721]: 2024-02-12 20:25:24.354 [INFO][3856] k8s.go 585: Releasing IP address(es) ContainerID="01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" Feb 12 20:25:24.420287 env[1721]: 2024-02-12 20:25:24.354 [INFO][3856] utils.go 188: Calico CNI releasing IP address ContainerID="01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" Feb 12 20:25:24.420287 env[1721]: 2024-02-12 20:25:24.390 [INFO][3865] ipam_plugin.go 415: Releasing address using handleID ContainerID="01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" HandleID="k8s-pod-network.01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" Workload="172.31.16.56-k8s-csi--node--driver--xhn8p-eth0" Feb 12 20:25:24.420287 env[1721]: 2024-02-12 20:25:24.390 [INFO][3865] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 12 20:25:24.420287 env[1721]: 2024-02-12 20:25:24.390 [INFO][3865] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 12 20:25:24.420287 env[1721]: 2024-02-12 20:25:24.405 [WARNING][3865] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" HandleID="k8s-pod-network.01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" Workload="172.31.16.56-k8s-csi--node--driver--xhn8p-eth0" Feb 12 20:25:24.420287 env[1721]: 2024-02-12 20:25:24.405 [INFO][3865] ipam_plugin.go 443: Releasing address using workloadID ContainerID="01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" HandleID="k8s-pod-network.01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" Workload="172.31.16.56-k8s-csi--node--driver--xhn8p-eth0" Feb 12 20:25:24.420287 env[1721]: 2024-02-12 20:25:24.409 [INFO][3865] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 12 20:25:24.420287 env[1721]: 2024-02-12 20:25:24.412 [INFO][3856] k8s.go 591: Teardown processing complete. ContainerID="01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae" Feb 12 20:25:24.420287 env[1721]: time="2024-02-12T20:25:24.419399968Z" level=info msg="TearDown network for sandbox \"01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae\" successfully" Feb 12 20:25:24.425251 env[1721]: time="2024-02-12T20:25:24.425144211Z" level=info msg="RemovePodSandbox \"01c5ce922afd5c2f9b338d80d1caa132ac2fb765f3d62ca998e42d939b8b29ae\" returns successfully" Feb 12 20:25:24.426634 env[1721]: time="2024-02-12T20:25:24.426568775Z" level=info msg="StopPodSandbox for \"9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839\"" Feb 12 20:25:24.585655 env[1721]: 2024-02-12 20:25:24.526 [WARNING][3887] k8s.go 542: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.16.56-k8s-nginx--deployment--6d5f899847--k2jpn-eth0", GenerateName:"nginx-deployment-6d5f899847-", Namespace:"default", SelfLink:"", UID:"a1464691-a148-4817-9310-0be8c06c5603", ResourceVersion:"1053", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 24, 43, 0, time.Local), DeletionTimestamp:<nil>, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"6d5f899847", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.16.56", ContainerID:"9b07dd946f1d557971d2fb63d7bfb0db5963acd2c490c112c221445df7083c1c", Pod:"nginx-deployment-6d5f899847-k2jpn", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.44.66/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali88129912ffe", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:25:24.585655 env[1721]: 2024-02-12 20:25:24.526 [INFO][3887] k8s.go 578: Cleaning up netns ContainerID="9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" Feb 12 20:25:24.585655 env[1721]: 2024-02-12 20:25:24.527 [INFO][3887] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" iface="eth0" netns="" Feb 12 20:25:24.585655 env[1721]: 2024-02-12 20:25:24.527 [INFO][3887] k8s.go 585: Releasing IP address(es) ContainerID="9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" Feb 12 20:25:24.585655 env[1721]: 2024-02-12 20:25:24.527 [INFO][3887] utils.go 188: Calico CNI releasing IP address ContainerID="9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" Feb 12 20:25:24.585655 env[1721]: 2024-02-12 20:25:24.566 [INFO][3893] ipam_plugin.go 415: Releasing address using handleID ContainerID="9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" HandleID="k8s-pod-network.9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" Workload="172.31.16.56-k8s-nginx--deployment--6d5f899847--k2jpn-eth0" Feb 12 20:25:24.585655 env[1721]: 2024-02-12 20:25:24.566 [INFO][3893] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 12 20:25:24.585655 env[1721]: 2024-02-12 20:25:24.566 [INFO][3893] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 12 20:25:24.585655 env[1721]: 2024-02-12 20:25:24.579 [WARNING][3893] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" HandleID="k8s-pod-network.9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" Workload="172.31.16.56-k8s-nginx--deployment--6d5f899847--k2jpn-eth0" Feb 12 20:25:24.585655 env[1721]: 2024-02-12 20:25:24.579 [INFO][3893] ipam_plugin.go 443: Releasing address using workloadID ContainerID="9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" HandleID="k8s-pod-network.9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" Workload="172.31.16.56-k8s-nginx--deployment--6d5f899847--k2jpn-eth0" Feb 12 20:25:24.585655 env[1721]: 2024-02-12 20:25:24.581 [INFO][3893] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 12 20:25:24.585655 env[1721]: 2024-02-12 20:25:24.583 [INFO][3887] k8s.go 591: Teardown processing complete. ContainerID="9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" Feb 12 20:25:24.586681 env[1721]: time="2024-02-12T20:25:24.585746326Z" level=info msg="TearDown network for sandbox \"9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839\" successfully" Feb 12 20:25:24.586681 env[1721]: time="2024-02-12T20:25:24.585797313Z" level=info msg="StopPodSandbox for \"9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839\" returns successfully" Feb 12 20:25:24.586945 env[1721]: time="2024-02-12T20:25:24.586878055Z" level=info msg="RemovePodSandbox for \"9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839\"" Feb 12 20:25:24.587083 env[1721]: time="2024-02-12T20:25:24.586947883Z" level=info msg="Forcibly stopping sandbox \"9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839\"" Feb 12 20:25:24.707885 env[1721]: 2024-02-12 20:25:24.649 [WARNING][3912] k8s.go 542: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.16.56-k8s-nginx--deployment--6d5f899847--k2jpn-eth0", GenerateName:"nginx-deployment-6d5f899847-", Namespace:"default", SelfLink:"", UID:"a1464691-a148-4817-9310-0be8c06c5603", ResourceVersion:"1053", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 24, 43, 0, time.Local), DeletionTimestamp:<nil>, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"6d5f899847", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.16.56", ContainerID:"9b07dd946f1d557971d2fb63d7bfb0db5963acd2c490c112c221445df7083c1c", Pod:"nginx-deployment-6d5f899847-k2jpn", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.44.66/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali88129912ffe", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:25:24.707885 env[1721]: 2024-02-12 20:25:24.649 [INFO][3912] k8s.go 578: Cleaning up netns ContainerID="9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" Feb 12 20:25:24.707885 env[1721]: 2024-02-12 20:25:24.649 [INFO][3912] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" iface="eth0" netns="" Feb 12 20:25:24.707885 env[1721]: 2024-02-12 20:25:24.649 [INFO][3912] k8s.go 585: Releasing IP address(es) ContainerID="9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" Feb 12 20:25:24.707885 env[1721]: 2024-02-12 20:25:24.649 [INFO][3912] utils.go 188: Calico CNI releasing IP address ContainerID="9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" Feb 12 20:25:24.707885 env[1721]: 2024-02-12 20:25:24.684 [INFO][3919] ipam_plugin.go 415: Releasing address using handleID ContainerID="9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" HandleID="k8s-pod-network.9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" Workload="172.31.16.56-k8s-nginx--deployment--6d5f899847--k2jpn-eth0" Feb 12 20:25:24.707885 env[1721]: 2024-02-12 20:25:24.685 [INFO][3919] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 12 20:25:24.707885 env[1721]: 2024-02-12 20:25:24.685 [INFO][3919] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 12 20:25:24.707885 env[1721]: 2024-02-12 20:25:24.699 [WARNING][3919] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" HandleID="k8s-pod-network.9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" Workload="172.31.16.56-k8s-nginx--deployment--6d5f899847--k2jpn-eth0" Feb 12 20:25:24.707885 env[1721]: 2024-02-12 20:25:24.699 [INFO][3919] ipam_plugin.go 443: Releasing address using workloadID ContainerID="9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" HandleID="k8s-pod-network.9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" Workload="172.31.16.56-k8s-nginx--deployment--6d5f899847--k2jpn-eth0" Feb 12 20:25:24.707885 env[1721]: 2024-02-12 20:25:24.702 [INFO][3919] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 12 20:25:24.707885 env[1721]: 2024-02-12 20:25:24.704 [INFO][3912] k8s.go 591: Teardown processing complete. ContainerID="9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839" Feb 12 20:25:24.708889 env[1721]: time="2024-02-12T20:25:24.708832110Z" level=info msg="TearDown network for sandbox \"9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839\" successfully" Feb 12 20:25:24.713241 env[1721]: time="2024-02-12T20:25:24.713184992Z" level=info msg="RemovePodSandbox \"9dbacfc72bc29ba3c14e497b862d11acfa5e67707fa9df981cde72d2a5106839\" returns successfully" Feb 12 20:25:25.178921 kubelet[2196]: E0212 20:25:25.178853 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:26.179514 kubelet[2196]: E0212 20:25:26.179449 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:27.180638 kubelet[2196]: E0212 20:25:27.180532 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:28.180742 kubelet[2196]: E0212 20:25:28.180675 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:28.768683 systemd[1]: run-containerd-runc-k8s.io-31e085dde0664f16de426c5880cc765a0f6d5cd70cb0cc42a3b7a475d3e28a90-runc.YuOuFX.mount: Deactivated successfully. Feb 12 20:25:28.865000 audit[3960]: NETFILTER_CFG table=filter:87 family=2 entries=9 op=nft_register_rule pid=3960 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:28.868946 kernel: kauditd_printk_skb: 68 callbacks suppressed Feb 12 20:25:28.869130 kernel: audit: type=1325 audit(1707769528.865:919): table=filter:87 family=2 entries=9 op=nft_register_rule pid=3960 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:28.865000 audit[3960]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=2844 a0=3 a1=ffffcf9c1ae0 a2=0 a3=ffff872cb6c0 items=0 ppid=2356 pid=3960 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:28.887243 kernel: audit: type=1300 audit(1707769528.865:919): arch=c00000b7 syscall=211 success=yes exit=2844 a0=3 a1=ffffcf9c1ae0 a2=0 a3=ffff872cb6c0 items=0 ppid=2356 pid=3960 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:28.887444 kernel: audit: type=1327 audit(1707769528.865:919): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:28.865000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:28.870000 audit[3960]: NETFILTER_CFG table=nat:88 family=2 entries=51 op=nft_register_chain pid=3960 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:28.870000 audit[3960]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=17716 a0=3 a1=ffffcf9c1ae0 a2=0 a3=ffff872cb6c0 items=0 ppid=2356 pid=3960 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:28.913749 kernel: audit: type=1325 audit(1707769528.870:920): table=nat:88 family=2 entries=51 op=nft_register_chain pid=3960 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:28.913863 kernel: audit: type=1300 audit(1707769528.870:920): arch=c00000b7 syscall=211 success=yes exit=17716 a0=3 a1=ffffcf9c1ae0 a2=0 a3=ffff872cb6c0 items=0 ppid=2356 pid=3960 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:28.913915 kernel: audit: type=1327 audit(1707769528.870:920): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:28.870000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:29.181186 kubelet[2196]: E0212 20:25:29.181051 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:29.205000 audit[3962]: NETFILTER_CFG table=filter:89 family=2 entries=8 op=nft_register_rule pid=3962 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:29.205000 audit[3962]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=2844 a0=3 a1=fffffa4a4a80 a2=0 a3=ffffac5426c0 items=0 ppid=2356 pid=3962 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:29.225177 kernel: audit: type=1325 audit(1707769529.205:921): table=filter:89 family=2 entries=8 op=nft_register_rule pid=3962 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:29.225329 kernel: audit: type=1300 audit(1707769529.205:921): arch=c00000b7 syscall=211 success=yes exit=2844 a0=3 a1=fffffa4a4a80 a2=0 a3=ffffac5426c0 items=0 ppid=2356 pid=3962 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:29.205000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:29.231006 kernel: audit: type=1327 audit(1707769529.205:921): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:29.206000 audit[3962]: NETFILTER_CFG table=nat:90 family=2 entries=58 op=nft_register_chain pid=3962 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:29.206000 audit[3962]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=19604 a0=3 a1=fffffa4a4a80 a2=0 a3=ffffac5426c0 items=0 ppid=2356 pid=3962 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:29.241053 kernel: audit: type=1325 audit(1707769529.206:922): table=nat:90 family=2 entries=58 op=nft_register_chain pid=3962 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 12 20:25:29.206000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 12 20:25:30.057231 amazon-ssm-agent[1743]: 2024-02-12 20:25:30 INFO [HealthCheck] HealthCheck reporting agent health. Feb 12 20:25:30.182089 kubelet[2196]: E0212 20:25:30.182044 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:31.183705 kubelet[2196]: E0212 20:25:31.183619 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:32.185374 kubelet[2196]: E0212 20:25:32.185299 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:33.186109 kubelet[2196]: E0212 20:25:33.186059 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:34.187436 kubelet[2196]: E0212 20:25:34.187388 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:35.188607 kubelet[2196]: E0212 20:25:35.188530 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:36.189605 kubelet[2196]: E0212 20:25:36.189552 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:37.191219 kubelet[2196]: E0212 20:25:37.191171 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:38.192715 kubelet[2196]: E0212 20:25:38.192613 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:39.193395 kubelet[2196]: E0212 20:25:39.193297 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:40.193605 kubelet[2196]: E0212 20:25:40.193502 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:41.193804 kubelet[2196]: E0212 20:25:41.193752 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:42.195630 kubelet[2196]: E0212 20:25:42.195577 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:42.422350 kubelet[2196]: I0212 20:25:42.422298 2196 topology_manager.go:215] "Topology Admit Handler" podUID="bd81f0aa-cb8a-41a5-9ae1-2dfd5a374877" podNamespace="default" podName="test-pod-1" Feb 12 20:25:42.435761 systemd[1]: Created slice kubepods-besteffort-podbd81f0aa_cb8a_41a5_9ae1_2dfd5a374877.slice. Feb 12 20:25:42.538307 kubelet[2196]: I0212 20:25:42.538183 2196 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-2xjhf\" (UniqueName: \"kubernetes.io/projected/bd81f0aa-cb8a-41a5-9ae1-2dfd5a374877-kube-api-access-2xjhf\") pod \"test-pod-1\" (UID: \"bd81f0aa-cb8a-41a5-9ae1-2dfd5a374877\") " pod="default/test-pod-1" Feb 12 20:25:42.538624 kubelet[2196]: I0212 20:25:42.538590 2196 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"pvc-1a506701-94e5-4759-928b-25fd93ca7b92\" (UniqueName: \"kubernetes.io/nfs/bd81f0aa-cb8a-41a5-9ae1-2dfd5a374877-pvc-1a506701-94e5-4759-928b-25fd93ca7b92\") pod \"test-pod-1\" (UID: \"bd81f0aa-cb8a-41a5-9ae1-2dfd5a374877\") " pod="default/test-pod-1" Feb 12 20:25:42.664000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.678851 kernel: kauditd_printk_skb: 2 callbacks suppressed Feb 12 20:25:42.679077 kernel: audit: type=1400 audit(1707769542.664:923): avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.679139 kernel: Failed to create system directory netfs Feb 12 20:25:42.681109 kernel: Failed to create system directory netfs Feb 12 20:25:42.681169 kernel: audit: type=1400 audit(1707769542.664:923): avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.664000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.691366 kernel: Failed to create system directory netfs Feb 12 20:25:42.691430 kernel: audit: type=1400 audit(1707769542.664:923): avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.664000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.701647 kernel: Failed to create system directory netfs Feb 12 20:25:42.701741 kernel: audit: type=1400 audit(1707769542.664:923): avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.664000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.717598 kernel: Failed to create system directory fscache Feb 12 20:25:42.717724 kernel: Failed to create system directory fscache Feb 12 20:25:42.717767 kernel: audit: type=1300 audit(1707769542.664:923): arch=c00000b7 syscall=105 success=yes exit=0 a0=aaab0962e5e0 a1=12c14 a2=aaaadacfe028 a3=aaab0961f010 items=0 ppid=1700 pid=3978 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:42.664000 audit[3978]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=aaab0962e5e0 a1=12c14 a2=aaaadacfe028 a3=aaab0961f010 items=0 ppid=1700 pid=3978 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:42.729932 kernel: Failed to create system directory fscache Feb 12 20:25:42.730052 kernel: audit: type=1327 audit(1707769542.664:923): proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Feb 12 20:25:42.664000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Feb 12 20:25:42.735806 kernel: Failed to create system directory fscache Feb 12 20:25:42.735895 kernel: audit: type=1400 audit(1707769542.708:924): avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.708000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.746181 kernel: Failed to create system directory fscache Feb 12 20:25:42.746319 kernel: audit: type=1400 audit(1707769542.708:924): avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.708000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.756482 kernel: Failed to create system directory fscache Feb 12 20:25:42.756570 kernel: audit: type=1400 audit(1707769542.708:924): avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.708000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.766843 kernel: Failed to create system directory fscache Feb 12 20:25:42.766911 kernel: audit: type=1400 audit(1707769542.708:924): avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.708000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.775528 kernel: Failed to create system directory fscache Feb 12 20:25:42.708000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.708000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.708000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.708000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.708000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.779027 kernel: Failed to create system directory fscache Feb 12 20:25:42.779094 kernel: Failed to create system directory fscache Feb 12 20:25:42.708000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.708000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.782782 kernel: Failed to create system directory fscache Feb 12 20:25:42.782857 kernel: Failed to create system directory fscache Feb 12 20:25:42.708000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.708000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.786619 kernel: Failed to create system directory fscache Feb 12 20:25:42.786705 kernel: Failed to create system directory fscache Feb 12 20:25:42.708000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.790080 kernel: FS-Cache: Loaded Feb 12 20:25:42.708000 audit[3978]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=aaab09841210 a1=4c344 a2=aaaadacfe028 a3=aaab0961f010 items=0 ppid=1700 pid=3978 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:42.708000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.824852 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.824919 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.824976 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.828711 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.828764 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.832543 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.832595 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.836336 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.838374 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.838442 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.842165 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.842233 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.845894 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.846033 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.851860 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.851934 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.852035 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.855688 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.855766 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.859522 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.859615 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.863311 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.863368 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.867031 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.867105 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.872867 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.872944 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.873008 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.876719 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.876788 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.880519 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.880575 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.884310 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.884365 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.888045 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.888178 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.891874 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.891941 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.895703 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.895778 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.899488 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.899583 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.903313 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.903364 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.907103 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.907154 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.908998 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.912831 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.912883 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.916668 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.916722 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.920468 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.920526 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.924233 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.924283 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.928025 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.928126 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.931833 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.931939 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.935713 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.935774 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.939507 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.939592 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.943247 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.943333 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.946995 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.947129 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.950864 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.950939 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.954716 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.954766 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.958568 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.958694 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.962415 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.962520 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.966207 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.966284 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.969887 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.970036 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.977922 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.978005 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.978048 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.978087 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.981699 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.981782 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.985512 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.985566 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.987386 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.989302 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.992933 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.993094 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.994771 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.996718 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.998525 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.000461 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.004103 kernel: Failed to create system directory sunrpc Feb 12 20:25:43.004165 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.005838 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.007805 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.011604 kernel: Failed to create system directory sunrpc Feb 12 20:25:43.011705 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.015246 kernel: Failed to create system directory sunrpc Feb 12 20:25:43.015298 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.018936 kernel: Failed to create system directory sunrpc Feb 12 20:25:43.019046 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.022766 kernel: Failed to create system directory sunrpc Feb 12 20:25:43.022821 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.024577 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.026514 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.030193 kernel: Failed to create system directory sunrpc Feb 12 20:25:43.030250 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.031970 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.033918 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.035760 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.037705 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.041575 kernel: Failed to create system directory sunrpc Feb 12 20:25:43.041629 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.043373 kernel: Failed to create system directory sunrpc Feb 12 20:25:43.051763 kernel: Failed to create system directory sunrpc Feb 12 20:25:43.051900 kernel: Failed to create system directory sunrpc Feb 12 20:25:43.051944 kernel: Failed to create system directory sunrpc Feb 12 20:25:43.052032 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.052874 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.054850 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.056679 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.058615 kernel: Failed to create system directory sunrpc Feb 12 20:25:42.812000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.071649 kernel: RPC: Registered named UNIX socket transport module. Feb 12 20:25:43.071821 kernel: RPC: Registered udp transport module. Feb 12 20:25:43.071867 kernel: RPC: Registered tcp transport module. Feb 12 20:25:43.076021 kernel: RPC: Registered tcp NFSv4.1 backchannel transport module. Feb 12 20:25:42.812000 audit[3978]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=aaab0988d560 a1=fbb6c a2=aaaadacfe028 a3=aaab0961f010 items=6 ppid=1700 pid=3978 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:42.812000 audit: CWD cwd="/" Feb 12 20:25:42.812000 audit: PATH item=0 name=(null) inode=1 dev=00:07 mode=040700 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:25:42.812000 audit: PATH item=1 name=(null) inode=20725 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:25:42.812000 audit: PATH item=2 name=(null) inode=20725 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:25:42.812000 audit: PATH item=3 name=(null) inode=20726 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:25:42.812000 audit: PATH item=4 name=(null) inode=20725 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:25:42.812000 audit: PATH item=5 name=(null) inode=20727 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 12 20:25:42.812000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.112116 kernel: Failed to create system directory nfs Feb 12 20:25:43.112221 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.115633 kernel: Failed to create system directory nfs Feb 12 20:25:43.115744 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.119523 kernel: Failed to create system directory nfs Feb 12 20:25:43.119632 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.121431 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.124846 kernel: Failed to create system directory nfs Feb 12 20:25:43.124898 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.126594 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.128438 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.131903 kernel: Failed to create system directory nfs Feb 12 20:25:43.131984 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.133637 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.135477 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.137261 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.139033 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.140814 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.144601 kernel: Failed to create system directory nfs Feb 12 20:25:43.144655 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.148169 kernel: Failed to create system directory nfs Feb 12 20:25:43.148283 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.149831 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.151716 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.153443 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.155261 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.156938 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.158816 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.160555 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.162388 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.164208 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.165860 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.167768 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.171326 kernel: Failed to create system directory nfs Feb 12 20:25:43.171384 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.173066 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.176616 kernel: Failed to create system directory nfs Feb 12 20:25:43.176705 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.178339 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.180164 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.183680 kernel: Failed to create system directory nfs Feb 12 20:25:43.183774 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.185394 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.187203 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.188861 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.190740 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.194276 kernel: Failed to create system directory nfs Feb 12 20:25:43.194362 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.195937 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.196476 kubelet[2196]: E0212 20:25:43.196411 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:43.197832 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.199667 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.201448 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.203192 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.204925 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.206813 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.208643 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.210455 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.214070 kernel: Failed to create system directory nfs Feb 12 20:25:43.214216 kernel: Failed to create system directory nfs Feb 12 20:25:43.104000 audit[3978]: AVC avc: denied { confidentiality } for pid=3978 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.236094 kernel: FS-Cache: Netfs 'nfs' registered for caching Feb 12 20:25:43.104000 audit[3978]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=aaab099b9b40 a1=ae35c a2=aaaadacfe028 a3=aaab0961f010 items=0 ppid=1700 pid=3978 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:43.104000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.280154 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.280294 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.283800 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.283936 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.285698 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.289333 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.289464 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.292942 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.293113 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.296686 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.296998 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.300338 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.300461 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.302024 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.308511 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.308657 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.308702 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.311773 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.311905 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.315453 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.315598 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.319033 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.319125 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.322736 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.322828 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.326429 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.326670 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.330441 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.330547 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.334151 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.334235 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.337855 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.337921 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.341508 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.341609 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.345087 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.345196 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.346886 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.350633 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.350746 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.354270 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.354395 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.356019 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.357841 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.361562 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.361648 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.365171 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.365225 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.370695 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.370785 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.370831 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.374290 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.374342 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.377882 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.377938 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.381560 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.381644 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.385141 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.385196 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.386891 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.388823 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.390704 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.392555 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.394636 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.397894 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.398008 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.401795 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.401917 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.405777 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.406049 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.409474 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.409602 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.413124 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.413242 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.416671 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.416779 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.420380 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.420477 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.423918 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.424009 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.427581 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.427682 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.431209 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.431314 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.434781 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.434834 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.436540 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.438413 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.442034 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.442132 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.443912 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.445740 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.447573 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.449385 kernel: Failed to create system directory nfs4 Feb 12 20:25:43.269000 audit[3983]: AVC avc: denied { confidentiality } for pid=3983 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.664992 kernel: NFS: Registering the id_resolver key type Feb 12 20:25:43.665178 kernel: Key type id_resolver registered Feb 12 20:25:43.665223 kernel: Key type id_legacy registered Feb 12 20:25:43.269000 audit[3983]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=ffff8da5b010 a1=167c04 a2=aaaae426e028 a3=aaaae7812010 items=0 ppid=1700 pid=3983 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:43.269000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D006E66737634 Feb 12 20:25:43.679000 audit[3986]: AVC avc: denied { confidentiality } for pid=3986 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.679000 audit[3986]: AVC avc: denied { confidentiality } for pid=3986 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.686918 kernel: Failed to create system directory rpcgss Feb 12 20:25:43.687015 kernel: Failed to create system directory rpcgss Feb 12 20:25:43.679000 audit[3986]: AVC avc: denied { confidentiality } for pid=3986 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.688915 kernel: Failed to create system directory rpcgss Feb 12 20:25:43.689016 kernel: Failed to create system directory rpcgss Feb 12 20:25:43.679000 audit[3986]: AVC avc: denied { confidentiality } for pid=3986 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.691019 kernel: Failed to create system directory rpcgss Feb 12 20:25:43.679000 audit[3986]: AVC avc: denied { confidentiality } for pid=3986 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.679000 audit[3986]: AVC avc: denied { confidentiality } for pid=3986 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.694805 kernel: Failed to create system directory rpcgss Feb 12 20:25:43.694879 kernel: Failed to create system directory rpcgss Feb 12 20:25:43.679000 audit[3986]: AVC avc: denied { confidentiality } for pid=3986 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.679000 audit[3986]: AVC avc: denied { confidentiality } for pid=3986 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.698757 kernel: Failed to create system directory rpcgss Feb 12 20:25:43.698858 kernel: Failed to create system directory rpcgss Feb 12 20:25:43.679000 audit[3986]: AVC avc: denied { confidentiality } for pid=3986 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.679000 audit[3986]: AVC avc: denied { confidentiality } for pid=3986 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.702660 kernel: Failed to create system directory rpcgss Feb 12 20:25:43.702716 kernel: Failed to create system directory rpcgss Feb 12 20:25:43.679000 audit[3986]: AVC avc: denied { confidentiality } for pid=3986 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.679000 audit[3986]: AVC avc: denied { confidentiality } for pid=3986 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.706405 kernel: Failed to create system directory rpcgss Feb 12 20:25:43.706457 kernel: Failed to create system directory rpcgss Feb 12 20:25:43.679000 audit[3986]: AVC avc: denied { confidentiality } for pid=3986 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.679000 audit[3986]: AVC avc: denied { confidentiality } for pid=3986 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.710191 kernel: Failed to create system directory rpcgss Feb 12 20:25:43.710280 kernel: Failed to create system directory rpcgss Feb 12 20:25:43.679000 audit[3986]: AVC avc: denied { confidentiality } for pid=3986 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.679000 audit[3986]: AVC avc: denied { confidentiality } for pid=3986 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.713886 kernel: Failed to create system directory rpcgss Feb 12 20:25:43.713939 kernel: Failed to create system directory rpcgss Feb 12 20:25:43.679000 audit[3986]: AVC avc: denied { confidentiality } for pid=3986 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.679000 audit[3986]: AVC avc: denied { confidentiality } for pid=3986 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.717751 kernel: Failed to create system directory rpcgss Feb 12 20:25:43.717853 kernel: Failed to create system directory rpcgss Feb 12 20:25:43.679000 audit[3986]: AVC avc: denied { confidentiality } for pid=3986 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.679000 audit[3986]: AVC avc: denied { confidentiality } for pid=3986 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.721700 kernel: Failed to create system directory rpcgss Feb 12 20:25:43.721756 kernel: Failed to create system directory rpcgss Feb 12 20:25:43.679000 audit[3986]: AVC avc: denied { confidentiality } for pid=3986 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.679000 audit[3986]: AVC avc: denied { confidentiality } for pid=3986 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.725478 kernel: Failed to create system directory rpcgss Feb 12 20:25:43.725573 kernel: Failed to create system directory rpcgss Feb 12 20:25:43.679000 audit[3986]: AVC avc: denied { confidentiality } for pid=3986 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.679000 audit[3986]: AVC avc: denied { confidentiality } for pid=3986 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.729224 kernel: Failed to create system directory rpcgss Feb 12 20:25:43.729299 kernel: Failed to create system directory rpcgss Feb 12 20:25:43.679000 audit[3986]: AVC avc: denied { confidentiality } for pid=3986 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.679000 audit[3986]: AVC avc: denied { confidentiality } for pid=3986 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 12 20:25:43.732911 kernel: Failed to create system directory rpcgss Feb 12 20:25:43.679000 audit[3986]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=ffffa7853010 a1=3e09c a2=aaaac27be028 a3=aaaaeb351010 items=0 ppid=1700 pid=3986 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:43.679000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D007270632D617574682D36 Feb 12 20:25:43.759746 nfsidmap[3992]: nss_getpwnam: name 'root@nfs-server-provisioner.default.svc.cluster.local' does not map into domain 'us-west-2.compute.internal' Feb 12 20:25:43.764999 nfsidmap[3993]: nss_name_to_gid: name 'root@nfs-server-provisioner.default.svc.cluster.local' does not map into domain 'us-west-2.compute.internal' Feb 12 20:25:43.792000 audit[1923]: AVC avc: denied { watch_reads } for pid=1923 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2834 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 12 20:25:43.792000 audit[1923]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=e a1=aaaad46d73b0 a2=10 a3=0 items=0 ppid=1 pid=1923 auid=4294967295 uid=500 gid=500 euid=500 suid=500 fsuid=500 egid=500 sgid=500 fsgid=500 tty=(none) ses=4294967295 comm="systemd" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:43.792000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D64002D2D75736572 Feb 12 20:25:43.792000 audit[1923]: AVC avc: denied { watch_reads } for pid=1923 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2834 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 12 20:25:43.792000 audit[1923]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=e a1=aaaad46d73b0 a2=10 a3=0 items=0 ppid=1 pid=1923 auid=4294967295 uid=500 gid=500 euid=500 suid=500 fsuid=500 egid=500 sgid=500 fsgid=500 tty=(none) ses=4294967295 comm="systemd" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:43.792000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D64002D2D75736572 Feb 12 20:25:43.793000 audit[1]: AVC avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2834 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 12 20:25:43.793000 audit[1]: AVC avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2834 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 12 20:25:43.793000 audit[1]: AVC avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2834 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 12 20:25:43.947552 env[1721]: time="2024-02-12T20:25:43.946790176Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:test-pod-1,Uid:bd81f0aa-cb8a-41a5-9ae1-2dfd5a374877,Namespace:default,Attempt:0,}" Feb 12 20:25:44.124090 kubelet[2196]: E0212 20:25:44.124006 2196 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:44.140715 (udev-worker)[3979]: Network interface NamePolicy= disabled on kernel command line. Feb 12 20:25:44.146486 systemd-networkd[1538]: cali5ec59c6bf6e: Link UP Feb 12 20:25:44.153256 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 12 20:25:44.153409 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali5ec59c6bf6e: link becomes ready Feb 12 20:25:44.153648 systemd-networkd[1538]: cali5ec59c6bf6e: Gained carrier Feb 12 20:25:44.176858 env[1721]: 2024-02-12 20:25:44.027 [INFO][3995] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.16.56-k8s-test--pod--1-eth0 default bd81f0aa-cb8a-41a5-9ae1-2dfd5a374877 1221 0 2024-02-12 20:25:10 +0000 UTC <nil> <nil> map[projectcalico.org/namespace:default projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 172.31.16.56 test-pod-1 eth0 default [] [] [kns.default ksa.default.default] cali5ec59c6bf6e [] []}} ContainerID="fbc1092dad8ae90c56bb51e00aeaf757552b147410a58cc24bb4b37409c40216" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.16.56-k8s-test--pod--1-" Feb 12 20:25:44.176858 env[1721]: 2024-02-12 20:25:44.027 [INFO][3995] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="fbc1092dad8ae90c56bb51e00aeaf757552b147410a58cc24bb4b37409c40216" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.16.56-k8s-test--pod--1-eth0" Feb 12 20:25:44.176858 env[1721]: 2024-02-12 20:25:44.070 [INFO][4005] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="fbc1092dad8ae90c56bb51e00aeaf757552b147410a58cc24bb4b37409c40216" HandleID="k8s-pod-network.fbc1092dad8ae90c56bb51e00aeaf757552b147410a58cc24bb4b37409c40216" Workload="172.31.16.56-k8s-test--pod--1-eth0" Feb 12 20:25:44.176858 env[1721]: 2024-02-12 20:25:44.090 [INFO][4005] ipam_plugin.go 268: Auto assigning IP ContainerID="fbc1092dad8ae90c56bb51e00aeaf757552b147410a58cc24bb4b37409c40216" HandleID="k8s-pod-network.fbc1092dad8ae90c56bb51e00aeaf757552b147410a58cc24bb4b37409c40216" Workload="172.31.16.56-k8s-test--pod--1-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x4000291170), Attrs:map[string]string{"namespace":"default", "node":"172.31.16.56", "pod":"test-pod-1", "timestamp":"2024-02-12 20:25:44.070803085 +0000 UTC"}, Hostname:"172.31.16.56", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 12 20:25:44.176858 env[1721]: 2024-02-12 20:25:44.090 [INFO][4005] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 12 20:25:44.176858 env[1721]: 2024-02-12 20:25:44.090 [INFO][4005] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 12 20:25:44.176858 env[1721]: 2024-02-12 20:25:44.090 [INFO][4005] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.16.56' Feb 12 20:25:44.176858 env[1721]: 2024-02-12 20:25:44.093 [INFO][4005] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.fbc1092dad8ae90c56bb51e00aeaf757552b147410a58cc24bb4b37409c40216" host="172.31.16.56" Feb 12 20:25:44.176858 env[1721]: 2024-02-12 20:25:44.099 [INFO][4005] ipam.go 372: Looking up existing affinities for host host="172.31.16.56" Feb 12 20:25:44.176858 env[1721]: 2024-02-12 20:25:44.105 [INFO][4005] ipam.go 489: Trying affinity for 192.168.44.64/26 host="172.31.16.56" Feb 12 20:25:44.176858 env[1721]: 2024-02-12 20:25:44.110 [INFO][4005] ipam.go 155: Attempting to load block cidr=192.168.44.64/26 host="172.31.16.56" Feb 12 20:25:44.176858 env[1721]: 2024-02-12 20:25:44.114 [INFO][4005] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.44.64/26 host="172.31.16.56" Feb 12 20:25:44.176858 env[1721]: 2024-02-12 20:25:44.114 [INFO][4005] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.44.64/26 handle="k8s-pod-network.fbc1092dad8ae90c56bb51e00aeaf757552b147410a58cc24bb4b37409c40216" host="172.31.16.56" Feb 12 20:25:44.176858 env[1721]: 2024-02-12 20:25:44.116 [INFO][4005] ipam.go 1682: Creating new handle: k8s-pod-network.fbc1092dad8ae90c56bb51e00aeaf757552b147410a58cc24bb4b37409c40216 Feb 12 20:25:44.176858 env[1721]: 2024-02-12 20:25:44.123 [INFO][4005] ipam.go 1203: Writing block in order to claim IPs block=192.168.44.64/26 handle="k8s-pod-network.fbc1092dad8ae90c56bb51e00aeaf757552b147410a58cc24bb4b37409c40216" host="172.31.16.56" Feb 12 20:25:44.176858 env[1721]: 2024-02-12 20:25:44.132 [INFO][4005] ipam.go 1216: Successfully claimed IPs: [192.168.44.69/26] block=192.168.44.64/26 handle="k8s-pod-network.fbc1092dad8ae90c56bb51e00aeaf757552b147410a58cc24bb4b37409c40216" host="172.31.16.56" Feb 12 20:25:44.176858 env[1721]: 2024-02-12 20:25:44.132 [INFO][4005] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.44.69/26] handle="k8s-pod-network.fbc1092dad8ae90c56bb51e00aeaf757552b147410a58cc24bb4b37409c40216" host="172.31.16.56" Feb 12 20:25:44.176858 env[1721]: 2024-02-12 20:25:44.132 [INFO][4005] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 12 20:25:44.176858 env[1721]: 2024-02-12 20:25:44.132 [INFO][4005] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.44.69/26] IPv6=[] ContainerID="fbc1092dad8ae90c56bb51e00aeaf757552b147410a58cc24bb4b37409c40216" HandleID="k8s-pod-network.fbc1092dad8ae90c56bb51e00aeaf757552b147410a58cc24bb4b37409c40216" Workload="172.31.16.56-k8s-test--pod--1-eth0" Feb 12 20:25:44.176858 env[1721]: 2024-02-12 20:25:44.135 [INFO][3995] k8s.go 385: Populated endpoint ContainerID="fbc1092dad8ae90c56bb51e00aeaf757552b147410a58cc24bb4b37409c40216" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.16.56-k8s-test--pod--1-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.16.56-k8s-test--pod--1-eth0", GenerateName:"", Namespace:"default", SelfLink:"", UID:"bd81f0aa-cb8a-41a5-9ae1-2dfd5a374877", ResourceVersion:"1221", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 25, 10, 0, time.Local), DeletionTimestamp:<nil>, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.16.56", ContainerID:"", Pod:"test-pod-1", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.44.69/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali5ec59c6bf6e", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:25:44.176858 env[1721]: 2024-02-12 20:25:44.135 [INFO][3995] k8s.go 386: Calico CNI using IPs: [192.168.44.69/32] ContainerID="fbc1092dad8ae90c56bb51e00aeaf757552b147410a58cc24bb4b37409c40216" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.16.56-k8s-test--pod--1-eth0" Feb 12 20:25:44.178308 env[1721]: 2024-02-12 20:25:44.135 [INFO][3995] dataplane_linux.go 68: Setting the host side veth name to cali5ec59c6bf6e ContainerID="fbc1092dad8ae90c56bb51e00aeaf757552b147410a58cc24bb4b37409c40216" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.16.56-k8s-test--pod--1-eth0" Feb 12 20:25:44.178308 env[1721]: 2024-02-12 20:25:44.158 [INFO][3995] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="fbc1092dad8ae90c56bb51e00aeaf757552b147410a58cc24bb4b37409c40216" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.16.56-k8s-test--pod--1-eth0" Feb 12 20:25:44.178308 env[1721]: 2024-02-12 20:25:44.159 [INFO][3995] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="fbc1092dad8ae90c56bb51e00aeaf757552b147410a58cc24bb4b37409c40216" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.16.56-k8s-test--pod--1-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.16.56-k8s-test--pod--1-eth0", GenerateName:"", Namespace:"default", SelfLink:"", UID:"bd81f0aa-cb8a-41a5-9ae1-2dfd5a374877", ResourceVersion:"1221", Generation:0, CreationTimestamp:time.Date(2024, time.February, 12, 20, 25, 10, 0, time.Local), DeletionTimestamp:<nil>, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.16.56", ContainerID:"fbc1092dad8ae90c56bb51e00aeaf757552b147410a58cc24bb4b37409c40216", Pod:"test-pod-1", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.44.69/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali5ec59c6bf6e", MAC:"ea:4f:3f:79:35:bb", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 12 20:25:44.178308 env[1721]: 2024-02-12 20:25:44.169 [INFO][3995] k8s.go 491: Wrote updated endpoint to datastore ContainerID="fbc1092dad8ae90c56bb51e00aeaf757552b147410a58cc24bb4b37409c40216" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.16.56-k8s-test--pod--1-eth0" Feb 12 20:25:44.197696 kubelet[2196]: E0212 20:25:44.197528 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:44.210064 env[1721]: time="2024-02-12T20:25:44.209619518Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 12 20:25:44.210064 env[1721]: time="2024-02-12T20:25:44.209707370Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 12 20:25:44.210064 env[1721]: time="2024-02-12T20:25:44.209734466Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 12 20:25:44.210064 env[1721]: time="2024-02-12T20:25:44.210003097Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/fbc1092dad8ae90c56bb51e00aeaf757552b147410a58cc24bb4b37409c40216 pid=4036 runtime=io.containerd.runc.v2 Feb 12 20:25:44.210000 audit[4030]: NETFILTER_CFG table=filter:91 family=2 entries=48 op=nft_register_chain pid=4030 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 12 20:25:44.210000 audit[4030]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=23120 a0=3 a1=fffff6a36690 a2=0 a3=ffffb41acfa8 items=0 ppid=2849 pid=4030 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:44.210000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 12 20:25:44.248412 systemd[1]: Started cri-containerd-fbc1092dad8ae90c56bb51e00aeaf757552b147410a58cc24bb4b37409c40216.scope. Feb 12 20:25:44.276000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.276000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.277000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.277000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.277000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.277000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.277000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.277000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.277000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.277000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.277000 audit: BPF prog-id=130 op=LOAD Feb 12 20:25:44.278000 audit[4046]: AVC avc: denied { bpf } for pid=4046 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.278000 audit[4046]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000145b38 a2=10 a3=0 items=0 ppid=4036 pid=4046 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:44.278000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6662633130393264616438616539306335366262353165303061656166 Feb 12 20:25:44.278000 audit[4046]: AVC avc: denied { perfmon } for pid=4046 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.278000 audit[4046]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=4036 pid=4046 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:44.278000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6662633130393264616438616539306335366262353165303061656166 Feb 12 20:25:44.278000 audit[4046]: AVC avc: denied { bpf } for pid=4046 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.278000 audit[4046]: AVC avc: denied { bpf } for pid=4046 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.278000 audit[4046]: AVC avc: denied { bpf } for pid=4046 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.278000 audit[4046]: AVC avc: denied { perfmon } for pid=4046 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.278000 audit[4046]: AVC avc: denied { perfmon } for pid=4046 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.278000 audit[4046]: AVC avc: denied { perfmon } for pid=4046 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.278000 audit[4046]: AVC avc: denied { perfmon } for pid=4046 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.278000 audit[4046]: AVC avc: denied { perfmon } for pid=4046 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.278000 audit[4046]: AVC avc: denied { bpf } for pid=4046 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.278000 audit[4046]: AVC avc: denied { bpf } for pid=4046 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.278000 audit: BPF prog-id=131 op=LOAD Feb 12 20:25:44.278000 audit[4046]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=4036 pid=4046 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:44.278000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6662633130393264616438616539306335366262353165303061656166 Feb 12 20:25:44.279000 audit[4046]: AVC avc: denied { bpf } for pid=4046 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.279000 audit[4046]: AVC avc: denied { bpf } for pid=4046 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.279000 audit[4046]: AVC avc: denied { perfmon } for pid=4046 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.279000 audit[4046]: AVC avc: denied { perfmon } for pid=4046 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.279000 audit[4046]: AVC avc: denied { perfmon } for pid=4046 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.279000 audit[4046]: AVC avc: denied { perfmon } for pid=4046 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.279000 audit[4046]: AVC avc: denied { perfmon } for pid=4046 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.279000 audit[4046]: AVC avc: denied { bpf } for pid=4046 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.279000 audit[4046]: AVC avc: denied { bpf } for pid=4046 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.279000 audit: BPF prog-id=132 op=LOAD Feb 12 20:25:44.279000 audit[4046]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=4036 pid=4046 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:44.279000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6662633130393264616438616539306335366262353165303061656166 Feb 12 20:25:44.279000 audit: BPF prog-id=132 op=UNLOAD Feb 12 20:25:44.279000 audit: BPF prog-id=131 op=UNLOAD Feb 12 20:25:44.279000 audit[4046]: AVC avc: denied { bpf } for pid=4046 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.279000 audit[4046]: AVC avc: denied { bpf } for pid=4046 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.279000 audit[4046]: AVC avc: denied { bpf } for pid=4046 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.279000 audit[4046]: AVC avc: denied { perfmon } for pid=4046 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.279000 audit[4046]: AVC avc: denied { perfmon } for pid=4046 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.279000 audit[4046]: AVC avc: denied { perfmon } for pid=4046 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.279000 audit[4046]: AVC avc: denied { perfmon } for pid=4046 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.279000 audit[4046]: AVC avc: denied { perfmon } for pid=4046 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.279000 audit[4046]: AVC avc: denied { bpf } for pid=4046 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.279000 audit[4046]: AVC avc: denied { bpf } for pid=4046 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.279000 audit: BPF prog-id=133 op=LOAD Feb 12 20:25:44.279000 audit[4046]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=4036 pid=4046 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:44.279000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6662633130393264616438616539306335366262353165303061656166 Feb 12 20:25:44.335452 env[1721]: time="2024-02-12T20:25:44.335397198Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:test-pod-1,Uid:bd81f0aa-cb8a-41a5-9ae1-2dfd5a374877,Namespace:default,Attempt:0,} returns sandbox id \"fbc1092dad8ae90c56bb51e00aeaf757552b147410a58cc24bb4b37409c40216\"" Feb 12 20:25:44.338955 env[1721]: time="2024-02-12T20:25:44.338870301Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\"" Feb 12 20:25:44.698001 env[1721]: time="2024-02-12T20:25:44.697557829Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:25:44.700668 env[1721]: time="2024-02-12T20:25:44.700615795Z" level=info msg="ImageUpdate event &ImageUpdate{Name:sha256:01bfff6bfbc6f0e8a890bad9e22c5392e6dbfd67def93467db6231d4be1b719b,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:25:44.703803 env[1721]: time="2024-02-12T20:25:44.703738884Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:25:44.707275 env[1721]: time="2024-02-12T20:25:44.707196543Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx@sha256:e34a272f01984c973b1e034e197c02f77dda18981038e3a54e957554ada4fec6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 12 20:25:44.709027 env[1721]: time="2024-02-12T20:25:44.708938548Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\" returns image reference \"sha256:01bfff6bfbc6f0e8a890bad9e22c5392e6dbfd67def93467db6231d4be1b719b\"" Feb 12 20:25:44.712562 env[1721]: time="2024-02-12T20:25:44.712497475Z" level=info msg="CreateContainer within sandbox \"fbc1092dad8ae90c56bb51e00aeaf757552b147410a58cc24bb4b37409c40216\" for container &ContainerMetadata{Name:test,Attempt:0,}" Feb 12 20:25:44.732942 env[1721]: time="2024-02-12T20:25:44.732880516Z" level=info msg="CreateContainer within sandbox \"fbc1092dad8ae90c56bb51e00aeaf757552b147410a58cc24bb4b37409c40216\" for &ContainerMetadata{Name:test,Attempt:0,} returns container id \"7997010077dbb80b6d76cae20356a56a5226564b92ada7b871b9bb35bc42d143\"" Feb 12 20:25:44.734650 env[1721]: time="2024-02-12T20:25:44.734571894Z" level=info msg="StartContainer for \"7997010077dbb80b6d76cae20356a56a5226564b92ada7b871b9bb35bc42d143\"" Feb 12 20:25:44.766633 systemd[1]: Started cri-containerd-7997010077dbb80b6d76cae20356a56a5226564b92ada7b871b9bb35bc42d143.scope. Feb 12 20:25:44.806000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.806000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.806000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.806000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.806000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.806000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.806000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.806000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.806000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.807000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.807000 audit: BPF prog-id=134 op=LOAD Feb 12 20:25:44.807000 audit[4077]: AVC avc: denied { bpf } for pid=4077 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.807000 audit[4077]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000195b38 a2=10 a3=0 items=0 ppid=4036 pid=4077 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:44.807000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3739393730313030373764626238306236643736636165323033353661 Feb 12 20:25:44.807000 audit[4077]: AVC avc: denied { perfmon } for pid=4077 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.807000 audit[4077]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=4036 pid=4077 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:44.807000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3739393730313030373764626238306236643736636165323033353661 Feb 12 20:25:44.808000 audit[4077]: AVC avc: denied { bpf } for pid=4077 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.808000 audit[4077]: AVC avc: denied { bpf } for pid=4077 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.808000 audit[4077]: AVC avc: denied { bpf } for pid=4077 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.808000 audit[4077]: AVC avc: denied { perfmon } for pid=4077 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.808000 audit[4077]: AVC avc: denied { perfmon } for pid=4077 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.808000 audit[4077]: AVC avc: denied { perfmon } for pid=4077 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.808000 audit[4077]: AVC avc: denied { perfmon } for pid=4077 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.808000 audit[4077]: AVC avc: denied { perfmon } for pid=4077 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.808000 audit[4077]: AVC avc: denied { bpf } for pid=4077 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.808000 audit[4077]: AVC avc: denied { bpf } for pid=4077 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.808000 audit: BPF prog-id=135 op=LOAD Feb 12 20:25:44.808000 audit[4077]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=4036 pid=4077 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:44.808000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3739393730313030373764626238306236643736636165323033353661 Feb 12 20:25:44.808000 audit[4077]: AVC avc: denied { bpf } for pid=4077 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.808000 audit[4077]: AVC avc: denied { bpf } for pid=4077 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.808000 audit[4077]: AVC avc: denied { perfmon } for pid=4077 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.808000 audit[4077]: AVC avc: denied { perfmon } for pid=4077 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.808000 audit[4077]: AVC avc: denied { perfmon } for pid=4077 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.808000 audit[4077]: AVC avc: denied { perfmon } for pid=4077 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.808000 audit[4077]: AVC avc: denied { perfmon } for pid=4077 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.808000 audit[4077]: AVC avc: denied { bpf } for pid=4077 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.808000 audit[4077]: AVC avc: denied { bpf } for pid=4077 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.808000 audit: BPF prog-id=136 op=LOAD Feb 12 20:25:44.808000 audit[4077]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=4036 pid=4077 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:44.808000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3739393730313030373764626238306236643736636165323033353661 Feb 12 20:25:44.808000 audit: BPF prog-id=136 op=UNLOAD Feb 12 20:25:44.808000 audit: BPF prog-id=135 op=UNLOAD Feb 12 20:25:44.808000 audit[4077]: AVC avc: denied { bpf } for pid=4077 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.808000 audit[4077]: AVC avc: denied { bpf } for pid=4077 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.808000 audit[4077]: AVC avc: denied { bpf } for pid=4077 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.808000 audit[4077]: AVC avc: denied { perfmon } for pid=4077 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.808000 audit[4077]: AVC avc: denied { perfmon } for pid=4077 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.808000 audit[4077]: AVC avc: denied { perfmon } for pid=4077 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.808000 audit[4077]: AVC avc: denied { perfmon } for pid=4077 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.808000 audit[4077]: AVC avc: denied { perfmon } for pid=4077 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.808000 audit[4077]: AVC avc: denied { bpf } for pid=4077 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.808000 audit[4077]: AVC avc: denied { bpf } for pid=4077 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 12 20:25:44.808000 audit: BPF prog-id=137 op=LOAD Feb 12 20:25:44.808000 audit[4077]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=4036 pid=4077 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 12 20:25:44.808000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3739393730313030373764626238306236643736636165323033353661 Feb 12 20:25:44.840924 env[1721]: time="2024-02-12T20:25:44.839918801Z" level=info msg="StartContainer for \"7997010077dbb80b6d76cae20356a56a5226564b92ada7b871b9bb35bc42d143\" returns successfully" Feb 12 20:25:45.197926 kubelet[2196]: E0212 20:25:45.197853 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:45.758684 systemd-networkd[1538]: cali5ec59c6bf6e: Gained IPv6LL Feb 12 20:25:46.198449 kubelet[2196]: E0212 20:25:46.198286 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:47.199432 kubelet[2196]: E0212 20:25:47.199392 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:48.200841 kubelet[2196]: E0212 20:25:48.200777 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:49.201486 kubelet[2196]: E0212 20:25:49.201419 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:50.202392 kubelet[2196]: E0212 20:25:50.202348 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:51.203721 kubelet[2196]: E0212 20:25:51.203647 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:52.204057 kubelet[2196]: E0212 20:25:52.204012 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:53.205237 kubelet[2196]: E0212 20:25:53.205171 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:53.689733 systemd[1]: run-containerd-runc-k8s.io-95cfbf5f5d88efe356e703a1ac0bac8c53a36a885d130c1bb1c938f5cd1b37e2-runc.bb0CVZ.mount: Deactivated successfully. Feb 12 20:25:54.206339 kubelet[2196]: E0212 20:25:54.206260 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:55.207259 kubelet[2196]: E0212 20:25:55.207219 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:56.208408 kubelet[2196]: E0212 20:25:56.208331 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:57.209212 kubelet[2196]: E0212 20:25:57.209145 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:58.209411 kubelet[2196]: E0212 20:25:58.209340 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:25:59.209872 kubelet[2196]: E0212 20:25:59.209803 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:00.210812 kubelet[2196]: E0212 20:26:00.210748 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:01.211310 kubelet[2196]: E0212 20:26:01.211269 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:02.212187 kubelet[2196]: E0212 20:26:02.212144 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:03.213902 kubelet[2196]: E0212 20:26:03.213841 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:04.123901 kubelet[2196]: E0212 20:26:04.123840 2196 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:04.214509 kubelet[2196]: E0212 20:26:04.214459 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:05.215634 kubelet[2196]: E0212 20:26:05.215567 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:06.215791 kubelet[2196]: E0212 20:26:06.215747 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:07.217679 kubelet[2196]: E0212 20:26:07.217613 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:07.349907 kubelet[2196]: E0212 20:26:07.349570 2196 controller.go:193] "Failed to update lease" err="Put \"https://172.31.21.82:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.16.56?timeout=10s\": net/http: request canceled (Client.Timeout exceeded while awaiting headers)" Feb 12 20:26:08.218387 kubelet[2196]: E0212 20:26:08.218308 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:09.219705 kubelet[2196]: E0212 20:26:09.219628 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:10.209000 audit[3631]: AVC avc: denied { watch } for pid=3631 comm="apiserver" path="/calico-apiserver-certs/..2024_02_12_20_24_58.3441937368/tls.crt" dev="tmpfs" ino=3 scontext=system_u:system_r:svirt_lxc_net_t:s0:c593,c976 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c593,c976 tclass=file permissive=0 Feb 12 20:26:10.212073 kernel: kauditd_printk_skb: 458 callbacks suppressed Feb 12 20:26:10.212242 kernel: audit: type=1400 audit(1707769570.209:971): avc: denied { watch } for pid=3631 comm="apiserver" path="/calico-apiserver-certs/..2024_02_12_20_24_58.3441937368/tls.crt" dev="tmpfs" ino=3 scontext=system_u:system_r:svirt_lxc_net_t:s0:c593,c976 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c593,c976 tclass=file permissive=0 Feb 12 20:26:10.220747 kubelet[2196]: E0212 20:26:10.220671 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:10.209000 audit[3631]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=8 a1=40016db9c0 a2=fc6 a3=0 items=0 ppid=3461 pid=3631 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="apiserver" exe="/code/apiserver" subj=system_u:system_r:svirt_lxc_net_t:s0:c593,c976 key=(null) Feb 12 20:26:10.234636 kernel: audit: type=1300 audit(1707769570.209:971): arch=c00000b7 syscall=27 success=no exit=-13 a0=8 a1=40016db9c0 a2=fc6 a3=0 items=0 ppid=3461 pid=3631 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="apiserver" exe="/code/apiserver" subj=system_u:system_r:svirt_lxc_net_t:s0:c593,c976 key=(null) Feb 12 20:26:10.234738 kernel: audit: type=1327 audit(1707769570.209:971): proctitle=2E2F617069736572766572002D2D7365637572652D706F72743D35343433002D2D746C732D707269766174652D6B65792D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C732E6B6579002D2D746C732D636572742D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C Feb 12 20:26:10.209000 audit: PROCTITLE proctitle=2E2F617069736572766572002D2D7365637572652D706F72743D35343433002D2D746C732D707269766174652D6B65792D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C732E6B6579002D2D746C732D636572742D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C Feb 12 20:26:11.221652 kubelet[2196]: E0212 20:26:11.221611 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:12.223125 kubelet[2196]: E0212 20:26:12.223078 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:13.224823 kubelet[2196]: E0212 20:26:13.224772 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:14.225768 kubelet[2196]: E0212 20:26:14.225726 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:15.227165 kubelet[2196]: E0212 20:26:15.227117 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:16.228717 kubelet[2196]: E0212 20:26:16.228650 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:17.229590 kubelet[2196]: E0212 20:26:17.229516 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:17.350842 kubelet[2196]: E0212 20:26:17.350738 2196 controller.go:193] "Failed to update lease" err="Put \"https://172.31.21.82:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.16.56?timeout=10s\": net/http: request canceled (Client.Timeout exceeded while awaiting headers)" Feb 12 20:26:18.230766 kubelet[2196]: E0212 20:26:18.230699 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:19.231408 kubelet[2196]: E0212 20:26:19.231363 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:20.232999 kubelet[2196]: E0212 20:26:20.232928 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:21.234576 kubelet[2196]: E0212 20:26:21.234534 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:22.235812 kubelet[2196]: E0212 20:26:22.235715 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:23.236544 kubelet[2196]: E0212 20:26:23.236503 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:24.123478 kubelet[2196]: E0212 20:26:24.123417 2196 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:24.238145 kubelet[2196]: E0212 20:26:24.238085 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:25.238511 kubelet[2196]: E0212 20:26:25.238442 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:26.239247 kubelet[2196]: E0212 20:26:26.239174 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:27.240132 kubelet[2196]: E0212 20:26:27.240063 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:27.351189 kubelet[2196]: E0212 20:26:27.351145 2196 controller.go:193] "Failed to update lease" err="Put \"https://172.31.21.82:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.16.56?timeout=10s\": net/http: request canceled (Client.Timeout exceeded while awaiting headers)" Feb 12 20:26:28.240814 kubelet[2196]: E0212 20:26:28.240742 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:29.241616 kubelet[2196]: E0212 20:26:29.241572 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:30.243399 kubelet[2196]: E0212 20:26:30.243352 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:31.245198 kubelet[2196]: E0212 20:26:31.245091 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:32.245869 kubelet[2196]: E0212 20:26:32.245821 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:33.247199 kubelet[2196]: E0212 20:26:33.247155 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:33.390147 kubelet[2196]: E0212 20:26:33.390110 2196 controller.go:193] "Failed to update lease" err="Put \"https://172.31.21.82:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.16.56?timeout=10s\": unexpected EOF" Feb 12 20:26:33.392796 kubelet[2196]: E0212 20:26:33.392753 2196 controller.go:193] "Failed to update lease" err="Put \"https://172.31.21.82:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.16.56?timeout=10s\": dial tcp 172.31.21.82:6443: connect: connection refused" Feb 12 20:26:33.393024 kubelet[2196]: I0212 20:26:33.392837 2196 controller.go:116] "failed to update lease using latest lease, fallback to ensure lease" err="failed 5 attempts to update lease" Feb 12 20:26:33.393598 kubelet[2196]: E0212 20:26:33.393549 2196 controller.go:146] "Failed to ensure lease exists, will retry" err="Get \"https://172.31.21.82:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.16.56?timeout=10s\": dial tcp 172.31.21.82:6443: connect: connection refused" interval="200ms" Feb 12 20:26:33.595851 kubelet[2196]: E0212 20:26:33.595188 2196 controller.go:146] "Failed to ensure lease exists, will retry" err="Get \"https://172.31.21.82:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.16.56?timeout=10s\": dial tcp 172.31.21.82:6443: connect: connection refused" interval="400ms" Feb 12 20:26:33.995953 kubelet[2196]: E0212 20:26:33.995895 2196 controller.go:146] "Failed to ensure lease exists, will retry" err="Get \"https://172.31.21.82:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.16.56?timeout=10s\": dial tcp 172.31.21.82:6443: connect: connection refused" interval="800ms" Feb 12 20:26:34.248860 kubelet[2196]: E0212 20:26:34.248707 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:35.249218 kubelet[2196]: E0212 20:26:35.249172 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:36.250201 kubelet[2196]: E0212 20:26:36.250132 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:37.250318 kubelet[2196]: E0212 20:26:37.250252 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:38.251055 kubelet[2196]: E0212 20:26:38.251010 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:39.252802 kubelet[2196]: E0212 20:26:39.252740 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:40.253427 kubelet[2196]: E0212 20:26:40.253358 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:41.253658 kubelet[2196]: E0212 20:26:41.253555 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:42.254190 kubelet[2196]: E0212 20:26:42.254144 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:43.254914 kubelet[2196]: E0212 20:26:43.254871 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:44.123200 kubelet[2196]: E0212 20:26:44.123157 2196 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:44.256063 kubelet[2196]: E0212 20:26:44.256017 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:44.796650 kubelet[2196]: E0212 20:26:44.796521 2196 controller.go:146] "Failed to ensure lease exists, will retry" err="Get \"https://172.31.21.82:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.16.56?timeout=10s\": net/http: request canceled while waiting for connection (Client.Timeout exceeded while awaiting headers)" interval="1.6s" Feb 12 20:26:45.257337 kubelet[2196]: E0212 20:26:45.257274 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:46.257545 kubelet[2196]: E0212 20:26:46.257473 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:47.258545 kubelet[2196]: E0212 20:26:47.258497 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:48.259898 kubelet[2196]: E0212 20:26:48.259825 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:48.301145 kubelet[2196]: E0212 20:26:48.301107 2196 kubelet_node_status.go:540] "Error updating node status, will retry" err="error getting node \"172.31.16.56\": Get \"https://172.31.21.82:6443/api/v1/nodes/172.31.16.56?resourceVersion=0&timeout=10s\": net/http: request canceled while waiting for connection (Client.Timeout exceeded while awaiting headers)" Feb 12 20:26:49.261021 kubelet[2196]: E0212 20:26:49.260955 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:50.261752 kubelet[2196]: E0212 20:26:50.261704 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:51.263325 kubelet[2196]: E0212 20:26:51.263214 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:52.263448 kubelet[2196]: E0212 20:26:52.263401 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:53.264554 kubelet[2196]: E0212 20:26:53.264501 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:54.265001 kubelet[2196]: E0212 20:26:54.264904 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:55.265168 kubelet[2196]: E0212 20:26:55.265093 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:56.266421 kubelet[2196]: E0212 20:26:56.266347 2196 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 12 20:26:56.398571 kubelet[2196]: E0212 20:26:56.398519 2196 controller.go:146] "Failed to ensure lease exists, will retry" err="Get \"https://172.31.21.82:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.16.56?timeout=10s\": net/http: request canceled while waiting for connection (Client.Timeout exceeded while awaiting headers)" interval="3.2s"