Feb 9 10:07:55.717856 kernel: Booting Linux on physical CPU 0x0000000000 [0x413fd0c1] Feb 9 10:07:55.717875 kernel: Linux version 5.15.148-flatcar (build@pony-truck.infra.kinvolk.io) (aarch64-cros-linux-gnu-gcc (Gentoo Hardened 11.3.1_p20221209 p3) 11.3.1 20221209, GNU ld (Gentoo 2.39 p5) 2.39.0) #1 SMP PREEMPT Fri Feb 9 08:56:26 -00 2024 Feb 9 10:07:55.717883 kernel: efi: EFI v2.70 by EDK II Feb 9 10:07:55.717888 kernel: efi: SMBIOS 3.0=0xd9260000 ACPI 2.0=0xd9240000 MEMATTR=0xda32b018 RNG=0xd9220018 MEMRESERVE=0xd9521c18 Feb 9 10:07:55.717894 kernel: random: crng init done Feb 9 10:07:55.717899 kernel: ACPI: Early table checksum verification disabled Feb 9 10:07:55.717905 kernel: ACPI: RSDP 0x00000000D9240000 000024 (v02 BOCHS ) Feb 9 10:07:55.717912 kernel: ACPI: XSDT 0x00000000D9230000 000064 (v01 BOCHS BXPC 00000001 01000013) Feb 9 10:07:55.717918 kernel: ACPI: FACP 0x00000000D91E0000 000114 (v06 BOCHS BXPC 00000001 BXPC 00000001) Feb 9 10:07:55.717923 kernel: ACPI: DSDT 0x00000000D91F0000 0014A2 (v02 BOCHS BXPC 00000001 BXPC 00000001) Feb 9 10:07:55.717928 kernel: ACPI: APIC 0x00000000D91D0000 0001A8 (v04 BOCHS BXPC 00000001 BXPC 00000001) Feb 9 10:07:55.717933 kernel: ACPI: PPTT 0x00000000D91C0000 00009C (v02 BOCHS BXPC 00000001 BXPC 00000001) Feb 9 10:07:55.717939 kernel: ACPI: GTDT 0x00000000D91B0000 000060 (v02 BOCHS BXPC 00000001 BXPC 00000001) Feb 9 10:07:55.717944 kernel: ACPI: MCFG 0x00000000D91A0000 00003C (v01 BOCHS BXPC 00000001 BXPC 00000001) Feb 9 10:07:55.717952 kernel: ACPI: SPCR 0x00000000D9190000 000050 (v02 BOCHS BXPC 00000001 BXPC 00000001) Feb 9 10:07:55.717958 kernel: ACPI: DBG2 0x00000000D9180000 000057 (v00 BOCHS BXPC 00000001 BXPC 00000001) Feb 9 10:07:55.717963 kernel: ACPI: IORT 0x00000000D9170000 000080 (v03 BOCHS BXPC 00000001 BXPC 00000001) Feb 9 10:07:55.717969 kernel: ACPI: SPCR: console: pl011,mmio,0x9000000,9600 Feb 9 10:07:55.717975 kernel: NUMA: Failed to initialise from firmware Feb 9 10:07:55.717980 kernel: NUMA: Faking a node at [mem 0x0000000040000000-0x00000000dcffffff] Feb 9 10:07:55.717986 kernel: NUMA: NODE_DATA [mem 0xdcb0c900-0xdcb11fff] Feb 9 10:07:55.717992 kernel: Zone ranges: Feb 9 10:07:55.717997 kernel: DMA [mem 0x0000000040000000-0x00000000dcffffff] Feb 9 10:07:55.718004 kernel: DMA32 empty Feb 9 10:07:55.718009 kernel: Normal empty Feb 9 10:07:55.718015 kernel: Movable zone start for each node Feb 9 10:07:55.718021 kernel: Early memory node ranges Feb 9 10:07:55.718026 kernel: node 0: [mem 0x0000000040000000-0x00000000d924ffff] Feb 9 10:07:55.718032 kernel: node 0: [mem 0x00000000d9250000-0x00000000d951ffff] Feb 9 10:07:55.718037 kernel: node 0: [mem 0x00000000d9520000-0x00000000dc7fffff] Feb 9 10:07:55.718043 kernel: node 0: [mem 0x00000000dc800000-0x00000000dc88ffff] Feb 9 10:07:55.718048 kernel: node 0: [mem 0x00000000dc890000-0x00000000dc89ffff] Feb 9 10:07:55.718054 kernel: node 0: [mem 0x00000000dc8a0000-0x00000000dc9bffff] Feb 9 10:07:55.718060 kernel: node 0: [mem 0x00000000dc9c0000-0x00000000dcffffff] Feb 9 10:07:55.718065 kernel: Initmem setup node 0 [mem 0x0000000040000000-0x00000000dcffffff] Feb 9 10:07:55.718072 kernel: On node 0, zone DMA: 12288 pages in unavailable ranges Feb 9 10:07:55.718078 kernel: psci: probing for conduit method from ACPI. Feb 9 10:07:55.718083 kernel: psci: PSCIv1.1 detected in firmware. Feb 9 10:07:55.718089 kernel: psci: Using standard PSCI v0.2 function IDs Feb 9 10:07:55.718094 kernel: psci: Trusted OS migration not required Feb 9 10:07:55.718102 kernel: psci: SMC Calling Convention v1.1 Feb 9 10:07:55.718108 kernel: smccc: KVM: hypervisor services detected (0x00000000 0x00000000 0x00000000 0x00000003) Feb 9 10:07:55.718116 kernel: ACPI: SRAT not present Feb 9 10:07:55.718122 kernel: percpu: Embedded 29 pages/cpu s79960 r8192 d30632 u118784 Feb 9 10:07:55.718128 kernel: pcpu-alloc: s79960 r8192 d30632 u118784 alloc=29*4096 Feb 9 10:07:55.718134 kernel: pcpu-alloc: [0] 0 [0] 1 [0] 2 [0] 3 Feb 9 10:07:55.718140 kernel: Detected PIPT I-cache on CPU0 Feb 9 10:07:55.718146 kernel: CPU features: detected: GIC system register CPU interface Feb 9 10:07:55.718152 kernel: CPU features: detected: Hardware dirty bit management Feb 9 10:07:55.718158 kernel: CPU features: detected: Spectre-v4 Feb 9 10:07:55.718164 kernel: CPU features: detected: Spectre-BHB Feb 9 10:07:55.718171 kernel: CPU features: kernel page table isolation forced ON by KASLR Feb 9 10:07:55.718177 kernel: CPU features: detected: Kernel page table isolation (KPTI) Feb 9 10:07:55.718183 kernel: CPU features: detected: ARM erratum 1418040 Feb 9 10:07:55.718189 kernel: Built 1 zonelists, mobility grouping on. Total pages: 633024 Feb 9 10:07:55.718195 kernel: Policy zone: DMA Feb 9 10:07:55.718202 kernel: Kernel command line: BOOT_IMAGE=/flatcar/vmlinuz-a mount.usr=/dev/mapper/usr verity.usr=PARTUUID=7130c94a-213a-4e5a-8e26-6cce9662f132 rootflags=rw mount.usrflags=ro consoleblank=0 root=LABEL=ROOT console=ttyS0,115200 flatcar.first_boot=detected acpi=force verity.usrhash=14ffd9340f674a8d04c9d43eed85484d8b2b7e2bcd8b36a975c9ac66063d537d Feb 9 10:07:55.718208 kernel: Unknown kernel command line parameters "BOOT_IMAGE=/flatcar/vmlinuz-a", will be passed to user space. Feb 9 10:07:55.718215 kernel: Dentry cache hash table entries: 524288 (order: 10, 4194304 bytes, linear) Feb 9 10:07:55.718221 kernel: Inode-cache hash table entries: 262144 (order: 9, 2097152 bytes, linear) Feb 9 10:07:55.718227 kernel: mem auto-init: stack:off, heap alloc:off, heap free:off Feb 9 10:07:55.718233 kernel: Memory: 2459156K/2572288K available (9792K kernel code, 2092K rwdata, 7556K rodata, 34688K init, 778K bss, 113132K reserved, 0K cma-reserved) Feb 9 10:07:55.718240 kernel: SLUB: HWalign=64, Order=0-3, MinObjects=0, CPUs=4, Nodes=1 Feb 9 10:07:55.718246 kernel: trace event string verifier disabled Feb 9 10:07:55.718252 kernel: rcu: Preemptible hierarchical RCU implementation. Feb 9 10:07:55.718259 kernel: rcu: RCU event tracing is enabled. Feb 9 10:07:55.718265 kernel: rcu: RCU restricting CPUs from NR_CPUS=512 to nr_cpu_ids=4. Feb 9 10:07:55.718271 kernel: Trampoline variant of Tasks RCU enabled. Feb 9 10:07:55.718277 kernel: Tracing variant of Tasks RCU enabled. Feb 9 10:07:55.718283 kernel: rcu: RCU calculated value of scheduler-enlistment delay is 100 jiffies. Feb 9 10:07:55.718289 kernel: rcu: Adjusting geometry for rcu_fanout_leaf=16, nr_cpu_ids=4 Feb 9 10:07:55.718295 kernel: NR_IRQS: 64, nr_irqs: 64, preallocated irqs: 0 Feb 9 10:07:55.718301 kernel: GICv3: 256 SPIs implemented Feb 9 10:07:55.718308 kernel: GICv3: 0 Extended SPIs implemented Feb 9 10:07:55.718314 kernel: GICv3: Distributor has no Range Selector support Feb 9 10:07:55.718320 kernel: Root IRQ handler: gic_handle_irq Feb 9 10:07:55.718326 kernel: GICv3: 16 PPIs implemented Feb 9 10:07:55.718332 kernel: GICv3: CPU0: found redistributor 0 region 0:0x00000000080a0000 Feb 9 10:07:55.718338 kernel: ACPI: SRAT not present Feb 9 10:07:55.718344 kernel: ITS [mem 0x08080000-0x0809ffff] Feb 9 10:07:55.718350 kernel: ITS@0x0000000008080000: allocated 8192 Devices @400b0000 (indirect, esz 8, psz 64K, shr 1) Feb 9 10:07:55.718356 kernel: ITS@0x0000000008080000: allocated 8192 Interrupt Collections @400c0000 (flat, esz 8, psz 64K, shr 1) Feb 9 10:07:55.718362 kernel: GICv3: using LPI property table @0x00000000400d0000 Feb 9 10:07:55.718368 kernel: GICv3: CPU0: using allocated LPI pending table @0x00000000400e0000 Feb 9 10:07:55.718374 kernel: arch_timer: Enabling local workaround for ARM erratum 1418040 Feb 9 10:07:55.718381 kernel: arch_timer: cp15 timer(s) running at 25.00MHz (virt). Feb 9 10:07:55.718387 kernel: clocksource: arch_sys_counter: mask: 0xffffffffffffff max_cycles: 0x5c40939b5, max_idle_ns: 440795202646 ns Feb 9 10:07:55.718394 kernel: sched_clock: 56 bits at 25MHz, resolution 40ns, wraps every 4398046511100ns Feb 9 10:07:55.718400 kernel: arm-pv: using stolen time PV Feb 9 10:07:55.718406 kernel: Console: colour dummy device 80x25 Feb 9 10:07:55.718412 kernel: ACPI: Core revision 20210730 Feb 9 10:07:55.718418 kernel: Calibrating delay loop (skipped), value calculated using timer frequency.. 50.00 BogoMIPS (lpj=25000) Feb 9 10:07:55.718424 kernel: pid_max: default: 32768 minimum: 301 Feb 9 10:07:55.718431 kernel: LSM: Security Framework initializing Feb 9 10:07:55.718437 kernel: SELinux: Initializing. Feb 9 10:07:55.718444 kernel: Mount-cache hash table entries: 8192 (order: 4, 65536 bytes, linear) Feb 9 10:07:55.718450 kernel: Mountpoint-cache hash table entries: 8192 (order: 4, 65536 bytes, linear) Feb 9 10:07:55.718456 kernel: rcu: Hierarchical SRCU implementation. Feb 9 10:07:55.718463 kernel: Platform MSI: ITS@0x8080000 domain created Feb 9 10:07:55.718469 kernel: PCI/MSI: ITS@0x8080000 domain created Feb 9 10:07:55.718475 kernel: Remapping and enabling EFI services. Feb 9 10:07:55.718481 kernel: smp: Bringing up secondary CPUs ... Feb 9 10:07:55.718488 kernel: Detected PIPT I-cache on CPU1 Feb 9 10:07:55.718494 kernel: GICv3: CPU1: found redistributor 1 region 0:0x00000000080c0000 Feb 9 10:07:55.718501 kernel: GICv3: CPU1: using allocated LPI pending table @0x00000000400f0000 Feb 9 10:07:55.718507 kernel: arch_timer: Enabling local workaround for ARM erratum 1418040 Feb 9 10:07:55.718513 kernel: CPU1: Booted secondary processor 0x0000000001 [0x413fd0c1] Feb 9 10:07:55.718520 kernel: Detected PIPT I-cache on CPU2 Feb 9 10:07:55.718526 kernel: GICv3: CPU2: found redistributor 2 region 0:0x00000000080e0000 Feb 9 10:07:55.718532 kernel: GICv3: CPU2: using allocated LPI pending table @0x0000000040100000 Feb 9 10:07:55.718538 kernel: arch_timer: Enabling local workaround for ARM erratum 1418040 Feb 9 10:07:55.718544 kernel: CPU2: Booted secondary processor 0x0000000002 [0x413fd0c1] Feb 9 10:07:55.718550 kernel: Detected PIPT I-cache on CPU3 Feb 9 10:07:55.718557 kernel: GICv3: CPU3: found redistributor 3 region 0:0x0000000008100000 Feb 9 10:07:55.718564 kernel: GICv3: CPU3: using allocated LPI pending table @0x0000000040110000 Feb 9 10:07:55.718570 kernel: arch_timer: Enabling local workaround for ARM erratum 1418040 Feb 9 10:07:55.718576 kernel: CPU3: Booted secondary processor 0x0000000003 [0x413fd0c1] Feb 9 10:07:55.718582 kernel: smp: Brought up 1 node, 4 CPUs Feb 9 10:07:55.718593 kernel: SMP: Total of 4 processors activated. Feb 9 10:07:55.718600 kernel: CPU features: detected: 32-bit EL0 Support Feb 9 10:07:55.718607 kernel: CPU features: detected: Data cache clean to the PoU not required for I/D coherence Feb 9 10:07:55.718613 kernel: CPU features: detected: Common not Private translations Feb 9 10:07:55.718620 kernel: CPU features: detected: CRC32 instructions Feb 9 10:07:55.718626 kernel: CPU features: detected: RCpc load-acquire (LDAPR) Feb 9 10:07:55.718632 kernel: CPU features: detected: LSE atomic instructions Feb 9 10:07:55.718639 kernel: CPU features: detected: Privileged Access Never Feb 9 10:07:55.718646 kernel: CPU features: detected: RAS Extension Support Feb 9 10:07:55.718653 kernel: CPU features: detected: Speculative Store Bypassing Safe (SSBS) Feb 9 10:07:55.718659 kernel: CPU: All CPU(s) started at EL1 Feb 9 10:07:55.718666 kernel: alternatives: patching kernel code Feb 9 10:07:55.718673 kernel: devtmpfs: initialized Feb 9 10:07:55.718689 kernel: KASLR enabled Feb 9 10:07:55.718696 kernel: clocksource: jiffies: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 1911260446275000 ns Feb 9 10:07:55.718703 kernel: futex hash table entries: 1024 (order: 4, 65536 bytes, linear) Feb 9 10:07:55.718709 kernel: pinctrl core: initialized pinctrl subsystem Feb 9 10:07:55.718723 kernel: SMBIOS 3.0.0 present. Feb 9 10:07:55.718730 kernel: DMI: QEMU KVM Virtual Machine, BIOS 0.0.0 02/06/2015 Feb 9 10:07:55.718737 kernel: NET: Registered PF_NETLINK/PF_ROUTE protocol family Feb 9 10:07:55.718743 kernel: DMA: preallocated 512 KiB GFP_KERNEL pool for atomic allocations Feb 9 10:07:55.718750 kernel: DMA: preallocated 512 KiB GFP_KERNEL|GFP_DMA pool for atomic allocations Feb 9 10:07:55.718759 kernel: DMA: preallocated 512 KiB GFP_KERNEL|GFP_DMA32 pool for atomic allocations Feb 9 10:07:55.718765 kernel: audit: initializing netlink subsys (disabled) Feb 9 10:07:55.718772 kernel: audit: type=2000 audit(0.032:1): state=initialized audit_enabled=0 res=1 Feb 9 10:07:55.718778 kernel: thermal_sys: Registered thermal governor 'step_wise' Feb 9 10:07:55.718785 kernel: cpuidle: using governor menu Feb 9 10:07:55.718791 kernel: hw-breakpoint: found 6 breakpoint and 4 watchpoint registers. Feb 9 10:07:55.718798 kernel: ASID allocator initialised with 32768 entries Feb 9 10:07:55.718804 kernel: ACPI: bus type PCI registered Feb 9 10:07:55.718811 kernel: acpiphp: ACPI Hot Plug PCI Controller Driver version: 0.5 Feb 9 10:07:55.718819 kernel: Serial: AMBA PL011 UART driver Feb 9 10:07:55.718825 kernel: HugeTLB registered 1.00 GiB page size, pre-allocated 0 pages Feb 9 10:07:55.718832 kernel: HugeTLB registered 32.0 MiB page size, pre-allocated 0 pages Feb 9 10:07:55.718838 kernel: HugeTLB registered 2.00 MiB page size, pre-allocated 0 pages Feb 9 10:07:55.718845 kernel: HugeTLB registered 64.0 KiB page size, pre-allocated 0 pages Feb 9 10:07:55.718851 kernel: cryptd: max_cpu_qlen set to 1000 Feb 9 10:07:55.718858 kernel: alg: No test for fips(ansi_cprng) (fips_ansi_cprng) Feb 9 10:07:55.718864 kernel: ACPI: Added _OSI(Module Device) Feb 9 10:07:55.718871 kernel: ACPI: Added _OSI(Processor Device) Feb 9 10:07:55.718878 kernel: ACPI: Added _OSI(3.0 _SCP Extensions) Feb 9 10:07:55.718885 kernel: ACPI: Added _OSI(Processor Aggregator Device) Feb 9 10:07:55.718891 kernel: ACPI: Added _OSI(Linux-Dell-Video) Feb 9 10:07:55.718898 kernel: ACPI: Added _OSI(Linux-Lenovo-NV-HDMI-Audio) Feb 9 10:07:55.718904 kernel: ACPI: Added _OSI(Linux-HPI-Hybrid-Graphics) Feb 9 10:07:55.718911 kernel: ACPI: 1 ACPI AML tables successfully acquired and loaded Feb 9 10:07:55.718918 kernel: ACPI: Interpreter enabled Feb 9 10:07:55.718924 kernel: ACPI: Using GIC for interrupt routing Feb 9 10:07:55.718930 kernel: ACPI: MCFG table detected, 1 entries Feb 9 10:07:55.718939 kernel: ARMH0011:00: ttyAMA0 at MMIO 0x9000000 (irq = 12, base_baud = 0) is a SBSA Feb 9 10:07:55.718945 kernel: printk: console [ttyAMA0] enabled Feb 9 10:07:55.718952 kernel: ACPI: PCI Root Bridge [PCI0] (domain 0000 [bus 00-ff]) Feb 9 10:07:55.719073 kernel: acpi PNP0A08:00: _OSC: OS supports [ExtendedConfig ASPM ClockPM Segments MSI HPX-Type3] Feb 9 10:07:55.719137 kernel: acpi PNP0A08:00: _OSC: platform does not support [LTR] Feb 9 10:07:55.719196 kernel: acpi PNP0A08:00: _OSC: OS now controls [PCIeHotplug PME AER PCIeCapability] Feb 9 10:07:55.719255 kernel: acpi PNP0A08:00: ECAM area [mem 0x4010000000-0x401fffffff] reserved by PNP0C02:00 Feb 9 10:07:55.719316 kernel: acpi PNP0A08:00: ECAM at [mem 0x4010000000-0x401fffffff] for [bus 00-ff] Feb 9 10:07:55.719325 kernel: ACPI: Remapped I/O 0x000000003eff0000 to [io 0x0000-0xffff window] Feb 9 10:07:55.719331 kernel: PCI host bridge to bus 0000:00 Feb 9 10:07:55.719401 kernel: pci_bus 0000:00: root bus resource [mem 0x10000000-0x3efeffff window] Feb 9 10:07:55.719457 kernel: pci_bus 0000:00: root bus resource [io 0x0000-0xffff window] Feb 9 10:07:55.719512 kernel: pci_bus 0000:00: root bus resource [mem 0x8000000000-0xffffffffff window] Feb 9 10:07:55.719566 kernel: pci_bus 0000:00: root bus resource [bus 00-ff] Feb 9 10:07:55.719638 kernel: pci 0000:00:00.0: [1b36:0008] type 00 class 0x060000 Feb 9 10:07:55.719731 kernel: pci 0000:00:01.0: [1af4:1005] type 00 class 0x00ff00 Feb 9 10:07:55.719799 kernel: pci 0000:00:01.0: reg 0x10: [io 0x0000-0x001f] Feb 9 10:07:55.719862 kernel: pci 0000:00:01.0: reg 0x14: [mem 0x10000000-0x10000fff] Feb 9 10:07:55.719924 kernel: pci 0000:00:01.0: reg 0x20: [mem 0x8000000000-0x8000003fff 64bit pref] Feb 9 10:07:55.719986 kernel: pci 0000:00:01.0: BAR 4: assigned [mem 0x8000000000-0x8000003fff 64bit pref] Feb 9 10:07:55.720049 kernel: pci 0000:00:01.0: BAR 1: assigned [mem 0x10000000-0x10000fff] Feb 9 10:07:55.720114 kernel: pci 0000:00:01.0: BAR 0: assigned [io 0x1000-0x101f] Feb 9 10:07:55.720170 kernel: pci_bus 0000:00: resource 4 [mem 0x10000000-0x3efeffff window] Feb 9 10:07:55.720225 kernel: pci_bus 0000:00: resource 5 [io 0x0000-0xffff window] Feb 9 10:07:55.720280 kernel: pci_bus 0000:00: resource 6 [mem 0x8000000000-0xffffffffff window] Feb 9 10:07:55.720289 kernel: ACPI: PCI: Interrupt link GSI0 configured for IRQ 35 Feb 9 10:07:55.720296 kernel: ACPI: PCI: Interrupt link GSI1 configured for IRQ 36 Feb 9 10:07:55.720303 kernel: ACPI: PCI: Interrupt link GSI2 configured for IRQ 37 Feb 9 10:07:55.720311 kernel: ACPI: PCI: Interrupt link GSI3 configured for IRQ 38 Feb 9 10:07:55.720318 kernel: iommu: Default domain type: Translated Feb 9 10:07:55.720325 kernel: iommu: DMA domain TLB invalidation policy: strict mode Feb 9 10:07:55.720332 kernel: vgaarb: loaded Feb 9 10:07:55.720338 kernel: pps_core: LinuxPPS API ver. 1 registered Feb 9 10:07:55.720345 kernel: pps_core: Software ver. 5.3.6 - Copyright 2005-2007 Rodolfo Giometti Feb 9 10:07:55.720352 kernel: PTP clock support registered Feb 9 10:07:55.720359 kernel: Registered efivars operations Feb 9 10:07:55.720365 kernel: clocksource: Switched to clocksource arch_sys_counter Feb 9 10:07:55.720372 kernel: VFS: Disk quotas dquot_6.6.0 Feb 9 10:07:55.720380 kernel: VFS: Dquot-cache hash table entries: 512 (order 0, 4096 bytes) Feb 9 10:07:55.720387 kernel: pnp: PnP ACPI init Feb 9 10:07:55.720453 kernel: system 00:00: [mem 0x4010000000-0x401fffffff window] could not be reserved Feb 9 10:07:55.720462 kernel: pnp: PnP ACPI: found 1 devices Feb 9 10:07:55.720469 kernel: NET: Registered PF_INET protocol family Feb 9 10:07:55.720476 kernel: IP idents hash table entries: 65536 (order: 7, 524288 bytes, linear) Feb 9 10:07:55.720483 kernel: tcp_listen_portaddr_hash hash table entries: 2048 (order: 3, 32768 bytes, linear) Feb 9 10:07:55.720490 kernel: Table-perturb hash table entries: 65536 (order: 6, 262144 bytes, linear) Feb 9 10:07:55.720499 kernel: TCP established hash table entries: 32768 (order: 6, 262144 bytes, linear) Feb 9 10:07:55.720505 kernel: TCP bind hash table entries: 32768 (order: 7, 524288 bytes, linear) Feb 9 10:07:55.720512 kernel: TCP: Hash tables configured (established 32768 bind 32768) Feb 9 10:07:55.720519 kernel: UDP hash table entries: 2048 (order: 4, 65536 bytes, linear) Feb 9 10:07:55.720526 kernel: UDP-Lite hash table entries: 2048 (order: 4, 65536 bytes, linear) Feb 9 10:07:55.720533 kernel: NET: Registered PF_UNIX/PF_LOCAL protocol family Feb 9 10:07:55.720539 kernel: PCI: CLS 0 bytes, default 64 Feb 9 10:07:55.720546 kernel: hw perfevents: enabled with armv8_pmuv3_0 PMU driver, 7 counters available Feb 9 10:07:55.720554 kernel: kvm [1]: HYP mode not available Feb 9 10:07:55.720561 kernel: Initialise system trusted keyrings Feb 9 10:07:55.720567 kernel: workingset: timestamp_bits=39 max_order=20 bucket_order=0 Feb 9 10:07:55.720574 kernel: Key type asymmetric registered Feb 9 10:07:55.720581 kernel: Asymmetric key parser 'x509' registered Feb 9 10:07:55.720587 kernel: Block layer SCSI generic (bsg) driver version 0.4 loaded (major 249) Feb 9 10:07:55.720594 kernel: io scheduler mq-deadline registered Feb 9 10:07:55.720600 kernel: io scheduler kyber registered Feb 9 10:07:55.720607 kernel: io scheduler bfq registered Feb 9 10:07:55.720614 kernel: input: Power Button as /devices/LNXSYSTM:00/LNXSYBUS:00/PNP0C0C:00/input/input0 Feb 9 10:07:55.720622 kernel: ACPI: button: Power Button [PWRB] Feb 9 10:07:55.720629 kernel: ACPI: \_SB_.PCI0.GSI1: Enabled at IRQ 36 Feb 9 10:07:55.720696 kernel: virtio-pci 0000:00:01.0: enabling device (0005 -> 0007) Feb 9 10:07:55.720705 kernel: Serial: 8250/16550 driver, 4 ports, IRQ sharing enabled Feb 9 10:07:55.720712 kernel: thunder_xcv, ver 1.0 Feb 9 10:07:55.720726 kernel: thunder_bgx, ver 1.0 Feb 9 10:07:55.720732 kernel: nicpf, ver 1.0 Feb 9 10:07:55.720739 kernel: nicvf, ver 1.0 Feb 9 10:07:55.720811 kernel: rtc-efi rtc-efi.0: registered as rtc0 Feb 9 10:07:55.720873 kernel: rtc-efi rtc-efi.0: setting system clock to 2024-02-09T10:07:55 UTC (1707473275) Feb 9 10:07:55.720882 kernel: hid: raw HID events driver (C) Jiri Kosina Feb 9 10:07:55.720888 kernel: NET: Registered PF_INET6 protocol family Feb 9 10:07:55.720895 kernel: Segment Routing with IPv6 Feb 9 10:07:55.720902 kernel: In-situ OAM (IOAM) with IPv6 Feb 9 10:07:55.720908 kernel: NET: Registered PF_PACKET protocol family Feb 9 10:07:55.720915 kernel: Key type dns_resolver registered Feb 9 10:07:55.720922 kernel: registered taskstats version 1 Feb 9 10:07:55.720930 kernel: Loading compiled-in X.509 certificates Feb 9 10:07:55.720937 kernel: Loaded X.509 cert 'Kinvolk GmbH: Module signing key for 5.15.148-flatcar: ca91574208414224935c9cea513398977daf917d' Feb 9 10:07:55.720943 kernel: Key type .fscrypt registered Feb 9 10:07:55.720950 kernel: Key type fscrypt-provisioning registered Feb 9 10:07:55.720957 kernel: ima: No TPM chip found, activating TPM-bypass! Feb 9 10:07:55.720964 kernel: ima: Allocated hash algorithm: sha1 Feb 9 10:07:55.720970 kernel: ima: No architecture policies found Feb 9 10:07:55.720977 kernel: Freeing unused kernel memory: 34688K Feb 9 10:07:55.720984 kernel: Run /init as init process Feb 9 10:07:55.720992 kernel: with arguments: Feb 9 10:07:55.720998 kernel: /init Feb 9 10:07:55.721005 kernel: with environment: Feb 9 10:07:55.721011 kernel: HOME=/ Feb 9 10:07:55.721018 kernel: TERM=linux Feb 9 10:07:55.721024 kernel: BOOT_IMAGE=/flatcar/vmlinuz-a Feb 9 10:07:55.721033 systemd[1]: systemd 252 running in system mode (+PAM +AUDIT +SELINUX -APPARMOR +IMA +SMACK +SECCOMP +GCRYPT -GNUTLS +OPENSSL -ACL +BLKID +CURL -ELFUTILS -FIDO2 +IDN2 -IDN +IPTC +KMOD +LIBCRYPTSETUP +LIBFDISK +PCRE2 -PWQUALITY -P11KIT -QRENCODE -TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD -BPF_FRAMEWORK -XKBCOMMON +UTMP +SYSVINIT default-hierarchy=unified) Feb 9 10:07:55.721041 systemd[1]: Detected virtualization kvm. Feb 9 10:07:55.721050 systemd[1]: Detected architecture arm64. Feb 9 10:07:55.721057 systemd[1]: Running in initrd. Feb 9 10:07:55.721064 systemd[1]: No hostname configured, using default hostname. Feb 9 10:07:55.721071 systemd[1]: Hostname set to . Feb 9 10:07:55.721078 systemd[1]: Initializing machine ID from VM UUID. Feb 9 10:07:55.721086 systemd[1]: Queued start job for default target initrd.target. Feb 9 10:07:55.721093 systemd[1]: Started systemd-ask-password-console.path. Feb 9 10:07:55.721100 systemd[1]: Reached target cryptsetup.target. Feb 9 10:07:55.721108 systemd[1]: Reached target paths.target. Feb 9 10:07:55.721116 systemd[1]: Reached target slices.target. Feb 9 10:07:55.721122 systemd[1]: Reached target swap.target. Feb 9 10:07:55.721130 systemd[1]: Reached target timers.target. Feb 9 10:07:55.721137 systemd[1]: Listening on iscsid.socket. Feb 9 10:07:55.721145 systemd[1]: Listening on iscsiuio.socket. Feb 9 10:07:55.721152 systemd[1]: Listening on systemd-journald-audit.socket. Feb 9 10:07:55.721160 systemd[1]: Listening on systemd-journald-dev-log.socket. Feb 9 10:07:55.721167 systemd[1]: Listening on systemd-journald.socket. Feb 9 10:07:55.721174 systemd[1]: Listening on systemd-networkd.socket. Feb 9 10:07:55.721181 systemd[1]: Listening on systemd-udevd-control.socket. Feb 9 10:07:55.721189 systemd[1]: Listening on systemd-udevd-kernel.socket. Feb 9 10:07:55.721196 systemd[1]: Reached target sockets.target. Feb 9 10:07:55.721205 systemd[1]: Starting kmod-static-nodes.service... Feb 9 10:07:55.721214 systemd[1]: Finished network-cleanup.service. Feb 9 10:07:55.721223 systemd[1]: Starting systemd-fsck-usr.service... Feb 9 10:07:55.721233 systemd[1]: Starting systemd-journald.service... Feb 9 10:07:55.721240 systemd[1]: Starting systemd-modules-load.service... Feb 9 10:07:55.721247 systemd[1]: Starting systemd-resolved.service... Feb 9 10:07:55.721254 systemd[1]: Starting systemd-vconsole-setup.service... Feb 9 10:07:55.721261 systemd[1]: Finished kmod-static-nodes.service. Feb 9 10:07:55.721269 systemd[1]: Finished systemd-fsck-usr.service. Feb 9 10:07:55.721276 systemd[1]: Starting systemd-tmpfiles-setup-dev.service... Feb 9 10:07:55.721286 systemd-journald[290]: Journal started Feb 9 10:07:55.721326 systemd-journald[290]: Runtime Journal (/run/log/journal/e41d8d5aa85d4d969be9afd39364e19f) is 6.0M, max 48.7M, 42.6M free. Feb 9 10:07:55.712345 systemd-modules-load[291]: Inserted module 'overlay' Feb 9 10:07:55.727339 systemd[1]: Started systemd-journald.service. Feb 9 10:07:55.727379 kernel: audit: type=1130 audit(1707473275.724:2): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:55.727391 kernel: bridge: filtering via arp/ip/ip6tables is no longer available by default. Update your scripts to load br_netfilter if you need this. Feb 9 10:07:55.724000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:55.727082 systemd-resolved[292]: Positive Trust Anchors: Feb 9 10:07:55.731072 kernel: audit: type=1130 audit(1707473275.727:3): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:55.727000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:55.727088 systemd-resolved[292]: . IN DS 20326 8 2 e06d44b80b8f1d39a95c0b0d7c65d08458e880409bbc683457104237c7f8ec8d Feb 9 10:07:55.732750 kernel: Bridge firewalling registered Feb 9 10:07:55.727104 systemd[1]: Finished systemd-vconsole-setup.service. Feb 9 10:07:55.732000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:55.727114 systemd-resolved[292]: Negative trust anchors: home.arpa 10.in-addr.arpa 16.172.in-addr.arpa 17.172.in-addr.arpa 18.172.in-addr.arpa 19.172.in-addr.arpa 20.172.in-addr.arpa 21.172.in-addr.arpa 22.172.in-addr.arpa 23.172.in-addr.arpa 24.172.in-addr.arpa 25.172.in-addr.arpa 26.172.in-addr.arpa 27.172.in-addr.arpa 28.172.in-addr.arpa 29.172.in-addr.arpa 30.172.in-addr.arpa 31.172.in-addr.arpa 168.192.in-addr.arpa d.f.ip6.arpa corp home internal intranet lan local private test Feb 9 10:07:55.742264 kernel: audit: type=1130 audit(1707473275.732:4): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:55.742284 kernel: audit: type=1130 audit(1707473275.735:5): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:55.735000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:55.731198 systemd[1]: Finished systemd-tmpfiles-setup-dev.service. Feb 9 10:07:55.731241 systemd-resolved[292]: Defaulting to hostname 'linux'. Feb 9 10:07:55.731494 systemd-modules-load[291]: Inserted module 'br_netfilter' Feb 9 10:07:55.745502 kernel: SCSI subsystem initialized Feb 9 10:07:55.736013 systemd[1]: Started systemd-resolved.service. Feb 9 10:07:55.742383 systemd[1]: Reached target nss-lookup.target. Feb 9 10:07:55.744711 systemd[1]: Starting dracut-cmdline-ask.service... Feb 9 10:07:55.752741 kernel: device-mapper: core: CONFIG_IMA_DISABLE_HTABLE is disabled. Duplicate IMA measurements will not be recorded in the IMA log. Feb 9 10:07:55.756301 kernel: device-mapper: uevent: version 1.0.3 Feb 9 10:07:55.756351 kernel: device-mapper: ioctl: 4.45.0-ioctl (2021-03-22) initialised: dm-devel@redhat.com Feb 9 10:07:55.758624 systemd-modules-load[291]: Inserted module 'dm_multipath' Feb 9 10:07:55.759394 systemd[1]: Finished systemd-modules-load.service. Feb 9 10:07:55.762902 kernel: audit: type=1130 audit(1707473275.759:6): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:55.759000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:55.761957 systemd[1]: Starting systemd-sysctl.service... Feb 9 10:07:55.764244 systemd[1]: Finished dracut-cmdline-ask.service. Feb 9 10:07:55.767798 kernel: audit: type=1130 audit(1707473275.764:7): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:55.764000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:55.765703 systemd[1]: Starting dracut-cmdline.service... Feb 9 10:07:55.771270 systemd[1]: Finished systemd-sysctl.service. Feb 9 10:07:55.771000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:55.774643 dracut-cmdline[313]: dracut-dracut-053 Feb 9 10:07:55.775294 kernel: audit: type=1130 audit(1707473275.771:8): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:55.776811 dracut-cmdline[313]: Using kernel command line parameters: rd.driver.pre=btrfs BOOT_IMAGE=/flatcar/vmlinuz-a mount.usr=/dev/mapper/usr verity.usr=PARTUUID=7130c94a-213a-4e5a-8e26-6cce9662f132 rootflags=rw mount.usrflags=ro consoleblank=0 root=LABEL=ROOT console=ttyS0,115200 flatcar.first_boot=detected acpi=force verity.usrhash=14ffd9340f674a8d04c9d43eed85484d8b2b7e2bcd8b36a975c9ac66063d537d Feb 9 10:07:55.832738 kernel: Loading iSCSI transport class v2.0-870. Feb 9 10:07:55.840742 kernel: iscsi: registered transport (tcp) Feb 9 10:07:55.855025 kernel: iscsi: registered transport (qla4xxx) Feb 9 10:07:55.855039 kernel: QLogic iSCSI HBA Driver Feb 9 10:07:55.888669 systemd[1]: Finished dracut-cmdline.service. Feb 9 10:07:55.888000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:55.890223 systemd[1]: Starting dracut-pre-udev.service... Feb 9 10:07:55.892591 kernel: audit: type=1130 audit(1707473275.888:9): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:55.932742 kernel: raid6: neonx8 gen() 13804 MB/s Feb 9 10:07:55.949734 kernel: raid6: neonx8 xor() 10817 MB/s Feb 9 10:07:55.966728 kernel: raid6: neonx4 gen() 13552 MB/s Feb 9 10:07:55.983729 kernel: raid6: neonx4 xor() 11304 MB/s Feb 9 10:07:56.000728 kernel: raid6: neonx2 gen() 12960 MB/s Feb 9 10:07:56.017734 kernel: raid6: neonx2 xor() 10259 MB/s Feb 9 10:07:56.034731 kernel: raid6: neonx1 gen() 10491 MB/s Feb 9 10:07:56.051731 kernel: raid6: neonx1 xor() 8783 MB/s Feb 9 10:07:56.068729 kernel: raid6: int64x8 gen() 6295 MB/s Feb 9 10:07:56.085741 kernel: raid6: int64x8 xor() 3548 MB/s Feb 9 10:07:56.102739 kernel: raid6: int64x4 gen() 7249 MB/s Feb 9 10:07:56.119731 kernel: raid6: int64x4 xor() 3855 MB/s Feb 9 10:07:56.136732 kernel: raid6: int64x2 gen() 6153 MB/s Feb 9 10:07:56.153732 kernel: raid6: int64x2 xor() 3320 MB/s Feb 9 10:07:56.170731 kernel: raid6: int64x1 gen() 5046 MB/s Feb 9 10:07:56.187919 kernel: raid6: int64x1 xor() 2645 MB/s Feb 9 10:07:56.187931 kernel: raid6: using algorithm neonx8 gen() 13804 MB/s Feb 9 10:07:56.187939 kernel: raid6: .... xor() 10817 MB/s, rmw enabled Feb 9 10:07:56.187948 kernel: raid6: using neon recovery algorithm Feb 9 10:07:56.199733 kernel: xor: measuring software checksum speed Feb 9 10:07:56.200730 kernel: 8regs : 17297 MB/sec Feb 9 10:07:56.201729 kernel: 32regs : 20749 MB/sec Feb 9 10:07:56.202734 kernel: arm64_neon : 27892 MB/sec Feb 9 10:07:56.202748 kernel: xor: using function: arm64_neon (27892 MB/sec) Feb 9 10:07:56.257743 kernel: Btrfs loaded, crc32c=crc32c-generic, zoned=no, fsverity=no Feb 9 10:07:56.268429 systemd[1]: Finished dracut-pre-udev.service. Feb 9 10:07:56.268000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-udev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:56.270079 systemd[1]: Starting systemd-udevd.service... Feb 9 10:07:56.271980 kernel: audit: type=1130 audit(1707473276.268:10): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-udev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:56.268000 audit: BPF prog-id=7 op=LOAD Feb 9 10:07:56.268000 audit: BPF prog-id=8 op=LOAD Feb 9 10:07:56.288440 systemd-udevd[491]: Using default interface naming scheme 'v252'. Feb 9 10:07:56.291738 systemd[1]: Started systemd-udevd.service. Feb 9 10:07:56.291000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:56.293884 systemd[1]: Starting dracut-pre-trigger.service... Feb 9 10:07:56.304822 dracut-pre-trigger[499]: rd.md=0: removing MD RAID activation Feb 9 10:07:56.333624 systemd[1]: Finished dracut-pre-trigger.service. Feb 9 10:07:56.333000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:56.335135 systemd[1]: Starting systemd-udev-trigger.service... Feb 9 10:07:56.368747 systemd[1]: Finished systemd-udev-trigger.service. Feb 9 10:07:56.368000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:56.397747 kernel: virtio_blk virtio1: [vda] 19775488 512-byte logical blocks (10.1 GB/9.43 GiB) Feb 9 10:07:56.399794 kernel: GPT:Primary header thinks Alt. header is not at the end of the disk. Feb 9 10:07:56.399819 kernel: GPT:9289727 != 19775487 Feb 9 10:07:56.399828 kernel: GPT:Alternate GPT header not at the end of the disk. Feb 9 10:07:56.400731 kernel: GPT:9289727 != 19775487 Feb 9 10:07:56.400748 kernel: GPT: Use GNU Parted to correct GPT errors. Feb 9 10:07:56.400758 kernel: vda: vda1 vda2 vda3 vda4 vda6 vda7 vda9 Feb 9 10:07:56.413364 systemd[1]: Found device dev-disk-by\x2dpartlabel-USR\x2dA.device. Feb 9 10:07:56.414292 systemd[1]: Found device dev-disk-by\x2dpartuuid-7130c94a\x2d213a\x2d4e5a\x2d8e26\x2d6cce9662f132.device. Feb 9 10:07:56.418737 kernel: BTRFS: device label OEM devid 1 transid 12 /dev/vda6 scanned by (udev-worker) (547) Feb 9 10:07:56.420604 systemd[1]: Found device dev-disk-by\x2dlabel-ROOT.device. Feb 9 10:07:56.427466 systemd[1]: Found device dev-disk-by\x2dlabel-EFI\x2dSYSTEM.device. Feb 9 10:07:56.430671 systemd[1]: Found device dev-disk-by\x2dlabel-OEM.device. Feb 9 10:07:56.432153 systemd[1]: Starting disk-uuid.service... Feb 9 10:07:56.437703 disk-uuid[561]: Primary Header is updated. Feb 9 10:07:56.437703 disk-uuid[561]: Secondary Entries is updated. Feb 9 10:07:56.437703 disk-uuid[561]: Secondary Header is updated. Feb 9 10:07:56.441748 kernel: vda: vda1 vda2 vda3 vda4 vda6 vda7 vda9 Feb 9 10:07:57.457525 disk-uuid[562]: The operation has completed successfully. Feb 9 10:07:57.458744 kernel: vda: vda1 vda2 vda3 vda4 vda6 vda7 vda9 Feb 9 10:07:57.478961 systemd[1]: disk-uuid.service: Deactivated successfully. Feb 9 10:07:57.479056 systemd[1]: Finished disk-uuid.service. Feb 9 10:07:57.479000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=disk-uuid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:57.479000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=disk-uuid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:57.483129 systemd[1]: Starting verity-setup.service... Feb 9 10:07:57.502971 kernel: device-mapper: verity: sha256 using implementation "sha256-ce" Feb 9 10:07:57.526584 systemd[1]: Found device dev-mapper-usr.device. Feb 9 10:07:57.528175 systemd[1]: Mounting sysusr-usr.mount... Feb 9 10:07:57.533367 systemd[1]: Finished verity-setup.service. Feb 9 10:07:57.533000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=verity-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:57.576731 kernel: EXT4-fs (dm-0): mounted filesystem without journal. Opts: norecovery. Quota mode: none. Feb 9 10:07:57.576805 systemd[1]: Mounted sysusr-usr.mount. Feb 9 10:07:57.577596 systemd[1]: afterburn-network-kargs.service was skipped because no trigger condition checks were met. Feb 9 10:07:57.578369 systemd[1]: Starting ignition-setup.service... Feb 9 10:07:57.580016 systemd[1]: Starting parse-ip-for-networkd.service... Feb 9 10:07:57.587955 kernel: BTRFS info (device vda6): using crc32c (crc32c-generic) checksum algorithm Feb 9 10:07:57.587995 kernel: BTRFS info (device vda6): using free space tree Feb 9 10:07:57.588009 kernel: BTRFS info (device vda6): has skinny extents Feb 9 10:07:57.596252 systemd[1]: mnt-oem.mount: Deactivated successfully. Feb 9 10:07:57.603127 systemd[1]: Finished ignition-setup.service. Feb 9 10:07:57.603000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:57.604703 systemd[1]: Starting ignition-fetch-offline.service... Feb 9 10:07:57.684883 systemd[1]: Finished parse-ip-for-networkd.service. Feb 9 10:07:57.685000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=parse-ip-for-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:57.688795 systemd[1]: Starting systemd-networkd.service... Feb 9 10:07:57.687000 audit: BPF prog-id=9 op=LOAD Feb 9 10:07:57.709976 ignition[646]: Ignition 2.14.0 Feb 9 10:07:57.709987 ignition[646]: Stage: fetch-offline Feb 9 10:07:57.710063 systemd-networkd[737]: lo: Link UP Feb 9 10:07:57.711000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:57.710025 ignition[646]: no configs at "/usr/lib/ignition/base.d" Feb 9 10:07:57.710066 systemd-networkd[737]: lo: Gained carrier Feb 9 10:07:57.710034 ignition[646]: no config dir at "/usr/lib/ignition/base.platform.d/qemu" Feb 9 10:07:57.710785 systemd-networkd[737]: Enumeration completed Feb 9 10:07:57.710169 ignition[646]: parsed url from cmdline: "" Feb 9 10:07:57.710903 systemd[1]: Started systemd-networkd.service. Feb 9 10:07:57.710173 ignition[646]: no config URL provided Feb 9 10:07:57.711134 systemd-networkd[737]: eth0: Configuring with /usr/lib/systemd/network/zz-default.network. Feb 9 10:07:57.710178 ignition[646]: reading system config file "/usr/lib/ignition/user.ign" Feb 9 10:07:57.711838 systemd[1]: Reached target network.target. Feb 9 10:07:57.710185 ignition[646]: no config at "/usr/lib/ignition/user.ign" Feb 9 10:07:57.713395 systemd[1]: Starting iscsiuio.service... Feb 9 10:07:57.710201 ignition[646]: op(1): [started] loading QEMU firmware config module Feb 9 10:07:57.713667 systemd-networkd[737]: eth0: Link UP Feb 9 10:07:57.710206 ignition[646]: op(1): executing: "modprobe" "qemu_fw_cfg" Feb 9 10:07:57.713682 systemd-networkd[737]: eth0: Gained carrier Feb 9 10:07:57.718993 ignition[646]: op(1): [finished] loading QEMU firmware config module Feb 9 10:07:57.725683 systemd[1]: Started iscsiuio.service. Feb 9 10:07:57.725000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsiuio comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:57.727063 systemd[1]: Starting iscsid.service... Feb 9 10:07:57.728788 systemd-networkd[737]: eth0: DHCPv4 address 10.0.0.130/16, gateway 10.0.0.1 acquired from 10.0.0.1 Feb 9 10:07:57.730762 iscsid[743]: iscsid: can't open InitiatorName configuration file /etc/iscsi/initiatorname.iscsi Feb 9 10:07:57.730762 iscsid[743]: iscsid: Warning: InitiatorName file /etc/iscsi/initiatorname.iscsi does not exist or does not contain a properly formatted InitiatorName. If using software iscsi (iscsi_tcp or ib_iser) or partial offload (bnx2i or cxgbi iscsi), you may not be able to log into or discover targets. Please create a file /etc/iscsi/initiatorname.iscsi that contains a sting with the format: InitiatorName=iqn.yyyy-mm.[:identifier]. Feb 9 10:07:57.730762 iscsid[743]: Example: InitiatorName=iqn.2001-04.com.redhat:fc6. Feb 9 10:07:57.730762 iscsid[743]: If using hardware iscsi like qla4xxx this message can be ignored. Feb 9 10:07:57.730762 iscsid[743]: iscsid: can't open InitiatorAlias configuration file /etc/iscsi/initiatorname.iscsi Feb 9 10:07:57.730762 iscsid[743]: iscsid: can't open iscsid.safe_logout configuration file /etc/iscsi/iscsid.conf Feb 9 10:07:57.736000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:57.736402 systemd[1]: Started iscsid.service. Feb 9 10:07:57.737834 systemd[1]: Starting dracut-initqueue.service... Feb 9 10:07:57.749000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:57.748632 systemd[1]: Finished dracut-initqueue.service. Feb 9 10:07:57.749517 systemd[1]: Reached target remote-fs-pre.target. Feb 9 10:07:57.750332 systemd[1]: Reached target remote-cryptsetup.target. Feb 9 10:07:57.751239 systemd[1]: Reached target remote-fs.target. Feb 9 10:07:57.752768 systemd[1]: Starting dracut-pre-mount.service... Feb 9 10:07:57.757568 ignition[646]: parsing config with SHA512: f3adac24f9b5e38212620d4b645dddc916921156a7270041214c0fa353d0528e01f6231557af2651e0ec69fa2ea9b4cf10967fd3afd5b5587681702395112d76 Feb 9 10:07:57.762000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:57.761503 systemd[1]: Finished dracut-pre-mount.service. Feb 9 10:07:57.785485 unknown[646]: fetched base config from "system" Feb 9 10:07:57.785496 unknown[646]: fetched user config from "qemu" Feb 9 10:07:57.787000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:57.785921 ignition[646]: fetch-offline: fetch-offline passed Feb 9 10:07:57.787171 systemd[1]: Finished ignition-fetch-offline.service. Feb 9 10:07:57.785979 ignition[646]: Ignition finished successfully Feb 9 10:07:57.788094 systemd[1]: ignition-fetch.service was skipped because of an unmet condition check (ConditionPathExists=!/run/ignition.json). Feb 9 10:07:57.788889 systemd[1]: Starting ignition-kargs.service... Feb 9 10:07:57.797488 ignition[758]: Ignition 2.14.0 Feb 9 10:07:57.797497 ignition[758]: Stage: kargs Feb 9 10:07:57.797583 ignition[758]: no configs at "/usr/lib/ignition/base.d" Feb 9 10:07:57.797593 ignition[758]: no config dir at "/usr/lib/ignition/base.platform.d/qemu" Feb 9 10:07:57.798440 ignition[758]: kargs: kargs passed Feb 9 10:07:57.798482 ignition[758]: Ignition finished successfully Feb 9 10:07:57.801952 systemd[1]: Finished ignition-kargs.service. Feb 9 10:07:57.801000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:57.803437 systemd[1]: Starting ignition-disks.service... Feb 9 10:07:57.810107 ignition[764]: Ignition 2.14.0 Feb 9 10:07:57.810117 ignition[764]: Stage: disks Feb 9 10:07:57.810209 ignition[764]: no configs at "/usr/lib/ignition/base.d" Feb 9 10:07:57.810218 ignition[764]: no config dir at "/usr/lib/ignition/base.platform.d/qemu" Feb 9 10:07:57.811922 systemd[1]: Finished ignition-disks.service. Feb 9 10:07:57.812000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:57.811092 ignition[764]: disks: disks passed Feb 9 10:07:57.813186 systemd[1]: Reached target initrd-root-device.target. Feb 9 10:07:57.811137 ignition[764]: Ignition finished successfully Feb 9 10:07:57.814269 systemd[1]: Reached target local-fs-pre.target. Feb 9 10:07:57.815200 systemd[1]: Reached target local-fs.target. Feb 9 10:07:57.816334 systemd[1]: Reached target sysinit.target. Feb 9 10:07:57.817369 systemd[1]: Reached target basic.target. Feb 9 10:07:57.819134 systemd[1]: Starting systemd-fsck-root.service... Feb 9 10:07:57.831355 systemd-fsck[772]: ROOT: clean, 602/553520 files, 56013/553472 blocks Feb 9 10:07:57.834549 systemd[1]: Finished systemd-fsck-root.service. Feb 9 10:07:57.834000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:57.836213 systemd[1]: Mounting sysroot.mount... Feb 9 10:07:57.844422 systemd[1]: Mounted sysroot.mount. Feb 9 10:07:57.845406 kernel: EXT4-fs (vda9): mounted filesystem with ordered data mode. Opts: (null). Quota mode: none. Feb 9 10:07:57.845085 systemd[1]: Reached target initrd-root-fs.target. Feb 9 10:07:57.848407 systemd[1]: Mounting sysroot-usr.mount... Feb 9 10:07:57.849211 systemd[1]: flatcar-metadata-hostname.service was skipped because no trigger condition checks were met. Feb 9 10:07:57.849246 systemd[1]: ignition-remount-sysroot.service was skipped because of an unmet condition check (ConditionPathIsReadWrite=!/sysroot). Feb 9 10:07:57.849267 systemd[1]: Reached target ignition-diskful.target. Feb 9 10:07:57.850790 systemd[1]: Mounted sysroot-usr.mount. Feb 9 10:07:57.852185 systemd[1]: Starting initrd-setup-root.service... Feb 9 10:07:57.856316 initrd-setup-root[782]: cut: /sysroot/etc/passwd: No such file or directory Feb 9 10:07:57.860812 initrd-setup-root[790]: cut: /sysroot/etc/group: No such file or directory Feb 9 10:07:57.864213 initrd-setup-root[798]: cut: /sysroot/etc/shadow: No such file or directory Feb 9 10:07:57.867756 initrd-setup-root[806]: cut: /sysroot/etc/gshadow: No such file or directory Feb 9 10:07:57.898588 systemd[1]: Finished initrd-setup-root.service. Feb 9 10:07:57.899000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:57.900026 systemd[1]: Starting ignition-mount.service... Feb 9 10:07:57.901269 systemd[1]: Starting sysroot-boot.service... Feb 9 10:07:57.905042 bash[823]: umount: /sysroot/usr/share/oem: not mounted. Feb 9 10:07:57.913223 ignition[824]: INFO : Ignition 2.14.0 Feb 9 10:07:57.913223 ignition[824]: INFO : Stage: mount Feb 9 10:07:57.914496 ignition[824]: INFO : no configs at "/usr/lib/ignition/base.d" Feb 9 10:07:57.914496 ignition[824]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/qemu" Feb 9 10:07:57.915948 ignition[824]: INFO : mount: mount passed Feb 9 10:07:57.915948 ignition[824]: INFO : Ignition finished successfully Feb 9 10:07:57.917445 systemd[1]: Finished ignition-mount.service. Feb 9 10:07:57.917000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:57.919635 systemd[1]: Finished sysroot-boot.service. Feb 9 10:07:57.920000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:07:58.537113 systemd[1]: Mounting sysroot-usr-share-oem.mount... Feb 9 10:07:58.543746 kernel: BTRFS: device label OEM devid 1 transid 13 /dev/vda6 scanned by mount (833) Feb 9 10:07:58.543789 kernel: BTRFS info (device vda6): using crc32c (crc32c-generic) checksum algorithm Feb 9 10:07:58.544898 kernel: BTRFS info (device vda6): using free space tree Feb 9 10:07:58.544913 kernel: BTRFS info (device vda6): has skinny extents Feb 9 10:07:58.548082 systemd[1]: Mounted sysroot-usr-share-oem.mount. Feb 9 10:07:58.549589 systemd[1]: Starting ignition-files.service... Feb 9 10:07:58.563970 ignition[853]: INFO : Ignition 2.14.0 Feb 9 10:07:58.563970 ignition[853]: INFO : Stage: files Feb 9 10:07:58.565206 ignition[853]: INFO : no configs at "/usr/lib/ignition/base.d" Feb 9 10:07:58.565206 ignition[853]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/qemu" Feb 9 10:07:58.565206 ignition[853]: DEBUG : files: compiled without relabeling support, skipping Feb 9 10:07:58.570906 ignition[853]: INFO : files: ensureUsers: op(1): [started] creating or modifying user "core" Feb 9 10:07:58.570906 ignition[853]: DEBUG : files: ensureUsers: op(1): executing: "usermod" "--root" "/sysroot" "core" Feb 9 10:07:58.574458 ignition[853]: INFO : files: ensureUsers: op(1): [finished] creating or modifying user "core" Feb 9 10:07:58.575523 ignition[853]: INFO : files: ensureUsers: op(2): [started] adding ssh keys to user "core" Feb 9 10:07:58.576480 ignition[853]: INFO : files: ensureUsers: op(2): [finished] adding ssh keys to user "core" Feb 9 10:07:58.576480 ignition[853]: INFO : files: createFilesystemsFiles: createFiles: op(3): [started] writing file "/sysroot/opt/cni-plugins-linux-arm64-v1.3.0.tgz" Feb 9 10:07:58.576480 ignition[853]: INFO : files: createFilesystemsFiles: createFiles: op(3): GET https://github.com/containernetworking/plugins/releases/download/v1.3.0/cni-plugins-linux-arm64-v1.3.0.tgz: attempt #1 Feb 9 10:07:58.575755 unknown[853]: wrote ssh authorized keys file for user: core Feb 9 10:07:58.745860 ignition[853]: INFO : files: createFilesystemsFiles: createFiles: op(3): GET result: OK Feb 9 10:07:58.985674 ignition[853]: DEBUG : files: createFilesystemsFiles: createFiles: op(3): file matches expected sum of: b2b7fb74f1b3cb8928f49e5bf9d4bc686e057e837fac3caf1b366d54757921dba80d70cc010399b274d136e8dee9a25b1ad87cdfdc4ffcf42cf88f3e8f99587a Feb 9 10:07:58.985674 ignition[853]: INFO : files: createFilesystemsFiles: createFiles: op(3): [finished] writing file "/sysroot/opt/cni-plugins-linux-arm64-v1.3.0.tgz" Feb 9 10:07:58.989064 ignition[853]: INFO : files: createFilesystemsFiles: createFiles: op(4): [started] writing file "/sysroot/opt/crictl-v1.27.0-linux-arm64.tar.gz" Feb 9 10:07:58.989064 ignition[853]: INFO : files: createFilesystemsFiles: createFiles: op(4): GET https://github.com/kubernetes-sigs/cri-tools/releases/download/v1.27.0/crictl-v1.27.0-linux-arm64.tar.gz: attempt #1 Feb 9 10:07:59.251036 ignition[853]: INFO : files: createFilesystemsFiles: createFiles: op(4): GET result: OK Feb 9 10:07:59.371594 ignition[853]: DEBUG : files: createFilesystemsFiles: createFiles: op(4): file matches expected sum of: db062e43351a63347871e7094115be2ae3853afcd346d47f7b51141da8c3202c2df58d2e17359322f632abcb37474fd7fdb3b7aadbc5cfd5cf6d3bad040b6251 Feb 9 10:07:59.373844 ignition[853]: INFO : files: createFilesystemsFiles: createFiles: op(4): [finished] writing file "/sysroot/opt/crictl-v1.27.0-linux-arm64.tar.gz" Feb 9 10:07:59.373844 ignition[853]: INFO : files: createFilesystemsFiles: createFiles: op(5): [started] writing file "/sysroot/opt/bin/kubeadm" Feb 9 10:07:59.373844 ignition[853]: INFO : files: createFilesystemsFiles: createFiles: op(5): GET https://dl.k8s.io/release/v1.27.2/bin/linux/arm64/kubeadm: attempt #1 Feb 9 10:07:59.394054 systemd-networkd[737]: eth0: Gained IPv6LL Feb 9 10:07:59.423844 ignition[853]: INFO : files: createFilesystemsFiles: createFiles: op(5): GET result: OK Feb 9 10:07:59.810129 ignition[853]: DEBUG : files: createFilesystemsFiles: createFiles: op(5): file matches expected sum of: 45b3100984c979ba0f1c0df8f4211474c2d75ebe916e677dff5fc8e3b3697cf7a953da94e356f39684cc860dff6878b772b7514c55651c2f866d9efeef23f970 Feb 9 10:07:59.812539 ignition[853]: INFO : files: createFilesystemsFiles: createFiles: op(5): [finished] writing file "/sysroot/opt/bin/kubeadm" Feb 9 10:07:59.812539 ignition[853]: INFO : files: createFilesystemsFiles: createFiles: op(6): [started] writing file "/sysroot/opt/bin/kubelet" Feb 9 10:07:59.812539 ignition[853]: INFO : files: createFilesystemsFiles: createFiles: op(6): GET https://dl.k8s.io/release/v1.27.2/bin/linux/arm64/kubelet: attempt #1 Feb 9 10:07:59.833695 ignition[853]: INFO : files: createFilesystemsFiles: createFiles: op(6): GET result: OK Feb 9 10:08:00.407137 ignition[853]: DEBUG : files: createFilesystemsFiles: createFiles: op(6): file matches expected sum of: 71857ff499ae135fa478e1827a0ed8865e578a8d2b1e25876e914fd0beba03733801c0654bcd4c0567bafeb16887dafb2dbbe8d1116e6ea28dcd8366c142d348 Feb 9 10:08:00.409604 ignition[853]: INFO : files: createFilesystemsFiles: createFiles: op(6): [finished] writing file "/sysroot/opt/bin/kubelet" Feb 9 10:08:00.409604 ignition[853]: INFO : files: createFilesystemsFiles: createFiles: op(7): [started] writing file "/sysroot/home/core/install.sh" Feb 9 10:08:00.412449 ignition[853]: INFO : files: createFilesystemsFiles: createFiles: op(7): [finished] writing file "/sysroot/home/core/install.sh" Feb 9 10:08:00.412449 ignition[853]: INFO : files: createFilesystemsFiles: createFiles: op(8): [started] writing file "/sysroot/etc/docker/daemon.json" Feb 9 10:08:00.412449 ignition[853]: INFO : files: createFilesystemsFiles: createFiles: op(8): [finished] writing file "/sysroot/etc/docker/daemon.json" Feb 9 10:08:00.412449 ignition[853]: INFO : files: createFilesystemsFiles: createFiles: op(9): [started] writing file "/sysroot/etc/flatcar/update.conf" Feb 9 10:08:00.412449 ignition[853]: INFO : files: createFilesystemsFiles: createFiles: op(9): [finished] writing file "/sysroot/etc/flatcar/update.conf" Feb 9 10:08:00.412449 ignition[853]: INFO : files: op(a): [started] processing unit "prepare-cni-plugins.service" Feb 9 10:08:00.412449 ignition[853]: INFO : files: op(a): op(b): [started] writing unit "prepare-cni-plugins.service" at "/sysroot/etc/systemd/system/prepare-cni-plugins.service" Feb 9 10:08:00.412449 ignition[853]: INFO : files: op(a): op(b): [finished] writing unit "prepare-cni-plugins.service" at "/sysroot/etc/systemd/system/prepare-cni-plugins.service" Feb 9 10:08:00.412449 ignition[853]: INFO : files: op(a): [finished] processing unit "prepare-cni-plugins.service" Feb 9 10:08:00.412449 ignition[853]: INFO : files: op(c): [started] processing unit "prepare-critools.service" Feb 9 10:08:00.412449 ignition[853]: INFO : files: op(c): op(d): [started] writing unit "prepare-critools.service" at "/sysroot/etc/systemd/system/prepare-critools.service" Feb 9 10:08:00.412449 ignition[853]: INFO : files: op(c): op(d): [finished] writing unit "prepare-critools.service" at "/sysroot/etc/systemd/system/prepare-critools.service" Feb 9 10:08:00.412449 ignition[853]: INFO : files: op(c): [finished] processing unit "prepare-critools.service" Feb 9 10:08:00.412449 ignition[853]: INFO : files: op(e): [started] processing unit "coreos-metadata.service" Feb 9 10:08:00.412449 ignition[853]: INFO : files: op(e): op(f): [started] writing unit "coreos-metadata.service" at "/sysroot/etc/systemd/system/coreos-metadata.service" Feb 9 10:08:00.412449 ignition[853]: INFO : files: op(e): op(f): [finished] writing unit "coreos-metadata.service" at "/sysroot/etc/systemd/system/coreos-metadata.service" Feb 9 10:08:00.412449 ignition[853]: INFO : files: op(e): [finished] processing unit "coreos-metadata.service" Feb 9 10:08:00.412449 ignition[853]: INFO : files: op(10): [started] setting preset to enabled for "prepare-cni-plugins.service" Feb 9 10:08:00.438706 ignition[853]: INFO : files: op(10): [finished] setting preset to enabled for "prepare-cni-plugins.service" Feb 9 10:08:00.438706 ignition[853]: INFO : files: op(11): [started] setting preset to enabled for "prepare-critools.service" Feb 9 10:08:00.438706 ignition[853]: INFO : files: op(11): [finished] setting preset to enabled for "prepare-critools.service" Feb 9 10:08:00.438706 ignition[853]: INFO : files: op(12): [started] setting preset to disabled for "coreos-metadata.service" Feb 9 10:08:00.438706 ignition[853]: INFO : files: op(12): op(13): [started] removing enablement symlink(s) for "coreos-metadata.service" Feb 9 10:08:00.460327 ignition[853]: INFO : files: op(12): op(13): [finished] removing enablement symlink(s) for "coreos-metadata.service" Feb 9 10:08:00.461499 ignition[853]: INFO : files: op(12): [finished] setting preset to disabled for "coreos-metadata.service" Feb 9 10:08:00.461499 ignition[853]: INFO : files: createResultFile: createFiles: op(14): [started] writing file "/sysroot/etc/.ignition-result.json" Feb 9 10:08:00.461499 ignition[853]: INFO : files: createResultFile: createFiles: op(14): [finished] writing file "/sysroot/etc/.ignition-result.json" Feb 9 10:08:00.461499 ignition[853]: INFO : files: files passed Feb 9 10:08:00.461499 ignition[853]: INFO : Ignition finished successfully Feb 9 10:08:00.465705 systemd[1]: Finished ignition-files.service. Feb 9 10:08:00.470238 kernel: kauditd_printk_skb: 23 callbacks suppressed Feb 9 10:08:00.470261 kernel: audit: type=1130 audit(1707473280.465:34): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.465000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.467467 systemd[1]: Starting initrd-setup-root-after-ignition.service... Feb 9 10:08:00.469992 systemd[1]: torcx-profile-populate.service was skipped because of an unmet condition check (ConditionPathExists=/sysroot/etc/torcx/next-profile). Feb 9 10:08:00.473085 initrd-setup-root-after-ignition[877]: grep: /sysroot/usr/share/oem/oem-release: No such file or directory Feb 9 10:08:00.470605 systemd[1]: Starting ignition-quench.service... Feb 9 10:08:00.478588 kernel: audit: type=1130 audit(1707473280.474:35): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.478606 kernel: audit: type=1131 audit(1707473280.474:36): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.474000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.474000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.478697 initrd-setup-root-after-ignition[880]: grep: /sysroot/etc/flatcar/enabled-sysext.conf: No such file or directory Feb 9 10:08:00.478000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.473291 systemd[1]: ignition-quench.service: Deactivated successfully. Feb 9 10:08:00.483566 kernel: audit: type=1130 audit(1707473280.478:37): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.473363 systemd[1]: Finished ignition-quench.service. Feb 9 10:08:00.474922 systemd[1]: Finished initrd-setup-root-after-ignition.service. Feb 9 10:08:00.479347 systemd[1]: Reached target ignition-complete.target. Feb 9 10:08:00.483405 systemd[1]: Starting initrd-parse-etc.service... Feb 9 10:08:00.494915 systemd[1]: initrd-parse-etc.service: Deactivated successfully. Feb 9 10:08:00.494992 systemd[1]: Finished initrd-parse-etc.service. Feb 9 10:08:00.500432 kernel: audit: type=1130 audit(1707473280.495:38): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.500450 kernel: audit: type=1131 audit(1707473280.495:39): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.495000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.495000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.496557 systemd[1]: Reached target initrd-fs.target. Feb 9 10:08:00.501011 systemd[1]: Reached target initrd.target. Feb 9 10:08:00.502107 systemd[1]: dracut-mount.service was skipped because no trigger condition checks were met. Feb 9 10:08:00.502793 systemd[1]: Starting dracut-pre-pivot.service... Feb 9 10:08:00.512520 systemd[1]: Finished dracut-pre-pivot.service. Feb 9 10:08:00.512000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.513840 systemd[1]: Starting initrd-cleanup.service... Feb 9 10:08:00.516336 kernel: audit: type=1130 audit(1707473280.512:40): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.521042 systemd[1]: Stopped target nss-lookup.target. Feb 9 10:08:00.521800 systemd[1]: Stopped target remote-cryptsetup.target. Feb 9 10:08:00.522956 systemd[1]: Stopped target timers.target. Feb 9 10:08:00.524000 systemd[1]: dracut-pre-pivot.service: Deactivated successfully. Feb 9 10:08:00.524000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.524097 systemd[1]: Stopped dracut-pre-pivot.service. Feb 9 10:08:00.528226 kernel: audit: type=1131 audit(1707473280.524:41): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.525101 systemd[1]: Stopped target initrd.target. Feb 9 10:08:00.527875 systemd[1]: Stopped target basic.target. Feb 9 10:08:00.528911 systemd[1]: Stopped target ignition-complete.target. Feb 9 10:08:00.529978 systemd[1]: Stopped target ignition-diskful.target. Feb 9 10:08:00.531107 systemd[1]: Stopped target initrd-root-device.target. Feb 9 10:08:00.532204 systemd[1]: Stopped target remote-fs.target. Feb 9 10:08:00.533348 systemd[1]: Stopped target remote-fs-pre.target. Feb 9 10:08:00.534477 systemd[1]: Stopped target sysinit.target. Feb 9 10:08:00.535513 systemd[1]: Stopped target local-fs.target. Feb 9 10:08:00.536423 systemd[1]: Stopped target local-fs-pre.target. Feb 9 10:08:00.537348 systemd[1]: Stopped target swap.target. Feb 9 10:08:00.538000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.538372 systemd[1]: dracut-pre-mount.service: Deactivated successfully. Feb 9 10:08:00.542623 kernel: audit: type=1131 audit(1707473280.538:42): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.538468 systemd[1]: Stopped dracut-pre-mount.service. Feb 9 10:08:00.542000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.539588 systemd[1]: Stopped target cryptsetup.target. Feb 9 10:08:00.546469 kernel: audit: type=1131 audit(1707473280.542:43): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.545000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.542137 systemd[1]: dracut-initqueue.service: Deactivated successfully. Feb 9 10:08:00.542234 systemd[1]: Stopped dracut-initqueue.service. Feb 9 10:08:00.543379 systemd[1]: ignition-fetch-offline.service: Deactivated successfully. Feb 9 10:08:00.543473 systemd[1]: Stopped ignition-fetch-offline.service. Feb 9 10:08:00.546162 systemd[1]: Stopped target paths.target. Feb 9 10:08:00.547056 systemd[1]: systemd-ask-password-console.path: Deactivated successfully. Feb 9 10:08:00.548831 systemd[1]: Stopped systemd-ask-password-console.path. Feb 9 10:08:00.549686 systemd[1]: Stopped target slices.target. Feb 9 10:08:00.553000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.550829 systemd[1]: Stopped target sockets.target. Feb 9 10:08:00.554000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.551854 systemd[1]: iscsid.socket: Deactivated successfully. Feb 9 10:08:00.551923 systemd[1]: Closed iscsid.socket. Feb 9 10:08:00.553000 systemd[1]: initrd-setup-root-after-ignition.service: Deactivated successfully. Feb 9 10:08:00.553095 systemd[1]: Stopped initrd-setup-root-after-ignition.service. Feb 9 10:08:00.554193 systemd[1]: ignition-files.service: Deactivated successfully. Feb 9 10:08:00.558000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.554282 systemd[1]: Stopped ignition-files.service. Feb 9 10:08:00.555866 systemd[1]: Stopping ignition-mount.service... Feb 9 10:08:00.556867 systemd[1]: Stopping iscsiuio.service... Feb 9 10:08:00.561000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.557523 systemd[1]: kmod-static-nodes.service: Deactivated successfully. Feb 9 10:08:00.557633 systemd[1]: Stopped kmod-static-nodes.service. Feb 9 10:08:00.562000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.559673 systemd[1]: Stopping sysroot-boot.service... Feb 9 10:08:00.560749 systemd[1]: systemd-udev-trigger.service: Deactivated successfully. Feb 9 10:08:00.565000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsiuio comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.560873 systemd[1]: Stopped systemd-udev-trigger.service. Feb 9 10:08:00.562007 systemd[1]: dracut-pre-trigger.service: Deactivated successfully. Feb 9 10:08:00.562092 systemd[1]: Stopped dracut-pre-trigger.service. Feb 9 10:08:00.572294 ignition[893]: INFO : Ignition 2.14.0 Feb 9 10:08:00.572294 ignition[893]: INFO : Stage: umount Feb 9 10:08:00.572294 ignition[893]: INFO : no configs at "/usr/lib/ignition/base.d" Feb 9 10:08:00.572294 ignition[893]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/qemu" Feb 9 10:08:00.572294 ignition[893]: INFO : umount: umount passed Feb 9 10:08:00.572294 ignition[893]: INFO : Ignition finished successfully Feb 9 10:08:00.572000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.572000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.574000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.575000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.564515 systemd[1]: iscsiuio.service: Deactivated successfully. Feb 9 10:08:00.578000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.564593 systemd[1]: Stopped iscsiuio.service. Feb 9 10:08:00.579000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.565580 systemd[1]: Stopped target network.target. Feb 9 10:08:00.580000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.566352 systemd[1]: iscsiuio.socket: Deactivated successfully. Feb 9 10:08:00.566381 systemd[1]: Closed iscsiuio.socket. Feb 9 10:08:00.567744 systemd[1]: Stopping systemd-networkd.service... Feb 9 10:08:00.583000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=parse-ip-for-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.568873 systemd[1]: Stopping systemd-resolved.service... Feb 9 10:08:00.585000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.572278 systemd[1]: sysroot-boot.mount: Deactivated successfully. Feb 9 10:08:00.585000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.572755 systemd-networkd[737]: eth0: DHCPv6 lease lost Feb 9 10:08:00.588000 audit: BPF prog-id=9 op=UNLOAD Feb 9 10:08:00.572761 systemd[1]: initrd-cleanup.service: Deactivated successfully. Feb 9 10:08:00.572839 systemd[1]: Finished initrd-cleanup.service. Feb 9 10:08:00.591000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.573871 systemd[1]: ignition-mount.service: Deactivated successfully. Feb 9 10:08:00.573942 systemd[1]: Stopped ignition-mount.service. Feb 9 10:08:00.575059 systemd[1]: systemd-networkd.service: Deactivated successfully. Feb 9 10:08:00.595000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.575134 systemd[1]: Stopped systemd-networkd.service. Feb 9 10:08:00.596000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=network-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.576966 systemd[1]: systemd-networkd.socket: Deactivated successfully. Feb 9 10:08:00.599000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-udev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.576996 systemd[1]: Closed systemd-networkd.socket. Feb 9 10:08:00.577965 systemd[1]: ignition-disks.service: Deactivated successfully. Feb 9 10:08:00.600000 audit: BPF prog-id=6 op=UNLOAD Feb 9 10:08:00.600000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.601000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.578016 systemd[1]: Stopped ignition-disks.service. Feb 9 10:08:00.579168 systemd[1]: ignition-kargs.service: Deactivated successfully. Feb 9 10:08:00.579210 systemd[1]: Stopped ignition-kargs.service. Feb 9 10:08:00.604000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.580351 systemd[1]: ignition-setup.service: Deactivated successfully. Feb 9 10:08:00.580387 systemd[1]: Stopped ignition-setup.service. Feb 9 10:08:00.582007 systemd[1]: Stopping network-cleanup.service... Feb 9 10:08:00.583005 systemd[1]: parse-ip-for-networkd.service: Deactivated successfully. Feb 9 10:08:00.583067 systemd[1]: Stopped parse-ip-for-networkd.service. Feb 9 10:08:00.608000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-udevadm-cleanup-db comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.608000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-udevadm-cleanup-db comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.584132 systemd[1]: systemd-sysctl.service: Deactivated successfully. Feb 9 10:08:00.584175 systemd[1]: Stopped systemd-sysctl.service. Feb 9 10:08:00.585760 systemd[1]: systemd-modules-load.service: Deactivated successfully. Feb 9 10:08:00.585801 systemd[1]: Stopped systemd-modules-load.service. Feb 9 10:08:00.586624 systemd[1]: Stopping systemd-udevd.service... Feb 9 10:08:00.591133 systemd[1]: run-credentials-systemd\x2dsysctl.service.mount: Deactivated successfully. Feb 9 10:08:00.591566 systemd[1]: systemd-resolved.service: Deactivated successfully. Feb 9 10:08:00.591653 systemd[1]: Stopped systemd-resolved.service. Feb 9 10:08:00.595096 systemd[1]: systemd-udevd.service: Deactivated successfully. Feb 9 10:08:00.595215 systemd[1]: Stopped systemd-udevd.service. Feb 9 10:08:00.596223 systemd[1]: network-cleanup.service: Deactivated successfully. Feb 9 10:08:00.596303 systemd[1]: Stopped network-cleanup.service. Feb 9 10:08:00.597392 systemd[1]: systemd-udevd-control.socket: Deactivated successfully. Feb 9 10:08:00.597427 systemd[1]: Closed systemd-udevd-control.socket. Feb 9 10:08:00.598170 systemd[1]: systemd-udevd-kernel.socket: Deactivated successfully. Feb 9 10:08:00.598202 systemd[1]: Closed systemd-udevd-kernel.socket. Feb 9 10:08:00.599267 systemd[1]: dracut-pre-udev.service: Deactivated successfully. Feb 9 10:08:00.599309 systemd[1]: Stopped dracut-pre-udev.service. Feb 9 10:08:00.600025 systemd[1]: dracut-cmdline.service: Deactivated successfully. Feb 9 10:08:00.600065 systemd[1]: Stopped dracut-cmdline.service. Feb 9 10:08:00.601300 systemd[1]: dracut-cmdline-ask.service: Deactivated successfully. Feb 9 10:08:00.601337 systemd[1]: Stopped dracut-cmdline-ask.service. Feb 9 10:08:00.603052 systemd[1]: Starting initrd-udevadm-cleanup-db.service... Feb 9 10:08:00.604162 systemd[1]: systemd-vconsole-setup.service: Deactivated successfully. Feb 9 10:08:00.604219 systemd[1]: Stopped systemd-vconsole-setup.service. Feb 9 10:08:00.608302 systemd[1]: initrd-udevadm-cleanup-db.service: Deactivated successfully. Feb 9 10:08:00.608389 systemd[1]: Finished initrd-udevadm-cleanup-db.service. Feb 9 10:08:00.647452 systemd[1]: sysroot-boot.service: Deactivated successfully. Feb 9 10:08:00.647551 systemd[1]: Stopped sysroot-boot.service. Feb 9 10:08:00.648000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.648948 systemd[1]: Reached target initrd-switch-root.target. Feb 9 10:08:00.649930 systemd[1]: initrd-setup-root.service: Deactivated successfully. Feb 9 10:08:00.650000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:00.649979 systemd[1]: Stopped initrd-setup-root.service. Feb 9 10:08:00.651826 systemd[1]: Starting initrd-switch-root.service... Feb 9 10:08:00.657965 systemd[1]: Switching root. Feb 9 10:08:00.676320 iscsid[743]: iscsid shutting down. Feb 9 10:08:00.676958 systemd-journald[290]: Received SIGTERM from PID 1 (n/a). Feb 9 10:08:00.677002 systemd-journald[290]: Journal stopped Feb 9 10:08:02.774749 kernel: SELinux: Class mctp_socket not defined in policy. Feb 9 10:08:02.774804 kernel: SELinux: Class anon_inode not defined in policy. Feb 9 10:08:02.774815 kernel: SELinux: the above unknown classes and permissions will be allowed Feb 9 10:08:02.774825 kernel: SELinux: policy capability network_peer_controls=1 Feb 9 10:08:02.774839 kernel: SELinux: policy capability open_perms=1 Feb 9 10:08:02.774851 kernel: SELinux: policy capability extended_socket_class=1 Feb 9 10:08:02.774861 kernel: SELinux: policy capability always_check_network=0 Feb 9 10:08:02.774874 kernel: SELinux: policy capability cgroup_seclabel=1 Feb 9 10:08:02.774883 kernel: SELinux: policy capability nnp_nosuid_transition=1 Feb 9 10:08:02.774893 kernel: SELinux: policy capability genfs_seclabel_symlinks=0 Feb 9 10:08:02.774903 kernel: SELinux: policy capability ioctl_skip_cloexec=0 Feb 9 10:08:02.774914 systemd[1]: Successfully loaded SELinux policy in 32.985ms. Feb 9 10:08:02.774930 systemd[1]: Relabelled /dev, /dev/shm, /run, /sys/fs/cgroup in 6.952ms. Feb 9 10:08:02.774942 systemd[1]: systemd 252 running in system mode (+PAM +AUDIT +SELINUX -APPARMOR +IMA +SMACK +SECCOMP +GCRYPT -GNUTLS +OPENSSL -ACL +BLKID +CURL -ELFUTILS -FIDO2 +IDN2 -IDN +IPTC +KMOD +LIBCRYPTSETUP +LIBFDISK +PCRE2 -PWQUALITY -P11KIT -QRENCODE -TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD -BPF_FRAMEWORK -XKBCOMMON +UTMP +SYSVINIT default-hierarchy=unified) Feb 9 10:08:02.774954 systemd[1]: Detected virtualization kvm. Feb 9 10:08:02.774965 systemd[1]: Detected architecture arm64. Feb 9 10:08:02.774974 systemd[1]: Detected first boot. Feb 9 10:08:02.774990 systemd[1]: Initializing machine ID from VM UUID. Feb 9 10:08:02.775003 kernel: SELinux: Context system_u:object_r:container_file_t:s0:c1022,c1023 is not valid (left unmapped). Feb 9 10:08:02.775013 systemd[1]: Populated /etc with preset unit settings. Feb 9 10:08:02.775024 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Feb 9 10:08:02.775039 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Feb 9 10:08:02.775050 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Feb 9 10:08:02.775061 systemd[1]: iscsid.service: Deactivated successfully. Feb 9 10:08:02.775071 systemd[1]: Stopped iscsid.service. Feb 9 10:08:02.775083 systemd[1]: initrd-switch-root.service: Deactivated successfully. Feb 9 10:08:02.775094 systemd[1]: Stopped initrd-switch-root.service. Feb 9 10:08:02.775104 systemd[1]: systemd-journald.service: Scheduled restart job, restart counter is at 1. Feb 9 10:08:02.775114 systemd[1]: Created slice system-addon\x2dconfig.slice. Feb 9 10:08:02.775124 systemd[1]: Created slice system-addon\x2drun.slice. Feb 9 10:08:02.775135 systemd[1]: Created slice system-getty.slice. Feb 9 10:08:02.775145 systemd[1]: Created slice system-modprobe.slice. Feb 9 10:08:02.775156 systemd[1]: Created slice system-serial\x2dgetty.slice. Feb 9 10:08:02.775166 systemd[1]: Created slice system-system\x2dcloudinit.slice. Feb 9 10:08:02.775178 systemd[1]: Created slice system-systemd\x2dfsck.slice. Feb 9 10:08:02.775189 systemd[1]: Created slice user.slice. Feb 9 10:08:02.775200 systemd[1]: Started systemd-ask-password-console.path. Feb 9 10:08:02.775210 systemd[1]: Started systemd-ask-password-wall.path. Feb 9 10:08:02.775224 systemd[1]: Set up automount boot.automount. Feb 9 10:08:02.775235 systemd[1]: Set up automount proc-sys-fs-binfmt_misc.automount. Feb 9 10:08:02.775245 systemd[1]: Stopped target initrd-switch-root.target. Feb 9 10:08:02.775257 systemd[1]: Stopped target initrd-fs.target. Feb 9 10:08:02.775268 systemd[1]: Stopped target initrd-root-fs.target. Feb 9 10:08:02.775278 systemd[1]: Reached target integritysetup.target. Feb 9 10:08:02.775288 systemd[1]: Reached target remote-cryptsetup.target. Feb 9 10:08:02.775299 systemd[1]: Reached target remote-fs.target. Feb 9 10:08:02.775309 systemd[1]: Reached target slices.target. Feb 9 10:08:02.775322 systemd[1]: Reached target swap.target. Feb 9 10:08:02.775333 systemd[1]: Reached target torcx.target. Feb 9 10:08:02.775343 systemd[1]: Reached target veritysetup.target. Feb 9 10:08:02.775353 systemd[1]: Listening on systemd-coredump.socket. Feb 9 10:08:02.775365 systemd[1]: Listening on systemd-initctl.socket. Feb 9 10:08:02.775375 systemd[1]: Listening on systemd-networkd.socket. Feb 9 10:08:02.775386 systemd[1]: Listening on systemd-udevd-control.socket. Feb 9 10:08:02.775396 systemd[1]: Listening on systemd-udevd-kernel.socket. Feb 9 10:08:02.775407 systemd[1]: Listening on systemd-userdbd.socket. Feb 9 10:08:02.775417 systemd[1]: Mounting dev-hugepages.mount... Feb 9 10:08:02.775427 systemd[1]: Mounting dev-mqueue.mount... Feb 9 10:08:02.775437 systemd[1]: Mounting media.mount... Feb 9 10:08:02.775448 systemd[1]: Mounting sys-kernel-debug.mount... Feb 9 10:08:02.775460 systemd[1]: Mounting sys-kernel-tracing.mount... Feb 9 10:08:02.775470 systemd[1]: Mounting tmp.mount... Feb 9 10:08:02.775480 systemd[1]: Starting flatcar-tmpfiles.service... Feb 9 10:08:02.775490 systemd[1]: ignition-delete-config.service was skipped because no trigger condition checks were met. Feb 9 10:08:02.775500 systemd[1]: Starting kmod-static-nodes.service... Feb 9 10:08:02.775511 systemd[1]: Starting modprobe@configfs.service... Feb 9 10:08:02.775525 systemd[1]: Starting modprobe@dm_mod.service... Feb 9 10:08:02.775535 systemd[1]: Starting modprobe@drm.service... Feb 9 10:08:02.775545 systemd[1]: Starting modprobe@efi_pstore.service... Feb 9 10:08:02.775556 systemd[1]: Starting modprobe@fuse.service... Feb 9 10:08:02.775567 systemd[1]: Starting modprobe@loop.service... Feb 9 10:08:02.775577 systemd[1]: setup-nsswitch.service was skipped because of an unmet condition check (ConditionPathExists=!/etc/nsswitch.conf). Feb 9 10:08:02.775588 systemd[1]: systemd-fsck-root.service: Deactivated successfully. Feb 9 10:08:02.775598 systemd[1]: Stopped systemd-fsck-root.service. Feb 9 10:08:02.775608 systemd[1]: systemd-fsck-usr.service: Deactivated successfully. Feb 9 10:08:02.775618 systemd[1]: Stopped systemd-fsck-usr.service. Feb 9 10:08:02.775628 systemd[1]: Stopped systemd-journald.service. Feb 9 10:08:02.775638 systemd[1]: Starting systemd-journald.service... Feb 9 10:08:02.775650 systemd[1]: Starting systemd-modules-load.service... Feb 9 10:08:02.775668 kernel: fuse: init (API version 7.34) Feb 9 10:08:02.775679 systemd[1]: Starting systemd-network-generator.service... Feb 9 10:08:02.775689 kernel: loop: module loaded Feb 9 10:08:02.775701 systemd[1]: Starting systemd-remount-fs.service... Feb 9 10:08:02.775712 systemd[1]: Starting systemd-udev-trigger.service... Feb 9 10:08:02.775731 systemd[1]: verity-setup.service: Deactivated successfully. Feb 9 10:08:02.775741 systemd[1]: Stopped verity-setup.service. Feb 9 10:08:02.775751 systemd[1]: Mounted dev-hugepages.mount. Feb 9 10:08:02.775761 systemd[1]: Mounted dev-mqueue.mount. Feb 9 10:08:02.775771 systemd[1]: Mounted media.mount. Feb 9 10:08:02.775781 systemd[1]: Mounted sys-kernel-debug.mount. Feb 9 10:08:02.775792 systemd[1]: Mounted sys-kernel-tracing.mount. Feb 9 10:08:02.775806 systemd-journald[984]: Journal started Feb 9 10:08:02.775852 systemd-journald[984]: Runtime Journal (/run/log/journal/e41d8d5aa85d4d969be9afd39364e19f) is 6.0M, max 48.7M, 42.6M free. Feb 9 10:08:00.740000 audit: MAC_POLICY_LOAD auid=4294967295 ses=4294967295 lsm=selinux res=1 Feb 9 10:08:00.887000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=1 Feb 9 10:08:00.887000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=1 Feb 9 10:08:00.887000 audit: BPF prog-id=10 op=LOAD Feb 9 10:08:00.887000 audit: BPF prog-id=10 op=UNLOAD Feb 9 10:08:00.887000 audit: BPF prog-id=11 op=LOAD Feb 9 10:08:00.887000 audit: BPF prog-id=11 op=UNLOAD Feb 9 10:08:00.931000 audit[926]: AVC avc: denied { associate } for pid=926 comm="torcx-generator" name="docker" dev="tmpfs" ino=2 scontext=system_u:object_r:unlabeled_t:s0 tcontext=system_u:object_r:tmpfs_t:s0 tclass=filesystem permissive=1 srawcon="system_u:object_r:container_file_t:s0:c1022,c1023" Feb 9 10:08:00.931000 audit[926]: SYSCALL arch=c00000b7 syscall=5 success=yes exit=0 a0=40001c58b2 a1=40000c8de0 a2=40000cf0c0 a3=32 items=0 ppid=909 pid=926 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="torcx-generator" exe="/usr/lib/systemd/system-generators/torcx-generator" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:00.931000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D2D67656E657261746F72732F746F7263782D67656E657261746F72002F72756E2F73797374656D642F67656E657261746F72002F72756E2F73797374656D642F67656E657261746F722E6561726C79002F72756E2F73797374656D642F67656E657261746F722E6C61 Feb 9 10:08:00.932000 audit[926]: AVC avc: denied { associate } for pid=926 comm="torcx-generator" name="usr" scontext=system_u:object_r:unlabeled_t:s0 tcontext=system_u:object_r:tmpfs_t:s0 tclass=filesystem permissive=1 Feb 9 10:08:00.932000 audit[926]: SYSCALL arch=c00000b7 syscall=34 success=yes exit=0 a0=ffffffffffffff9c a1=40001c5989 a2=1ed a3=0 items=2 ppid=909 pid=926 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="torcx-generator" exe="/usr/lib/systemd/system-generators/torcx-generator" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:00.932000 audit: CWD cwd="/" Feb 9 10:08:00.932000 audit: PATH item=0 name=(null) inode=2 dev=00:1c mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:unlabeled_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 10:08:00.932000 audit: PATH item=1 name=(null) inode=3 dev=00:1c mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:unlabeled_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 10:08:00.932000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D2D67656E657261746F72732F746F7263782D67656E657261746F72002F72756E2F73797374656D642F67656E657261746F72002F72756E2F73797374656D642F67656E657261746F722E6561726C79002F72756E2F73797374656D642F67656E657261746F722E6C61 Feb 9 10:08:02.646000 audit: BPF prog-id=12 op=LOAD Feb 9 10:08:02.646000 audit: BPF prog-id=3 op=UNLOAD Feb 9 10:08:02.646000 audit: BPF prog-id=13 op=LOAD Feb 9 10:08:02.646000 audit: BPF prog-id=14 op=LOAD Feb 9 10:08:02.646000 audit: BPF prog-id=4 op=UNLOAD Feb 9 10:08:02.646000 audit: BPF prog-id=5 op=UNLOAD Feb 9 10:08:02.648000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:02.650000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=iscsid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:02.652000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=initrd-switch-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:02.652000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=initrd-switch-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:02.659000 audit: BPF prog-id=12 op=UNLOAD Feb 9 10:08:02.732000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:02.740000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck-usr comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:02.742000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:02.742000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:02.743000 audit: BPF prog-id=15 op=LOAD Feb 9 10:08:02.743000 audit: BPF prog-id=16 op=LOAD Feb 9 10:08:02.743000 audit: BPF prog-id=17 op=LOAD Feb 9 10:08:02.743000 audit: BPF prog-id=13 op=UNLOAD Feb 9 10:08:02.743000 audit: BPF prog-id=14 op=UNLOAD Feb 9 10:08:02.762000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=verity-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:02.773000 audit: CONFIG_CHANGE op=set audit_enabled=1 old=1 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 res=1 Feb 9 10:08:02.773000 audit[984]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=60 a0=3 a1=ffffd6ee7b10 a2=4000 a3=1 items=0 ppid=1 pid=984 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="systemd-journal" exe="/usr/lib/systemd/systemd-journald" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:02.773000 audit: PROCTITLE proctitle="/usr/lib/systemd/systemd-journald" Feb 9 10:08:00.930171 /usr/lib/systemd/system-generators/torcx-generator[926]: time="2024-02-09T10:08:00Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.2 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.2 /var/lib/torcx/store]" Feb 9 10:08:02.645487 systemd[1]: Queued start job for default target multi-user.target. Feb 9 10:08:00.930817 /usr/lib/systemd/system-generators/torcx-generator[926]: time="2024-02-09T10:08:00Z" level=debug msg="profile found" name=docker-1.12-no path=/usr/share/torcx/profiles/docker-1.12-no.json Feb 9 10:08:02.645500 systemd[1]: Unnecessary job was removed for dev-vda6.device. Feb 9 10:08:00.930837 /usr/lib/systemd/system-generators/torcx-generator[926]: time="2024-02-09T10:08:00Z" level=debug msg="profile found" name=vendor path=/usr/share/torcx/profiles/vendor.json Feb 9 10:08:02.648404 systemd[1]: systemd-journald.service: Deactivated successfully. Feb 9 10:08:00.930868 /usr/lib/systemd/system-generators/torcx-generator[926]: time="2024-02-09T10:08:00Z" level=info msg="no vendor profile selected by /etc/flatcar/docker-1.12" Feb 9 10:08:00.930878 /usr/lib/systemd/system-generators/torcx-generator[926]: time="2024-02-09T10:08:00Z" level=debug msg="skipped missing lower profile" missing profile=oem Feb 9 10:08:00.930905 /usr/lib/systemd/system-generators/torcx-generator[926]: time="2024-02-09T10:08:00Z" level=warning msg="no next profile: unable to read profile file: open /etc/torcx/next-profile: no such file or directory" Feb 9 10:08:00.930917 /usr/lib/systemd/system-generators/torcx-generator[926]: time="2024-02-09T10:08:00Z" level=debug msg="apply configuration parsed" lower profiles (vendor/oem)="[vendor]" upper profile (user)= Feb 9 10:08:00.931108 /usr/lib/systemd/system-generators/torcx-generator[926]: time="2024-02-09T10:08:00Z" level=debug msg="mounted tmpfs" target=/run/torcx/unpack Feb 9 10:08:00.931141 /usr/lib/systemd/system-generators/torcx-generator[926]: time="2024-02-09T10:08:00Z" level=debug msg="profile found" name=docker-1.12-no path=/usr/share/torcx/profiles/docker-1.12-no.json Feb 9 10:08:00.931153 /usr/lib/systemd/system-generators/torcx-generator[926]: time="2024-02-09T10:08:00Z" level=debug msg="profile found" name=vendor path=/usr/share/torcx/profiles/vendor.json Feb 9 10:08:00.931544 /usr/lib/systemd/system-generators/torcx-generator[926]: time="2024-02-09T10:08:00Z" level=debug msg="new archive/reference added to cache" format=tgz name=docker path="/usr/share/torcx/store/docker:20.10.torcx.tgz" reference=20.10 Feb 9 10:08:02.776000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:02.777779 systemd[1]: Started systemd-journald.service. Feb 9 10:08:00.931578 /usr/lib/systemd/system-generators/torcx-generator[926]: time="2024-02-09T10:08:00Z" level=debug msg="new archive/reference added to cache" format=tgz name=docker path="/usr/share/torcx/store/docker:com.coreos.cl.torcx.tgz" reference=com.coreos.cl Feb 9 10:08:00.931595 /usr/lib/systemd/system-generators/torcx-generator[926]: time="2024-02-09T10:08:00Z" level=info msg="store skipped" err="open /usr/share/oem/torcx/store/3510.3.2: no such file or directory" path=/usr/share/oem/torcx/store/3510.3.2 Feb 9 10:08:00.931609 /usr/lib/systemd/system-generators/torcx-generator[926]: time="2024-02-09T10:08:00Z" level=info msg="store skipped" err="open /usr/share/oem/torcx/store: no such file or directory" path=/usr/share/oem/torcx/store Feb 9 10:08:00.931626 /usr/lib/systemd/system-generators/torcx-generator[926]: time="2024-02-09T10:08:00Z" level=info msg="store skipped" err="open /var/lib/torcx/store/3510.3.2: no such file or directory" path=/var/lib/torcx/store/3510.3.2 Feb 9 10:08:02.777980 systemd[1]: Mounted tmp.mount. Feb 9 10:08:00.931639 /usr/lib/systemd/system-generators/torcx-generator[926]: time="2024-02-09T10:08:00Z" level=info msg="store skipped" err="open /var/lib/torcx/store: no such file or directory" path=/var/lib/torcx/store Feb 9 10:08:02.388411 /usr/lib/systemd/system-generators/torcx-generator[926]: time="2024-02-09T10:08:02Z" level=debug msg="image unpacked" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Feb 9 10:08:02.388677 /usr/lib/systemd/system-generators/torcx-generator[926]: time="2024-02-09T10:08:02Z" level=debug msg="binaries propagated" assets="[/bin/containerd /bin/containerd-shim /bin/ctr /bin/docker /bin/docker-containerd /bin/docker-containerd-shim /bin/docker-init /bin/docker-proxy /bin/docker-runc /bin/dockerd /bin/runc /bin/tini]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Feb 9 10:08:02.388802 /usr/lib/systemd/system-generators/torcx-generator[926]: time="2024-02-09T10:08:02Z" level=debug msg="networkd units propagated" assets="[/lib/systemd/network/50-docker.network /lib/systemd/network/90-docker-veth.network]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Feb 9 10:08:02.388964 /usr/lib/systemd/system-generators/torcx-generator[926]: time="2024-02-09T10:08:02Z" level=debug msg="systemd units propagated" assets="[/lib/systemd/system/containerd.service /lib/systemd/system/docker.service /lib/systemd/system/docker.socket /lib/systemd/system/sockets.target.wants /lib/systemd/system/multi-user.target.wants]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Feb 9 10:08:02.389014 /usr/lib/systemd/system-generators/torcx-generator[926]: time="2024-02-09T10:08:02Z" level=debug msg="profile applied" sealed profile=/run/torcx/profile.json upper profile= Feb 9 10:08:02.389070 /usr/lib/systemd/system-generators/torcx-generator[926]: time="2024-02-09T10:08:02Z" level=debug msg="system state sealed" content="[TORCX_LOWER_PROFILES=\"vendor\" TORCX_UPPER_PROFILE=\"\" TORCX_PROFILE_PATH=\"/run/torcx/profile.json\" TORCX_BINDIR=\"/run/torcx/bin\" TORCX_UNPACKDIR=\"/run/torcx/unpack\"]" path=/run/metadata/torcx Feb 9 10:08:02.779036 systemd[1]: Finished kmod-static-nodes.service. Feb 9 10:08:02.779000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:02.780051 systemd[1]: modprobe@configfs.service: Deactivated successfully. Feb 9 10:08:02.782822 systemd[1]: Finished modprobe@configfs.service. Feb 9 10:08:02.782000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@configfs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:02.782000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@configfs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:02.783839 systemd[1]: modprobe@dm_mod.service: Deactivated successfully. Feb 9 10:08:02.784005 systemd[1]: Finished modprobe@dm_mod.service. Feb 9 10:08:02.783000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:02.784000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:02.785019 systemd[1]: modprobe@drm.service: Deactivated successfully. Feb 9 10:08:02.785152 systemd[1]: Finished modprobe@drm.service. Feb 9 10:08:02.785000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@drm comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:02.785000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@drm comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:02.786080 systemd[1]: modprobe@efi_pstore.service: Deactivated successfully. Feb 9 10:08:02.786224 systemd[1]: Finished modprobe@efi_pstore.service. Feb 9 10:08:02.786000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:02.786000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:02.787249 systemd[1]: modprobe@fuse.service: Deactivated successfully. Feb 9 10:08:02.787403 systemd[1]: Finished modprobe@fuse.service. Feb 9 10:08:02.787000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@fuse comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:02.787000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@fuse comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:02.788362 systemd[1]: modprobe@loop.service: Deactivated successfully. Feb 9 10:08:02.788511 systemd[1]: Finished modprobe@loop.service. Feb 9 10:08:02.788000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:02.788000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:02.789470 systemd[1]: Finished systemd-modules-load.service. Feb 9 10:08:02.789000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:02.790000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-network-generator comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:02.791000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-remount-fs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:02.790646 systemd[1]: Finished systemd-network-generator.service. Feb 9 10:08:02.791664 systemd[1]: Finished systemd-remount-fs.service. Feb 9 10:08:02.792796 systemd[1]: Reached target network-pre.target. Feb 9 10:08:02.794827 systemd[1]: Mounting sys-fs-fuse-connections.mount... Feb 9 10:08:02.796810 systemd[1]: Mounting sys-kernel-config.mount... Feb 9 10:08:02.797484 systemd[1]: remount-root.service was skipped because of an unmet condition check (ConditionPathIsReadWrite=!/). Feb 9 10:08:02.799037 systemd[1]: Starting systemd-hwdb-update.service... Feb 9 10:08:02.801294 systemd[1]: Starting systemd-journal-flush.service... Feb 9 10:08:02.802428 systemd[1]: systemd-pstore.service was skipped because of an unmet condition check (ConditionDirectoryNotEmpty=/sys/fs/pstore). Feb 9 10:08:02.803364 systemd[1]: Starting systemd-random-seed.service... Feb 9 10:08:02.804162 systemd[1]: systemd-repart.service was skipped because no trigger condition checks were met. Feb 9 10:08:02.806113 systemd[1]: Starting systemd-sysctl.service... Feb 9 10:08:02.810242 systemd[1]: Mounted sys-fs-fuse-connections.mount. Feb 9 10:08:02.811099 systemd[1]: Mounted sys-kernel-config.mount. Feb 9 10:08:02.811698 systemd-journald[984]: Time spent on flushing to /var/log/journal/e41d8d5aa85d4d969be9afd39364e19f is 13.804ms for 995 entries. Feb 9 10:08:02.811698 systemd-journald[984]: System Journal (/var/log/journal/e41d8d5aa85d4d969be9afd39364e19f) is 8.0M, max 195.6M, 187.6M free. Feb 9 10:08:02.840356 systemd-journald[984]: Received client request to flush runtime journal. Feb 9 10:08:02.816000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-random-seed comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:02.818000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=flatcar-tmpfiles comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:02.819000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:02.838000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:02.816953 systemd[1]: Finished systemd-random-seed.service. Feb 9 10:08:02.818012 systemd[1]: Finished flatcar-tmpfiles.service. Feb 9 10:08:02.818970 systemd[1]: Finished systemd-udev-trigger.service. Feb 9 10:08:02.841869 udevadm[1027]: systemd-udev-settle.service is deprecated. Please fix lvm2-activation.service, lvm2-activation-early.service not to pull it in. Feb 9 10:08:02.819861 systemd[1]: Reached target first-boot-complete.target. Feb 9 10:08:02.823483 systemd[1]: Starting systemd-sysusers.service... Feb 9 10:08:02.825207 systemd[1]: Starting systemd-udev-settle.service... Feb 9 10:08:02.841000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journal-flush comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:02.838452 systemd[1]: Finished systemd-sysctl.service. Feb 9 10:08:02.841431 systemd[1]: Finished systemd-journal-flush.service. Feb 9 10:08:02.848426 systemd[1]: Finished systemd-sysusers.service. Feb 9 10:08:02.848000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysusers comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:03.185393 systemd[1]: Finished systemd-hwdb-update.service. Feb 9 10:08:03.185000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-hwdb-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:03.186000 audit: BPF prog-id=18 op=LOAD Feb 9 10:08:03.186000 audit: BPF prog-id=19 op=LOAD Feb 9 10:08:03.186000 audit: BPF prog-id=7 op=UNLOAD Feb 9 10:08:03.186000 audit: BPF prog-id=8 op=UNLOAD Feb 9 10:08:03.187524 systemd[1]: Starting systemd-udevd.service... Feb 9 10:08:03.217280 systemd-udevd[1030]: Using default interface naming scheme 'v252'. Feb 9 10:08:03.237258 systemd[1]: Started systemd-udevd.service. Feb 9 10:08:03.237000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:03.238000 audit: BPF prog-id=20 op=LOAD Feb 9 10:08:03.240999 systemd[1]: Starting systemd-networkd.service... Feb 9 10:08:03.249000 audit: BPF prog-id=21 op=LOAD Feb 9 10:08:03.249000 audit: BPF prog-id=22 op=LOAD Feb 9 10:08:03.249000 audit: BPF prog-id=23 op=LOAD Feb 9 10:08:03.253377 systemd[1]: Starting systemd-userdbd.service... Feb 9 10:08:03.255024 systemd[1]: Condition check resulted in dev-ttyAMA0.device being skipped. Feb 9 10:08:03.294405 systemd[1]: Started systemd-userdbd.service. Feb 9 10:08:03.294000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-userdbd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:03.317405 systemd[1]: Found device dev-disk-by\x2dlabel-OEM.device. Feb 9 10:08:03.340120 systemd[1]: Finished systemd-udev-settle.service. Feb 9 10:08:03.340000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udev-settle comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:03.342068 systemd[1]: Starting lvm2-activation-early.service... Feb 9 10:08:03.348780 systemd-networkd[1037]: lo: Link UP Feb 9 10:08:03.348789 systemd-networkd[1037]: lo: Gained carrier Feb 9 10:08:03.349115 systemd-networkd[1037]: Enumeration completed Feb 9 10:08:03.349200 systemd[1]: Started systemd-networkd.service. Feb 9 10:08:03.349216 systemd-networkd[1037]: eth0: Configuring with /usr/lib/systemd/network/zz-default.network. Feb 9 10:08:03.349000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:03.350177 lvm[1063]: WARNING: Failed to connect to lvmetad. Falling back to device scanning. Feb 9 10:08:03.350483 systemd-networkd[1037]: eth0: Link UP Feb 9 10:08:03.350487 systemd-networkd[1037]: eth0: Gained carrier Feb 9 10:08:03.374924 systemd-networkd[1037]: eth0: DHCPv4 address 10.0.0.130/16, gateway 10.0.0.1 acquired from 10.0.0.1 Feb 9 10:08:03.384582 systemd[1]: Finished lvm2-activation-early.service. Feb 9 10:08:03.384000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=lvm2-activation-early comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:03.385410 systemd[1]: Reached target cryptsetup.target. Feb 9 10:08:03.387113 systemd[1]: Starting lvm2-activation.service... Feb 9 10:08:03.391226 lvm[1064]: WARNING: Failed to connect to lvmetad. Falling back to device scanning. Feb 9 10:08:03.421437 systemd[1]: Finished lvm2-activation.service. Feb 9 10:08:03.421000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=lvm2-activation comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:03.422167 systemd[1]: Reached target local-fs-pre.target. Feb 9 10:08:03.422766 systemd[1]: var-lib-machines.mount was skipped because of an unmet condition check (ConditionPathExists=/var/lib/machines.raw). Feb 9 10:08:03.422795 systemd[1]: Reached target local-fs.target. Feb 9 10:08:03.423328 systemd[1]: Reached target machines.target. Feb 9 10:08:03.424948 systemd[1]: Starting ldconfig.service... Feb 9 10:08:03.426804 systemd[1]: systemd-binfmt.service was skipped because no trigger condition checks were met. Feb 9 10:08:03.426875 systemd[1]: systemd-boot-system-token.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/LoaderFeatures-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Feb 9 10:08:03.427883 systemd[1]: Starting systemd-boot-update.service... Feb 9 10:08:03.429458 systemd[1]: Starting systemd-fsck@dev-disk-by\x2dlabel-OEM.service... Feb 9 10:08:03.432214 systemd[1]: Starting systemd-machine-id-commit.service... Feb 9 10:08:03.433628 systemd[1]: systemd-sysext.service was skipped because no trigger condition checks were met. Feb 9 10:08:03.433734 systemd[1]: ensure-sysext.service was skipped because no trigger condition checks were met. Feb 9 10:08:03.435255 systemd[1]: Starting systemd-tmpfiles-setup.service... Feb 9 10:08:03.437099 systemd[1]: boot.automount: Got automount request for /boot, triggered by 1066 (bootctl) Feb 9 10:08:03.438399 systemd[1]: Starting systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM.service... Feb 9 10:08:03.449873 systemd[1]: Finished systemd-fsck@dev-disk-by\x2dlabel-OEM.service. Feb 9 10:08:03.451000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck@dev-disk-by\x2dlabel-OEM comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:03.453453 systemd-tmpfiles[1069]: /usr/lib/tmpfiles.d/legacy.conf:13: Duplicate line for path "/run/lock", ignoring. Feb 9 10:08:03.458845 systemd-tmpfiles[1069]: /usr/lib/tmpfiles.d/provision.conf:20: Duplicate line for path "/root", ignoring. Feb 9 10:08:03.461943 systemd-tmpfiles[1069]: /usr/lib/tmpfiles.d/systemd.conf:29: Duplicate line for path "/var/lib/systemd", ignoring. Feb 9 10:08:03.504362 systemd[1]: Finished systemd-machine-id-commit.service. Feb 9 10:08:03.504000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-machine-id-commit comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:03.510563 systemd-fsck[1074]: fsck.fat 4.2 (2021-01-31) Feb 9 10:08:03.510563 systemd-fsck[1074]: /dev/vda1: 236 files, 113719/258078 clusters Feb 9 10:08:03.512886 systemd[1]: Finished systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM.service. Feb 9 10:08:03.513000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:03.605725 ldconfig[1065]: /sbin/ldconfig: /lib/ld.so.conf is not an ELF file - it has the wrong magic bytes at the start. Feb 9 10:08:03.609679 systemd[1]: Finished ldconfig.service. Feb 9 10:08:03.609000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=ldconfig comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:03.765498 systemd[1]: etc-machine\x2did.mount: Deactivated successfully. Feb 9 10:08:03.766958 systemd[1]: Mounting boot.mount... Feb 9 10:08:03.773390 systemd[1]: Mounted boot.mount. Feb 9 10:08:03.779000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-boot-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:03.779948 systemd[1]: Finished systemd-boot-update.service. Feb 9 10:08:03.832201 systemd[1]: Finished systemd-tmpfiles-setup.service. Feb 9 10:08:03.832000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-tmpfiles-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:03.834293 systemd[1]: Starting audit-rules.service... Feb 9 10:08:03.836041 systemd[1]: Starting clean-ca-certificates.service... Feb 9 10:08:03.837909 systemd[1]: Starting systemd-journal-catalog-update.service... Feb 9 10:08:03.839000 audit: BPF prog-id=24 op=LOAD Feb 9 10:08:03.840551 systemd[1]: Starting systemd-resolved.service... Feb 9 10:08:03.844000 audit: BPF prog-id=25 op=LOAD Feb 9 10:08:03.846112 systemd[1]: Starting systemd-timesyncd.service... Feb 9 10:08:03.848254 systemd[1]: Starting systemd-update-utmp.service... Feb 9 10:08:03.849551 systemd[1]: Finished clean-ca-certificates.service. Feb 9 10:08:03.849000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=clean-ca-certificates comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:03.850688 systemd[1]: update-ca-certificates.service was skipped because of an unmet condition check (ConditionPathIsSymbolicLink=!/etc/ssl/certs/ca-certificates.crt). Feb 9 10:08:03.855000 audit[1088]: SYSTEM_BOOT pid=1088 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg=' comm="systemd-update-utmp" exe="/usr/lib/systemd/systemd-update-utmp" hostname=? addr=? terminal=? res=success' Feb 9 10:08:03.857924 systemd[1]: Finished systemd-journal-catalog-update.service. Feb 9 10:08:03.858000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journal-catalog-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:03.860318 systemd[1]: Starting systemd-update-done.service... Feb 9 10:08:03.862280 systemd[1]: Finished systemd-update-utmp.service. Feb 9 10:08:03.862000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-update-utmp comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:03.865483 systemd[1]: Finished systemd-update-done.service. Feb 9 10:08:03.865000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-update-done comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:03.881000 audit: CONFIG_CHANGE auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=add_rule key=(null) list=5 res=1 Feb 9 10:08:03.881000 audit[1098]: SYSCALL arch=c00000b7 syscall=206 success=yes exit=1056 a0=3 a1=ffffe50fefe0 a2=420 a3=0 items=0 ppid=1077 pid=1098 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:03.881000 audit: PROCTITLE proctitle=2F7362696E2F617564697463746C002D52002F6574632F61756469742F61756469742E72756C6573 Feb 9 10:08:03.882315 augenrules[1098]: No rules Feb 9 10:08:03.883171 systemd[1]: Finished audit-rules.service. Feb 9 10:08:03.896894 systemd-resolved[1081]: Positive Trust Anchors: Feb 9 10:08:03.896907 systemd-resolved[1081]: . IN DS 20326 8 2 e06d44b80b8f1d39a95c0b0d7c65d08458e880409bbc683457104237c7f8ec8d Feb 9 10:08:03.896933 systemd-resolved[1081]: Negative trust anchors: home.arpa 10.in-addr.arpa 16.172.in-addr.arpa 17.172.in-addr.arpa 18.172.in-addr.arpa 19.172.in-addr.arpa 20.172.in-addr.arpa 21.172.in-addr.arpa 22.172.in-addr.arpa 23.172.in-addr.arpa 24.172.in-addr.arpa 25.172.in-addr.arpa 26.172.in-addr.arpa 27.172.in-addr.arpa 28.172.in-addr.arpa 29.172.in-addr.arpa 30.172.in-addr.arpa 31.172.in-addr.arpa 168.192.in-addr.arpa d.f.ip6.arpa corp home internal intranet lan local private test Feb 9 10:08:03.900343 systemd[1]: Started systemd-timesyncd.service. Feb 9 10:08:03.901211 systemd-timesyncd[1082]: Contacted time server 10.0.0.1:123 (10.0.0.1). Feb 9 10:08:03.901270 systemd-timesyncd[1082]: Initial clock synchronization to Fri 2024-02-09 10:08:03.938747 UTC. Feb 9 10:08:03.901504 systemd[1]: Reached target time-set.target. Feb 9 10:08:03.908831 systemd-resolved[1081]: Defaulting to hostname 'linux'. Feb 9 10:08:03.910152 systemd[1]: Started systemd-resolved.service. Feb 9 10:08:03.910948 systemd[1]: Reached target network.target. Feb 9 10:08:03.911487 systemd[1]: Reached target nss-lookup.target. Feb 9 10:08:03.912069 systemd[1]: Reached target sysinit.target. Feb 9 10:08:03.912672 systemd[1]: Started motdgen.path. Feb 9 10:08:03.913217 systemd[1]: Started user-cloudinit@var-lib-flatcar\x2dinstall-user_data.path. Feb 9 10:08:03.914132 systemd[1]: Started logrotate.timer. Feb 9 10:08:03.914753 systemd[1]: Started mdadm.timer. Feb 9 10:08:03.915235 systemd[1]: Started systemd-tmpfiles-clean.timer. Feb 9 10:08:03.915821 systemd[1]: update-engine-stub.timer was skipped because of an unmet condition check (ConditionPathExists=/usr/.noupdate). Feb 9 10:08:03.915845 systemd[1]: Reached target paths.target. Feb 9 10:08:03.916344 systemd[1]: Reached target timers.target. Feb 9 10:08:03.917218 systemd[1]: Listening on dbus.socket. Feb 9 10:08:03.918755 systemd[1]: Starting docker.socket... Feb 9 10:08:03.921671 systemd[1]: Listening on sshd.socket. Feb 9 10:08:03.922350 systemd[1]: systemd-pcrphase-sysinit.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/StubPcrKernelImage-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Feb 9 10:08:03.922785 systemd[1]: Listening on docker.socket. Feb 9 10:08:03.923536 systemd[1]: Reached target sockets.target. Feb 9 10:08:03.924169 systemd[1]: Reached target basic.target. Feb 9 10:08:03.924942 systemd[1]: addon-config@usr-share-oem.service was skipped because no trigger condition checks were met. Feb 9 10:08:03.924969 systemd[1]: addon-run@usr-share-oem.service was skipped because no trigger condition checks were met. Feb 9 10:08:03.925974 systemd[1]: Starting containerd.service... Feb 9 10:08:03.927567 systemd[1]: Starting dbus.service... Feb 9 10:08:03.929164 systemd[1]: Starting enable-oem-cloudinit.service... Feb 9 10:08:03.931015 systemd[1]: Starting extend-filesystems.service... Feb 9 10:08:03.931779 systemd[1]: flatcar-setup-environment.service was skipped because of an unmet condition check (ConditionPathExists=/usr/share/oem/bin/flatcar-setup-environment). Feb 9 10:08:03.933097 systemd[1]: Starting motdgen.service... Feb 9 10:08:03.941636 jq[1108]: false Feb 9 10:08:03.940699 systemd[1]: Starting prepare-cni-plugins.service... Feb 9 10:08:03.942488 systemd[1]: Starting prepare-critools.service... Feb 9 10:08:03.945148 systemd[1]: Starting ssh-key-proc-cmdline.service... Feb 9 10:08:03.947110 extend-filesystems[1109]: Found vda Feb 9 10:08:03.947330 systemd[1]: Starting sshd-keygen.service... Feb 9 10:08:03.948305 extend-filesystems[1109]: Found vda1 Feb 9 10:08:03.949292 extend-filesystems[1109]: Found vda2 Feb 9 10:08:03.949969 extend-filesystems[1109]: Found vda3 Feb 9 10:08:03.950846 extend-filesystems[1109]: Found usr Feb 9 10:08:03.951312 systemd[1]: Starting systemd-logind.service... Feb 9 10:08:03.951922 extend-filesystems[1109]: Found vda4 Feb 9 10:08:03.952850 extend-filesystems[1109]: Found vda6 Feb 9 10:08:03.952850 extend-filesystems[1109]: Found vda7 Feb 9 10:08:03.952348 systemd[1]: systemd-pcrphase.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/StubPcrKernelImage-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Feb 9 10:08:03.952405 systemd[1]: tcsd.service was skipped because of an unmet condition check (ConditionPathExists=/dev/tpm0). Feb 9 10:08:03.952884 systemd[1]: cgroup compatibility translation between legacy and unified hierarchy settings activated. See cgroup-compat debug messages for details. Feb 9 10:08:03.953563 systemd[1]: Starting update-engine.service... Feb 9 10:08:03.957175 extend-filesystems[1109]: Found vda9 Feb 9 10:08:03.957974 systemd[1]: Starting update-ssh-keys-after-ignition.service... Feb 9 10:08:03.958223 extend-filesystems[1109]: Checking size of /dev/vda9 Feb 9 10:08:03.960390 systemd[1]: enable-oem-cloudinit.service: Skipped due to 'exec-condition'. Feb 9 10:08:03.960550 systemd[1]: Condition check resulted in enable-oem-cloudinit.service being skipped. Feb 9 10:08:03.960873 systemd[1]: motdgen.service: Deactivated successfully. Feb 9 10:08:03.961008 systemd[1]: Finished motdgen.service. Feb 9 10:08:03.963975 systemd[1]: ssh-key-proc-cmdline.service: Deactivated successfully. Feb 9 10:08:03.964134 systemd[1]: Finished ssh-key-proc-cmdline.service. Feb 9 10:08:03.970478 dbus-daemon[1107]: [system] SELinux support is enabled Feb 9 10:08:03.970630 systemd[1]: Started dbus.service. Feb 9 10:08:03.972158 jq[1128]: true Feb 9 10:08:03.974041 systemd[1]: system-cloudinit@usr-share-oem-cloud\x2dconfig.yml.service was skipped because of an unmet condition check (ConditionFileNotEmpty=/usr/share/oem/cloud-config.yml). Feb 9 10:08:03.980665 tar[1131]: ./ Feb 9 10:08:03.980665 tar[1131]: ./loopback Feb 9 10:08:03.974094 systemd[1]: Reached target system-config.target. Feb 9 10:08:03.980965 jq[1137]: true Feb 9 10:08:03.974806 systemd[1]: user-cloudinit-proc-cmdline.service was skipped because of an unmet condition check (ConditionKernelCommandLine=cloud-config-url). Feb 9 10:08:03.981203 tar[1132]: crictl Feb 9 10:08:03.974819 systemd[1]: Reached target user-config.target. Feb 9 10:08:04.008229 extend-filesystems[1109]: Resized partition /dev/vda9 Feb 9 10:08:04.013509 extend-filesystems[1153]: resize2fs 1.46.5 (30-Dec-2021) Feb 9 10:08:04.031750 kernel: EXT4-fs (vda9): resizing filesystem from 553472 to 1864699 blocks Feb 9 10:08:04.037486 systemd-logind[1121]: Watching system buttons on /dev/input/event0 (Power Button) Feb 9 10:08:04.037662 systemd-logind[1121]: New seat seat0. Feb 9 10:08:04.038819 systemd[1]: Started systemd-logind.service. Feb 9 10:08:04.053360 update_engine[1123]: I0209 10:08:04.052992 1123 main.cc:92] Flatcar Update Engine starting Feb 9 10:08:04.055324 systemd[1]: Started update-engine.service. Feb 9 10:08:04.056358 update_engine[1123]: I0209 10:08:04.056245 1123 update_check_scheduler.cc:74] Next update check in 3m38s Feb 9 10:08:04.057820 tar[1131]: ./bandwidth Feb 9 10:08:04.057942 systemd[1]: Started locksmithd.service. Feb 9 10:08:04.064145 kernel: EXT4-fs (vda9): resized filesystem to 1864699 Feb 9 10:08:04.082434 extend-filesystems[1153]: Filesystem at /dev/vda9 is mounted on /; on-line resizing required Feb 9 10:08:04.082434 extend-filesystems[1153]: old_desc_blocks = 1, new_desc_blocks = 1 Feb 9 10:08:04.082434 extend-filesystems[1153]: The filesystem on /dev/vda9 is now 1864699 (4k) blocks long. Feb 9 10:08:04.087785 extend-filesystems[1109]: Resized filesystem in /dev/vda9 Feb 9 10:08:04.088548 bash[1161]: Updated "/home/core/.ssh/authorized_keys" Feb 9 10:08:04.082885 systemd[1]: extend-filesystems.service: Deactivated successfully. Feb 9 10:08:04.083061 systemd[1]: Finished extend-filesystems.service. Feb 9 10:08:04.088894 systemd[1]: Finished update-ssh-keys-after-ignition.service. Feb 9 10:08:04.102206 env[1133]: time="2024-02-09T10:08:04.102147771Z" level=info msg="starting containerd" revision=92b3a9d6f1b3bcc6dc74875cfdea653fe39f09c2 version=1.6.16 Feb 9 10:08:04.114232 tar[1131]: ./ptp Feb 9 10:08:04.124483 env[1133]: time="2024-02-09T10:08:04.124428518Z" level=info msg="loading plugin \"io.containerd.content.v1.content\"..." type=io.containerd.content.v1 Feb 9 10:08:04.124616 env[1133]: time="2024-02-09T10:08:04.124594427Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.aufs\"..." type=io.containerd.snapshotter.v1 Feb 9 10:08:04.135215 env[1133]: time="2024-02-09T10:08:04.135163019Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.aufs\"..." error="aufs is not supported (modprobe aufs failed: exit status 1 \"modprobe: FATAL: Module aufs not found in directory /lib/modules/5.15.148-flatcar\\n\"): skip plugin" type=io.containerd.snapshotter.v1 Feb 9 10:08:04.135215 env[1133]: time="2024-02-09T10:08:04.135207162Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.btrfs\"..." type=io.containerd.snapshotter.v1 Feb 9 10:08:04.135468 env[1133]: time="2024-02-09T10:08:04.135442875Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.btrfs\"..." error="path /var/lib/containerd/io.containerd.snapshotter.v1.btrfs (ext4) must be a btrfs filesystem to be used with the btrfs snapshotter: skip plugin" type=io.containerd.snapshotter.v1 Feb 9 10:08:04.135526 env[1133]: time="2024-02-09T10:08:04.135468696Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.devmapper\"..." type=io.containerd.snapshotter.v1 Feb 9 10:08:04.135526 env[1133]: time="2024-02-09T10:08:04.135483330Z" level=warning msg="failed to load plugin io.containerd.snapshotter.v1.devmapper" error="devmapper not configured" Feb 9 10:08:04.135526 env[1133]: time="2024-02-09T10:08:04.135494958Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.native\"..." type=io.containerd.snapshotter.v1 Feb 9 10:08:04.135587 env[1133]: time="2024-02-09T10:08:04.135566606Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.overlayfs\"..." type=io.containerd.snapshotter.v1 Feb 9 10:08:04.135878 env[1133]: time="2024-02-09T10:08:04.135852035Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.zfs\"..." type=io.containerd.snapshotter.v1 Feb 9 10:08:04.136016 env[1133]: time="2024-02-09T10:08:04.135985909Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.zfs\"..." error="path /var/lib/containerd/io.containerd.snapshotter.v1.zfs must be a zfs filesystem to be used with the zfs snapshotter: skip plugin" type=io.containerd.snapshotter.v1 Feb 9 10:08:04.136016 env[1133]: time="2024-02-09T10:08:04.136007560Z" level=info msg="loading plugin \"io.containerd.metadata.v1.bolt\"..." type=io.containerd.metadata.v1 Feb 9 10:08:04.136087 env[1133]: time="2024-02-09T10:08:04.136067741Z" level=warning msg="could not use snapshotter devmapper in metadata plugin" error="devmapper not configured" Feb 9 10:08:04.136087 env[1133]: time="2024-02-09T10:08:04.136084100Z" level=info msg="metadata content store policy set" policy=shared Feb 9 10:08:04.141244 env[1133]: time="2024-02-09T10:08:04.141201223Z" level=info msg="loading plugin \"io.containerd.differ.v1.walking\"..." type=io.containerd.differ.v1 Feb 9 10:08:04.141244 env[1133]: time="2024-02-09T10:08:04.141248935Z" level=info msg="loading plugin \"io.containerd.event.v1.exchange\"..." type=io.containerd.event.v1 Feb 9 10:08:04.141352 env[1133]: time="2024-02-09T10:08:04.141263971Z" level=info msg="loading plugin \"io.containerd.gc.v1.scheduler\"..." type=io.containerd.gc.v1 Feb 9 10:08:04.141352 env[1133]: time="2024-02-09T10:08:04.141297008Z" level=info msg="loading plugin \"io.containerd.service.v1.introspection-service\"..." type=io.containerd.service.v1 Feb 9 10:08:04.141352 env[1133]: time="2024-02-09T10:08:04.141311562Z" level=info msg="loading plugin \"io.containerd.service.v1.containers-service\"..." type=io.containerd.service.v1 Feb 9 10:08:04.141352 env[1133]: time="2024-02-09T10:08:04.141325274Z" level=info msg="loading plugin \"io.containerd.service.v1.content-service\"..." type=io.containerd.service.v1 Feb 9 10:08:04.141352 env[1133]: time="2024-02-09T10:08:04.141338265Z" level=info msg="loading plugin \"io.containerd.service.v1.diff-service\"..." type=io.containerd.service.v1 Feb 9 10:08:04.141701 env[1133]: time="2024-02-09T10:08:04.141678262Z" level=info msg="loading plugin \"io.containerd.service.v1.images-service\"..." type=io.containerd.service.v1 Feb 9 10:08:04.141748 env[1133]: time="2024-02-09T10:08:04.141702399Z" level=info msg="loading plugin \"io.containerd.service.v1.leases-service\"..." type=io.containerd.service.v1 Feb 9 10:08:04.141748 env[1133]: time="2024-02-09T10:08:04.141734073Z" level=info msg="loading plugin \"io.containerd.service.v1.namespaces-service\"..." type=io.containerd.service.v1 Feb 9 10:08:04.141789 env[1133]: time="2024-02-09T10:08:04.141749069Z" level=info msg="loading plugin \"io.containerd.service.v1.snapshots-service\"..." type=io.containerd.service.v1 Feb 9 10:08:04.141789 env[1133]: time="2024-02-09T10:08:04.141762340Z" level=info msg="loading plugin \"io.containerd.runtime.v1.linux\"..." type=io.containerd.runtime.v1 Feb 9 10:08:04.141920 env[1133]: time="2024-02-09T10:08:04.141896895Z" level=info msg="loading plugin \"io.containerd.runtime.v2.task\"..." type=io.containerd.runtime.v2 Feb 9 10:08:04.142010 env[1133]: time="2024-02-09T10:08:04.141991036Z" level=info msg="loading plugin \"io.containerd.monitor.v1.cgroups\"..." type=io.containerd.monitor.v1 Feb 9 10:08:04.142239 env[1133]: time="2024-02-09T10:08:04.142219091Z" level=info msg="loading plugin \"io.containerd.service.v1.tasks-service\"..." type=io.containerd.service.v1 Feb 9 10:08:04.142279 env[1133]: time="2024-02-09T10:08:04.142249041Z" level=info msg="loading plugin \"io.containerd.grpc.v1.introspection\"..." type=io.containerd.grpc.v1 Feb 9 10:08:04.142279 env[1133]: time="2024-02-09T10:08:04.142262433Z" level=info msg="loading plugin \"io.containerd.internal.v1.restart\"..." type=io.containerd.internal.v1 Feb 9 10:08:04.142421 env[1133]: time="2024-02-09T10:08:04.142405769Z" level=info msg="loading plugin \"io.containerd.grpc.v1.containers\"..." type=io.containerd.grpc.v1 Feb 9 10:08:04.142450 env[1133]: time="2024-02-09T10:08:04.142422849Z" level=info msg="loading plugin \"io.containerd.grpc.v1.content\"..." type=io.containerd.grpc.v1 Feb 9 10:08:04.142450 env[1133]: time="2024-02-09T10:08:04.142435479Z" level=info msg="loading plugin \"io.containerd.grpc.v1.diff\"..." type=io.containerd.grpc.v1 Feb 9 10:08:04.142450 env[1133]: time="2024-02-09T10:08:04.142446545Z" level=info msg="loading plugin \"io.containerd.grpc.v1.events\"..." type=io.containerd.grpc.v1 Feb 9 10:08:04.142513 env[1133]: time="2024-02-09T10:08:04.142457891Z" level=info msg="loading plugin \"io.containerd.grpc.v1.healthcheck\"..." type=io.containerd.grpc.v1 Feb 9 10:08:04.142513 env[1133]: time="2024-02-09T10:08:04.142470040Z" level=info msg="loading plugin \"io.containerd.grpc.v1.images\"..." type=io.containerd.grpc.v1 Feb 9 10:08:04.142513 env[1133]: time="2024-02-09T10:08:04.142487360Z" level=info msg="loading plugin \"io.containerd.grpc.v1.leases\"..." type=io.containerd.grpc.v1 Feb 9 10:08:04.142513 env[1133]: time="2024-02-09T10:08:04.142499629Z" level=info msg="loading plugin \"io.containerd.grpc.v1.namespaces\"..." type=io.containerd.grpc.v1 Feb 9 10:08:04.142513 env[1133]: time="2024-02-09T10:08:04.142512339Z" level=info msg="loading plugin \"io.containerd.internal.v1.opt\"..." type=io.containerd.internal.v1 Feb 9 10:08:04.142657 env[1133]: time="2024-02-09T10:08:04.142634185Z" level=info msg="loading plugin \"io.containerd.grpc.v1.snapshots\"..." type=io.containerd.grpc.v1 Feb 9 10:08:04.142690 env[1133]: time="2024-02-09T10:08:04.142658001Z" level=info msg="loading plugin \"io.containerd.grpc.v1.tasks\"..." type=io.containerd.grpc.v1 Feb 9 10:08:04.142690 env[1133]: time="2024-02-09T10:08:04.142670711Z" level=info msg="loading plugin \"io.containerd.grpc.v1.version\"..." type=io.containerd.grpc.v1 Feb 9 10:08:04.142690 env[1133]: time="2024-02-09T10:08:04.142681736Z" level=info msg="loading plugin \"io.containerd.tracing.processor.v1.otlp\"..." type=io.containerd.tracing.processor.v1 Feb 9 10:08:04.142781 env[1133]: time="2024-02-09T10:08:04.142697092Z" level=info msg="skip loading plugin \"io.containerd.tracing.processor.v1.otlp\"..." error="no OpenTelemetry endpoint: skip plugin" type=io.containerd.tracing.processor.v1 Feb 9 10:08:04.142781 env[1133]: time="2024-02-09T10:08:04.142708158Z" level=info msg="loading plugin \"io.containerd.internal.v1.tracing\"..." type=io.containerd.internal.v1 Feb 9 10:08:04.142781 env[1133]: time="2024-02-09T10:08:04.142756592Z" level=error msg="failed to initialize a tracing processor \"otlp\"" error="no OpenTelemetry endpoint: skip plugin" Feb 9 10:08:04.142839 env[1133]: time="2024-02-09T10:08:04.142800214Z" level=info msg="loading plugin \"io.containerd.grpc.v1.cri\"..." type=io.containerd.grpc.v1 Feb 9 10:08:04.143069 env[1133]: time="2024-02-09T10:08:04.143006979Z" level=info msg="Start cri plugin with config {PluginConfig:{ContainerdConfig:{Snapshotter:overlayfs DefaultRuntimeName:runc DefaultRuntime:{Type: Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0} UntrustedWorkloadRuntime:{Type: Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0} Runtimes:map[runc:{Type:io.containerd.runc.v2 Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[SystemdCgroup:true] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0}] NoPivot:false DisableSnapshotAnnotations:true DiscardUnpackedLayers:false IgnoreRdtNotEnabledErrors:false} CniConfig:{NetworkPluginBinDir:/opt/cni/bin NetworkPluginConfDir:/etc/cni/net.d NetworkPluginMaxConfNum:1 NetworkPluginConfTemplate: IPPreference:} Registry:{ConfigPath: Mirrors:map[] Configs:map[] Auths:map[] Headers:map[]} ImageDecryption:{KeyModel:node} DisableTCPService:true StreamServerAddress:127.0.0.1 StreamServerPort:0 StreamIdleTimeout:4h0m0s EnableSelinux:true SelinuxCategoryRange:1024 SandboxImage:registry.k8s.io/pause:3.6 StatsCollectPeriod:10 SystemdCgroup:false EnableTLSStreaming:false X509KeyPairStreaming:{TLSCertFile: TLSKeyFile:} MaxContainerLogLineSize:16384 DisableCgroup:false DisableApparmor:false RestrictOOMScoreAdj:false MaxConcurrentDownloads:3 DisableProcMount:false UnsetSeccompProfile: TolerateMissingHugetlbController:true DisableHugetlbController:true DeviceOwnershipFromSecurityContext:false IgnoreImageDefinedVolumes:false NetNSMountsUnderStateDir:false EnableUnprivilegedPorts:false EnableUnprivilegedICMP:false} ContainerdRootDir:/var/lib/containerd ContainerdEndpoint:/run/containerd/containerd.sock RootDir:/var/lib/containerd/io.containerd.grpc.v1.cri StateDir:/run/containerd/io.containerd.grpc.v1.cri}" Feb 9 10:08:04.143069 env[1133]: time="2024-02-09T10:08:04.143067000Z" level=info msg="Connect containerd service" Feb 9 10:08:04.146498 env[1133]: time="2024-02-09T10:08:04.143103446Z" level=info msg="Get image filesystem path \"/var/lib/containerd/io.containerd.snapshotter.v1.overlayfs\"" Feb 9 10:08:04.146498 env[1133]: time="2024-02-09T10:08:04.143822733Z" level=error msg="failed to load cni during init, please check CRI plugin status before setting up network for pods" error="cni config load failed: no network config found in /etc/cni/net.d: cni plugin not initialized: failed to load cni config" Feb 9 10:08:04.146498 env[1133]: time="2024-02-09T10:08:04.144241956Z" level=info msg=serving... address=/run/containerd/containerd.sock.ttrpc Feb 9 10:08:04.146498 env[1133]: time="2024-02-09T10:08:04.144281088Z" level=info msg=serving... address=/run/containerd/containerd.sock Feb 9 10:08:04.146498 env[1133]: time="2024-02-09T10:08:04.145447585Z" level=info msg="Start subscribing containerd event" Feb 9 10:08:04.146498 env[1133]: time="2024-02-09T10:08:04.145497061Z" level=info msg="Start recovering state" Feb 9 10:08:04.146498 env[1133]: time="2024-02-09T10:08:04.145559808Z" level=info msg="Start event monitor" Feb 9 10:08:04.146498 env[1133]: time="2024-02-09T10:08:04.145577930Z" level=info msg="Start snapshots syncer" Feb 9 10:08:04.146498 env[1133]: time="2024-02-09T10:08:04.145589918Z" level=info msg="Start cni network conf syncer for default" Feb 9 10:08:04.146498 env[1133]: time="2024-02-09T10:08:04.145597336Z" level=info msg="Start streaming server" Feb 9 10:08:04.144411 systemd[1]: Started containerd.service. Feb 9 10:08:04.153259 env[1133]: time="2024-02-09T10:08:04.153224829Z" level=info msg="containerd successfully booted in 0.052221s" Feb 9 10:08:04.157053 tar[1131]: ./vlan Feb 9 10:08:04.175622 locksmithd[1162]: locksmithd starting currentOperation="UPDATE_STATUS_IDLE" strategy="reboot" Feb 9 10:08:04.192432 tar[1131]: ./host-device Feb 9 10:08:04.225686 tar[1131]: ./tuning Feb 9 10:08:04.256354 tar[1131]: ./vrf Feb 9 10:08:04.287262 tar[1131]: ./sbr Feb 9 10:08:04.317206 tar[1131]: ./tap Feb 9 10:08:04.351951 tar[1131]: ./dhcp Feb 9 10:08:04.430260 systemd[1]: Finished prepare-critools.service. Feb 9 10:08:04.435069 tar[1131]: ./static Feb 9 10:08:04.456007 tar[1131]: ./firewall Feb 9 10:08:04.487669 tar[1131]: ./macvlan Feb 9 10:08:04.516572 tar[1131]: ./dummy Feb 9 10:08:04.544941 tar[1131]: ./bridge Feb 9 10:08:04.575920 tar[1131]: ./ipvlan Feb 9 10:08:04.604412 tar[1131]: ./portmap Feb 9 10:08:04.631357 tar[1131]: ./host-local Feb 9 10:08:04.664736 systemd[1]: Finished prepare-cni-plugins.service. Feb 9 10:08:05.153839 systemd-networkd[1037]: eth0: Gained IPv6LL Feb 9 10:08:05.689384 sshd_keygen[1127]: ssh-keygen: generating new host keys: RSA ECDSA ED25519 Feb 9 10:08:05.706615 systemd[1]: Finished sshd-keygen.service. Feb 9 10:08:05.708850 systemd[1]: Starting issuegen.service... Feb 9 10:08:05.713452 systemd[1]: issuegen.service: Deactivated successfully. Feb 9 10:08:05.713631 systemd[1]: Finished issuegen.service. Feb 9 10:08:05.716005 systemd[1]: Starting systemd-user-sessions.service... Feb 9 10:08:05.721911 systemd[1]: Finished systemd-user-sessions.service. Feb 9 10:08:05.724219 systemd[1]: Started getty@tty1.service. Feb 9 10:08:05.726158 systemd[1]: Started serial-getty@ttyAMA0.service. Feb 9 10:08:05.727153 systemd[1]: Reached target getty.target. Feb 9 10:08:05.727922 systemd[1]: Reached target multi-user.target. Feb 9 10:08:05.730072 systemd[1]: Starting systemd-update-utmp-runlevel.service... Feb 9 10:08:05.736429 systemd[1]: systemd-update-utmp-runlevel.service: Deactivated successfully. Feb 9 10:08:05.736585 systemd[1]: Finished systemd-update-utmp-runlevel.service. Feb 9 10:08:05.737512 systemd[1]: Startup finished in 563ms (kernel) + 5.131s (initrd) + 5.031s (userspace) = 10.726s. Feb 9 10:08:08.554809 systemd[1]: Created slice system-sshd.slice. Feb 9 10:08:08.555856 systemd[1]: Started sshd@0-10.0.0.130:22-10.0.0.1:48394.service. Feb 9 10:08:08.604941 sshd[1191]: Accepted publickey for core from 10.0.0.1 port 48394 ssh2: RSA SHA256:g0U6KM199woo3jVvTXJmbHJGWRxGxX9UCqO141QChXg Feb 9 10:08:08.609036 sshd[1191]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 10:08:08.618850 systemd[1]: Created slice user-500.slice. Feb 9 10:08:08.619915 systemd[1]: Starting user-runtime-dir@500.service... Feb 9 10:08:08.621708 systemd-logind[1121]: New session 1 of user core. Feb 9 10:08:08.628362 systemd[1]: Finished user-runtime-dir@500.service. Feb 9 10:08:08.629658 systemd[1]: Starting user@500.service... Feb 9 10:08:08.632288 (systemd)[1194]: pam_unix(systemd-user:session): session opened for user core(uid=500) by (uid=0) Feb 9 10:08:08.688871 systemd[1194]: Queued start job for default target default.target. Feb 9 10:08:08.689308 systemd[1194]: Reached target paths.target. Feb 9 10:08:08.689326 systemd[1194]: Reached target sockets.target. Feb 9 10:08:08.689337 systemd[1194]: Reached target timers.target. Feb 9 10:08:08.689347 systemd[1194]: Reached target basic.target. Feb 9 10:08:08.689395 systemd[1194]: Reached target default.target. Feb 9 10:08:08.689418 systemd[1194]: Startup finished in 51ms. Feb 9 10:08:08.689901 systemd[1]: Started user@500.service. Feb 9 10:08:08.691156 systemd[1]: Started session-1.scope. Feb 9 10:08:08.749848 systemd[1]: Started sshd@1-10.0.0.130:22-10.0.0.1:48400.service. Feb 9 10:08:08.792063 sshd[1203]: Accepted publickey for core from 10.0.0.1 port 48400 ssh2: RSA SHA256:g0U6KM199woo3jVvTXJmbHJGWRxGxX9UCqO141QChXg Feb 9 10:08:08.793399 sshd[1203]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 10:08:08.798111 systemd[1]: Started session-2.scope. Feb 9 10:08:08.798578 systemd-logind[1121]: New session 2 of user core. Feb 9 10:08:08.856638 sshd[1203]: pam_unix(sshd:session): session closed for user core Feb 9 10:08:08.860633 systemd[1]: sshd@1-10.0.0.130:22-10.0.0.1:48400.service: Deactivated successfully. Feb 9 10:08:08.861218 systemd[1]: session-2.scope: Deactivated successfully. Feb 9 10:08:08.861746 systemd-logind[1121]: Session 2 logged out. Waiting for processes to exit. Feb 9 10:08:08.863038 systemd[1]: Started sshd@2-10.0.0.130:22-10.0.0.1:48412.service. Feb 9 10:08:08.863957 systemd-logind[1121]: Removed session 2. Feb 9 10:08:08.896541 sshd[1209]: Accepted publickey for core from 10.0.0.1 port 48412 ssh2: RSA SHA256:g0U6KM199woo3jVvTXJmbHJGWRxGxX9UCqO141QChXg Feb 9 10:08:08.897664 sshd[1209]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 10:08:08.901327 systemd-logind[1121]: New session 3 of user core. Feb 9 10:08:08.901689 systemd[1]: Started session-3.scope. Feb 9 10:08:08.950712 sshd[1209]: pam_unix(sshd:session): session closed for user core Feb 9 10:08:08.953061 systemd[1]: sshd@2-10.0.0.130:22-10.0.0.1:48412.service: Deactivated successfully. Feb 9 10:08:08.953567 systemd[1]: session-3.scope: Deactivated successfully. Feb 9 10:08:08.954097 systemd-logind[1121]: Session 3 logged out. Waiting for processes to exit. Feb 9 10:08:08.955028 systemd[1]: Started sshd@3-10.0.0.130:22-10.0.0.1:48428.service. Feb 9 10:08:08.955676 systemd-logind[1121]: Removed session 3. Feb 9 10:08:08.986827 sshd[1216]: Accepted publickey for core from 10.0.0.1 port 48428 ssh2: RSA SHA256:g0U6KM199woo3jVvTXJmbHJGWRxGxX9UCqO141QChXg Feb 9 10:08:08.987937 sshd[1216]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 10:08:08.990945 systemd-logind[1121]: New session 4 of user core. Feb 9 10:08:08.991684 systemd[1]: Started session-4.scope. Feb 9 10:08:09.046572 sshd[1216]: pam_unix(sshd:session): session closed for user core Feb 9 10:08:09.049025 systemd[1]: sshd@3-10.0.0.130:22-10.0.0.1:48428.service: Deactivated successfully. Feb 9 10:08:09.049550 systemd[1]: session-4.scope: Deactivated successfully. Feb 9 10:08:09.049994 systemd-logind[1121]: Session 4 logged out. Waiting for processes to exit. Feb 9 10:08:09.050948 systemd[1]: Started sshd@4-10.0.0.130:22-10.0.0.1:48436.service. Feb 9 10:08:09.051557 systemd-logind[1121]: Removed session 4. Feb 9 10:08:09.082282 sshd[1222]: Accepted publickey for core from 10.0.0.1 port 48436 ssh2: RSA SHA256:g0U6KM199woo3jVvTXJmbHJGWRxGxX9UCqO141QChXg Feb 9 10:08:09.083391 sshd[1222]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 10:08:09.086525 systemd-logind[1121]: New session 5 of user core. Feb 9 10:08:09.087242 systemd[1]: Started session-5.scope. Feb 9 10:08:09.142269 sudo[1225]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/sbin/setenforce 1 Feb 9 10:08:09.142467 sudo[1225]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Feb 9 10:08:09.155925 dbus-daemon[1107]: avc: received setenforce notice (enforcing=1) Feb 9 10:08:09.157668 sudo[1225]: pam_unix(sudo:session): session closed for user root Feb 9 10:08:09.159594 sshd[1222]: pam_unix(sshd:session): session closed for user core Feb 9 10:08:09.163434 systemd[1]: Started sshd@5-10.0.0.130:22-10.0.0.1:48444.service. Feb 9 10:08:09.163939 systemd[1]: sshd@4-10.0.0.130:22-10.0.0.1:48436.service: Deactivated successfully. Feb 9 10:08:09.164661 systemd[1]: session-5.scope: Deactivated successfully. Feb 9 10:08:09.165195 systemd-logind[1121]: Session 5 logged out. Waiting for processes to exit. Feb 9 10:08:09.166095 systemd-logind[1121]: Removed session 5. Feb 9 10:08:09.203361 sshd[1228]: Accepted publickey for core from 10.0.0.1 port 48444 ssh2: RSA SHA256:g0U6KM199woo3jVvTXJmbHJGWRxGxX9UCqO141QChXg Feb 9 10:08:09.204639 sshd[1228]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 10:08:09.207849 systemd-logind[1121]: New session 6 of user core. Feb 9 10:08:09.208697 systemd[1]: Started session-6.scope. Feb 9 10:08:09.261265 sudo[1233]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/bin/rm -rf /etc/audit/rules.d/80-selinux.rules /etc/audit/rules.d/99-default.rules Feb 9 10:08:09.261507 sudo[1233]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Feb 9 10:08:09.264045 sudo[1233]: pam_unix(sudo:session): session closed for user root Feb 9 10:08:09.268006 sudo[1232]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/bin/systemctl restart audit-rules Feb 9 10:08:09.268212 sudo[1232]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Feb 9 10:08:09.276210 systemd[1]: Stopping audit-rules.service... Feb 9 10:08:09.275000 audit: CONFIG_CHANGE auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=remove_rule key=(null) list=5 res=1 Feb 9 10:08:09.277938 auditctl[1236]: No rules Feb 9 10:08:09.278923 kernel: kauditd_printk_skb: 124 callbacks suppressed Feb 9 10:08:09.278960 kernel: audit: type=1305 audit(1707473289.275:157): auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=remove_rule key=(null) list=5 res=1 Feb 9 10:08:09.278990 kernel: audit: type=1300 audit(1707473289.275:157): arch=c00000b7 syscall=206 success=yes exit=1056 a0=3 a1=ffffc854dfd0 a2=420 a3=0 items=0 ppid=1 pid=1236 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:09.275000 audit[1236]: SYSCALL arch=c00000b7 syscall=206 success=yes exit=1056 a0=3 a1=ffffc854dfd0 a2=420 a3=0 items=0 ppid=1 pid=1236 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:09.279275 systemd[1]: audit-rules.service: Deactivated successfully. Feb 9 10:08:09.279430 systemd[1]: Stopped audit-rules.service. Feb 9 10:08:09.280753 systemd[1]: Starting audit-rules.service... Feb 9 10:08:09.281452 kernel: audit: type=1327 audit(1707473289.275:157): proctitle=2F7362696E2F617564697463746C002D44 Feb 9 10:08:09.275000 audit: PROCTITLE proctitle=2F7362696E2F617564697463746C002D44 Feb 9 10:08:09.277000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:09.284000 kernel: audit: type=1131 audit(1707473289.277:158): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:09.296076 augenrules[1253]: No rules Feb 9 10:08:09.296647 systemd[1]: Finished audit-rules.service. Feb 9 10:08:09.295000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:09.297345 sudo[1232]: pam_unix(sudo:session): session closed for user root Feb 9 10:08:09.298857 kernel: audit: type=1130 audit(1707473289.295:159): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:09.298907 kernel: audit: type=1106 audit(1707473289.295:160): pid=1232 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 10:08:09.295000 audit[1232]: USER_END pid=1232 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 10:08:09.299757 sshd[1228]: pam_unix(sshd:session): session closed for user core Feb 9 10:08:09.295000 audit[1232]: CRED_DISP pid=1232 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 10:08:09.305798 kernel: audit: type=1104 audit(1707473289.295:161): pid=1232 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 10:08:09.305846 kernel: audit: type=1106 audit(1707473289.299:162): pid=1228 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=10.0.0.1 addr=10.0.0.1 terminal=ssh res=success' Feb 9 10:08:09.305893 kernel: audit: type=1104 audit(1707473289.299:163): pid=1228 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=10.0.0.1 addr=10.0.0.1 terminal=ssh res=success' Feb 9 10:08:09.299000 audit[1228]: USER_END pid=1228 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=10.0.0.1 addr=10.0.0.1 terminal=ssh res=success' Feb 9 10:08:09.299000 audit[1228]: CRED_DISP pid=1228 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=10.0.0.1 addr=10.0.0.1 terminal=ssh res=success' Feb 9 10:08:09.302778 systemd[1]: Started sshd@6-10.0.0.130:22-10.0.0.1:48454.service. Feb 9 10:08:09.303196 systemd[1]: sshd@5-10.0.0.130:22-10.0.0.1:48444.service: Deactivated successfully. Feb 9 10:08:09.303861 systemd[1]: session-6.scope: Deactivated successfully. Feb 9 10:08:09.304348 systemd-logind[1121]: Session 6 logged out. Waiting for processes to exit. Feb 9 10:08:09.305286 systemd-logind[1121]: Removed session 6. Feb 9 10:08:09.301000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@6-10.0.0.130:22-10.0.0.1:48454 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:09.309551 kernel: audit: type=1130 audit(1707473289.301:164): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@6-10.0.0.130:22-10.0.0.1:48454 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:09.301000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@5-10.0.0.130:22-10.0.0.1:48444 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:09.336000 audit[1258]: USER_ACCT pid=1258 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_access,pam_unix,pam_faillock,pam_permit acct="core" exe="/usr/sbin/sshd" hostname=10.0.0.1 addr=10.0.0.1 terminal=ssh res=success' Feb 9 10:08:09.337954 sshd[1258]: Accepted publickey for core from 10.0.0.1 port 48454 ssh2: RSA SHA256:g0U6KM199woo3jVvTXJmbHJGWRxGxX9UCqO141QChXg Feb 9 10:08:09.336000 audit[1258]: CRED_ACQ pid=1258 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=10.0.0.1 addr=10.0.0.1 terminal=ssh res=success' Feb 9 10:08:09.337000 audit[1258]: SYSCALL arch=c00000b7 syscall=64 success=yes exit=3 a0=5 a1=ffffe1065d70 a2=3 a3=1 items=0 ppid=1 pid=1258 auid=500 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=7 comm="sshd" exe="/usr/sbin/sshd" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:09.337000 audit: PROCTITLE proctitle=737368643A20636F7265205B707269765D Feb 9 10:08:09.339085 sshd[1258]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Feb 9 10:08:09.342770 systemd-logind[1121]: New session 7 of user core. Feb 9 10:08:09.343247 systemd[1]: Started session-7.scope. Feb 9 10:08:09.348000 audit[1258]: USER_START pid=1258 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=10.0.0.1 addr=10.0.0.1 terminal=ssh res=success' Feb 9 10:08:09.349000 audit[1261]: CRED_ACQ pid=1261 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=10.0.0.1 addr=10.0.0.1 terminal=ssh res=success' Feb 9 10:08:09.396000 audit[1262]: USER_ACCT pid=1262 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_unix,pam_faillock,pam_permit acct="core" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 10:08:09.397640 sudo[1262]: core : PWD=/home/core ; USER=root ; COMMAND=/home/core/install.sh Feb 9 10:08:09.397000 audit[1262]: CRED_REFR pid=1262 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 10:08:09.397877 sudo[1262]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Feb 9 10:08:09.398000 audit[1262]: USER_START pid=1262 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 10:08:09.909452 systemd[1]: Reloading. Feb 9 10:08:09.956361 /usr/lib/systemd/system-generators/torcx-generator[1292]: time="2024-02-09T10:08:09Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.2 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.2 /var/lib/torcx/store]" Feb 9 10:08:09.956685 /usr/lib/systemd/system-generators/torcx-generator[1292]: time="2024-02-09T10:08:09Z" level=info msg="torcx already run" Feb 9 10:08:10.071786 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Feb 9 10:08:10.071805 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Feb 9 10:08:10.086662 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Feb 9 10:08:10.133000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.133000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.133000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.133000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.133000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.133000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.133000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.133000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.133000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.133000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.133000 audit: BPF prog-id=31 op=LOAD Feb 9 10:08:10.133000 audit: BPF prog-id=24 op=UNLOAD Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit: BPF prog-id=32 op=LOAD Feb 9 10:08:10.134000 audit: BPF prog-id=15 op=UNLOAD Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit: BPF prog-id=33 op=LOAD Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit: BPF prog-id=34 op=LOAD Feb 9 10:08:10.134000 audit: BPF prog-id=16 op=UNLOAD Feb 9 10:08:10.134000 audit: BPF prog-id=17 op=UNLOAD Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.134000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.135000 audit: BPF prog-id=35 op=LOAD Feb 9 10:08:10.135000 audit: BPF prog-id=20 op=UNLOAD Feb 9 10:08:10.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.135000 audit: BPF prog-id=36 op=LOAD Feb 9 10:08:10.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.135000 audit: BPF prog-id=37 op=LOAD Feb 9 10:08:10.135000 audit: BPF prog-id=18 op=UNLOAD Feb 9 10:08:10.135000 audit: BPF prog-id=19 op=UNLOAD Feb 9 10:08:10.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.136000 audit: BPF prog-id=38 op=LOAD Feb 9 10:08:10.136000 audit: BPF prog-id=21 op=UNLOAD Feb 9 10:08:10.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.136000 audit: BPF prog-id=39 op=LOAD Feb 9 10:08:10.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.136000 audit: BPF prog-id=40 op=LOAD Feb 9 10:08:10.136000 audit: BPF prog-id=22 op=UNLOAD Feb 9 10:08:10.136000 audit: BPF prog-id=23 op=UNLOAD Feb 9 10:08:10.137000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.137000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.137000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.137000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.137000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.137000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.137000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.137000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.137000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.137000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.137000 audit: BPF prog-id=41 op=LOAD Feb 9 10:08:10.137000 audit: BPF prog-id=26 op=UNLOAD Feb 9 10:08:10.137000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.137000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.137000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.137000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.137000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.137000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.137000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.137000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.138000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.138000 audit: BPF prog-id=42 op=LOAD Feb 9 10:08:10.138000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.138000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.138000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.138000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.138000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.138000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.138000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.138000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.138000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.138000 audit: BPF prog-id=43 op=LOAD Feb 9 10:08:10.138000 audit: BPF prog-id=27 op=UNLOAD Feb 9 10:08:10.138000 audit: BPF prog-id=28 op=UNLOAD Feb 9 10:08:10.138000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.138000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.138000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.138000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.138000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.138000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.138000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.138000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.138000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.138000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.138000 audit: BPF prog-id=44 op=LOAD Feb 9 10:08:10.138000 audit: BPF prog-id=29 op=UNLOAD Feb 9 10:08:10.139000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.139000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.139000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.139000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.139000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.139000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.139000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.139000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.139000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.139000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.139000 audit: BPF prog-id=45 op=LOAD Feb 9 10:08:10.139000 audit: BPF prog-id=25 op=UNLOAD Feb 9 10:08:10.147475 systemd[1]: Starting systemd-networkd-wait-online.service... Feb 9 10:08:10.153049 systemd[1]: Finished systemd-networkd-wait-online.service. Feb 9 10:08:10.152000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-networkd-wait-online comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:10.153472 systemd[1]: Reached target network-online.target. Feb 9 10:08:10.154889 systemd[1]: Started kubelet.service. Feb 9 10:08:10.154000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:10.164206 systemd[1]: Starting coreos-metadata.service... Feb 9 10:08:10.172882 systemd[1]: coreos-metadata.service: Deactivated successfully. Feb 9 10:08:10.173066 systemd[1]: Finished coreos-metadata.service. Feb 9 10:08:10.172000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=coreos-metadata comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:10.172000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=coreos-metadata comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:10.275551 kubelet[1329]: E0209 10:08:10.275484 1329 run.go:74] "command failed" err="failed to load kubelet config file, error: failed to load Kubelet config file /var/lib/kubelet/config.yaml, error failed to read kubelet config file \"/var/lib/kubelet/config.yaml\", error: open /var/lib/kubelet/config.yaml: no such file or directory, path: /var/lib/kubelet/config.yaml" Feb 9 10:08:10.277875 systemd[1]: kubelet.service: Main process exited, code=exited, status=1/FAILURE Feb 9 10:08:10.278001 systemd[1]: kubelet.service: Failed with result 'exit-code'. Feb 9 10:08:10.277000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=failed' Feb 9 10:08:10.456962 systemd[1]: Stopped kubelet.service. Feb 9 10:08:10.455000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:10.455000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:10.473148 systemd[1]: Reloading. Feb 9 10:08:10.508842 /usr/lib/systemd/system-generators/torcx-generator[1397]: time="2024-02-09T10:08:10Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.2 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.2 /var/lib/torcx/store]" Feb 9 10:08:10.508874 /usr/lib/systemd/system-generators/torcx-generator[1397]: time="2024-02-09T10:08:10Z" level=info msg="torcx already run" Feb 9 10:08:10.569438 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Feb 9 10:08:10.569459 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Feb 9 10:08:10.585014 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Feb 9 10:08:10.632000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.632000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.632000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.632000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.632000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.632000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.632000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.632000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.632000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.632000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.632000 audit: BPF prog-id=46 op=LOAD Feb 9 10:08:10.632000 audit: BPF prog-id=31 op=UNLOAD Feb 9 10:08:10.633000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.633000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.633000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.633000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.633000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.633000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.633000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.633000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.633000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.633000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.633000 audit: BPF prog-id=47 op=LOAD Feb 9 10:08:10.633000 audit: BPF prog-id=32 op=UNLOAD Feb 9 10:08:10.633000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.633000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.633000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.633000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.633000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.633000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.633000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.633000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.633000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.633000 audit: BPF prog-id=48 op=LOAD Feb 9 10:08:10.633000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.633000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.633000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.633000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.634000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.634000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.634000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.634000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.634000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.634000 audit: BPF prog-id=49 op=LOAD Feb 9 10:08:10.634000 audit: BPF prog-id=33 op=UNLOAD Feb 9 10:08:10.634000 audit: BPF prog-id=34 op=UNLOAD Feb 9 10:08:10.634000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.634000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.634000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.634000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.634000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.634000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.634000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.634000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.634000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.634000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.634000 audit: BPF prog-id=50 op=LOAD Feb 9 10:08:10.634000 audit: BPF prog-id=35 op=UNLOAD Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit: BPF prog-id=51 op=LOAD Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit: BPF prog-id=52 op=LOAD Feb 9 10:08:10.635000 audit: BPF prog-id=36 op=UNLOAD Feb 9 10:08:10.635000 audit: BPF prog-id=37 op=UNLOAD Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit: BPF prog-id=53 op=LOAD Feb 9 10:08:10.635000 audit: BPF prog-id=38 op=UNLOAD Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit: BPF prog-id=54 op=LOAD Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.635000 audit: BPF prog-id=55 op=LOAD Feb 9 10:08:10.635000 audit: BPF prog-id=39 op=UNLOAD Feb 9 10:08:10.635000 audit: BPF prog-id=40 op=UNLOAD Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit: BPF prog-id=56 op=LOAD Feb 9 10:08:10.637000 audit: BPF prog-id=41 op=UNLOAD Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit: BPF prog-id=57 op=LOAD Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit: BPF prog-id=58 op=LOAD Feb 9 10:08:10.637000 audit: BPF prog-id=42 op=UNLOAD Feb 9 10:08:10.637000 audit: BPF prog-id=43 op=UNLOAD Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.637000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.638000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.638000 audit: BPF prog-id=59 op=LOAD Feb 9 10:08:10.638000 audit: BPF prog-id=44 op=UNLOAD Feb 9 10:08:10.638000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.638000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.638000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.638000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.638000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.638000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.638000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.638000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.638000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.639000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:10.639000 audit: BPF prog-id=60 op=LOAD Feb 9 10:08:10.639000 audit: BPF prog-id=45 op=UNLOAD Feb 9 10:08:10.651496 systemd[1]: Started kubelet.service. Feb 9 10:08:10.650000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:10.689324 kubelet[1436]: Flag --container-runtime-endpoint has been deprecated, This parameter should be set via the config file specified by the Kubelet's --config flag. See https://kubernetes.io/docs/tasks/administer-cluster/kubelet-config-file/ for more information. Feb 9 10:08:10.689324 kubelet[1436]: Flag --pod-infra-container-image has been deprecated, will be removed in a future release. Image garbage collector will get sandbox image information from CRI. Feb 9 10:08:10.689324 kubelet[1436]: Flag --volume-plugin-dir has been deprecated, This parameter should be set via the config file specified by the Kubelet's --config flag. See https://kubernetes.io/docs/tasks/administer-cluster/kubelet-config-file/ for more information. Feb 9 10:08:10.689646 kubelet[1436]: I0209 10:08:10.689364 1436 server.go:199] "--pod-infra-container-image will not be pruned by the image garbage collector in kubelet and should also be set in the remote runtime" Feb 9 10:08:11.096440 kubelet[1436]: I0209 10:08:11.096395 1436 server.go:415] "Kubelet version" kubeletVersion="v1.27.2" Feb 9 10:08:11.096440 kubelet[1436]: I0209 10:08:11.096430 1436 server.go:417] "Golang settings" GOGC="" GOMAXPROCS="" GOTRACEBACK="" Feb 9 10:08:11.096704 kubelet[1436]: I0209 10:08:11.096688 1436 server.go:837] "Client rotation is on, will bootstrap in background" Feb 9 10:08:11.100228 kubelet[1436]: I0209 10:08:11.100206 1436 dynamic_cafile_content.go:157] "Starting controller" name="client-ca-bundle::/etc/kubernetes/pki/ca.crt" Feb 9 10:08:11.101778 kubelet[1436]: W0209 10:08:11.101764 1436 machine.go:65] Cannot read vendor id correctly, set empty. Feb 9 10:08:11.102422 kubelet[1436]: I0209 10:08:11.102411 1436 server.go:662] "--cgroups-per-qos enabled, but --cgroup-root was not specified. defaulting to /" Feb 9 10:08:11.102613 kubelet[1436]: I0209 10:08:11.102603 1436 container_manager_linux.go:266] "Container manager verified user specified cgroup-root exists" cgroupRoot=[] Feb 9 10:08:11.102677 kubelet[1436]: I0209 10:08:11.102666 1436 container_manager_linux.go:271] "Creating Container Manager object based on Node Config" nodeConfig={RuntimeCgroupsName: SystemCgroupsName: KubeletCgroupsName: KubeletOOMScoreAdj:-999 ContainerRuntime: CgroupsPerQOS:true CgroupRoot:/ CgroupDriver:systemd KubeletRootDir:/var/lib/kubelet ProtectKernelDefaults:false NodeAllocatableConfig:{KubeReservedCgroupName: SystemReservedCgroupName: ReservedSystemCPUs: EnforceNodeAllocatable:map[pods:{}] KubeReserved:map[] SystemReserved:map[] HardEvictionThresholds:[{Signal:nodefs.inodesFree Operator:LessThan Value:{Quantity: Percentage:0.05} GracePeriod:0s MinReclaim:} {Signal:imagefs.available Operator:LessThan Value:{Quantity: Percentage:0.15} GracePeriod:0s MinReclaim:} {Signal:memory.available Operator:LessThan Value:{Quantity:100Mi Percentage:0} GracePeriod:0s MinReclaim:} {Signal:nodefs.available Operator:LessThan Value:{Quantity: Percentage:0.1} GracePeriod:0s MinReclaim:}]} QOSReserved:map[] CPUManagerPolicy:none CPUManagerPolicyOptions:map[] TopologyManagerScope:container CPUManagerReconcilePeriod:10s ExperimentalMemoryManagerPolicy:None ExperimentalMemoryManagerReservedMemory:[] PodPidsLimit:-1 EnforceCPULimits:true CPUCFSQuotaPeriod:100ms TopologyManagerPolicy:none ExperimentalTopologyManagerPolicyOptions:map[]} Feb 9 10:08:11.102764 kubelet[1436]: I0209 10:08:11.102689 1436 topology_manager.go:136] "Creating topology manager with policy per scope" topologyPolicyName="none" topologyScopeName="container" Feb 9 10:08:11.102764 kubelet[1436]: I0209 10:08:11.102699 1436 container_manager_linux.go:302] "Creating device plugin manager" Feb 9 10:08:11.102838 kubelet[1436]: I0209 10:08:11.102824 1436 state_mem.go:36] "Initialized new in-memory state store" Feb 9 10:08:11.107111 kubelet[1436]: I0209 10:08:11.107092 1436 kubelet.go:405] "Attempting to sync node with API server" Feb 9 10:08:11.107207 kubelet[1436]: I0209 10:08:11.107195 1436 kubelet.go:298] "Adding static pod path" path="/etc/kubernetes/manifests" Feb 9 10:08:11.107294 kubelet[1436]: I0209 10:08:11.107283 1436 kubelet.go:309] "Adding apiserver pod source" Feb 9 10:08:11.107353 kubelet[1436]: I0209 10:08:11.107344 1436 apiserver.go:42] "Waiting for node sync before watching apiserver pods" Feb 9 10:08:11.107940 kubelet[1436]: E0209 10:08:11.107873 1436 file.go:98] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:11.108130 kubelet[1436]: E0209 10:08:11.108106 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:11.108264 kubelet[1436]: I0209 10:08:11.108248 1436 kuberuntime_manager.go:257] "Container runtime initialized" containerRuntime="containerd" version="1.6.16" apiVersion="v1" Feb 9 10:08:11.108686 kubelet[1436]: W0209 10:08:11.108668 1436 probe.go:268] Flexvolume plugin directory at /opt/libexec/kubernetes/kubelet-plugins/volume/exec/ does not exist. Recreating. Feb 9 10:08:11.109400 kubelet[1436]: I0209 10:08:11.109379 1436 server.go:1168] "Started kubelet" Feb 9 10:08:11.109543 kubelet[1436]: I0209 10:08:11.109529 1436 server.go:162] "Starting to listen" address="0.0.0.0" port=10250 Feb 9 10:08:11.110206 kubelet[1436]: I0209 10:08:11.110183 1436 server.go:461] "Adding debug handlers to kubelet server" Feb 9 10:08:11.110538 kubelet[1436]: I0209 10:08:11.110379 1436 ratelimit.go:65] "Setting rate limiting for podresources endpoint" qps=100 burstTokens=10 Feb 9 10:08:11.109000 audit[1436]: AVC avc: denied { mac_admin } for pid=1436 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:11.109000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Feb 9 10:08:11.109000 audit[1436]: SYSCALL arch=c00000b7 syscall=5 success=no exit=-22 a0=4000c82d50 a1=4000898810 a2=4000c82d20 a3=25 items=0 ppid=1 pid=1436 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:11.109000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Feb 9 10:08:11.109000 audit[1436]: AVC avc: denied { mac_admin } for pid=1436 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:11.109000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Feb 9 10:08:11.109000 audit[1436]: SYSCALL arch=c00000b7 syscall=5 success=no exit=-22 a0=400074c180 a1=4000898828 a2=4000c82de0 a3=25 items=0 ppid=1 pid=1436 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:11.109000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Feb 9 10:08:11.111206 kubelet[1436]: I0209 10:08:11.110945 1436 kubelet.go:1355] "Unprivileged containerized plugins might not work, could not set selinux context on plugin registration dir" path="/var/lib/kubelet/plugins_registry" err="setxattr /var/lib/kubelet/plugins_registry: invalid argument" Feb 9 10:08:11.111206 kubelet[1436]: I0209 10:08:11.110978 1436 kubelet.go:1359] "Unprivileged containerized plugins might not work, could not set selinux context on plugins dir" path="/var/lib/kubelet/plugins" err="setxattr /var/lib/kubelet/plugins: invalid argument" Feb 9 10:08:11.111206 kubelet[1436]: I0209 10:08:11.111037 1436 fs_resource_analyzer.go:67] "Starting FS ResourceAnalyzer" Feb 9 10:08:11.111681 kubelet[1436]: E0209 10:08:11.111655 1436 cri_stats_provider.go:455] "Failed to get the info of the filesystem with mountpoint" err="unable to find data in memory cache" mountpoint="/var/lib/containerd/io.containerd.snapshotter.v1.overlayfs" Feb 9 10:08:11.111794 kubelet[1436]: E0209 10:08:11.111782 1436 kubelet.go:1400] "Image garbage collection failed once. Stats initialization may not have completed yet" err="invalid capacity 0 on image filesystem" Feb 9 10:08:11.113284 kubelet[1436]: E0209 10:08:11.113256 1436 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"10.0.0.130\" not found" Feb 9 10:08:11.113344 kubelet[1436]: I0209 10:08:11.113304 1436 volume_manager.go:284] "Starting Kubelet Volume Manager" Feb 9 10:08:11.113434 kubelet[1436]: I0209 10:08:11.113414 1436 desired_state_of_world_populator.go:145] "Desired state populator starts to run" Feb 9 10:08:11.133354 kubelet[1436]: W0209 10:08:11.133316 1436 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.Node: nodes "10.0.0.130" is forbidden: User "system:anonymous" cannot list resource "nodes" in API group "" at the cluster scope Feb 9 10:08:11.133470 kubelet[1436]: E0209 10:08:11.133373 1436 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.Node: failed to list *v1.Node: nodes "10.0.0.130" is forbidden: User "system:anonymous" cannot list resource "nodes" in API group "" at the cluster scope Feb 9 10:08:11.133470 kubelet[1436]: W0209 10:08:11.133402 1436 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.CSIDriver: csidrivers.storage.k8s.io is forbidden: User "system:anonymous" cannot list resource "csidrivers" in API group "storage.k8s.io" at the cluster scope Feb 9 10:08:11.133470 kubelet[1436]: E0209 10:08:11.133414 1436 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.CSIDriver: failed to list *v1.CSIDriver: csidrivers.storage.k8s.io is forbidden: User "system:anonymous" cannot list resource "csidrivers" in API group "storage.k8s.io" at the cluster scope Feb 9 10:08:11.133470 kubelet[1436]: W0209 10:08:11.133434 1436 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.Service: services is forbidden: User "system:anonymous" cannot list resource "services" in API group "" at the cluster scope Feb 9 10:08:11.133470 kubelet[1436]: E0209 10:08:11.133441 1436 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.Service: failed to list *v1.Service: services is forbidden: User "system:anonymous" cannot list resource "services" in API group "" at the cluster scope Feb 9 10:08:11.133590 kubelet[1436]: E0209 10:08:11.133465 1436 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.130.17b229e9640a64e8", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.130", UID:"10.0.0.130", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"Starting", Message:"Starting kubelet.", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.130"}, FirstTimestamp:time.Date(2024, time.February, 9, 10, 8, 11, 109360872, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 10, 8, 11, 109360872, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 10:08:11.133885 kubelet[1436]: E0209 10:08:11.133859 1436 controller.go:146] "Failed to ensure lease exists, will retry" err="leases.coordination.k8s.io \"10.0.0.130\" is forbidden: User \"system:anonymous\" cannot get resource \"leases\" in API group \"coordination.k8s.io\" in the namespace \"kube-node-lease\"" interval="200ms" Feb 9 10:08:11.134052 kubelet[1436]: I0209 10:08:11.134031 1436 cpu_manager.go:214] "Starting CPU manager" policy="none" Feb 9 10:08:11.134052 kubelet[1436]: I0209 10:08:11.134051 1436 cpu_manager.go:215] "Reconciling" reconcilePeriod="10s" Feb 9 10:08:11.134113 kubelet[1436]: I0209 10:08:11.134069 1436 state_mem.go:36] "Initialized new in-memory state store" Feb 9 10:08:11.134927 kubelet[1436]: E0209 10:08:11.134857 1436 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.130.17b229e9642f2a81", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.130", UID:"10.0.0.130", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"InvalidDiskCapacity", Message:"invalid capacity 0 on image filesystem", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.130"}, FirstTimestamp:time.Date(2024, time.February, 9, 10, 8, 11, 111770753, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 10, 8, 11, 111770753, time.Local), Count:1, Type:"Warning", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 10:08:11.136752 kubelet[1436]: E0209 10:08:11.135782 1436 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.130.17b229e965689889", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.130", UID:"10.0.0.130", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 10.0.0.130 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.130"}, FirstTimestamp:time.Date(2024, time.February, 9, 10, 8, 11, 132311689, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 10, 8, 11, 132311689, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 10:08:11.136752 kubelet[1436]: I0209 10:08:11.135989 1436 policy_none.go:49] "None policy: Start" Feb 9 10:08:11.136866 kubelet[1436]: E0209 10:08:11.136480 1436 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.130.17b229e96568ab00", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.130", UID:"10.0.0.130", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 10.0.0.130 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.130"}, FirstTimestamp:time.Date(2024, time.February, 9, 10, 8, 11, 132316416, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 10, 8, 11, 132316416, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 10:08:11.137025 kubelet[1436]: I0209 10:08:11.137006 1436 memory_manager.go:169] "Starting memorymanager" policy="None" Feb 9 10:08:11.137062 kubelet[1436]: I0209 10:08:11.137031 1436 state_mem.go:35] "Initializing new in-memory state store" Feb 9 10:08:11.137424 kubelet[1436]: E0209 10:08:11.137279 1436 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.130.17b229e96568b9de", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.130", UID:"10.0.0.130", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 10.0.0.130 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.130"}, FirstTimestamp:time.Date(2024, time.February, 9, 10, 8, 11, 132320222, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 10, 8, 11, 132320222, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 10:08:11.138000 audit[1450]: NETFILTER_CFG table=mangle:2 family=2 entries=2 op=nft_register_chain pid=1450 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:08:11.138000 audit[1450]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=136 a0=3 a1=fffff15cf890 a2=0 a3=1 items=0 ppid=1436 pid=1450 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:11.138000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D49505441424C45532D48494E54002D74006D616E676C65 Feb 9 10:08:11.140000 audit[1456]: NETFILTER_CFG table=filter:3 family=2 entries=2 op=nft_register_chain pid=1456 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:08:11.140000 audit[1456]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=132 a0=3 a1=ffffe2c97f90 a2=0 a3=1 items=0 ppid=1436 pid=1456 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:11.140000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4649524557414C4C002D740066696C746572 Feb 9 10:08:11.143024 systemd[1]: Created slice kubepods.slice. Feb 9 10:08:11.146612 systemd[1]: Created slice kubepods-burstable.slice. Feb 9 10:08:11.149943 systemd[1]: Created slice kubepods-besteffort.slice. Feb 9 10:08:11.142000 audit[1458]: NETFILTER_CFG table=filter:4 family=2 entries=2 op=nft_register_chain pid=1458 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:08:11.142000 audit[1458]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=312 a0=3 a1=ffffe6931ac0 a2=0 a3=1 items=0 ppid=1436 pid=1458 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:11.142000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6A004B5542452D4649524557414C4C Feb 9 10:08:11.154000 audit[1463]: NETFILTER_CFG table=filter:5 family=2 entries=2 op=nft_register_chain pid=1463 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:08:11.154000 audit[1463]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=312 a0=3 a1=ffffce44d800 a2=0 a3=1 items=0 ppid=1436 pid=1463 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:11.154000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6A004B5542452D4649524557414C4C Feb 9 10:08:11.158383 kubelet[1436]: I0209 10:08:11.158360 1436 manager.go:455] "Failed to read data from checkpoint" checkpoint="kubelet_internal_checkpoint" err="checkpoint is not found" Feb 9 10:08:11.156000 audit[1436]: AVC avc: denied { mac_admin } for pid=1436 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:11.156000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Feb 9 10:08:11.156000 audit[1436]: SYSCALL arch=c00000b7 syscall=5 success=no exit=-22 a0=4000b51050 a1=4001090810 a2=4000b51020 a3=25 items=0 ppid=1 pid=1436 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:11.156000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Feb 9 10:08:11.158709 kubelet[1436]: I0209 10:08:11.158693 1436 server.go:88] "Unprivileged containerized plugins might not work. Could not set selinux context on socket dir" path="/var/lib/kubelet/device-plugins/" err="setxattr /var/lib/kubelet/device-plugins/: invalid argument" Feb 9 10:08:11.158959 kubelet[1436]: I0209 10:08:11.158944 1436 plugin_manager.go:118] "Starting Kubelet Plugin Manager" Feb 9 10:08:11.159710 kubelet[1436]: E0209 10:08:11.159679 1436 eviction_manager.go:262] "Eviction manager: failed to get summary stats" err="failed to get node info: node \"10.0.0.130\" not found" Feb 9 10:08:11.161211 kubelet[1436]: E0209 10:08:11.161125 1436 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.130.17b229e96709603b", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.130", UID:"10.0.0.130", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeAllocatableEnforced", Message:"Updated Node Allocatable limit across pods", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.130"}, FirstTimestamp:time.Date(2024, time.February, 9, 10, 8, 11, 159625787, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 10, 8, 11, 159625787, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 10:08:11.182000 audit[1468]: NETFILTER_CFG table=filter:6 family=2 entries=1 op=nft_register_rule pid=1468 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:08:11.182000 audit[1468]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=924 a0=3 a1=ffffd131d6c0 a2=0 a3=1 items=0 ppid=1436 pid=1468 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:11.182000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D41004B5542452D4649524557414C4C002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E7400626C6F636B20696E636F6D696E67206C6F63616C6E657420636F6E6E656374696F6E73002D2D647374003132372E302E302E302F38 Feb 9 10:08:11.185174 kubelet[1436]: I0209 10:08:11.185150 1436 kubelet_network_linux.go:63] "Initialized iptables rules." protocol=IPv4 Feb 9 10:08:11.184000 audit[1469]: NETFILTER_CFG table=mangle:7 family=10 entries=2 op=nft_register_chain pid=1469 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:08:11.184000 audit[1469]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=136 a0=3 a1=ffffcd3859c0 a2=0 a3=1 items=0 ppid=1436 pid=1469 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:11.184000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D49505441424C45532D48494E54002D74006D616E676C65 Feb 9 10:08:11.186190 kubelet[1436]: I0209 10:08:11.186174 1436 kubelet_network_linux.go:63] "Initialized iptables rules." protocol=IPv6 Feb 9 10:08:11.186229 kubelet[1436]: I0209 10:08:11.186197 1436 status_manager.go:207] "Starting to sync pod status with apiserver" Feb 9 10:08:11.186229 kubelet[1436]: I0209 10:08:11.186215 1436 kubelet.go:2257] "Starting kubelet main sync loop" Feb 9 10:08:11.186275 kubelet[1436]: E0209 10:08:11.186257 1436 kubelet.go:2281] "Skipping pod synchronization" err="PLEG is not healthy: pleg has yet to be successful" Feb 9 10:08:11.184000 audit[1470]: NETFILTER_CFG table=mangle:8 family=2 entries=1 op=nft_register_chain pid=1470 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:08:11.184000 audit[1470]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffcc2f4060 a2=0 a3=1 items=0 ppid=1436 pid=1470 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:11.184000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006D616E676C65 Feb 9 10:08:11.187332 kubelet[1436]: W0209 10:08:11.187314 1436 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.RuntimeClass: runtimeclasses.node.k8s.io is forbidden: User "system:anonymous" cannot list resource "runtimeclasses" in API group "node.k8s.io" at the cluster scope Feb 9 10:08:11.187404 kubelet[1436]: E0209 10:08:11.187341 1436 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.RuntimeClass: failed to list *v1.RuntimeClass: runtimeclasses.node.k8s.io is forbidden: User "system:anonymous" cannot list resource "runtimeclasses" in API group "node.k8s.io" at the cluster scope Feb 9 10:08:11.185000 audit[1471]: NETFILTER_CFG table=mangle:9 family=10 entries=1 op=nft_register_chain pid=1471 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:08:11.185000 audit[1471]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffd7be8e00 a2=0 a3=1 items=0 ppid=1436 pid=1471 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:11.185000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006D616E676C65 Feb 9 10:08:11.186000 audit[1472]: NETFILTER_CFG table=nat:10 family=2 entries=2 op=nft_register_chain pid=1472 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:08:11.186000 audit[1472]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=128 a0=3 a1=fffff4f5c9d0 a2=0 a3=1 items=0 ppid=1436 pid=1472 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:11.186000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006E6174 Feb 9 10:08:11.186000 audit[1473]: NETFILTER_CFG table=nat:11 family=10 entries=2 op=nft_register_chain pid=1473 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:08:11.186000 audit[1473]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=128 a0=3 a1=ffffc3d00920 a2=0 a3=1 items=0 ppid=1436 pid=1473 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:11.186000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006E6174 Feb 9 10:08:11.187000 audit[1474]: NETFILTER_CFG table=filter:12 family=2 entries=1 op=nft_register_chain pid=1474 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:08:11.187000 audit[1474]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=fffff1e32450 a2=0 a3=1 items=0 ppid=1436 pid=1474 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:11.187000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D740066696C746572 Feb 9 10:08:11.187000 audit[1475]: NETFILTER_CFG table=filter:13 family=10 entries=2 op=nft_register_chain pid=1475 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:08:11.187000 audit[1475]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=136 a0=3 a1=ffffc6bc0fc0 a2=0 a3=1 items=0 ppid=1436 pid=1475 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:11.187000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D740066696C746572 Feb 9 10:08:11.214319 kubelet[1436]: I0209 10:08:11.214287 1436 kubelet_node_status.go:70] "Attempting to register node" node="10.0.0.130" Feb 9 10:08:11.215254 kubelet[1436]: E0209 10:08:11.215234 1436 kubelet_node_status.go:92] "Unable to register node with API server" err="nodes is forbidden: User \"system:anonymous\" cannot create resource \"nodes\" in API group \"\" at the cluster scope" node="10.0.0.130" Feb 9 10:08:11.215675 kubelet[1436]: E0209 10:08:11.215605 1436 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.130.17b229e965689889", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.130", UID:"10.0.0.130", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 10.0.0.130 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.130"}, FirstTimestamp:time.Date(2024, time.February, 9, 10, 8, 11, 132311689, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 10, 8, 11, 214245690, time.Local), Count:2, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "10.0.0.130.17b229e965689889" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 10:08:11.216488 kubelet[1436]: E0209 10:08:11.216429 1436 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.130.17b229e96568ab00", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.130", UID:"10.0.0.130", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 10.0.0.130 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.130"}, FirstTimestamp:time.Date(2024, time.February, 9, 10, 8, 11, 132316416, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 10, 8, 11, 214250658, time.Local), Count:2, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "10.0.0.130.17b229e96568ab00" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 10:08:11.217393 kubelet[1436]: E0209 10:08:11.217336 1436 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.130.17b229e96568b9de", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.130", UID:"10.0.0.130", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 10.0.0.130 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.130"}, FirstTimestamp:time.Date(2024, time.February, 9, 10, 8, 11, 132320222, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 10, 8, 11, 214253502, time.Local), Count:2, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "10.0.0.130.17b229e96568b9de" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 10:08:11.335040 kubelet[1436]: E0209 10:08:11.334998 1436 controller.go:146] "Failed to ensure lease exists, will retry" err="leases.coordination.k8s.io \"10.0.0.130\" is forbidden: User \"system:anonymous\" cannot get resource \"leases\" in API group \"coordination.k8s.io\" in the namespace \"kube-node-lease\"" interval="400ms" Feb 9 10:08:11.416206 kubelet[1436]: I0209 10:08:11.416110 1436 kubelet_node_status.go:70] "Attempting to register node" node="10.0.0.130" Feb 9 10:08:11.417387 kubelet[1436]: E0209 10:08:11.417307 1436 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.130.17b229e965689889", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.130", UID:"10.0.0.130", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 10.0.0.130 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.130"}, FirstTimestamp:time.Date(2024, time.February, 9, 10, 8, 11, 132311689, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 10, 8, 11, 416062883, time.Local), Count:3, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "10.0.0.130.17b229e965689889" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 10:08:11.417878 kubelet[1436]: E0209 10:08:11.417683 1436 kubelet_node_status.go:92] "Unable to register node with API server" err="nodes is forbidden: User \"system:anonymous\" cannot create resource \"nodes\" in API group \"\" at the cluster scope" node="10.0.0.130" Feb 9 10:08:11.418754 kubelet[1436]: E0209 10:08:11.418641 1436 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.130.17b229e96568ab00", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.130", UID:"10.0.0.130", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 10.0.0.130 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.130"}, FirstTimestamp:time.Date(2024, time.February, 9, 10, 8, 11, 132316416, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 10, 8, 11, 416078587, time.Local), Count:3, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "10.0.0.130.17b229e96568ab00" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 10:08:11.419776 kubelet[1436]: E0209 10:08:11.419707 1436 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.130.17b229e96568b9de", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.130", UID:"10.0.0.130", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 10.0.0.130 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.130"}, FirstTimestamp:time.Date(2024, time.February, 9, 10, 8, 11, 132320222, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 10, 8, 11, 416081591, time.Local), Count:3, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "10.0.0.130.17b229e96568b9de" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 10:08:11.738013 kubelet[1436]: E0209 10:08:11.737911 1436 controller.go:146] "Failed to ensure lease exists, will retry" err="leases.coordination.k8s.io \"10.0.0.130\" is forbidden: User \"system:anonymous\" cannot get resource \"leases\" in API group \"coordination.k8s.io\" in the namespace \"kube-node-lease\"" interval="800ms" Feb 9 10:08:11.818961 kubelet[1436]: I0209 10:08:11.818935 1436 kubelet_node_status.go:70] "Attempting to register node" node="10.0.0.130" Feb 9 10:08:11.820388 kubelet[1436]: E0209 10:08:11.820316 1436 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.130.17b229e965689889", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.130", UID:"10.0.0.130", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 10.0.0.130 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.130"}, FirstTimestamp:time.Date(2024, time.February, 9, 10, 8, 11, 132311689, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 10, 8, 11, 818898876, time.Local), Count:4, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "10.0.0.130.17b229e965689889" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 10:08:11.820619 kubelet[1436]: E0209 10:08:11.820590 1436 kubelet_node_status.go:92] "Unable to register node with API server" err="nodes is forbidden: User \"system:anonymous\" cannot create resource \"nodes\" in API group \"\" at the cluster scope" node="10.0.0.130" Feb 9 10:08:11.821494 kubelet[1436]: E0209 10:08:11.821439 1436 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.130.17b229e96568ab00", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.130", UID:"10.0.0.130", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 10.0.0.130 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.130"}, FirstTimestamp:time.Date(2024, time.February, 9, 10, 8, 11, 132316416, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 10, 8, 11, 818906767, time.Local), Count:4, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "10.0.0.130.17b229e96568ab00" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 10:08:11.822470 kubelet[1436]: E0209 10:08:11.822399 1436 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.130.17b229e96568b9de", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"10.0.0.130", UID:"10.0.0.130", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 10.0.0.130 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"10.0.0.130"}, FirstTimestamp:time.Date(2024, time.February, 9, 10, 8, 11, 132320222, time.Local), LastTimestamp:time.Date(2024, time.February, 9, 10, 8, 11, 818910012, time.Local), Count:4, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "10.0.0.130.17b229e96568b9de" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Feb 9 10:08:11.963182 kubelet[1436]: W0209 10:08:11.963151 1436 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.Service: services is forbidden: User "system:anonymous" cannot list resource "services" in API group "" at the cluster scope Feb 9 10:08:11.963182 kubelet[1436]: E0209 10:08:11.963181 1436 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.Service: failed to list *v1.Service: services is forbidden: User "system:anonymous" cannot list resource "services" in API group "" at the cluster scope Feb 9 10:08:11.985224 kubelet[1436]: W0209 10:08:11.985198 1436 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.CSIDriver: csidrivers.storage.k8s.io is forbidden: User "system:anonymous" cannot list resource "csidrivers" in API group "storage.k8s.io" at the cluster scope Feb 9 10:08:11.985224 kubelet[1436]: E0209 10:08:11.985227 1436 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.CSIDriver: failed to list *v1.CSIDriver: csidrivers.storage.k8s.io is forbidden: User "system:anonymous" cannot list resource "csidrivers" in API group "storage.k8s.io" at the cluster scope Feb 9 10:08:12.098952 kubelet[1436]: I0209 10:08:12.098862 1436 transport.go:147] "Certificate rotation detected, shutting down client connections to start using new credentials" Feb 9 10:08:12.109239 kubelet[1436]: E0209 10:08:12.109211 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:12.491208 kubelet[1436]: E0209 10:08:12.491100 1436 csi_plugin.go:295] Failed to initialize CSINode: error updating CSINode annotation: timed out waiting for the condition; caused by: nodes "10.0.0.130" not found Feb 9 10:08:12.541879 kubelet[1436]: E0209 10:08:12.541839 1436 nodelease.go:49] "Failed to get node when trying to set owner ref to the node lease" err="nodes \"10.0.0.130\" not found" node="10.0.0.130" Feb 9 10:08:12.621773 kubelet[1436]: I0209 10:08:12.621749 1436 kubelet_node_status.go:70] "Attempting to register node" node="10.0.0.130" Feb 9 10:08:12.625955 kubelet[1436]: I0209 10:08:12.625928 1436 kubelet_node_status.go:73] "Successfully registered node" node="10.0.0.130" Feb 9 10:08:12.640324 kubelet[1436]: I0209 10:08:12.640285 1436 kuberuntime_manager.go:1460] "Updating runtime config through cri with podcidr" CIDR="192.168.1.0/24" Feb 9 10:08:12.640663 env[1133]: time="2024-02-09T10:08:12.640613248Z" level=info msg="No cni config template is specified, wait for other system components to drop the config." Feb 9 10:08:12.640945 kubelet[1436]: I0209 10:08:12.640867 1436 kubelet_network.go:61] "Updating Pod CIDR" originalPodCIDR="" newPodCIDR="192.168.1.0/24" Feb 9 10:08:12.669523 sudo[1262]: pam_unix(sudo:session): session closed for user root Feb 9 10:08:12.668000 audit[1262]: USER_END pid=1262 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 10:08:12.668000 audit[1262]: CRED_DISP pid=1262 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Feb 9 10:08:12.671019 sshd[1258]: pam_unix(sshd:session): session closed for user core Feb 9 10:08:12.671000 audit[1258]: USER_END pid=1258 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=10.0.0.1 addr=10.0.0.1 terminal=ssh res=success' Feb 9 10:08:12.671000 audit[1258]: CRED_DISP pid=1258 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=10.0.0.1 addr=10.0.0.1 terminal=ssh res=success' Feb 9 10:08:12.673570 systemd[1]: sshd@6-10.0.0.130:22-10.0.0.1:48454.service: Deactivated successfully. Feb 9 10:08:12.673000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@6-10.0.0.130:22-10.0.0.1:48454 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Feb 9 10:08:12.674302 systemd[1]: session-7.scope: Deactivated successfully. Feb 9 10:08:12.674846 systemd-logind[1121]: Session 7 logged out. Waiting for processes to exit. Feb 9 10:08:12.675494 systemd-logind[1121]: Removed session 7. Feb 9 10:08:13.109290 kubelet[1436]: I0209 10:08:13.109235 1436 apiserver.go:52] "Watching apiserver" Feb 9 10:08:13.109628 kubelet[1436]: E0209 10:08:13.109498 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:13.112880 kubelet[1436]: I0209 10:08:13.112839 1436 topology_manager.go:212] "Topology Admit Handler" Feb 9 10:08:13.112972 kubelet[1436]: I0209 10:08:13.112939 1436 topology_manager.go:212] "Topology Admit Handler" Feb 9 10:08:13.112997 kubelet[1436]: I0209 10:08:13.112974 1436 topology_manager.go:212] "Topology Admit Handler" Feb 9 10:08:13.113928 kubelet[1436]: E0209 10:08:13.113893 1436 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-rggxx" podUID=f8207ca5-0291-4d48-b2b7-19f5b26290bd Feb 9 10:08:13.115056 kubelet[1436]: I0209 10:08:13.115032 1436 desired_state_of_world_populator.go:153] "Finished populating initial desired state of world" Feb 9 10:08:13.120841 systemd[1]: Created slice kubepods-besteffort-pod0e2a3e0c_43f8_410c_8995_305158f64b75.slice. Feb 9 10:08:13.123707 kubelet[1436]: I0209 10:08:13.123684 1436 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"registration-dir\" (UniqueName: \"kubernetes.io/host-path/f8207ca5-0291-4d48-b2b7-19f5b26290bd-registration-dir\") pod \"csi-node-driver-rggxx\" (UID: \"f8207ca5-0291-4d48-b2b7-19f5b26290bd\") " pod="calico-system/csi-node-driver-rggxx" Feb 9 10:08:13.123845 kubelet[1436]: I0209 10:08:13.123832 1436 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-proxy\" (UniqueName: \"kubernetes.io/configmap/08220bdb-bd84-4807-b7b0-14c76c6b03d4-kube-proxy\") pod \"kube-proxy-tlb9s\" (UID: \"08220bdb-bd84-4807-b7b0-14c76c6b03d4\") " pod="kube-system/kube-proxy-tlb9s" Feb 9 10:08:13.123917 kubelet[1436]: I0209 10:08:13.123908 1436 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-tq26w\" (UniqueName: \"kubernetes.io/projected/08220bdb-bd84-4807-b7b0-14c76c6b03d4-kube-api-access-tq26w\") pod \"kube-proxy-tlb9s\" (UID: \"08220bdb-bd84-4807-b7b0-14c76c6b03d4\") " pod="kube-system/kube-proxy-tlb9s" Feb 9 10:08:13.123989 kubelet[1436]: I0209 10:08:13.123979 1436 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-bin-dir\" (UniqueName: \"kubernetes.io/host-path/0e2a3e0c-43f8-410c-8995-305158f64b75-cni-bin-dir\") pod \"calico-node-pgdwb\" (UID: \"0e2a3e0c-43f8-410c-8995-305158f64b75\") " pod="calico-system/calico-node-pgdwb" Feb 9 10:08:13.124087 kubelet[1436]: I0209 10:08:13.124077 1436 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kubelet-dir\" (UniqueName: \"kubernetes.io/host-path/f8207ca5-0291-4d48-b2b7-19f5b26290bd-kubelet-dir\") pod \"csi-node-driver-rggxx\" (UID: \"f8207ca5-0291-4d48-b2b7-19f5b26290bd\") " pod="calico-system/csi-node-driver-rggxx" Feb 9 10:08:13.124159 kubelet[1436]: I0209 10:08:13.124150 1436 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-ldrkp\" (UniqueName: \"kubernetes.io/projected/f8207ca5-0291-4d48-b2b7-19f5b26290bd-kube-api-access-ldrkp\") pod \"csi-node-driver-rggxx\" (UID: \"f8207ca5-0291-4d48-b2b7-19f5b26290bd\") " pod="calico-system/csi-node-driver-rggxx" Feb 9 10:08:13.124226 kubelet[1436]: I0209 10:08:13.124217 1436 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"flexvol-driver-host\" (UniqueName: \"kubernetes.io/host-path/0e2a3e0c-43f8-410c-8995-305158f64b75-flexvol-driver-host\") pod \"calico-node-pgdwb\" (UID: \"0e2a3e0c-43f8-410c-8995-305158f64b75\") " pod="calico-system/calico-node-pgdwb" Feb 9 10:08:13.124300 kubelet[1436]: I0209 10:08:13.124290 1436 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"socket-dir\" (UniqueName: \"kubernetes.io/host-path/f8207ca5-0291-4d48-b2b7-19f5b26290bd-socket-dir\") pod \"csi-node-driver-rggxx\" (UID: \"f8207ca5-0291-4d48-b2b7-19f5b26290bd\") " pod="calico-system/csi-node-driver-rggxx" Feb 9 10:08:13.124383 kubelet[1436]: I0209 10:08:13.124373 1436 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"tigera-ca-bundle\" (UniqueName: \"kubernetes.io/configmap/0e2a3e0c-43f8-410c-8995-305158f64b75-tigera-ca-bundle\") pod \"calico-node-pgdwb\" (UID: \"0e2a3e0c-43f8-410c-8995-305158f64b75\") " pod="calico-system/calico-node-pgdwb" Feb 9 10:08:13.124464 kubelet[1436]: I0209 10:08:13.124454 1436 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"node-certs\" (UniqueName: \"kubernetes.io/secret/0e2a3e0c-43f8-410c-8995-305158f64b75-node-certs\") pod \"calico-node-pgdwb\" (UID: \"0e2a3e0c-43f8-410c-8995-305158f64b75\") " pod="calico-system/calico-node-pgdwb" Feb 9 10:08:13.124591 kubelet[1436]: I0209 10:08:13.124540 1436 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-net-dir\" (UniqueName: \"kubernetes.io/host-path/0e2a3e0c-43f8-410c-8995-305158f64b75-cni-net-dir\") pod \"calico-node-pgdwb\" (UID: \"0e2a3e0c-43f8-410c-8995-305158f64b75\") " pod="calico-system/calico-node-pgdwb" Feb 9 10:08:13.124591 kubelet[1436]: I0209 10:08:13.124578 1436 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"lib-modules\" (UniqueName: \"kubernetes.io/host-path/08220bdb-bd84-4807-b7b0-14c76c6b03d4-lib-modules\") pod \"kube-proxy-tlb9s\" (UID: \"08220bdb-bd84-4807-b7b0-14c76c6b03d4\") " pod="kube-system/kube-proxy-tlb9s" Feb 9 10:08:13.124665 kubelet[1436]: I0209 10:08:13.124599 1436 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"xtables-lock\" (UniqueName: \"kubernetes.io/host-path/08220bdb-bd84-4807-b7b0-14c76c6b03d4-xtables-lock\") pod \"kube-proxy-tlb9s\" (UID: \"08220bdb-bd84-4807-b7b0-14c76c6b03d4\") " pod="kube-system/kube-proxy-tlb9s" Feb 9 10:08:13.124665 kubelet[1436]: I0209 10:08:13.124619 1436 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"lib-modules\" (UniqueName: \"kubernetes.io/host-path/0e2a3e0c-43f8-410c-8995-305158f64b75-lib-modules\") pod \"calico-node-pgdwb\" (UID: \"0e2a3e0c-43f8-410c-8995-305158f64b75\") " pod="calico-system/calico-node-pgdwb" Feb 9 10:08:13.124665 kubelet[1436]: I0209 10:08:13.124638 1436 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"xtables-lock\" (UniqueName: \"kubernetes.io/host-path/0e2a3e0c-43f8-410c-8995-305158f64b75-xtables-lock\") pod \"calico-node-pgdwb\" (UID: \"0e2a3e0c-43f8-410c-8995-305158f64b75\") " pod="calico-system/calico-node-pgdwb" Feb 9 10:08:13.124665 kubelet[1436]: I0209 10:08:13.124655 1436 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"policysync\" (UniqueName: \"kubernetes.io/host-path/0e2a3e0c-43f8-410c-8995-305158f64b75-policysync\") pod \"calico-node-pgdwb\" (UID: \"0e2a3e0c-43f8-410c-8995-305158f64b75\") " pod="calico-system/calico-node-pgdwb" Feb 9 10:08:13.124771 kubelet[1436]: I0209 10:08:13.124673 1436 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"var-run-calico\" (UniqueName: \"kubernetes.io/host-path/0e2a3e0c-43f8-410c-8995-305158f64b75-var-run-calico\") pod \"calico-node-pgdwb\" (UID: \"0e2a3e0c-43f8-410c-8995-305158f64b75\") " pod="calico-system/calico-node-pgdwb" Feb 9 10:08:13.124771 kubelet[1436]: I0209 10:08:13.124692 1436 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"var-lib-calico\" (UniqueName: \"kubernetes.io/host-path/0e2a3e0c-43f8-410c-8995-305158f64b75-var-lib-calico\") pod \"calico-node-pgdwb\" (UID: \"0e2a3e0c-43f8-410c-8995-305158f64b75\") " pod="calico-system/calico-node-pgdwb" Feb 9 10:08:13.124771 kubelet[1436]: I0209 10:08:13.124713 1436 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-log-dir\" (UniqueName: \"kubernetes.io/host-path/0e2a3e0c-43f8-410c-8995-305158f64b75-cni-log-dir\") pod \"calico-node-pgdwb\" (UID: \"0e2a3e0c-43f8-410c-8995-305158f64b75\") " pod="calico-system/calico-node-pgdwb" Feb 9 10:08:13.124771 kubelet[1436]: I0209 10:08:13.124746 1436 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"varrun\" (UniqueName: \"kubernetes.io/host-path/f8207ca5-0291-4d48-b2b7-19f5b26290bd-varrun\") pod \"csi-node-driver-rggxx\" (UID: \"f8207ca5-0291-4d48-b2b7-19f5b26290bd\") " pod="calico-system/csi-node-driver-rggxx" Feb 9 10:08:13.124771 kubelet[1436]: I0209 10:08:13.124765 1436 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-qhjd6\" (UniqueName: \"kubernetes.io/projected/0e2a3e0c-43f8-410c-8995-305158f64b75-kube-api-access-qhjd6\") pod \"calico-node-pgdwb\" (UID: \"0e2a3e0c-43f8-410c-8995-305158f64b75\") " pod="calico-system/calico-node-pgdwb" Feb 9 10:08:13.124877 kubelet[1436]: I0209 10:08:13.124779 1436 reconciler.go:41] "Reconciler: start to sync state" Feb 9 10:08:13.153175 systemd[1]: Created slice kubepods-besteffort-pod08220bdb_bd84_4807_b7b0_14c76c6b03d4.slice. Feb 9 10:08:13.226289 kubelet[1436]: E0209 10:08:13.226249 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.226289 kubelet[1436]: W0209 10:08:13.226269 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.226289 kubelet[1436]: E0209 10:08:13.226290 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.227557 kubelet[1436]: E0209 10:08:13.227511 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.227557 kubelet[1436]: W0209 10:08:13.227529 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.227557 kubelet[1436]: E0209 10:08:13.227546 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.227766 kubelet[1436]: E0209 10:08:13.227749 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.227766 kubelet[1436]: W0209 10:08:13.227764 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.227827 kubelet[1436]: E0209 10:08:13.227808 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.227945 kubelet[1436]: E0209 10:08:13.227920 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.227945 kubelet[1436]: W0209 10:08:13.227934 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.228007 kubelet[1436]: E0209 10:08:13.227972 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.228115 kubelet[1436]: E0209 10:08:13.228092 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.228115 kubelet[1436]: W0209 10:08:13.228106 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.228195 kubelet[1436]: E0209 10:08:13.228181 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.228270 kubelet[1436]: E0209 10:08:13.228260 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.228270 kubelet[1436]: W0209 10:08:13.228270 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.228351 kubelet[1436]: E0209 10:08:13.228340 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.228416 kubelet[1436]: E0209 10:08:13.228407 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.228416 kubelet[1436]: W0209 10:08:13.228415 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.228503 kubelet[1436]: E0209 10:08:13.228491 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.228560 kubelet[1436]: E0209 10:08:13.228552 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.228589 kubelet[1436]: W0209 10:08:13.228562 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.228651 kubelet[1436]: E0209 10:08:13.228636 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.228714 kubelet[1436]: E0209 10:08:13.228700 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.228714 kubelet[1436]: W0209 10:08:13.228711 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.228805 kubelet[1436]: E0209 10:08:13.228794 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.228860 kubelet[1436]: E0209 10:08:13.228851 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.228860 kubelet[1436]: W0209 10:08:13.228860 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.228935 kubelet[1436]: E0209 10:08:13.228925 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.229428 kubelet[1436]: E0209 10:08:13.229414 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.229428 kubelet[1436]: W0209 10:08:13.229428 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.229524 kubelet[1436]: E0209 10:08:13.229509 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.229615 kubelet[1436]: E0209 10:08:13.229601 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.229615 kubelet[1436]: W0209 10:08:13.229612 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.229692 kubelet[1436]: E0209 10:08:13.229681 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.229765 kubelet[1436]: E0209 10:08:13.229756 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.229765 kubelet[1436]: W0209 10:08:13.229764 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.229841 kubelet[1436]: E0209 10:08:13.229831 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.229935 kubelet[1436]: E0209 10:08:13.229927 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.229935 kubelet[1436]: W0209 10:08:13.229934 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.230010 kubelet[1436]: E0209 10:08:13.230001 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.230114 kubelet[1436]: E0209 10:08:13.230077 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.230114 kubelet[1436]: W0209 10:08:13.230084 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.230183 kubelet[1436]: E0209 10:08:13.230171 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.230253 kubelet[1436]: E0209 10:08:13.230243 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.230253 kubelet[1436]: W0209 10:08:13.230251 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.230327 kubelet[1436]: E0209 10:08:13.230315 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.230378 kubelet[1436]: E0209 10:08:13.230370 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.230378 kubelet[1436]: W0209 10:08:13.230378 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.230447 kubelet[1436]: E0209 10:08:13.230438 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.230517 kubelet[1436]: E0209 10:08:13.230508 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.230517 kubelet[1436]: W0209 10:08:13.230516 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.230588 kubelet[1436]: E0209 10:08:13.230579 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.230656 kubelet[1436]: E0209 10:08:13.230648 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.230656 kubelet[1436]: W0209 10:08:13.230656 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.230740 kubelet[1436]: E0209 10:08:13.230713 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.230797 kubelet[1436]: E0209 10:08:13.230787 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.230797 kubelet[1436]: W0209 10:08:13.230796 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.230860 kubelet[1436]: E0209 10:08:13.230841 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.230944 kubelet[1436]: E0209 10:08:13.230935 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.230944 kubelet[1436]: W0209 10:08:13.230945 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.231004 kubelet[1436]: E0209 10:08:13.230963 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.231079 kubelet[1436]: E0209 10:08:13.231070 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.231079 kubelet[1436]: W0209 10:08:13.231078 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.231173 kubelet[1436]: E0209 10:08:13.231158 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.231241 kubelet[1436]: E0209 10:08:13.231199 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.231298 kubelet[1436]: W0209 10:08:13.231287 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.231421 kubelet[1436]: E0209 10:08:13.231403 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.231537 kubelet[1436]: E0209 10:08:13.231525 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.231594 kubelet[1436]: W0209 10:08:13.231583 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.231690 kubelet[1436]: E0209 10:08:13.231676 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.231898 kubelet[1436]: E0209 10:08:13.231883 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.231967 kubelet[1436]: W0209 10:08:13.231955 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.232087 kubelet[1436]: E0209 10:08:13.232065 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.232197 kubelet[1436]: E0209 10:08:13.232185 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.232253 kubelet[1436]: W0209 10:08:13.232242 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.232343 kubelet[1436]: E0209 10:08:13.232329 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.232503 kubelet[1436]: E0209 10:08:13.232482 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.232562 kubelet[1436]: W0209 10:08:13.232552 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.232659 kubelet[1436]: E0209 10:08:13.232646 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.232852 kubelet[1436]: E0209 10:08:13.232839 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.232914 kubelet[1436]: W0209 10:08:13.232902 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.233001 kubelet[1436]: E0209 10:08:13.232988 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.233176 kubelet[1436]: E0209 10:08:13.233165 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.233236 kubelet[1436]: W0209 10:08:13.233224 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.233329 kubelet[1436]: E0209 10:08:13.233314 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.233499 kubelet[1436]: E0209 10:08:13.233478 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.233559 kubelet[1436]: W0209 10:08:13.233548 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.233671 kubelet[1436]: E0209 10:08:13.233655 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.233858 kubelet[1436]: E0209 10:08:13.233845 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.233919 kubelet[1436]: W0209 10:08:13.233908 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.234027 kubelet[1436]: E0209 10:08:13.234010 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.234200 kubelet[1436]: E0209 10:08:13.234189 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.234260 kubelet[1436]: W0209 10:08:13.234249 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.234353 kubelet[1436]: E0209 10:08:13.234339 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.234511 kubelet[1436]: E0209 10:08:13.234499 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.234568 kubelet[1436]: W0209 10:08:13.234558 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.234683 kubelet[1436]: E0209 10:08:13.234666 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.234861 kubelet[1436]: E0209 10:08:13.234849 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.234925 kubelet[1436]: W0209 10:08:13.234913 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.235054 kubelet[1436]: E0209 10:08:13.235043 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.235162 kubelet[1436]: E0209 10:08:13.235152 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.235218 kubelet[1436]: W0209 10:08:13.235206 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.235300 kubelet[1436]: E0209 10:08:13.235283 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.235896 kubelet[1436]: E0209 10:08:13.235880 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.235981 kubelet[1436]: W0209 10:08:13.235969 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.236101 kubelet[1436]: E0209 10:08:13.236079 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.236209 kubelet[1436]: E0209 10:08:13.236198 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.236268 kubelet[1436]: W0209 10:08:13.236257 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.236349 kubelet[1436]: E0209 10:08:13.236329 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.236541 kubelet[1436]: E0209 10:08:13.236530 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.236609 kubelet[1436]: W0209 10:08:13.236596 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.236702 kubelet[1436]: E0209 10:08:13.236679 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.236915 kubelet[1436]: E0209 10:08:13.236904 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.236980 kubelet[1436]: W0209 10:08:13.236969 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.237078 kubelet[1436]: E0209 10:08:13.237055 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.237278 kubelet[1436]: E0209 10:08:13.237265 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.237352 kubelet[1436]: W0209 10:08:13.237333 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.237449 kubelet[1436]: E0209 10:08:13.237424 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.237627 kubelet[1436]: E0209 10:08:13.237615 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.237689 kubelet[1436]: W0209 10:08:13.237678 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.237784 kubelet[1436]: E0209 10:08:13.237762 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.237960 kubelet[1436]: E0209 10:08:13.237948 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.238021 kubelet[1436]: W0209 10:08:13.238010 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.238235 kubelet[1436]: E0209 10:08:13.238225 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.238309 kubelet[1436]: W0209 10:08:13.238297 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.238558 kubelet[1436]: E0209 10:08:13.238545 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.238627 kubelet[1436]: W0209 10:08:13.238615 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.238761 kubelet[1436]: E0209 10:08:13.238652 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.238831 kubelet[1436]: E0209 10:08:13.238662 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.238900 kubelet[1436]: E0209 10:08:13.238888 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.239083 kubelet[1436]: E0209 10:08:13.239072 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.239150 kubelet[1436]: W0209 10:08:13.239139 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.239270 kubelet[1436]: E0209 10:08:13.239248 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.239466 kubelet[1436]: E0209 10:08:13.239455 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.239546 kubelet[1436]: W0209 10:08:13.239530 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.239642 kubelet[1436]: E0209 10:08:13.239621 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.239821 kubelet[1436]: E0209 10:08:13.239809 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.240232 kubelet[1436]: W0209 10:08:13.240216 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.240332 kubelet[1436]: E0209 10:08:13.240319 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.240592 kubelet[1436]: E0209 10:08:13.240580 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.240665 kubelet[1436]: W0209 10:08:13.240652 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.240739 kubelet[1436]: E0209 10:08:13.240728 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.240951 kubelet[1436]: E0209 10:08:13.240935 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.240951 kubelet[1436]: W0209 10:08:13.240950 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.241022 kubelet[1436]: E0209 10:08:13.240964 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.241966 kubelet[1436]: E0209 10:08:13.241944 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.241966 kubelet[1436]: W0209 10:08:13.241960 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.242054 kubelet[1436]: E0209 10:08:13.241973 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.243156 kubelet[1436]: E0209 10:08:13.243140 1436 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Feb 9 10:08:13.243237 kubelet[1436]: W0209 10:08:13.243224 1436 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Feb 9 10:08:13.243306 kubelet[1436]: E0209 10:08:13.243296 1436 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Feb 9 10:08:13.452782 kubelet[1436]: E0209 10:08:13.452652 1436 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 10:08:13.453933 env[1133]: time="2024-02-09T10:08:13.453872610Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-node-pgdwb,Uid:0e2a3e0c-43f8-410c-8995-305158f64b75,Namespace:calico-system,Attempt:0,}" Feb 9 10:08:13.470214 kubelet[1436]: E0209 10:08:13.470191 1436 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 10:08:13.470910 env[1133]: time="2024-02-09T10:08:13.470600946Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:kube-proxy-tlb9s,Uid:08220bdb-bd84-4807-b7b0-14c76c6b03d4,Namespace:kube-system,Attempt:0,}" Feb 9 10:08:14.006301 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3283173615.mount: Deactivated successfully. Feb 9 10:08:14.012406 env[1133]: time="2024-02-09T10:08:14.012367891Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:14.014105 env[1133]: time="2024-02-09T10:08:14.014076996Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:14.014969 env[1133]: time="2024-02-09T10:08:14.014944144Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:7d46a07936af93fcce097459055f93ab07331509aa55f4a2a90d95a3ace1850e,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:14.016776 env[1133]: time="2024-02-09T10:08:14.016747285Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:14.018128 env[1133]: time="2024-02-09T10:08:14.018102835Z" level=info msg="ImageUpdate event &ImageUpdate{Name:sha256:7d46a07936af93fcce097459055f93ab07331509aa55f4a2a90d95a3ace1850e,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:14.021096 env[1133]: time="2024-02-09T10:08:14.021064803Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/pause@sha256:3d380ca8864549e74af4b29c10f9cb0956236dfb01c40ca076fb6c37253234db,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:14.021928 env[1133]: time="2024-02-09T10:08:14.021905639Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:14.024003 env[1133]: time="2024-02-09T10:08:14.023975748Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause@sha256:3d380ca8864549e74af4b29c10f9cb0956236dfb01c40ca076fb6c37253234db,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:14.055195 env[1133]: time="2024-02-09T10:08:14.054812969Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 9 10:08:14.055325 env[1133]: time="2024-02-09T10:08:14.055206494Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 9 10:08:14.055325 env[1133]: time="2024-02-09T10:08:14.055222954Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 9 10:08:14.057234 env[1133]: time="2024-02-09T10:08:14.056322509Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/4aca94b9597a692dfdfb3e328d069fd27fc2971a88de816dcca6737a89993f4e pid=1544 runtime=io.containerd.runc.v2 Feb 9 10:08:14.065616 env[1133]: time="2024-02-09T10:08:14.065535296Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 9 10:08:14.065616 env[1133]: time="2024-02-09T10:08:14.065592406Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 9 10:08:14.065804 env[1133]: time="2024-02-09T10:08:14.065769945Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 9 10:08:14.066049 env[1133]: time="2024-02-09T10:08:14.065961300Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/094ecc6516d146b5c20a1463fe1e98851b558c81e04432387577c321f302e6b7 pid=1562 runtime=io.containerd.runc.v2 Feb 9 10:08:14.087201 systemd[1]: Started cri-containerd-094ecc6516d146b5c20a1463fe1e98851b558c81e04432387577c321f302e6b7.scope. Feb 9 10:08:14.092391 systemd[1]: Started cri-containerd-4aca94b9597a692dfdfb3e328d069fd27fc2971a88de816dcca6737a89993f4e.scope. Feb 9 10:08:14.110143 kubelet[1436]: E0209 10:08:14.110103 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:14.115000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.115000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.115000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.115000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.115000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.115000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.115000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.115000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.115000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.115000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.115000 audit: BPF prog-id=61 op=LOAD Feb 9 10:08:14.117000 audit[1572]: AVC avc: denied { bpf } for pid=1572 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.117000 audit[1572]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000147b38 a2=10 a3=0 items=0 ppid=1562 pid=1572 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:14.117000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3039346563633635313664313436623563323061313436336665316539 Feb 9 10:08:14.117000 audit[1572]: AVC avc: denied { perfmon } for pid=1572 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.117000 audit[1572]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001475a0 a2=3c a3=0 items=0 ppid=1562 pid=1572 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:14.117000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3039346563633635313664313436623563323061313436336665316539 Feb 9 10:08:14.117000 audit[1572]: AVC avc: denied { bpf } for pid=1572 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.117000 audit[1572]: AVC avc: denied { bpf } for pid=1572 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.117000 audit[1572]: AVC avc: denied { bpf } for pid=1572 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.117000 audit[1572]: AVC avc: denied { perfmon } for pid=1572 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.117000 audit[1572]: AVC avc: denied { perfmon } for pid=1572 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.117000 audit[1572]: AVC avc: denied { perfmon } for pid=1572 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.117000 audit[1572]: AVC avc: denied { perfmon } for pid=1572 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.117000 audit[1572]: AVC avc: denied { perfmon } for pid=1572 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.117000 audit[1572]: AVC avc: denied { bpf } for pid=1572 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.117000 audit[1572]: AVC avc: denied { bpf } for pid=1572 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.117000 audit: BPF prog-id=62 op=LOAD Feb 9 10:08:14.117000 audit[1572]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001478e0 a2=78 a3=0 items=0 ppid=1562 pid=1572 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:14.117000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3039346563633635313664313436623563323061313436336665316539 Feb 9 10:08:14.117000 audit[1572]: AVC avc: denied { bpf } for pid=1572 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.117000 audit[1572]: AVC avc: denied { bpf } for pid=1572 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.117000 audit[1572]: AVC avc: denied { perfmon } for pid=1572 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.117000 audit[1572]: AVC avc: denied { perfmon } for pid=1572 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.117000 audit[1572]: AVC avc: denied { perfmon } for pid=1572 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.117000 audit[1572]: AVC avc: denied { perfmon } for pid=1572 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.117000 audit[1572]: AVC avc: denied { perfmon } for pid=1572 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.117000 audit[1572]: AVC avc: denied { bpf } for pid=1572 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.117000 audit[1572]: AVC avc: denied { bpf } for pid=1572 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.117000 audit: BPF prog-id=63 op=LOAD Feb 9 10:08:14.117000 audit[1572]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000147670 a2=78 a3=0 items=0 ppid=1562 pid=1572 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:14.117000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3039346563633635313664313436623563323061313436336665316539 Feb 9 10:08:14.117000 audit: BPF prog-id=63 op=UNLOAD Feb 9 10:08:14.117000 audit: BPF prog-id=62 op=UNLOAD Feb 9 10:08:14.117000 audit[1572]: AVC avc: denied { bpf } for pid=1572 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.117000 audit[1572]: AVC avc: denied { bpf } for pid=1572 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.117000 audit[1572]: AVC avc: denied { bpf } for pid=1572 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.117000 audit[1572]: AVC avc: denied { perfmon } for pid=1572 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.117000 audit[1572]: AVC avc: denied { perfmon } for pid=1572 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.117000 audit[1572]: AVC avc: denied { perfmon } for pid=1572 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.117000 audit[1572]: AVC avc: denied { perfmon } for pid=1572 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.117000 audit[1572]: AVC avc: denied { perfmon } for pid=1572 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.117000 audit[1572]: AVC avc: denied { bpf } for pid=1572 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.117000 audit[1572]: AVC avc: denied { bpf } for pid=1572 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.117000 audit: BPF prog-id=64 op=LOAD Feb 9 10:08:14.117000 audit[1572]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000147b40 a2=78 a3=0 items=0 ppid=1562 pid=1572 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:14.117000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3039346563633635313664313436623563323061313436336665316539 Feb 9 10:08:14.118000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit: BPF prog-id=65 op=LOAD Feb 9 10:08:14.118000 audit[1557]: AVC avc: denied { bpf } for pid=1557 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1557]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000195b38 a2=10 a3=0 items=0 ppid=1544 pid=1557 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:14.118000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3461636139346239353937613639326466646662336533323864303639 Feb 9 10:08:14.118000 audit[1557]: AVC avc: denied { perfmon } for pid=1557 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1557]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=1544 pid=1557 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:14.118000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3461636139346239353937613639326466646662336533323864303639 Feb 9 10:08:14.118000 audit[1557]: AVC avc: denied { bpf } for pid=1557 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1557]: AVC avc: denied { bpf } for pid=1557 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1557]: AVC avc: denied { bpf } for pid=1557 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1557]: AVC avc: denied { perfmon } for pid=1557 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1557]: AVC avc: denied { perfmon } for pid=1557 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1557]: AVC avc: denied { perfmon } for pid=1557 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1557]: AVC avc: denied { perfmon } for pid=1557 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1557]: AVC avc: denied { perfmon } for pid=1557 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1557]: AVC avc: denied { bpf } for pid=1557 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1557]: AVC avc: denied { bpf } for pid=1557 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit: BPF prog-id=66 op=LOAD Feb 9 10:08:14.118000 audit[1557]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=1544 pid=1557 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:14.118000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3461636139346239353937613639326466646662336533323864303639 Feb 9 10:08:14.118000 audit[1557]: AVC avc: denied { bpf } for pid=1557 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1557]: AVC avc: denied { bpf } for pid=1557 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1557]: AVC avc: denied { perfmon } for pid=1557 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1557]: AVC avc: denied { perfmon } for pid=1557 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1557]: AVC avc: denied { perfmon } for pid=1557 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1557]: AVC avc: denied { perfmon } for pid=1557 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1557]: AVC avc: denied { perfmon } for pid=1557 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1557]: AVC avc: denied { bpf } for pid=1557 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1557]: AVC avc: denied { bpf } for pid=1557 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit: BPF prog-id=67 op=LOAD Feb 9 10:08:14.118000 audit[1557]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=1544 pid=1557 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:14.118000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3461636139346239353937613639326466646662336533323864303639 Feb 9 10:08:14.118000 audit: BPF prog-id=67 op=UNLOAD Feb 9 10:08:14.118000 audit: BPF prog-id=66 op=UNLOAD Feb 9 10:08:14.118000 audit[1557]: AVC avc: denied { bpf } for pid=1557 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1557]: AVC avc: denied { bpf } for pid=1557 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1557]: AVC avc: denied { bpf } for pid=1557 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1557]: AVC avc: denied { perfmon } for pid=1557 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1557]: AVC avc: denied { perfmon } for pid=1557 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1557]: AVC avc: denied { perfmon } for pid=1557 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1557]: AVC avc: denied { perfmon } for pid=1557 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1557]: AVC avc: denied { perfmon } for pid=1557 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1557]: AVC avc: denied { bpf } for pid=1557 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit[1557]: AVC avc: denied { bpf } for pid=1557 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:14.118000 audit: BPF prog-id=68 op=LOAD Feb 9 10:08:14.118000 audit[1557]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=1544 pid=1557 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:14.118000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3461636139346239353937613639326466646662336533323864303639 Feb 9 10:08:14.136950 env[1133]: time="2024-02-09T10:08:14.136894826Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-node-pgdwb,Uid:0e2a3e0c-43f8-410c-8995-305158f64b75,Namespace:calico-system,Attempt:0,} returns sandbox id \"094ecc6516d146b5c20a1463fe1e98851b558c81e04432387577c321f302e6b7\"" Feb 9 10:08:14.137746 env[1133]: time="2024-02-09T10:08:14.137589642Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:kube-proxy-tlb9s,Uid:08220bdb-bd84-4807-b7b0-14c76c6b03d4,Namespace:kube-system,Attempt:0,} returns sandbox id \"4aca94b9597a692dfdfb3e328d069fd27fc2971a88de816dcca6737a89993f4e\"" Feb 9 10:08:14.137964 kubelet[1436]: E0209 10:08:14.137939 1436 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 10:08:14.138760 kubelet[1436]: E0209 10:08:14.138744 1436 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 10:08:14.139365 env[1133]: time="2024-02-09T10:08:14.139337595Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.0\"" Feb 9 10:08:15.110980 kubelet[1436]: E0209 10:08:15.110939 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:15.187808 kubelet[1436]: E0209 10:08:15.187761 1436 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-rggxx" podUID=f8207ca5-0291-4d48-b2b7-19f5b26290bd Feb 9 10:08:15.257979 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3363381925.mount: Deactivated successfully. Feb 9 10:08:15.326982 env[1133]: time="2024-02-09T10:08:15.326930384Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:15.328586 env[1133]: time="2024-02-09T10:08:15.328556221Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:cbddd33ed55a4a5c129e8f09945d426860425b9778d9402efe7bcefea7990a57,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:15.329929 env[1133]: time="2024-02-09T10:08:15.329901294Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:15.331578 env[1133]: time="2024-02-09T10:08:15.331544231Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.0\" returns image reference \"sha256:cbddd33ed55a4a5c129e8f09945d426860425b9778d9402efe7bcefea7990a57\"" Feb 9 10:08:15.331952 env[1133]: time="2024-02-09T10:08:15.331927114Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol@sha256:b05edbd1f80db4ada229e6001a666a7dd36bb6ab617143684fb3d28abfc4b71e,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:15.333434 env[1133]: time="2024-02-09T10:08:15.333401336Z" level=info msg="PullImage \"registry.k8s.io/kube-proxy:v1.27.10\"" Feb 9 10:08:15.341409 env[1133]: time="2024-02-09T10:08:15.341335298Z" level=info msg="CreateContainer within sandbox \"094ecc6516d146b5c20a1463fe1e98851b558c81e04432387577c321f302e6b7\" for container &ContainerMetadata{Name:flexvol-driver,Attempt:0,}" Feb 9 10:08:15.352686 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3693241344.mount: Deactivated successfully. Feb 9 10:08:15.355250 env[1133]: time="2024-02-09T10:08:15.355209880Z" level=info msg="CreateContainer within sandbox \"094ecc6516d146b5c20a1463fe1e98851b558c81e04432387577c321f302e6b7\" for &ContainerMetadata{Name:flexvol-driver,Attempt:0,} returns container id \"845c44cc9659b374bb6692731007fb3ab285b8b2ab0276ca312201a6a34a351a\"" Feb 9 10:08:15.355901 env[1133]: time="2024-02-09T10:08:15.355876289Z" level=info msg="StartContainer for \"845c44cc9659b374bb6692731007fb3ab285b8b2ab0276ca312201a6a34a351a\"" Feb 9 10:08:15.373092 systemd[1]: Started cri-containerd-845c44cc9659b374bb6692731007fb3ab285b8b2ab0276ca312201a6a34a351a.scope. Feb 9 10:08:15.393000 audit[1625]: AVC avc: denied { perfmon } for pid=1625 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.395104 kernel: kauditd_printk_skb: 530 callbacks suppressed Feb 9 10:08:15.395148 kernel: audit: type=1400 audit(1707473295.393:582): avc: denied { perfmon } for pid=1625 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.393000 audit[1625]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001bd5a0 a2=3c a3=0 items=0 ppid=1562 pid=1625 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:15.399431 kernel: audit: type=1300 audit(1707473295.393:582): arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001bd5a0 a2=3c a3=0 items=0 ppid=1562 pid=1625 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:15.399473 kernel: audit: type=1327 audit(1707473295.393:582): proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3834356334346363393635396233373462623636393237333130303766 Feb 9 10:08:15.393000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3834356334346363393635396233373462623636393237333130303766 Feb 9 10:08:15.401817 kernel: audit: type=1400 audit(1707473295.393:583): avc: denied { bpf } for pid=1625 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.393000 audit[1625]: AVC avc: denied { bpf } for pid=1625 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.393000 audit[1625]: AVC avc: denied { bpf } for pid=1625 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.406070 kernel: audit: type=1400 audit(1707473295.393:583): avc: denied { bpf } for pid=1625 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.406129 kernel: audit: type=1400 audit(1707473295.393:583): avc: denied { bpf } for pid=1625 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.393000 audit[1625]: AVC avc: denied { bpf } for pid=1625 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.393000 audit[1625]: AVC avc: denied { perfmon } for pid=1625 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.409219 kernel: audit: type=1400 audit(1707473295.393:583): avc: denied { perfmon } for pid=1625 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.409268 kernel: audit: type=1400 audit(1707473295.393:583): avc: denied { perfmon } for pid=1625 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.393000 audit[1625]: AVC avc: denied { perfmon } for pid=1625 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.393000 audit[1625]: AVC avc: denied { perfmon } for pid=1625 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.412980 kernel: audit: type=1400 audit(1707473295.393:583): avc: denied { perfmon } for pid=1625 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.413039 kernel: audit: type=1400 audit(1707473295.393:583): avc: denied { perfmon } for pid=1625 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.393000 audit[1625]: AVC avc: denied { perfmon } for pid=1625 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.393000 audit[1625]: AVC avc: denied { perfmon } for pid=1625 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.393000 audit[1625]: AVC avc: denied { bpf } for pid=1625 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.393000 audit[1625]: AVC avc: denied { bpf } for pid=1625 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.393000 audit: BPF prog-id=69 op=LOAD Feb 9 10:08:15.393000 audit[1625]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001bd8e0 a2=78 a3=0 items=0 ppid=1562 pid=1625 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:15.393000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3834356334346363393635396233373462623636393237333130303766 Feb 9 10:08:15.394000 audit[1625]: AVC avc: denied { bpf } for pid=1625 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.394000 audit[1625]: AVC avc: denied { bpf } for pid=1625 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.394000 audit[1625]: AVC avc: denied { perfmon } for pid=1625 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.394000 audit[1625]: AVC avc: denied { perfmon } for pid=1625 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.394000 audit[1625]: AVC avc: denied { perfmon } for pid=1625 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.394000 audit[1625]: AVC avc: denied { perfmon } for pid=1625 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.394000 audit[1625]: AVC avc: denied { perfmon } for pid=1625 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.394000 audit[1625]: AVC avc: denied { bpf } for pid=1625 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.394000 audit[1625]: AVC avc: denied { bpf } for pid=1625 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.394000 audit: BPF prog-id=70 op=LOAD Feb 9 10:08:15.394000 audit[1625]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=40001bd670 a2=78 a3=0 items=0 ppid=1562 pid=1625 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:15.394000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3834356334346363393635396233373462623636393237333130303766 Feb 9 10:08:15.396000 audit: BPF prog-id=70 op=UNLOAD Feb 9 10:08:15.396000 audit: BPF prog-id=69 op=UNLOAD Feb 9 10:08:15.396000 audit[1625]: AVC avc: denied { bpf } for pid=1625 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.396000 audit[1625]: AVC avc: denied { bpf } for pid=1625 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.396000 audit[1625]: AVC avc: denied { bpf } for pid=1625 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.396000 audit[1625]: AVC avc: denied { perfmon } for pid=1625 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.396000 audit[1625]: AVC avc: denied { perfmon } for pid=1625 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.396000 audit[1625]: AVC avc: denied { perfmon } for pid=1625 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.396000 audit[1625]: AVC avc: denied { perfmon } for pid=1625 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.396000 audit[1625]: AVC avc: denied { perfmon } for pid=1625 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.396000 audit[1625]: AVC avc: denied { bpf } for pid=1625 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.396000 audit[1625]: AVC avc: denied { bpf } for pid=1625 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:15.396000 audit: BPF prog-id=71 op=LOAD Feb 9 10:08:15.396000 audit[1625]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001bdb40 a2=78 a3=0 items=0 ppid=1562 pid=1625 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:15.396000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3834356334346363393635396233373462623636393237333130303766 Feb 9 10:08:15.419286 env[1133]: time="2024-02-09T10:08:15.419245506Z" level=info msg="StartContainer for \"845c44cc9659b374bb6692731007fb3ab285b8b2ab0276ca312201a6a34a351a\" returns successfully" Feb 9 10:08:15.424193 systemd[1]: cri-containerd-845c44cc9659b374bb6692731007fb3ab285b8b2ab0276ca312201a6a34a351a.scope: Deactivated successfully. Feb 9 10:08:15.428000 audit: BPF prog-id=71 op=UNLOAD Feb 9 10:08:15.475864 env[1133]: time="2024-02-09T10:08:15.475817674Z" level=info msg="shim disconnected" id=845c44cc9659b374bb6692731007fb3ab285b8b2ab0276ca312201a6a34a351a Feb 9 10:08:15.476205 env[1133]: time="2024-02-09T10:08:15.476184658Z" level=warning msg="cleaning up after shim disconnected" id=845c44cc9659b374bb6692731007fb3ab285b8b2ab0276ca312201a6a34a351a namespace=k8s.io Feb 9 10:08:15.476295 env[1133]: time="2024-02-09T10:08:15.476280208Z" level=info msg="cleaning up dead shim" Feb 9 10:08:15.483565 env[1133]: time="2024-02-09T10:08:15.483530541Z" level=warning msg="cleanup warnings time=\"2024-02-09T10:08:15Z\" level=info msg=\"starting signal loop\" namespace=k8s.io pid=1664 runtime=io.containerd.runc.v2\n" Feb 9 10:08:16.111907 kubelet[1436]: E0209 10:08:16.111871 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:16.197252 kubelet[1436]: E0209 10:08:16.197040 1436 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 10:08:16.258855 systemd[1]: run-containerd-io.containerd.runtime.v2.task-k8s.io-845c44cc9659b374bb6692731007fb3ab285b8b2ab0276ca312201a6a34a351a-rootfs.mount: Deactivated successfully. Feb 9 10:08:16.471253 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1026204234.mount: Deactivated successfully. Feb 9 10:08:16.855589 env[1133]: time="2024-02-09T10:08:16.855485290Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/kube-proxy:v1.27.10,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:16.856586 env[1133]: time="2024-02-09T10:08:16.856565499Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:f17f9528c5073692925255c3de3f310109480873912e8b5ddc171ae1e64324ef,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:16.857832 env[1133]: time="2024-02-09T10:08:16.857804200Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/kube-proxy:v1.27.10,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:16.859133 env[1133]: time="2024-02-09T10:08:16.859104408Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/kube-proxy@sha256:d084b53c772f62ec38fddb2348a82d4234016daf6cd43fedbf0b3281f3790f88,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:16.859515 env[1133]: time="2024-02-09T10:08:16.859485781Z" level=info msg="PullImage \"registry.k8s.io/kube-proxy:v1.27.10\" returns image reference \"sha256:f17f9528c5073692925255c3de3f310109480873912e8b5ddc171ae1e64324ef\"" Feb 9 10:08:16.860300 env[1133]: time="2024-02-09T10:08:16.860268148Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/cni:v3.27.0\"" Feb 9 10:08:16.861259 env[1133]: time="2024-02-09T10:08:16.861230750Z" level=info msg="CreateContainer within sandbox \"4aca94b9597a692dfdfb3e328d069fd27fc2971a88de816dcca6737a89993f4e\" for container &ContainerMetadata{Name:kube-proxy,Attempt:0,}" Feb 9 10:08:16.871341 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1250758226.mount: Deactivated successfully. Feb 9 10:08:16.875394 env[1133]: time="2024-02-09T10:08:16.875353320Z" level=info msg="CreateContainer within sandbox \"4aca94b9597a692dfdfb3e328d069fd27fc2971a88de816dcca6737a89993f4e\" for &ContainerMetadata{Name:kube-proxy,Attempt:0,} returns container id \"a271982e6d68b1240e2c6e75bb5346e53c63b6935cc168aab51fcf9e026d27de\"" Feb 9 10:08:16.875995 env[1133]: time="2024-02-09T10:08:16.875971469Z" level=info msg="StartContainer for \"a271982e6d68b1240e2c6e75bb5346e53c63b6935cc168aab51fcf9e026d27de\"" Feb 9 10:08:16.890608 systemd[1]: Started cri-containerd-a271982e6d68b1240e2c6e75bb5346e53c63b6935cc168aab51fcf9e026d27de.scope. Feb 9 10:08:16.913000 audit[1689]: AVC avc: denied { perfmon } for pid=1689 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:16.913000 audit[1689]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=1544 pid=1689 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:16.913000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6132373139383265366436386231323430653263366537356262353334 Feb 9 10:08:16.913000 audit[1689]: AVC avc: denied { bpf } for pid=1689 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:16.913000 audit[1689]: AVC avc: denied { bpf } for pid=1689 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:16.913000 audit[1689]: AVC avc: denied { bpf } for pid=1689 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:16.913000 audit[1689]: AVC avc: denied { perfmon } for pid=1689 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:16.913000 audit[1689]: AVC avc: denied { perfmon } for pid=1689 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:16.913000 audit[1689]: AVC avc: denied { perfmon } for pid=1689 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:16.913000 audit[1689]: AVC avc: denied { perfmon } for pid=1689 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:16.913000 audit[1689]: AVC avc: denied { perfmon } for pid=1689 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:16.913000 audit[1689]: AVC avc: denied { bpf } for pid=1689 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:16.913000 audit[1689]: AVC avc: denied { bpf } for pid=1689 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:16.913000 audit: BPF prog-id=72 op=LOAD Feb 9 10:08:16.913000 audit[1689]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=1544 pid=1689 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:16.913000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6132373139383265366436386231323430653263366537356262353334 Feb 9 10:08:16.913000 audit[1689]: AVC avc: denied { bpf } for pid=1689 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:16.913000 audit[1689]: AVC avc: denied { bpf } for pid=1689 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:16.913000 audit[1689]: AVC avc: denied { perfmon } for pid=1689 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:16.913000 audit[1689]: AVC avc: denied { perfmon } for pid=1689 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:16.913000 audit[1689]: AVC avc: denied { perfmon } for pid=1689 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:16.913000 audit[1689]: AVC avc: denied { perfmon } for pid=1689 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:16.913000 audit[1689]: AVC avc: denied { perfmon } for pid=1689 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:16.913000 audit[1689]: AVC avc: denied { bpf } for pid=1689 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:16.913000 audit[1689]: AVC avc: denied { bpf } for pid=1689 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:16.913000 audit: BPF prog-id=73 op=LOAD Feb 9 10:08:16.913000 audit[1689]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=1544 pid=1689 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:16.913000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6132373139383265366436386231323430653263366537356262353334 Feb 9 10:08:16.913000 audit: BPF prog-id=73 op=UNLOAD Feb 9 10:08:16.913000 audit: BPF prog-id=72 op=UNLOAD Feb 9 10:08:16.913000 audit[1689]: AVC avc: denied { bpf } for pid=1689 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:16.913000 audit[1689]: AVC avc: denied { bpf } for pid=1689 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:16.913000 audit[1689]: AVC avc: denied { bpf } for pid=1689 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:16.913000 audit[1689]: AVC avc: denied { perfmon } for pid=1689 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:16.913000 audit[1689]: AVC avc: denied { perfmon } for pid=1689 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:16.913000 audit[1689]: AVC avc: denied { perfmon } for pid=1689 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:16.913000 audit[1689]: AVC avc: denied { perfmon } for pid=1689 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:16.913000 audit[1689]: AVC avc: denied { perfmon } for pid=1689 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:16.913000 audit[1689]: AVC avc: denied { bpf } for pid=1689 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:16.913000 audit[1689]: AVC avc: denied { bpf } for pid=1689 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:16.913000 audit: BPF prog-id=74 op=LOAD Feb 9 10:08:16.913000 audit[1689]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=1544 pid=1689 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:16.913000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6132373139383265366436386231323430653263366537356262353334 Feb 9 10:08:16.927411 env[1133]: time="2024-02-09T10:08:16.927365072Z" level=info msg="StartContainer for \"a271982e6d68b1240e2c6e75bb5346e53c63b6935cc168aab51fcf9e026d27de\" returns successfully" Feb 9 10:08:17.028000 audit[1740]: NETFILTER_CFG table=mangle:14 family=10 entries=1 op=nft_register_chain pid=1740 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:08:17.028000 audit[1740]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffc32d90b0 a2=0 a3=ffffbdeb06c0 items=0 ppid=1700 pid=1740 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.028000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006D616E676C65 Feb 9 10:08:17.029000 audit[1739]: NETFILTER_CFG table=mangle:15 family=2 entries=1 op=nft_register_chain pid=1739 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:08:17.029000 audit[1739]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffd70e0a60 a2=0 a3=ffff9d1ff6c0 items=0 ppid=1700 pid=1739 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.029000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006D616E676C65 Feb 9 10:08:17.029000 audit[1742]: NETFILTER_CFG table=nat:16 family=10 entries=1 op=nft_register_chain pid=1742 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:08:17.029000 audit[1742]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffe9ee5250 a2=0 a3=ffff9381e6c0 items=0 ppid=1700 pid=1742 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.029000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006E6174 Feb 9 10:08:17.031000 audit[1744]: NETFILTER_CFG table=filter:17 family=10 entries=1 op=nft_register_chain pid=1744 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:08:17.031000 audit[1744]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=fffff74fe700 a2=0 a3=ffff88c696c0 items=0 ppid=1700 pid=1744 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.031000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D740066696C746572 Feb 9 10:08:17.031000 audit[1743]: NETFILTER_CFG table=nat:18 family=2 entries=1 op=nft_register_chain pid=1743 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:08:17.031000 audit[1743]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffe706fb10 a2=0 a3=ffff82b2f6c0 items=0 ppid=1700 pid=1743 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.031000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006E6174 Feb 9 10:08:17.032000 audit[1746]: NETFILTER_CFG table=filter:19 family=2 entries=1 op=nft_register_chain pid=1746 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:08:17.032000 audit[1746]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffd0389600 a2=0 a3=ffff9fad46c0 items=0 ppid=1700 pid=1746 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.032000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D740066696C746572 Feb 9 10:08:17.112968 kubelet[1436]: E0209 10:08:17.112882 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:17.131000 audit[1747]: NETFILTER_CFG table=filter:20 family=2 entries=1 op=nft_register_chain pid=1747 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:08:17.131000 audit[1747]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=108 a0=3 a1=ffffe6da2590 a2=0 a3=ffffb71856c0 items=0 ppid=1700 pid=1747 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.131000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D45585445524E414C2D5345525649434553002D740066696C746572 Feb 9 10:08:17.133000 audit[1749]: NETFILTER_CFG table=filter:21 family=2 entries=1 op=nft_register_rule pid=1749 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:08:17.133000 audit[1749]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=752 a0=3 a1=ffffc291e0f0 a2=0 a3=ffffaa53f6c0 items=0 ppid=1700 pid=1749 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.133000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C652073657276696365 Feb 9 10:08:17.136000 audit[1752]: NETFILTER_CFG table=filter:22 family=2 entries=2 op=nft_register_chain pid=1752 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:08:17.136000 audit[1752]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=836 a0=3 a1=ffffc5523720 a2=0 a3=ffffb76556c0 items=0 ppid=1700 pid=1752 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.136000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C65207365727669 Feb 9 10:08:17.137000 audit[1753]: NETFILTER_CFG table=filter:23 family=2 entries=1 op=nft_register_chain pid=1753 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:08:17.137000 audit[1753]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=fffffbc73bf0 a2=0 a3=ffffa16ed6c0 items=0 ppid=1700 pid=1753 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.137000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4E4F4445504F525453002D740066696C746572 Feb 9 10:08:17.139000 audit[1755]: NETFILTER_CFG table=filter:24 family=2 entries=1 op=nft_register_rule pid=1755 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:08:17.139000 audit[1755]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=528 a0=3 a1=ffffd571b590 a2=0 a3=ffffa79816c0 items=0 ppid=1700 pid=1755 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.139000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206865616C746820636865636B207365727669636520706F727473002D6A004B5542452D4E4F4445504F525453 Feb 9 10:08:17.140000 audit[1756]: NETFILTER_CFG table=filter:25 family=2 entries=1 op=nft_register_chain pid=1756 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:08:17.140000 audit[1756]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffdc95b310 a2=0 a3=ffffa4ac66c0 items=0 ppid=1700 pid=1756 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.140000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D740066696C746572 Feb 9 10:08:17.142000 audit[1758]: NETFILTER_CFG table=filter:26 family=2 entries=1 op=nft_register_rule pid=1758 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:08:17.142000 audit[1758]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=744 a0=3 a1=fffff50c2cb0 a2=0 a3=ffffaaace6c0 items=0 ppid=1700 pid=1758 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.142000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D Feb 9 10:08:17.145000 audit[1761]: NETFILTER_CFG table=filter:27 family=2 entries=1 op=nft_register_rule pid=1761 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:08:17.145000 audit[1761]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=744 a0=3 a1=ffffef163a50 a2=0 a3=ffff9fcbf6c0 items=0 ppid=1700 pid=1761 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.145000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D53 Feb 9 10:08:17.146000 audit[1762]: NETFILTER_CFG table=filter:28 family=2 entries=1 op=nft_register_chain pid=1762 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:08:17.146000 audit[1762]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=fffff5b4ced0 a2=0 a3=ffff993be6c0 items=0 ppid=1700 pid=1762 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.146000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D464F5257415244002D740066696C746572 Feb 9 10:08:17.149000 audit[1764]: NETFILTER_CFG table=filter:29 family=2 entries=1 op=nft_register_rule pid=1764 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:08:17.149000 audit[1764]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=528 a0=3 a1=ffffffd43450 a2=0 a3=ffffb62ee6c0 items=0 ppid=1700 pid=1764 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.149000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320666F7277617264696E672072756C6573002D6A004B5542452D464F5257415244 Feb 9 10:08:17.150000 audit[1765]: NETFILTER_CFG table=filter:30 family=2 entries=1 op=nft_register_chain pid=1765 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:08:17.150000 audit[1765]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffe8aa7930 a2=0 a3=ffff9bc416c0 items=0 ppid=1700 pid=1765 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.150000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D4649524557414C4C002D740066696C746572 Feb 9 10:08:17.152000 audit[1767]: NETFILTER_CFG table=filter:31 family=2 entries=1 op=nft_register_rule pid=1767 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:08:17.152000 audit[1767]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffcb0573e0 a2=0 a3=ffff932426c0 items=0 ppid=1700 pid=1767 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.152000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Feb 9 10:08:17.155000 audit[1770]: NETFILTER_CFG table=filter:32 family=2 entries=1 op=nft_register_rule pid=1770 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:08:17.155000 audit[1770]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffd0dfa1e0 a2=0 a3=ffffa488b6c0 items=0 ppid=1700 pid=1770 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.155000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Feb 9 10:08:17.158000 audit[1773]: NETFILTER_CFG table=filter:33 family=2 entries=1 op=nft_register_rule pid=1773 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:08:17.158000 audit[1773]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffc2da1a10 a2=0 a3=ffff83cff6c0 items=0 ppid=1700 pid=1773 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.158000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D Feb 9 10:08:17.159000 audit[1774]: NETFILTER_CFG table=nat:34 family=2 entries=1 op=nft_register_chain pid=1774 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:08:17.159000 audit[1774]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=96 a0=3 a1=ffffe28e5ad0 a2=0 a3=ffffaa1836c0 items=0 ppid=1700 pid=1774 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.159000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D74006E6174 Feb 9 10:08:17.161000 audit[1776]: NETFILTER_CFG table=nat:35 family=2 entries=2 op=nft_register_chain pid=1776 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:08:17.161000 audit[1776]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=600 a0=3 a1=ffffd7c6f6d0 a2=0 a3=ffff9fb866c0 items=0 ppid=1700 pid=1776 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.161000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Feb 9 10:08:17.184000 audit[1781]: NETFILTER_CFG table=nat:36 family=2 entries=2 op=nft_register_chain pid=1781 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:08:17.184000 audit[1781]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=608 a0=3 a1=ffffef0e7fd0 a2=0 a3=ffff981b46c0 items=0 ppid=1700 pid=1781 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.184000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900505245524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Feb 9 10:08:17.187670 kubelet[1436]: E0209 10:08:17.186645 1436 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-rggxx" podUID=f8207ca5-0291-4d48-b2b7-19f5b26290bd Feb 9 10:08:17.189000 audit[1786]: NETFILTER_CFG table=nat:37 family=2 entries=1 op=nft_register_chain pid=1786 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:08:17.189000 audit[1786]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffca352000 a2=0 a3=ffff975036c0 items=0 ppid=1700 pid=1786 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.189000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D504F5354524F5554494E47002D74006E6174 Feb 9 10:08:17.191000 audit[1788]: NETFILTER_CFG table=nat:38 family=2 entries=2 op=nft_register_chain pid=1788 subj=system_u:system_r:kernel_t:s0 comm="iptables" Feb 9 10:08:17.191000 audit[1788]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=612 a0=3 a1=ffffe4ea1b80 a2=0 a3=ffffafd356c0 items=0 ppid=1700 pid=1788 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.191000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900504F5354524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320706F7374726F7574696E672072756C6573002D6A004B5542452D504F5354524F5554494E47 Feb 9 10:08:17.200226 kubelet[1436]: E0209 10:08:17.199982 1436 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 10:08:17.201000 audit[1790]: NETFILTER_CFG table=filter:39 family=2 entries=8 op=nft_register_rule pid=1790 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 10:08:17.201000 audit[1790]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=4956 a0=3 a1=fffff7ffd270 a2=0 a3=ffffab8d46c0 items=0 ppid=1700 pid=1790 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.201000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 10:08:17.207654 kubelet[1436]: I0209 10:08:17.207630 1436 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="kube-system/kube-proxy-tlb9s" podStartSLOduration=2.487025595 podCreationTimestamp="2024-02-09 10:08:12 +0000 UTC" firstStartedPulling="2024-02-09 10:08:14.139274998 +0000 UTC m=+3.485035237" lastFinishedPulling="2024-02-09 10:08:16.859830234 +0000 UTC m=+6.205590473" observedRunningTime="2024-02-09 10:08:17.20739244 +0000 UTC m=+6.553152679" watchObservedRunningTime="2024-02-09 10:08:17.207580831 +0000 UTC m=+6.553341070" Feb 9 10:08:17.212000 audit[1790]: NETFILTER_CFG table=nat:40 family=2 entries=21 op=nft_register_chain pid=1790 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 10:08:17.212000 audit[1790]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=8836 a0=3 a1=fffff7ffd270 a2=0 a3=ffffab8d46c0 items=0 ppid=1700 pid=1790 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.212000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 10:08:17.214000 audit[1796]: NETFILTER_CFG table=filter:41 family=10 entries=1 op=nft_register_chain pid=1796 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:08:17.214000 audit[1796]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=108 a0=3 a1=ffffd5b1d020 a2=0 a3=ffff889616c0 items=0 ppid=1700 pid=1796 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.214000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D45585445524E414C2D5345525649434553002D740066696C746572 Feb 9 10:08:17.216000 audit[1798]: NETFILTER_CFG table=filter:42 family=10 entries=2 op=nft_register_chain pid=1798 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:08:17.216000 audit[1798]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=836 a0=3 a1=ffffff7032e0 a2=0 a3=ffffb249b6c0 items=0 ppid=1700 pid=1798 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.216000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C6520736572766963 Feb 9 10:08:17.220000 audit[1801]: NETFILTER_CFG table=filter:43 family=10 entries=2 op=nft_register_chain pid=1801 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:08:17.220000 audit[1801]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=836 a0=3 a1=fffff0e14090 a2=0 a3=ffffa01d16c0 items=0 ppid=1700 pid=1801 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.220000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C652073657276 Feb 9 10:08:17.220000 audit[1802]: NETFILTER_CFG table=filter:44 family=10 entries=1 op=nft_register_chain pid=1802 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:08:17.220000 audit[1802]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffeceef780 a2=0 a3=ffff8508b6c0 items=0 ppid=1700 pid=1802 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.220000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4E4F4445504F525453002D740066696C746572 Feb 9 10:08:17.223000 audit[1804]: NETFILTER_CFG table=filter:45 family=10 entries=1 op=nft_register_rule pid=1804 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:08:17.223000 audit[1804]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=528 a0=3 a1=ffffe48e9900 a2=0 a3=ffff99ffa6c0 items=0 ppid=1700 pid=1804 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.223000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206865616C746820636865636B207365727669636520706F727473002D6A004B5542452D4E4F4445504F525453 Feb 9 10:08:17.223000 audit[1805]: NETFILTER_CFG table=filter:46 family=10 entries=1 op=nft_register_chain pid=1805 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:08:17.223000 audit[1805]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffec3322f0 a2=0 a3=ffffb46bb6c0 items=0 ppid=1700 pid=1805 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.223000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D740066696C746572 Feb 9 10:08:17.225000 audit[1807]: NETFILTER_CFG table=filter:47 family=10 entries=1 op=nft_register_rule pid=1807 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:08:17.225000 audit[1807]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=744 a0=3 a1=ffffc4687600 a2=0 a3=ffffaaed26c0 items=0 ppid=1700 pid=1807 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.225000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B554245 Feb 9 10:08:17.228000 audit[1810]: NETFILTER_CFG table=filter:48 family=10 entries=2 op=nft_register_chain pid=1810 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:08:17.228000 audit[1810]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=828 a0=3 a1=ffffd092e350 a2=0 a3=ffff94b7d6c0 items=0 ppid=1700 pid=1810 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.228000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D Feb 9 10:08:17.229000 audit[1811]: NETFILTER_CFG table=filter:49 family=10 entries=1 op=nft_register_chain pid=1811 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:08:17.229000 audit[1811]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffc7a6c940 a2=0 a3=ffff8add66c0 items=0 ppid=1700 pid=1811 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.229000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D464F5257415244002D740066696C746572 Feb 9 10:08:17.231000 audit[1813]: NETFILTER_CFG table=filter:50 family=10 entries=1 op=nft_register_rule pid=1813 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:08:17.231000 audit[1813]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=528 a0=3 a1=fffff55642b0 a2=0 a3=ffff9013f6c0 items=0 ppid=1700 pid=1813 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.231000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320666F7277617264696E672072756C6573002D6A004B5542452D464F5257415244 Feb 9 10:08:17.232000 audit[1814]: NETFILTER_CFG table=filter:51 family=10 entries=1 op=nft_register_chain pid=1814 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:08:17.232000 audit[1814]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=fffff4604c50 a2=0 a3=ffffbba876c0 items=0 ppid=1700 pid=1814 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.232000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D4649524557414C4C002D740066696C746572 Feb 9 10:08:17.234000 audit[1816]: NETFILTER_CFG table=filter:52 family=10 entries=1 op=nft_register_rule pid=1816 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:08:17.234000 audit[1816]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffeb343950 a2=0 a3=ffffbb37f6c0 items=0 ppid=1700 pid=1816 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.234000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Feb 9 10:08:17.237000 audit[1819]: NETFILTER_CFG table=filter:53 family=10 entries=1 op=nft_register_rule pid=1819 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:08:17.237000 audit[1819]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffe9315840 a2=0 a3=ffff98c976c0 items=0 ppid=1700 pid=1819 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.237000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D Feb 9 10:08:17.241000 audit[1822]: NETFILTER_CFG table=filter:54 family=10 entries=1 op=nft_register_rule pid=1822 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:08:17.241000 audit[1822]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffea411e60 a2=0 a3=ffff999446c0 items=0 ppid=1700 pid=1822 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.241000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C Feb 9 10:08:17.242000 audit[1823]: NETFILTER_CFG table=nat:55 family=10 entries=1 op=nft_register_chain pid=1823 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:08:17.242000 audit[1823]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=96 a0=3 a1=ffffc6f94ae0 a2=0 a3=ffffba2046c0 items=0 ppid=1700 pid=1823 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.242000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D74006E6174 Feb 9 10:08:17.244000 audit[1825]: NETFILTER_CFG table=nat:56 family=10 entries=2 op=nft_register_chain pid=1825 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:08:17.244000 audit[1825]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=600 a0=3 a1=ffffc16c55c0 a2=0 a3=ffff80d036c0 items=0 ppid=1700 pid=1825 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.244000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Feb 9 10:08:17.247000 audit[1828]: NETFILTER_CFG table=nat:57 family=10 entries=2 op=nft_register_chain pid=1828 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:08:17.247000 audit[1828]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=608 a0=3 a1=ffffff5ed190 a2=0 a3=ffffb8b816c0 items=0 ppid=1700 pid=1828 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.247000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900505245524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Feb 9 10:08:17.248000 audit[1829]: NETFILTER_CFG table=filter:58 family=10 entries=1 op=nft_register_chain pid=1829 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:08:17.248000 audit[1829]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffdce4f0f0 a2=0 a3=ffffafd376c0 items=0 ppid=1700 pid=1829 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.248000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4649524557414C4C002D740066696C746572 Feb 9 10:08:17.250000 audit[1831]: NETFILTER_CFG table=filter:59 family=10 entries=1 op=nft_register_rule pid=1831 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:08:17.250000 audit[1831]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=228 a0=3 a1=ffffdd7cd770 a2=0 a3=ffffa202b6c0 items=0 ppid=1700 pid=1831 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.250000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6A004B5542452D4649524557414C4C Feb 9 10:08:17.254000 audit[1834]: NETFILTER_CFG table=filter:60 family=10 entries=1 op=nft_register_rule pid=1834 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:08:17.254000 audit[1834]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=228 a0=3 a1=ffffc5416880 a2=0 a3=ffff9642b6c0 items=0 ppid=1700 pid=1834 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.254000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6A004B5542452D4649524557414C4C Feb 9 10:08:17.255000 audit[1835]: NETFILTER_CFG table=nat:61 family=10 entries=1 op=nft_register_chain pid=1835 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:08:17.255000 audit[1835]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffcd6d8ad0 a2=0 a3=ffff9395a6c0 items=0 ppid=1700 pid=1835 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.255000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D504F5354524F5554494E47002D74006E6174 Feb 9 10:08:17.257000 audit[1837]: NETFILTER_CFG table=nat:62 family=10 entries=2 op=nft_register_chain pid=1837 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Feb 9 10:08:17.257000 audit[1837]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=612 a0=3 a1=ffffdd6b2300 a2=0 a3=ffff9cbc96c0 items=0 ppid=1700 pid=1837 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.257000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900504F5354524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320706F7374726F7574696E672072756C6573002D6A004B5542452D504F5354524F5554494E47 Feb 9 10:08:17.259000 audit[1839]: NETFILTER_CFG table=filter:63 family=10 entries=3 op=nft_register_rule pid=1839 subj=system_u:system_r:kernel_t:s0 comm="ip6tables-resto" Feb 9 10:08:17.259000 audit[1839]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=1916 a0=3 a1=fffff33455f0 a2=0 a3=ffffaa67e6c0 items=0 ppid=1700 pid=1839 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables-resto" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.259000 audit: PROCTITLE proctitle=6970367461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 10:08:17.260000 audit[1839]: NETFILTER_CFG table=nat:64 family=10 entries=7 op=nft_register_chain pid=1839 subj=system_u:system_r:kernel_t:s0 comm="ip6tables-resto" Feb 9 10:08:17.260000 audit[1839]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=1968 a0=3 a1=fffff33455f0 a2=0 a3=ffffaa67e6c0 items=0 ppid=1700 pid=1839 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables-resto" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:17.260000 audit: PROCTITLE proctitle=6970367461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 10:08:17.858762 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2026721917.mount: Deactivated successfully. Feb 9 10:08:18.113430 kubelet[1436]: E0209 10:08:18.113315 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:18.201421 kubelet[1436]: E0209 10:08:18.201345 1436 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 10:08:19.114029 kubelet[1436]: E0209 10:08:19.113958 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:19.187766 kubelet[1436]: E0209 10:08:19.187398 1436 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-rggxx" podUID=f8207ca5-0291-4d48-b2b7-19f5b26290bd Feb 9 10:08:19.704769 env[1133]: time="2024-02-09T10:08:19.704666811Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/cni:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:19.706128 env[1133]: time="2024-02-09T10:08:19.706096287Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:9c9318f5fbf505fc3d84676966009a3887e58ea1e3eac10039e5a96dfceb254b,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:19.706917 env[1133]: time="2024-02-09T10:08:19.706854563Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/cni:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:19.708437 env[1133]: time="2024-02-09T10:08:19.708402224Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/cni@sha256:d943b4c23e82a39b0186a1a3b2fe8f728e543d503df72d7be521501a82b7e7b4,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:19.708846 env[1133]: time="2024-02-09T10:08:19.708821158Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/cni:v3.27.0\" returns image reference \"sha256:9c9318f5fbf505fc3d84676966009a3887e58ea1e3eac10039e5a96dfceb254b\"" Feb 9 10:08:19.710570 env[1133]: time="2024-02-09T10:08:19.710533006Z" level=info msg="CreateContainer within sandbox \"094ecc6516d146b5c20a1463fe1e98851b558c81e04432387577c321f302e6b7\" for container &ContainerMetadata{Name:install-cni,Attempt:0,}" Feb 9 10:08:19.719121 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2224976004.mount: Deactivated successfully. Feb 9 10:08:19.723570 env[1133]: time="2024-02-09T10:08:19.723516991Z" level=info msg="CreateContainer within sandbox \"094ecc6516d146b5c20a1463fe1e98851b558c81e04432387577c321f302e6b7\" for &ContainerMetadata{Name:install-cni,Attempt:0,} returns container id \"bf2bc356a54c87f0c52857dad82cb5db3663b97e9caa795c7244dd3e4186b7f9\"" Feb 9 10:08:19.723973 env[1133]: time="2024-02-09T10:08:19.723944772Z" level=info msg="StartContainer for \"bf2bc356a54c87f0c52857dad82cb5db3663b97e9caa795c7244dd3e4186b7f9\"" Feb 9 10:08:19.741360 systemd[1]: Started cri-containerd-bf2bc356a54c87f0c52857dad82cb5db3663b97e9caa795c7244dd3e4186b7f9.scope. Feb 9 10:08:19.767000 audit[1848]: AVC avc: denied { perfmon } for pid=1848 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:19.767000 audit[1848]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=1562 pid=1848 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:19.767000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6266326263333536613534633837663063353238353764616438326362 Feb 9 10:08:19.767000 audit[1848]: AVC avc: denied { bpf } for pid=1848 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:19.767000 audit[1848]: AVC avc: denied { bpf } for pid=1848 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:19.767000 audit[1848]: AVC avc: denied { bpf } for pid=1848 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:19.767000 audit[1848]: AVC avc: denied { perfmon } for pid=1848 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:19.767000 audit[1848]: AVC avc: denied { perfmon } for pid=1848 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:19.767000 audit[1848]: AVC avc: denied { perfmon } for pid=1848 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:19.767000 audit[1848]: AVC avc: denied { perfmon } for pid=1848 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:19.767000 audit[1848]: AVC avc: denied { perfmon } for pid=1848 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:19.767000 audit[1848]: AVC avc: denied { bpf } for pid=1848 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:19.767000 audit[1848]: AVC avc: denied { bpf } for pid=1848 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:19.767000 audit: BPF prog-id=75 op=LOAD Feb 9 10:08:19.767000 audit[1848]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=1562 pid=1848 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:19.767000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6266326263333536613534633837663063353238353764616438326362 Feb 9 10:08:19.767000 audit[1848]: AVC avc: denied { bpf } for pid=1848 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:19.767000 audit[1848]: AVC avc: denied { bpf } for pid=1848 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:19.767000 audit[1848]: AVC avc: denied { perfmon } for pid=1848 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:19.767000 audit[1848]: AVC avc: denied { perfmon } for pid=1848 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:19.767000 audit[1848]: AVC avc: denied { perfmon } for pid=1848 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:19.767000 audit[1848]: AVC avc: denied { perfmon } for pid=1848 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:19.767000 audit[1848]: AVC avc: denied { perfmon } for pid=1848 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:19.767000 audit[1848]: AVC avc: denied { bpf } for pid=1848 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:19.767000 audit[1848]: AVC avc: denied { bpf } for pid=1848 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:19.767000 audit: BPF prog-id=76 op=LOAD Feb 9 10:08:19.767000 audit[1848]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=1562 pid=1848 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:19.767000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6266326263333536613534633837663063353238353764616438326362 Feb 9 10:08:19.767000 audit: BPF prog-id=76 op=UNLOAD Feb 9 10:08:19.767000 audit: BPF prog-id=75 op=UNLOAD Feb 9 10:08:19.767000 audit[1848]: AVC avc: denied { bpf } for pid=1848 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:19.767000 audit[1848]: AVC avc: denied { bpf } for pid=1848 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:19.767000 audit[1848]: AVC avc: denied { bpf } for pid=1848 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:19.767000 audit[1848]: AVC avc: denied { perfmon } for pid=1848 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:19.767000 audit[1848]: AVC avc: denied { perfmon } for pid=1848 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:19.767000 audit[1848]: AVC avc: denied { perfmon } for pid=1848 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:19.767000 audit[1848]: AVC avc: denied { perfmon } for pid=1848 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:19.767000 audit[1848]: AVC avc: denied { perfmon } for pid=1848 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:19.767000 audit[1848]: AVC avc: denied { bpf } for pid=1848 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:19.767000 audit[1848]: AVC avc: denied { bpf } for pid=1848 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:19.767000 audit: BPF prog-id=77 op=LOAD Feb 9 10:08:19.767000 audit[1848]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=1562 pid=1848 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:19.767000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6266326263333536613534633837663063353238353764616438326362 Feb 9 10:08:19.794263 env[1133]: time="2024-02-09T10:08:19.794214792Z" level=info msg="StartContainer for \"bf2bc356a54c87f0c52857dad82cb5db3663b97e9caa795c7244dd3e4186b7f9\" returns successfully" Feb 9 10:08:20.114779 kubelet[1436]: E0209 10:08:20.114673 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:20.205422 kubelet[1436]: E0209 10:08:20.205381 1436 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 10:08:20.423797 env[1133]: time="2024-02-09T10:08:20.422966096Z" level=error msg="failed to reload cni configuration after receiving fs change event(\"/etc/cni/net.d/calico-kubeconfig\": WRITE)" error="cni config load failed: no network config found in /etc/cni/net.d: cni plugin not initialized: failed to load cni config" Feb 9 10:08:20.425657 systemd[1]: cri-containerd-bf2bc356a54c87f0c52857dad82cb5db3663b97e9caa795c7244dd3e4186b7f9.scope: Deactivated successfully. Feb 9 10:08:20.431000 audit: BPF prog-id=77 op=UNLOAD Feb 9 10:08:20.432907 kernel: kauditd_printk_skb: 273 callbacks suppressed Feb 9 10:08:20.432999 kernel: audit: type=1334 audit(1707473300.431:652): prog-id=77 op=UNLOAD Feb 9 10:08:20.469262 kubelet[1436]: I0209 10:08:20.469233 1436 kubelet_node_status.go:493] "Fast updating node status as it just became ready" Feb 9 10:08:20.615184 env[1133]: time="2024-02-09T10:08:20.615121844Z" level=info msg="shim disconnected" id=bf2bc356a54c87f0c52857dad82cb5db3663b97e9caa795c7244dd3e4186b7f9 Feb 9 10:08:20.615184 env[1133]: time="2024-02-09T10:08:20.615171325Z" level=warning msg="cleaning up after shim disconnected" id=bf2bc356a54c87f0c52857dad82cb5db3663b97e9caa795c7244dd3e4186b7f9 namespace=k8s.io Feb 9 10:08:20.615184 env[1133]: time="2024-02-09T10:08:20.615181454Z" level=info msg="cleaning up dead shim" Feb 9 10:08:20.623014 env[1133]: time="2024-02-09T10:08:20.622965125Z" level=warning msg="cleanup warnings time=\"2024-02-09T10:08:20Z\" level=info msg=\"starting signal loop\" namespace=k8s.io pid=1898 runtime=io.containerd.runc.v2\ntime=\"2024-02-09T10:08:20Z\" level=warning msg=\"failed to remove runc container\" error=\"runc did not terminate successfully: exit status 255: \" runtime=io.containerd.runc.v2\n" Feb 9 10:08:20.717597 systemd[1]: run-containerd-io.containerd.runtime.v2.task-k8s.io-bf2bc356a54c87f0c52857dad82cb5db3663b97e9caa795c7244dd3e4186b7f9-rootfs.mount: Deactivated successfully. Feb 9 10:08:21.115032 kubelet[1436]: E0209 10:08:21.114901 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:21.191482 systemd[1]: Created slice kubepods-besteffort-podf8207ca5_0291_4d48_b2b7_19f5b26290bd.slice. Feb 9 10:08:21.193264 env[1133]: time="2024-02-09T10:08:21.193228111Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-rggxx,Uid:f8207ca5-0291-4d48-b2b7-19f5b26290bd,Namespace:calico-system,Attempt:0,}" Feb 9 10:08:21.208097 kubelet[1436]: E0209 10:08:21.208061 1436 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 10:08:21.209957 env[1133]: time="2024-02-09T10:08:21.209906952Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node:v3.27.0\"" Feb 9 10:08:21.263289 env[1133]: time="2024-02-09T10:08:21.263212040Z" level=error msg="Failed to destroy network for sandbox \"8c27170c034f8c0176a4102e1466da783948457b64ee376c74e8be29afd7658f\"" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 10:08:21.264354 systemd[1]: run-containerd-io.containerd.grpc.v1.cri-sandboxes-8c27170c034f8c0176a4102e1466da783948457b64ee376c74e8be29afd7658f-shm.mount: Deactivated successfully. Feb 9 10:08:21.265045 env[1133]: time="2024-02-09T10:08:21.265005566Z" level=error msg="encountered an error cleaning up failed sandbox \"8c27170c034f8c0176a4102e1466da783948457b64ee376c74e8be29afd7658f\", marking sandbox state as SANDBOX_UNKNOWN" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 10:08:21.265159 env[1133]: time="2024-02-09T10:08:21.265133787Z" level=error msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-rggxx,Uid:f8207ca5-0291-4d48-b2b7-19f5b26290bd,Namespace:calico-system,Attempt:0,} failed, error" error="failed to setup network for sandbox \"8c27170c034f8c0176a4102e1466da783948457b64ee376c74e8be29afd7658f\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 10:08:21.265960 kubelet[1436]: E0209 10:08:21.265925 1436 remote_runtime.go:176] "RunPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"8c27170c034f8c0176a4102e1466da783948457b64ee376c74e8be29afd7658f\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 10:08:21.266033 kubelet[1436]: E0209 10:08:21.265984 1436 kuberuntime_sandbox.go:72] "Failed to create sandbox for pod" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"8c27170c034f8c0176a4102e1466da783948457b64ee376c74e8be29afd7658f\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="calico-system/csi-node-driver-rggxx" Feb 9 10:08:21.266033 kubelet[1436]: E0209 10:08:21.266004 1436 kuberuntime_manager.go:1122] "CreatePodSandbox for pod failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"8c27170c034f8c0176a4102e1466da783948457b64ee376c74e8be29afd7658f\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="calico-system/csi-node-driver-rggxx" Feb 9 10:08:21.266085 kubelet[1436]: E0209 10:08:21.266058 1436 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"CreatePodSandbox\" for \"csi-node-driver-rggxx_calico-system(f8207ca5-0291-4d48-b2b7-19f5b26290bd)\" with CreatePodSandboxError: \"Failed to create sandbox for pod \\\"csi-node-driver-rggxx_calico-system(f8207ca5-0291-4d48-b2b7-19f5b26290bd)\\\": rpc error: code = Unknown desc = failed to setup network for sandbox \\\"8c27170c034f8c0176a4102e1466da783948457b64ee376c74e8be29afd7658f\\\": plugin type=\\\"calico\\\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="calico-system/csi-node-driver-rggxx" podUID=f8207ca5-0291-4d48-b2b7-19f5b26290bd Feb 9 10:08:22.115107 kubelet[1436]: E0209 10:08:22.115037 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:22.210640 kubelet[1436]: I0209 10:08:22.210619 1436 pod_container_deletor.go:80] "Container not found in pod's containers" containerID="8c27170c034f8c0176a4102e1466da783948457b64ee376c74e8be29afd7658f" Feb 9 10:08:22.211183 env[1133]: time="2024-02-09T10:08:22.211148562Z" level=info msg="StopPodSandbox for \"8c27170c034f8c0176a4102e1466da783948457b64ee376c74e8be29afd7658f\"" Feb 9 10:08:22.233162 env[1133]: time="2024-02-09T10:08:22.233106868Z" level=error msg="StopPodSandbox for \"8c27170c034f8c0176a4102e1466da783948457b64ee376c74e8be29afd7658f\" failed" error="failed to destroy network for sandbox \"8c27170c034f8c0176a4102e1466da783948457b64ee376c74e8be29afd7658f\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 10:08:22.233600 kubelet[1436]: E0209 10:08:22.233545 1436 remote_runtime.go:205] "StopPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to destroy network for sandbox \"8c27170c034f8c0176a4102e1466da783948457b64ee376c74e8be29afd7658f\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" podSandboxID="8c27170c034f8c0176a4102e1466da783948457b64ee376c74e8be29afd7658f" Feb 9 10:08:22.233664 kubelet[1436]: E0209 10:08:22.233619 1436 kuberuntime_manager.go:1312] "Failed to stop sandbox" podSandboxID={Type:containerd ID:8c27170c034f8c0176a4102e1466da783948457b64ee376c74e8be29afd7658f} Feb 9 10:08:22.233698 kubelet[1436]: E0209 10:08:22.233664 1436 kuberuntime_manager.go:1038] "killPodWithSyncResult failed" err="failed to \"KillPodSandbox\" for \"f8207ca5-0291-4d48-b2b7-19f5b26290bd\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"8c27170c034f8c0176a4102e1466da783948457b64ee376c74e8be29afd7658f\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" Feb 9 10:08:22.233698 kubelet[1436]: E0209 10:08:22.233695 1436 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"KillPodSandbox\" for \"f8207ca5-0291-4d48-b2b7-19f5b26290bd\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"8c27170c034f8c0176a4102e1466da783948457b64ee376c74e8be29afd7658f\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="calico-system/csi-node-driver-rggxx" podUID=f8207ca5-0291-4d48-b2b7-19f5b26290bd Feb 9 10:08:23.115419 kubelet[1436]: E0209 10:08:23.115371 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:24.116153 kubelet[1436]: E0209 10:08:24.116106 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:24.471614 kubelet[1436]: I0209 10:08:24.471318 1436 topology_manager.go:212] "Topology Admit Handler" Feb 9 10:08:24.476278 systemd[1]: Created slice kubepods-besteffort-podf1b16b88_9f2a_4951_b663_adc58a79e96f.slice. Feb 9 10:08:24.498655 kubelet[1436]: I0209 10:08:24.498612 1436 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-6g4jq\" (UniqueName: \"kubernetes.io/projected/f1b16b88-9f2a-4951-b663-adc58a79e96f-kube-api-access-6g4jq\") pod \"nginx-deployment-845c78c8b9-gx9vt\" (UID: \"f1b16b88-9f2a-4951-b663-adc58a79e96f\") " pod="default/nginx-deployment-845c78c8b9-gx9vt" Feb 9 10:08:24.779760 env[1133]: time="2024-02-09T10:08:24.779393450Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-845c78c8b9-gx9vt,Uid:f1b16b88-9f2a-4951-b663-adc58a79e96f,Namespace:default,Attempt:0,}" Feb 9 10:08:24.971539 kernel: audit: type=1325 audit(1707473304.964:653): table=filter:65 family=2 entries=14 op=nft_register_rule pid=1972 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 10:08:24.971643 kernel: audit: type=1300 audit(1707473304.964:653): arch=c00000b7 syscall=211 success=yes exit=4956 a0=3 a1=ffffc44167e0 a2=0 a3=ffffa2ed66c0 items=0 ppid=1700 pid=1972 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:24.971672 kernel: audit: type=1327 audit(1707473304.964:653): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 10:08:24.964000 audit[1972]: NETFILTER_CFG table=filter:65 family=2 entries=14 op=nft_register_rule pid=1972 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 10:08:24.964000 audit[1972]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=4956 a0=3 a1=ffffc44167e0 a2=0 a3=ffffa2ed66c0 items=0 ppid=1700 pid=1972 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:24.964000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 10:08:24.976000 audit[1972]: NETFILTER_CFG table=nat:66 family=2 entries=14 op=nft_register_rule pid=1972 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 10:08:24.983643 kernel: audit: type=1325 audit(1707473304.976:654): table=nat:66 family=2 entries=14 op=nft_register_rule pid=1972 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 10:08:24.983684 kernel: audit: type=1300 audit(1707473304.976:654): arch=c00000b7 syscall=211 success=yes exit=3300 a0=3 a1=ffffc44167e0 a2=0 a3=ffffa2ed66c0 items=0 ppid=1700 pid=1972 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:24.976000 audit[1972]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=3300 a0=3 a1=ffffc44167e0 a2=0 a3=ffffa2ed66c0 items=0 ppid=1700 pid=1972 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:24.976000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 10:08:24.985030 kernel: audit: type=1327 audit(1707473304.976:654): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 10:08:24.986000 audit[1974]: NETFILTER_CFG table=filter:67 family=2 entries=11 op=nft_register_rule pid=1974 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 10:08:24.986000 audit[1974]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=2844 a0=3 a1=ffffeafa8f90 a2=0 a3=ffffb1cd76c0 items=0 ppid=1700 pid=1974 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:24.992664 kernel: audit: type=1325 audit(1707473304.986:655): table=filter:67 family=2 entries=11 op=nft_register_rule pid=1974 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 10:08:24.992740 kernel: audit: type=1300 audit(1707473304.986:655): arch=c00000b7 syscall=211 success=yes exit=2844 a0=3 a1=ffffeafa8f90 a2=0 a3=ffffb1cd76c0 items=0 ppid=1700 pid=1974 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:24.992767 kernel: audit: type=1327 audit(1707473304.986:655): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 10:08:24.986000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 10:08:24.993000 audit[1974]: NETFILTER_CFG table=nat:68 family=2 entries=47 op=nft_register_chain pid=1974 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 10:08:24.993000 audit[1974]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=19452 a0=3 a1=ffffeafa8f90 a2=0 a3=ffffb1cd76c0 items=0 ppid=1700 pid=1974 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:24.993000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 10:08:25.043588 env[1133]: time="2024-02-09T10:08:25.043449994Z" level=error msg="Failed to destroy network for sandbox \"91ed6e48cc56eca1e865643cf8f55d94a7bb8262caf5eacec635cd244a90248c\"" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 10:08:25.045079 systemd[1]: run-containerd-io.containerd.grpc.v1.cri-sandboxes-91ed6e48cc56eca1e865643cf8f55d94a7bb8262caf5eacec635cd244a90248c-shm.mount: Deactivated successfully. Feb 9 10:08:25.048825 env[1133]: time="2024-02-09T10:08:25.048768177Z" level=error msg="encountered an error cleaning up failed sandbox \"91ed6e48cc56eca1e865643cf8f55d94a7bb8262caf5eacec635cd244a90248c\", marking sandbox state as SANDBOX_UNKNOWN" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 10:08:25.048907 env[1133]: time="2024-02-09T10:08:25.048831455Z" level=error msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-845c78c8b9-gx9vt,Uid:f1b16b88-9f2a-4951-b663-adc58a79e96f,Namespace:default,Attempt:0,} failed, error" error="failed to setup network for sandbox \"91ed6e48cc56eca1e865643cf8f55d94a7bb8262caf5eacec635cd244a90248c\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 10:08:25.049262 kubelet[1436]: E0209 10:08:25.049232 1436 remote_runtime.go:176] "RunPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"91ed6e48cc56eca1e865643cf8f55d94a7bb8262caf5eacec635cd244a90248c\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 10:08:25.049317 kubelet[1436]: E0209 10:08:25.049293 1436 kuberuntime_sandbox.go:72] "Failed to create sandbox for pod" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"91ed6e48cc56eca1e865643cf8f55d94a7bb8262caf5eacec635cd244a90248c\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="default/nginx-deployment-845c78c8b9-gx9vt" Feb 9 10:08:25.049347 kubelet[1436]: E0209 10:08:25.049325 1436 kuberuntime_manager.go:1122] "CreatePodSandbox for pod failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"91ed6e48cc56eca1e865643cf8f55d94a7bb8262caf5eacec635cd244a90248c\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="default/nginx-deployment-845c78c8b9-gx9vt" Feb 9 10:08:25.049390 kubelet[1436]: E0209 10:08:25.049379 1436 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"CreatePodSandbox\" for \"nginx-deployment-845c78c8b9-gx9vt_default(f1b16b88-9f2a-4951-b663-adc58a79e96f)\" with CreatePodSandboxError: \"Failed to create sandbox for pod \\\"nginx-deployment-845c78c8b9-gx9vt_default(f1b16b88-9f2a-4951-b663-adc58a79e96f)\\\": rpc error: code = Unknown desc = failed to setup network for sandbox \\\"91ed6e48cc56eca1e865643cf8f55d94a7bb8262caf5eacec635cd244a90248c\\\": plugin type=\\\"calico\\\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="default/nginx-deployment-845c78c8b9-gx9vt" podUID=f1b16b88-9f2a-4951-b663-adc58a79e96f Feb 9 10:08:25.117039 kubelet[1436]: E0209 10:08:25.116991 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:25.214485 kubelet[1436]: I0209 10:08:25.214459 1436 pod_container_deletor.go:80] "Container not found in pod's containers" containerID="91ed6e48cc56eca1e865643cf8f55d94a7bb8262caf5eacec635cd244a90248c" Feb 9 10:08:25.215227 env[1133]: time="2024-02-09T10:08:25.215145836Z" level=info msg="StopPodSandbox for \"91ed6e48cc56eca1e865643cf8f55d94a7bb8262caf5eacec635cd244a90248c\"" Feb 9 10:08:25.235253 env[1133]: time="2024-02-09T10:08:25.235179656Z" level=error msg="StopPodSandbox for \"91ed6e48cc56eca1e865643cf8f55d94a7bb8262caf5eacec635cd244a90248c\" failed" error="failed to destroy network for sandbox \"91ed6e48cc56eca1e865643cf8f55d94a7bb8262caf5eacec635cd244a90248c\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Feb 9 10:08:25.235431 kubelet[1436]: E0209 10:08:25.235410 1436 remote_runtime.go:205] "StopPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to destroy network for sandbox \"91ed6e48cc56eca1e865643cf8f55d94a7bb8262caf5eacec635cd244a90248c\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" podSandboxID="91ed6e48cc56eca1e865643cf8f55d94a7bb8262caf5eacec635cd244a90248c" Feb 9 10:08:25.235474 kubelet[1436]: E0209 10:08:25.235459 1436 kuberuntime_manager.go:1312] "Failed to stop sandbox" podSandboxID={Type:containerd ID:91ed6e48cc56eca1e865643cf8f55d94a7bb8262caf5eacec635cd244a90248c} Feb 9 10:08:25.235501 kubelet[1436]: E0209 10:08:25.235492 1436 kuberuntime_manager.go:1038] "killPodWithSyncResult failed" err="failed to \"KillPodSandbox\" for \"f1b16b88-9f2a-4951-b663-adc58a79e96f\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"91ed6e48cc56eca1e865643cf8f55d94a7bb8262caf5eacec635cd244a90248c\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" Feb 9 10:08:25.235552 kubelet[1436]: E0209 10:08:25.235519 1436 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"KillPodSandbox\" for \"f1b16b88-9f2a-4951-b663-adc58a79e96f\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"91ed6e48cc56eca1e865643cf8f55d94a7bb8262caf5eacec635cd244a90248c\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="default/nginx-deployment-845c78c8b9-gx9vt" podUID=f1b16b88-9f2a-4951-b663-adc58a79e96f Feb 9 10:08:26.094797 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2471139292.mount: Deactivated successfully. Feb 9 10:08:26.117651 kubelet[1436]: E0209 10:08:26.117607 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:26.203756 env[1133]: time="2024-02-09T10:08:26.203700702Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:26.204860 env[1133]: time="2024-02-09T10:08:26.204827302Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:c445639cb28807ced09724016dc3b273b170b14d3b3d0c39b1affa1cc6b68774,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:26.206254 env[1133]: time="2024-02-09T10:08:26.206229418Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/node:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:26.207524 env[1133]: time="2024-02-09T10:08:26.207490935Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node@sha256:a45dffb21a0e9ca8962f36359a2ab776beeecd93843543c2fa1745d7bbb0f754,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:26.208052 env[1133]: time="2024-02-09T10:08:26.208021116Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node:v3.27.0\" returns image reference \"sha256:c445639cb28807ced09724016dc3b273b170b14d3b3d0c39b1affa1cc6b68774\"" Feb 9 10:08:26.217474 env[1133]: time="2024-02-09T10:08:26.217441068Z" level=info msg="CreateContainer within sandbox \"094ecc6516d146b5c20a1463fe1e98851b558c81e04432387577c321f302e6b7\" for container &ContainerMetadata{Name:calico-node,Attempt:0,}" Feb 9 10:08:26.229661 env[1133]: time="2024-02-09T10:08:26.229622868Z" level=info msg="CreateContainer within sandbox \"094ecc6516d146b5c20a1463fe1e98851b558c81e04432387577c321f302e6b7\" for &ContainerMetadata{Name:calico-node,Attempt:0,} returns container id \"bd03b135465bb67b3cf1ff42bb314998b627f0cc23c70d8bfb143bfe06c55e6f\"" Feb 9 10:08:26.230098 env[1133]: time="2024-02-09T10:08:26.230072324Z" level=info msg="StartContainer for \"bd03b135465bb67b3cf1ff42bb314998b627f0cc23c70d8bfb143bfe06c55e6f\"" Feb 9 10:08:26.244711 systemd[1]: Started cri-containerd-bd03b135465bb67b3cf1ff42bb314998b627f0cc23c70d8bfb143bfe06c55e6f.scope. Feb 9 10:08:26.269000 audit[2050]: AVC avc: denied { perfmon } for pid=2050 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.272385 kernel: kauditd_printk_skb: 3 callbacks suppressed Feb 9 10:08:26.272457 kernel: audit: type=1400 audit(1707473306.269:657): avc: denied { perfmon } for pid=2050 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.272482 kernel: audit: type=1300 audit(1707473306.269:657): arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=1562 pid=2050 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:26.269000 audit[2050]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=1562 pid=2050 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:26.274970 kernel: audit: type=1327 audit(1707473306.269:657): proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6264303362313335343635626236376233636631666634326262333134 Feb 9 10:08:26.269000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6264303362313335343635626236376233636631666634326262333134 Feb 9 10:08:26.269000 audit[2050]: AVC avc: denied { bpf } for pid=2050 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.279013 kernel: audit: type=1400 audit(1707473306.269:658): avc: denied { bpf } for pid=2050 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.279083 kernel: audit: type=1400 audit(1707473306.269:658): avc: denied { bpf } for pid=2050 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.269000 audit[2050]: AVC avc: denied { bpf } for pid=2050 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.269000 audit[2050]: AVC avc: denied { bpf } for pid=2050 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.282562 kernel: audit: type=1400 audit(1707473306.269:658): avc: denied { bpf } for pid=2050 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.282619 kernel: audit: type=1400 audit(1707473306.269:658): avc: denied { perfmon } for pid=2050 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.269000 audit[2050]: AVC avc: denied { perfmon } for pid=2050 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.284228 kernel: audit: type=1400 audit(1707473306.269:658): avc: denied { perfmon } for pid=2050 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.269000 audit[2050]: AVC avc: denied { perfmon } for pid=2050 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.269000 audit[2050]: AVC avc: denied { perfmon } for pid=2050 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.289185 kernel: audit: type=1400 audit(1707473306.269:658): avc: denied { perfmon } for pid=2050 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.289254 kernel: audit: type=1400 audit(1707473306.269:658): avc: denied { perfmon } for pid=2050 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.269000 audit[2050]: AVC avc: denied { perfmon } for pid=2050 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.269000 audit[2050]: AVC avc: denied { perfmon } for pid=2050 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.269000 audit[2050]: AVC avc: denied { bpf } for pid=2050 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.269000 audit[2050]: AVC avc: denied { bpf } for pid=2050 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.269000 audit: BPF prog-id=78 op=LOAD Feb 9 10:08:26.269000 audit[2050]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=1562 pid=2050 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:26.269000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6264303362313335343635626236376233636631666634326262333134 Feb 9 10:08:26.269000 audit[2050]: AVC avc: denied { bpf } for pid=2050 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.269000 audit[2050]: AVC avc: denied { bpf } for pid=2050 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.269000 audit[2050]: AVC avc: denied { perfmon } for pid=2050 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.269000 audit[2050]: AVC avc: denied { perfmon } for pid=2050 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.269000 audit[2050]: AVC avc: denied { perfmon } for pid=2050 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.269000 audit[2050]: AVC avc: denied { perfmon } for pid=2050 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.269000 audit[2050]: AVC avc: denied { perfmon } for pid=2050 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.269000 audit[2050]: AVC avc: denied { bpf } for pid=2050 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.269000 audit[2050]: AVC avc: denied { bpf } for pid=2050 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.269000 audit: BPF prog-id=79 op=LOAD Feb 9 10:08:26.269000 audit[2050]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=1562 pid=2050 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:26.269000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6264303362313335343635626236376233636631666634326262333134 Feb 9 10:08:26.271000 audit: BPF prog-id=79 op=UNLOAD Feb 9 10:08:26.271000 audit: BPF prog-id=78 op=UNLOAD Feb 9 10:08:26.271000 audit[2050]: AVC avc: denied { bpf } for pid=2050 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.271000 audit[2050]: AVC avc: denied { bpf } for pid=2050 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.271000 audit[2050]: AVC avc: denied { bpf } for pid=2050 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.271000 audit[2050]: AVC avc: denied { perfmon } for pid=2050 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.271000 audit[2050]: AVC avc: denied { perfmon } for pid=2050 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.271000 audit[2050]: AVC avc: denied { perfmon } for pid=2050 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.271000 audit[2050]: AVC avc: denied { perfmon } for pid=2050 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.271000 audit[2050]: AVC avc: denied { perfmon } for pid=2050 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.271000 audit[2050]: AVC avc: denied { bpf } for pid=2050 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.271000 audit[2050]: AVC avc: denied { bpf } for pid=2050 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:26.271000 audit: BPF prog-id=80 op=LOAD Feb 9 10:08:26.271000 audit[2050]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=1562 pid=2050 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:26.271000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6264303362313335343635626236376233636631666634326262333134 Feb 9 10:08:26.291951 env[1133]: time="2024-02-09T10:08:26.291912736Z" level=info msg="StartContainer for \"bd03b135465bb67b3cf1ff42bb314998b627f0cc23c70d8bfb143bfe06c55e6f\" returns successfully" Feb 9 10:08:26.402593 kernel: wireguard: WireGuard 1.0.0 loaded. See www.wireguard.com for information. Feb 9 10:08:26.402743 kernel: wireguard: Copyright (C) 2015-2019 Jason A. Donenfeld . All Rights Reserved. Feb 9 10:08:27.118414 kubelet[1436]: E0209 10:08:27.118378 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:27.219889 kubelet[1436]: E0209 10:08:27.219852 1436 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 10:08:27.231532 kubelet[1436]: I0209 10:08:27.231506 1436 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="calico-system/calico-node-pgdwb" podStartSLOduration=3.162174233 podCreationTimestamp="2024-02-09 10:08:12 +0000 UTC" firstStartedPulling="2024-02-09 10:08:14.138912712 +0000 UTC m=+3.484672951" lastFinishedPulling="2024-02-09 10:08:26.208210063 +0000 UTC m=+15.553970303" observedRunningTime="2024-02-09 10:08:27.231202681 +0000 UTC m=+16.576962920" watchObservedRunningTime="2024-02-09 10:08:27.231471585 +0000 UTC m=+16.577231824" Feb 9 10:08:27.619000 audit[2166]: AVC avc: denied { write } for pid=2166 comm="tee" name="fd" dev="proc" ino=15623 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 9 10:08:27.619000 audit[2166]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffc69fa994 a2=241 a3=1b6 items=1 ppid=2129 pid=2166 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:27.619000 audit: CWD cwd="/etc/service/enabled/cni/log" Feb 9 10:08:27.619000 audit: PATH item=0 name="/dev/fd/63" inode=15620 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 10:08:27.619000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 9 10:08:27.629000 audit[2174]: AVC avc: denied { write } for pid=2174 comm="tee" name="fd" dev="proc" ino=14688 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 9 10:08:27.629000 audit[2174]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=fffff82e6983 a2=241 a3=1b6 items=1 ppid=2127 pid=2174 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:27.629000 audit: CWD cwd="/etc/service/enabled/node-status-reporter/log" Feb 9 10:08:27.629000 audit: PATH item=0 name="/dev/fd/63" inode=14684 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 10:08:27.629000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 9 10:08:27.636000 audit[2180]: AVC avc: denied { write } for pid=2180 comm="tee" name="fd" dev="proc" ino=13021 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 9 10:08:27.636000 audit[2180]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffccdec993 a2=241 a3=1b6 items=1 ppid=2117 pid=2180 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:27.636000 audit: CWD cwd="/etc/service/enabled/bird/log" Feb 9 10:08:27.636000 audit: PATH item=0 name="/dev/fd/63" inode=13015 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 10:08:27.636000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 9 10:08:27.648000 audit[2176]: AVC avc: denied { write } for pid=2176 comm="tee" name="fd" dev="proc" ino=14015 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 9 10:08:27.648000 audit[2176]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=fffff944e982 a2=241 a3=1b6 items=1 ppid=2116 pid=2176 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:27.648000 audit: CWD cwd="/etc/service/enabled/allocate-tunnel-addrs/log" Feb 9 10:08:27.648000 audit: PATH item=0 name="/dev/fd/63" inode=14685 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 10:08:27.648000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 9 10:08:27.651000 audit[2187]: AVC avc: denied { write } for pid=2187 comm="tee" name="fd" dev="proc" ino=15642 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 9 10:08:27.651000 audit[2187]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffebc9b992 a2=241 a3=1b6 items=1 ppid=2118 pid=2187 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:27.651000 audit: CWD cwd="/etc/service/enabled/bird6/log" Feb 9 10:08:27.651000 audit: PATH item=0 name="/dev/fd/63" inode=14012 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 10:08:27.651000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 9 10:08:27.652000 audit[2185]: AVC avc: denied { write } for pid=2185 comm="tee" name="fd" dev="proc" ino=15646 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 9 10:08:27.652000 audit[2185]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=fffffafea992 a2=241 a3=1b6 items=1 ppid=2115 pid=2185 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:27.652000 audit: CWD cwd="/etc/service/enabled/felix/log" Feb 9 10:08:27.652000 audit: PATH item=0 name="/dev/fd/63" inode=14011 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 10:08:27.652000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 9 10:08:27.654000 audit[2183]: AVC avc: denied { write } for pid=2183 comm="tee" name="fd" dev="proc" ino=13026 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Feb 9 10:08:27.654000 audit[2183]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffc13e7992 a2=241 a3=1b6 items=1 ppid=2124 pid=2183 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:27.654000 audit: CWD cwd="/etc/service/enabled/confd/log" Feb 9 10:08:27.654000 audit: PATH item=0 name="/dev/fd/63" inode=13018 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 10:08:27.654000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Feb 9 10:08:27.722747 kernel: Initializing XFRM netlink socket Feb 9 10:08:27.839000 audit[2267]: AVC avc: denied { bpf } for pid=2267 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:27.839000 audit[2267]: AVC avc: denied { bpf } for pid=2267 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:27.839000 audit[2267]: AVC avc: denied { perfmon } for pid=2267 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:27.839000 audit[2267]: AVC avc: denied { perfmon } for pid=2267 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:27.839000 audit[2267]: AVC avc: denied { perfmon } for pid=2267 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:27.839000 audit[2267]: AVC avc: denied { perfmon } for pid=2267 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:27.839000 audit[2267]: AVC avc: denied { perfmon } for pid=2267 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:27.839000 audit[2267]: AVC avc: denied { bpf } for pid=2267 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:27.839000 audit[2267]: AVC avc: denied { bpf } for pid=2267 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:27.839000 audit: BPF prog-id=81 op=LOAD Feb 9 10:08:27.839000 audit[2267]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=3 a0=5 a1=fffff44ed468 a2=70 a3=0 items=0 ppid=2121 pid=2267 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:27.839000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 9 10:08:27.839000 audit: BPF prog-id=81 op=UNLOAD Feb 9 10:08:27.839000 audit[2267]: AVC avc: denied { bpf } for pid=2267 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:27.839000 audit[2267]: AVC avc: denied { bpf } for pid=2267 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:27.839000 audit[2267]: AVC avc: denied { perfmon } for pid=2267 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:27.839000 audit[2267]: AVC avc: denied { perfmon } for pid=2267 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:27.839000 audit[2267]: AVC avc: denied { perfmon } for pid=2267 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:27.839000 audit[2267]: AVC avc: denied { perfmon } for pid=2267 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:27.839000 audit[2267]: AVC avc: denied { perfmon } for pid=2267 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:27.839000 audit[2267]: AVC avc: denied { bpf } for pid=2267 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:27.839000 audit[2267]: AVC avc: denied { bpf } for pid=2267 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:27.839000 audit: BPF prog-id=82 op=LOAD Feb 9 10:08:27.839000 audit[2267]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=3 a0=5 a1=fffff44ed468 a2=70 a3=4a174c items=0 ppid=2121 pid=2267 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:27.839000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 9 10:08:27.839000 audit: BPF prog-id=82 op=UNLOAD Feb 9 10:08:27.839000 audit[2267]: AVC avc: denied { bpf } for pid=2267 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:27.839000 audit[2267]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=3 a0=0 a1=fffff44ed498 a2=70 a3=394c779f items=0 ppid=2121 pid=2267 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:27.839000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 9 10:08:27.839000 audit[2267]: AVC avc: denied { bpf } for pid=2267 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:27.839000 audit[2267]: AVC avc: denied { bpf } for pid=2267 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:27.839000 audit[2267]: AVC avc: denied { bpf } for pid=2267 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:27.839000 audit[2267]: AVC avc: denied { perfmon } for pid=2267 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:27.839000 audit[2267]: AVC avc: denied { perfmon } for pid=2267 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:27.839000 audit[2267]: AVC avc: denied { perfmon } for pid=2267 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:27.839000 audit[2267]: AVC avc: denied { perfmon } for pid=2267 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:27.839000 audit[2267]: AVC avc: denied { perfmon } for pid=2267 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:27.839000 audit[2267]: AVC avc: denied { bpf } for pid=2267 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:27.839000 audit[2267]: AVC avc: denied { bpf } for pid=2267 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:27.839000 audit: BPF prog-id=83 op=LOAD Feb 9 10:08:27.839000 audit[2267]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=5 a0=5 a1=fffff44ed3e8 a2=70 a3=394c77b9 items=0 ppid=2121 pid=2267 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:27.839000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Feb 9 10:08:27.841000 audit[2269]: AVC avc: denied { bpf } for pid=2269 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:27.841000 audit[2269]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=ffffd4af5a38 a2=70 a3=0 items=0 ppid=2121 pid=2269 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:27.841000 audit: PROCTITLE proctitle=627066746F6F6C002D2D6A736F6E002D2D7072657474790070726F670073686F770070696E6E6564002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41 Feb 9 10:08:27.841000 audit[2269]: AVC avc: denied { bpf } for pid=2269 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:27.841000 audit[2269]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=ffffd4af5918 a2=70 a3=2 items=0 ppid=2121 pid=2269 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:27.841000 audit: PROCTITLE proctitle=627066746F6F6C002D2D6A736F6E002D2D7072657474790070726F670073686F770070696E6E6564002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41 Feb 9 10:08:27.848000 audit: BPF prog-id=83 op=UNLOAD Feb 9 10:08:27.888000 audit[2297]: NETFILTER_CFG table=mangle:69 family=2 entries=19 op=nft_register_chain pid=2297 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 10:08:27.888000 audit[2297]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=6800 a0=3 a1=fffff5b018e0 a2=0 a3=ffff874dafa8 items=0 ppid=2121 pid=2297 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:27.888000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 10:08:27.890000 audit[2296]: NETFILTER_CFG table=raw:70 family=2 entries=19 op=nft_register_chain pid=2296 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 10:08:27.890000 audit[2296]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=6132 a0=3 a1=ffffe56838a0 a2=0 a3=ffff8ec44fa8 items=0 ppid=2121 pid=2296 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:27.890000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 10:08:27.894000 audit[2302]: NETFILTER_CFG table=nat:71 family=2 entries=16 op=nft_register_chain pid=2302 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 10:08:27.894000 audit[2302]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5188 a0=3 a1=ffffcdee5b60 a2=0 a3=ffff7f896fa8 items=0 ppid=2121 pid=2302 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:27.894000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 10:08:27.894000 audit[2299]: NETFILTER_CFG table=filter:72 family=2 entries=39 op=nft_register_chain pid=2299 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 10:08:27.894000 audit[2299]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=18472 a0=3 a1=ffffcbedeb60 a2=0 a3=ffffb13c1fa8 items=0 ppid=2121 pid=2299 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:27.894000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 10:08:27.981751 systemd[1]: run-containerd-runc-k8s.io-bd03b135465bb67b3cf1ff42bb314998b627f0cc23c70d8bfb143bfe06c55e6f-runc.JIBi0J.mount: Deactivated successfully. Feb 9 10:08:28.095013 systemd[1]: run-containerd-runc-k8s.io-bd03b135465bb67b3cf1ff42bb314998b627f0cc23c70d8bfb143bfe06c55e6f-runc.NKQfkb.mount: Deactivated successfully. Feb 9 10:08:28.119271 kubelet[1436]: E0209 10:08:28.119233 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:28.222066 kubelet[1436]: E0209 10:08:28.221969 1436 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 10:08:28.234318 systemd[1]: run-containerd-runc-k8s.io-bd03b135465bb67b3cf1ff42bb314998b627f0cc23c70d8bfb143bfe06c55e6f-runc.4y9JXy.mount: Deactivated successfully. Feb 9 10:08:28.733095 systemd-networkd[1037]: vxlan.calico: Link UP Feb 9 10:08:28.733101 systemd-networkd[1037]: vxlan.calico: Gained carrier Feb 9 10:08:29.120536 kubelet[1436]: E0209 10:08:29.120305 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:29.223884 kubelet[1436]: E0209 10:08:29.223853 1436 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 10:08:29.985903 systemd-networkd[1037]: vxlan.calico: Gained IPv6LL Feb 9 10:08:30.121016 kubelet[1436]: E0209 10:08:30.120969 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:31.107417 kubelet[1436]: E0209 10:08:31.107344 1436 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:31.121612 kubelet[1436]: E0209 10:08:31.121585 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:32.122495 kubelet[1436]: E0209 10:08:32.122462 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:33.124003 kubelet[1436]: E0209 10:08:33.123964 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:34.124138 kubelet[1436]: E0209 10:08:34.124086 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:34.187085 env[1133]: time="2024-02-09T10:08:34.187022108Z" level=info msg="StopPodSandbox for \"8c27170c034f8c0176a4102e1466da783948457b64ee376c74e8be29afd7658f\"" Feb 9 10:08:34.294156 env[1133]: 2024-02-09 10:08:34.229 [INFO][2429] k8s.go 578: Cleaning up netns ContainerID="8c27170c034f8c0176a4102e1466da783948457b64ee376c74e8be29afd7658f" Feb 9 10:08:34.294156 env[1133]: 2024-02-09 10:08:34.230 [INFO][2429] dataplane_linux.go 530: Deleting workload's device in netns. ContainerID="8c27170c034f8c0176a4102e1466da783948457b64ee376c74e8be29afd7658f" iface="eth0" netns="/var/run/netns/cni-d4ff469f-5607-2bdb-16ef-97672f8d22b0" Feb 9 10:08:34.294156 env[1133]: 2024-02-09 10:08:34.230 [INFO][2429] dataplane_linux.go 541: Entered netns, deleting veth. ContainerID="8c27170c034f8c0176a4102e1466da783948457b64ee376c74e8be29afd7658f" iface="eth0" netns="/var/run/netns/cni-d4ff469f-5607-2bdb-16ef-97672f8d22b0" Feb 9 10:08:34.294156 env[1133]: 2024-02-09 10:08:34.230 [INFO][2429] dataplane_linux.go 568: Workload's veth was already gone. Nothing to do. ContainerID="8c27170c034f8c0176a4102e1466da783948457b64ee376c74e8be29afd7658f" iface="eth0" netns="/var/run/netns/cni-d4ff469f-5607-2bdb-16ef-97672f8d22b0" Feb 9 10:08:34.294156 env[1133]: 2024-02-09 10:08:34.230 [INFO][2429] k8s.go 585: Releasing IP address(es) ContainerID="8c27170c034f8c0176a4102e1466da783948457b64ee376c74e8be29afd7658f" Feb 9 10:08:34.294156 env[1133]: 2024-02-09 10:08:34.230 [INFO][2429] utils.go 188: Calico CNI releasing IP address ContainerID="8c27170c034f8c0176a4102e1466da783948457b64ee376c74e8be29afd7658f" Feb 9 10:08:34.294156 env[1133]: 2024-02-09 10:08:34.280 [INFO][2436] ipam_plugin.go 415: Releasing address using handleID ContainerID="8c27170c034f8c0176a4102e1466da783948457b64ee376c74e8be29afd7658f" HandleID="k8s-pod-network.8c27170c034f8c0176a4102e1466da783948457b64ee376c74e8be29afd7658f" Workload="10.0.0.130-k8s-csi--node--driver--rggxx-eth0" Feb 9 10:08:34.294156 env[1133]: 2024-02-09 10:08:34.280 [INFO][2436] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 10:08:34.294156 env[1133]: 2024-02-09 10:08:34.280 [INFO][2436] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 10:08:34.294156 env[1133]: 2024-02-09 10:08:34.290 [WARNING][2436] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="8c27170c034f8c0176a4102e1466da783948457b64ee376c74e8be29afd7658f" HandleID="k8s-pod-network.8c27170c034f8c0176a4102e1466da783948457b64ee376c74e8be29afd7658f" Workload="10.0.0.130-k8s-csi--node--driver--rggxx-eth0" Feb 9 10:08:34.294156 env[1133]: 2024-02-09 10:08:34.290 [INFO][2436] ipam_plugin.go 443: Releasing address using workloadID ContainerID="8c27170c034f8c0176a4102e1466da783948457b64ee376c74e8be29afd7658f" HandleID="k8s-pod-network.8c27170c034f8c0176a4102e1466da783948457b64ee376c74e8be29afd7658f" Workload="10.0.0.130-k8s-csi--node--driver--rggxx-eth0" Feb 9 10:08:34.294156 env[1133]: 2024-02-09 10:08:34.291 [INFO][2436] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 10:08:34.294156 env[1133]: 2024-02-09 10:08:34.293 [INFO][2429] k8s.go 591: Teardown processing complete. ContainerID="8c27170c034f8c0176a4102e1466da783948457b64ee376c74e8be29afd7658f" Feb 9 10:08:34.296006 env[1133]: time="2024-02-09T10:08:34.295678071Z" level=info msg="TearDown network for sandbox \"8c27170c034f8c0176a4102e1466da783948457b64ee376c74e8be29afd7658f\" successfully" Feb 9 10:08:34.296006 env[1133]: time="2024-02-09T10:08:34.295712843Z" level=info msg="StopPodSandbox for \"8c27170c034f8c0176a4102e1466da783948457b64ee376c74e8be29afd7658f\" returns successfully" Feb 9 10:08:34.295500 systemd[1]: run-netns-cni\x2dd4ff469f\x2d5607\x2d2bdb\x2d16ef\x2d97672f8d22b0.mount: Deactivated successfully. Feb 9 10:08:34.296506 env[1133]: time="2024-02-09T10:08:34.296461417Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-rggxx,Uid:f8207ca5-0291-4d48-b2b7-19f5b26290bd,Namespace:calico-system,Attempt:1,}" Feb 9 10:08:34.405689 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 9 10:08:34.405812 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali3d39f3b07bb: link becomes ready Feb 9 10:08:34.404341 systemd-networkd[1037]: cali3d39f3b07bb: Link UP Feb 9 10:08:34.408483 systemd-networkd[1037]: cali3d39f3b07bb: Gained carrier Feb 9 10:08:34.418710 env[1133]: 2024-02-09 10:08:34.343 [INFO][2444] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {10.0.0.130-k8s-csi--node--driver--rggxx-eth0 csi-node-driver- calico-system f8207ca5-0291-4d48-b2b7-19f5b26290bd 942 0 2024-02-09 10:08:12 +0000 UTC map[app.kubernetes.io/name:csi-node-driver controller-revision-hash:86b88cf7c9 k8s-app:csi-node-driver name:csi-node-driver pod-template-generation:1 projectcalico.org/namespace:calico-system projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 10.0.0.130 csi-node-driver-rggxx eth0 default [] [] [kns.calico-system ksa.calico-system.default] cali3d39f3b07bb [] []}} ContainerID="b45bac69090d82ab708b2a1fdfa0ae5f99aa9f325495da6301d0718f1671b4f7" Namespace="calico-system" Pod="csi-node-driver-rggxx" WorkloadEndpoint="10.0.0.130-k8s-csi--node--driver--rggxx-" Feb 9 10:08:34.418710 env[1133]: 2024-02-09 10:08:34.344 [INFO][2444] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="b45bac69090d82ab708b2a1fdfa0ae5f99aa9f325495da6301d0718f1671b4f7" Namespace="calico-system" Pod="csi-node-driver-rggxx" WorkloadEndpoint="10.0.0.130-k8s-csi--node--driver--rggxx-eth0" Feb 9 10:08:34.418710 env[1133]: 2024-02-09 10:08:34.365 [INFO][2458] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="b45bac69090d82ab708b2a1fdfa0ae5f99aa9f325495da6301d0718f1671b4f7" HandleID="k8s-pod-network.b45bac69090d82ab708b2a1fdfa0ae5f99aa9f325495da6301d0718f1671b4f7" Workload="10.0.0.130-k8s-csi--node--driver--rggxx-eth0" Feb 9 10:08:34.418710 env[1133]: 2024-02-09 10:08:34.378 [INFO][2458] ipam_plugin.go 268: Auto assigning IP ContainerID="b45bac69090d82ab708b2a1fdfa0ae5f99aa9f325495da6301d0718f1671b4f7" HandleID="k8s-pod-network.b45bac69090d82ab708b2a1fdfa0ae5f99aa9f325495da6301d0718f1671b4f7" Workload="10.0.0.130-k8s-csi--node--driver--rggxx-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x400029daf0), Attrs:map[string]string{"namespace":"calico-system", "node":"10.0.0.130", "pod":"csi-node-driver-rggxx", "timestamp":"2024-02-09 10:08:34.365594819 +0000 UTC"}, Hostname:"10.0.0.130", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 9 10:08:34.418710 env[1133]: 2024-02-09 10:08:34.378 [INFO][2458] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 10:08:34.418710 env[1133]: 2024-02-09 10:08:34.378 [INFO][2458] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 10:08:34.418710 env[1133]: 2024-02-09 10:08:34.378 [INFO][2458] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '10.0.0.130' Feb 9 10:08:34.418710 env[1133]: 2024-02-09 10:08:34.380 [INFO][2458] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.b45bac69090d82ab708b2a1fdfa0ae5f99aa9f325495da6301d0718f1671b4f7" host="10.0.0.130" Feb 9 10:08:34.418710 env[1133]: 2024-02-09 10:08:34.384 [INFO][2458] ipam.go 372: Looking up existing affinities for host host="10.0.0.130" Feb 9 10:08:34.418710 env[1133]: 2024-02-09 10:08:34.388 [INFO][2458] ipam.go 489: Trying affinity for 192.168.2.64/26 host="10.0.0.130" Feb 9 10:08:34.418710 env[1133]: 2024-02-09 10:08:34.390 [INFO][2458] ipam.go 155: Attempting to load block cidr=192.168.2.64/26 host="10.0.0.130" Feb 9 10:08:34.418710 env[1133]: 2024-02-09 10:08:34.392 [INFO][2458] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.2.64/26 host="10.0.0.130" Feb 9 10:08:34.418710 env[1133]: 2024-02-09 10:08:34.392 [INFO][2458] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.2.64/26 handle="k8s-pod-network.b45bac69090d82ab708b2a1fdfa0ae5f99aa9f325495da6301d0718f1671b4f7" host="10.0.0.130" Feb 9 10:08:34.418710 env[1133]: 2024-02-09 10:08:34.393 [INFO][2458] ipam.go 1682: Creating new handle: k8s-pod-network.b45bac69090d82ab708b2a1fdfa0ae5f99aa9f325495da6301d0718f1671b4f7 Feb 9 10:08:34.418710 env[1133]: 2024-02-09 10:08:34.396 [INFO][2458] ipam.go 1203: Writing block in order to claim IPs block=192.168.2.64/26 handle="k8s-pod-network.b45bac69090d82ab708b2a1fdfa0ae5f99aa9f325495da6301d0718f1671b4f7" host="10.0.0.130" Feb 9 10:08:34.418710 env[1133]: 2024-02-09 10:08:34.400 [INFO][2458] ipam.go 1216: Successfully claimed IPs: [192.168.2.65/26] block=192.168.2.64/26 handle="k8s-pod-network.b45bac69090d82ab708b2a1fdfa0ae5f99aa9f325495da6301d0718f1671b4f7" host="10.0.0.130" Feb 9 10:08:34.418710 env[1133]: 2024-02-09 10:08:34.400 [INFO][2458] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.2.65/26] handle="k8s-pod-network.b45bac69090d82ab708b2a1fdfa0ae5f99aa9f325495da6301d0718f1671b4f7" host="10.0.0.130" Feb 9 10:08:34.418710 env[1133]: 2024-02-09 10:08:34.400 [INFO][2458] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 10:08:34.418710 env[1133]: 2024-02-09 10:08:34.401 [INFO][2458] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.2.65/26] IPv6=[] ContainerID="b45bac69090d82ab708b2a1fdfa0ae5f99aa9f325495da6301d0718f1671b4f7" HandleID="k8s-pod-network.b45bac69090d82ab708b2a1fdfa0ae5f99aa9f325495da6301d0718f1671b4f7" Workload="10.0.0.130-k8s-csi--node--driver--rggxx-eth0" Feb 9 10:08:34.419266 env[1133]: 2024-02-09 10:08:34.402 [INFO][2444] k8s.go 385: Populated endpoint ContainerID="b45bac69090d82ab708b2a1fdfa0ae5f99aa9f325495da6301d0718f1671b4f7" Namespace="calico-system" Pod="csi-node-driver-rggxx" WorkloadEndpoint="10.0.0.130-k8s-csi--node--driver--rggxx-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.130-k8s-csi--node--driver--rggxx-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"f8207ca5-0291-4d48-b2b7-19f5b26290bd", ResourceVersion:"942", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 10, 8, 12, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"86b88cf7c9", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.130", ContainerID:"", Pod:"csi-node-driver-rggxx", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.2.65/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"cali3d39f3b07bb", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 10:08:34.419266 env[1133]: 2024-02-09 10:08:34.403 [INFO][2444] k8s.go 386: Calico CNI using IPs: [192.168.2.65/32] ContainerID="b45bac69090d82ab708b2a1fdfa0ae5f99aa9f325495da6301d0718f1671b4f7" Namespace="calico-system" Pod="csi-node-driver-rggxx" WorkloadEndpoint="10.0.0.130-k8s-csi--node--driver--rggxx-eth0" Feb 9 10:08:34.419266 env[1133]: 2024-02-09 10:08:34.403 [INFO][2444] dataplane_linux.go 68: Setting the host side veth name to cali3d39f3b07bb ContainerID="b45bac69090d82ab708b2a1fdfa0ae5f99aa9f325495da6301d0718f1671b4f7" Namespace="calico-system" Pod="csi-node-driver-rggxx" WorkloadEndpoint="10.0.0.130-k8s-csi--node--driver--rggxx-eth0" Feb 9 10:08:34.419266 env[1133]: 2024-02-09 10:08:34.408 [INFO][2444] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="b45bac69090d82ab708b2a1fdfa0ae5f99aa9f325495da6301d0718f1671b4f7" Namespace="calico-system" Pod="csi-node-driver-rggxx" WorkloadEndpoint="10.0.0.130-k8s-csi--node--driver--rggxx-eth0" Feb 9 10:08:34.419266 env[1133]: 2024-02-09 10:08:34.409 [INFO][2444] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="b45bac69090d82ab708b2a1fdfa0ae5f99aa9f325495da6301d0718f1671b4f7" Namespace="calico-system" Pod="csi-node-driver-rggxx" WorkloadEndpoint="10.0.0.130-k8s-csi--node--driver--rggxx-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.130-k8s-csi--node--driver--rggxx-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"f8207ca5-0291-4d48-b2b7-19f5b26290bd", ResourceVersion:"942", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 10, 8, 12, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"86b88cf7c9", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.130", ContainerID:"b45bac69090d82ab708b2a1fdfa0ae5f99aa9f325495da6301d0718f1671b4f7", Pod:"csi-node-driver-rggxx", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.2.65/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"cali3d39f3b07bb", MAC:"9a:70:bb:12:bb:e2", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 10:08:34.419266 env[1133]: 2024-02-09 10:08:34.416 [INFO][2444] k8s.go 491: Wrote updated endpoint to datastore ContainerID="b45bac69090d82ab708b2a1fdfa0ae5f99aa9f325495da6301d0718f1671b4f7" Namespace="calico-system" Pod="csi-node-driver-rggxx" WorkloadEndpoint="10.0.0.130-k8s-csi--node--driver--rggxx-eth0" Feb 9 10:08:34.430000 audit[2488]: NETFILTER_CFG table=filter:73 family=2 entries=36 op=nft_register_chain pid=2488 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 10:08:34.432112 kernel: kauditd_printk_skb: 129 callbacks suppressed Feb 9 10:08:34.432165 kernel: audit: type=1325 audit(1707473314.430:683): table=filter:73 family=2 entries=36 op=nft_register_chain pid=2488 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 10:08:34.430000 audit[2488]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=19908 a0=3 a1=fffff5e644a0 a2=0 a3=ffff9e265fa8 items=0 ppid=2121 pid=2488 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:34.434059 env[1133]: time="2024-02-09T10:08:34.433993412Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 9 10:08:34.434059 env[1133]: time="2024-02-09T10:08:34.434042908Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 9 10:08:34.434232 env[1133]: time="2024-02-09T10:08:34.434196921Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 9 10:08:34.434445 env[1133]: time="2024-02-09T10:08:34.434408112Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/b45bac69090d82ab708b2a1fdfa0ae5f99aa9f325495da6301d0718f1671b4f7 pid=2493 runtime=io.containerd.runc.v2 Feb 9 10:08:34.437640 kernel: audit: type=1300 audit(1707473314.430:683): arch=c00000b7 syscall=211 success=yes exit=19908 a0=3 a1=fffff5e644a0 a2=0 a3=ffff9e265fa8 items=0 ppid=2121 pid=2488 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:34.437702 kernel: audit: type=1327 audit(1707473314.430:683): proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 10:08:34.430000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 10:08:34.447937 systemd[1]: Started cri-containerd-b45bac69090d82ab708b2a1fdfa0ae5f99aa9f325495da6301d0718f1671b4f7.scope. Feb 9 10:08:34.465000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.465000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.469981 kernel: audit: type=1400 audit(1707473314.465:684): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.470051 kernel: audit: type=1400 audit(1707473314.465:685): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.470071 kernel: audit: type=1400 audit(1707473314.465:686): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.465000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.471639 kernel: audit: type=1400 audit(1707473314.465:687): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.465000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.473452 kernel: audit: type=1400 audit(1707473314.465:688): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.465000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.475165 kernel: audit: type=1400 audit(1707473314.465:689): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.465000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.477111 kernel: audit: type=1400 audit(1707473314.465:690): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.465000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.477078 systemd-resolved[1081]: Failed to determine the local hostname and LLMNR/mDNS names, ignoring: No such device or address Feb 9 10:08:34.465000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.465000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.467000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.467000 audit: BPF prog-id=84 op=LOAD Feb 9 10:08:34.467000 audit[2501]: AVC avc: denied { bpf } for pid=2501 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.467000 audit[2501]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000195b38 a2=10 a3=0 items=0 ppid=2493 pid=2501 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:34.467000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6234356261633639303930643832616237303862326131666466613061 Feb 9 10:08:34.467000 audit[2501]: AVC avc: denied { perfmon } for pid=2501 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.467000 audit[2501]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=2493 pid=2501 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:34.467000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6234356261633639303930643832616237303862326131666466613061 Feb 9 10:08:34.467000 audit[2501]: AVC avc: denied { bpf } for pid=2501 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.467000 audit[2501]: AVC avc: denied { bpf } for pid=2501 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.467000 audit[2501]: AVC avc: denied { bpf } for pid=2501 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.467000 audit[2501]: AVC avc: denied { perfmon } for pid=2501 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.467000 audit[2501]: AVC avc: denied { perfmon } for pid=2501 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.467000 audit[2501]: AVC avc: denied { perfmon } for pid=2501 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.467000 audit[2501]: AVC avc: denied { perfmon } for pid=2501 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.467000 audit[2501]: AVC avc: denied { perfmon } for pid=2501 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.467000 audit[2501]: AVC avc: denied { bpf } for pid=2501 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.467000 audit[2501]: AVC avc: denied { bpf } for pid=2501 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.467000 audit: BPF prog-id=85 op=LOAD Feb 9 10:08:34.467000 audit[2501]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=2493 pid=2501 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:34.467000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6234356261633639303930643832616237303862326131666466613061 Feb 9 10:08:34.469000 audit[2501]: AVC avc: denied { bpf } for pid=2501 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.469000 audit[2501]: AVC avc: denied { bpf } for pid=2501 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.469000 audit[2501]: AVC avc: denied { perfmon } for pid=2501 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.469000 audit[2501]: AVC avc: denied { perfmon } for pid=2501 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.469000 audit[2501]: AVC avc: denied { perfmon } for pid=2501 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.469000 audit[2501]: AVC avc: denied { perfmon } for pid=2501 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.469000 audit[2501]: AVC avc: denied { perfmon } for pid=2501 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.469000 audit[2501]: AVC avc: denied { bpf } for pid=2501 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.469000 audit[2501]: AVC avc: denied { bpf } for pid=2501 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.469000 audit: BPF prog-id=86 op=LOAD Feb 9 10:08:34.469000 audit[2501]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=2493 pid=2501 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:34.469000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6234356261633639303930643832616237303862326131666466613061 Feb 9 10:08:34.471000 audit: BPF prog-id=86 op=UNLOAD Feb 9 10:08:34.471000 audit: BPF prog-id=85 op=UNLOAD Feb 9 10:08:34.471000 audit[2501]: AVC avc: denied { bpf } for pid=2501 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.471000 audit[2501]: AVC avc: denied { bpf } for pid=2501 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.471000 audit[2501]: AVC avc: denied { bpf } for pid=2501 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.471000 audit[2501]: AVC avc: denied { perfmon } for pid=2501 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.471000 audit[2501]: AVC avc: denied { perfmon } for pid=2501 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.471000 audit[2501]: AVC avc: denied { perfmon } for pid=2501 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.471000 audit[2501]: AVC avc: denied { perfmon } for pid=2501 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.471000 audit[2501]: AVC avc: denied { perfmon } for pid=2501 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.471000 audit[2501]: AVC avc: denied { bpf } for pid=2501 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.471000 audit[2501]: AVC avc: denied { bpf } for pid=2501 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:34.471000 audit: BPF prog-id=87 op=LOAD Feb 9 10:08:34.471000 audit[2501]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=2493 pid=2501 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:34.471000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6234356261633639303930643832616237303862326131666466613061 Feb 9 10:08:34.489132 env[1133]: time="2024-02-09T10:08:34.489091694Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-rggxx,Uid:f8207ca5-0291-4d48-b2b7-19f5b26290bd,Namespace:calico-system,Attempt:1,} returns sandbox id \"b45bac69090d82ab708b2a1fdfa0ae5f99aa9f325495da6301d0718f1671b4f7\"" Feb 9 10:08:34.490625 env[1133]: time="2024-02-09T10:08:34.490540146Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/csi:v3.27.0\"" Feb 9 10:08:35.124703 kubelet[1436]: E0209 10:08:35.124662 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:35.633397 env[1133]: time="2024-02-09T10:08:35.633337800Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/csi:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:35.634552 env[1133]: time="2024-02-09T10:08:35.634514615Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:4b71e7439e0eba34a97844591560a009f37e8e6c17a386a34d416c1cc872dee8,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:35.636576 env[1133]: time="2024-02-09T10:08:35.636533056Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/csi:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:35.638064 env[1133]: time="2024-02-09T10:08:35.638025731Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/csi@sha256:2b9021393c17e87ba8a3c89f5b3719941812f4e4751caa0b71eb2233bff48738,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:35.638388 env[1133]: time="2024-02-09T10:08:35.638351714Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/csi:v3.27.0\" returns image reference \"sha256:4b71e7439e0eba34a97844591560a009f37e8e6c17a386a34d416c1cc872dee8\"" Feb 9 10:08:35.640621 env[1133]: time="2024-02-09T10:08:35.640583384Z" level=info msg="CreateContainer within sandbox \"b45bac69090d82ab708b2a1fdfa0ae5f99aa9f325495da6301d0718f1671b4f7\" for container &ContainerMetadata{Name:calico-csi,Attempt:0,}" Feb 9 10:08:35.650702 env[1133]: time="2024-02-09T10:08:35.650647223Z" level=info msg="CreateContainer within sandbox \"b45bac69090d82ab708b2a1fdfa0ae5f99aa9f325495da6301d0718f1671b4f7\" for &ContainerMetadata{Name:calico-csi,Attempt:0,} returns container id \"c4df4ddd889a53d80efd1509f592fdb7b33e19a6aaac56053b8cbcf6773daaf0\"" Feb 9 10:08:35.651200 env[1133]: time="2024-02-09T10:08:35.651154544Z" level=info msg="StartContainer for \"c4df4ddd889a53d80efd1509f592fdb7b33e19a6aaac56053b8cbcf6773daaf0\"" Feb 9 10:08:35.665838 systemd[1]: Started cri-containerd-c4df4ddd889a53d80efd1509f592fdb7b33e19a6aaac56053b8cbcf6773daaf0.scope. Feb 9 10:08:35.689000 audit[2534]: AVC avc: denied { perfmon } for pid=2534 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:35.689000 audit[2534]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=2493 pid=2534 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:35.689000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6334646634646464383839613533643830656664313530396635393266 Feb 9 10:08:35.689000 audit[2534]: AVC avc: denied { bpf } for pid=2534 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:35.689000 audit[2534]: AVC avc: denied { bpf } for pid=2534 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:35.689000 audit[2534]: AVC avc: denied { bpf } for pid=2534 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:35.689000 audit[2534]: AVC avc: denied { perfmon } for pid=2534 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:35.689000 audit[2534]: AVC avc: denied { perfmon } for pid=2534 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:35.689000 audit[2534]: AVC avc: denied { perfmon } for pid=2534 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:35.689000 audit[2534]: AVC avc: denied { perfmon } for pid=2534 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:35.689000 audit[2534]: AVC avc: denied { perfmon } for pid=2534 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:35.689000 audit[2534]: AVC avc: denied { bpf } for pid=2534 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:35.689000 audit[2534]: AVC avc: denied { bpf } for pid=2534 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:35.689000 audit: BPF prog-id=88 op=LOAD Feb 9 10:08:35.689000 audit[2534]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=2493 pid=2534 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:35.689000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6334646634646464383839613533643830656664313530396635393266 Feb 9 10:08:35.690000 audit[2534]: AVC avc: denied { bpf } for pid=2534 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:35.690000 audit[2534]: AVC avc: denied { bpf } for pid=2534 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:35.690000 audit[2534]: AVC avc: denied { perfmon } for pid=2534 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:35.690000 audit[2534]: AVC avc: denied { perfmon } for pid=2534 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:35.690000 audit[2534]: AVC avc: denied { perfmon } for pid=2534 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:35.690000 audit[2534]: AVC avc: denied { perfmon } for pid=2534 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:35.690000 audit[2534]: AVC avc: denied { perfmon } for pid=2534 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:35.690000 audit[2534]: AVC avc: denied { bpf } for pid=2534 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:35.690000 audit[2534]: AVC avc: denied { bpf } for pid=2534 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:35.690000 audit: BPF prog-id=89 op=LOAD Feb 9 10:08:35.690000 audit[2534]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=2493 pid=2534 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:35.690000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6334646634646464383839613533643830656664313530396635393266 Feb 9 10:08:35.690000 audit: BPF prog-id=89 op=UNLOAD Feb 9 10:08:35.691000 audit: BPF prog-id=88 op=UNLOAD Feb 9 10:08:35.691000 audit[2534]: AVC avc: denied { bpf } for pid=2534 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:35.691000 audit[2534]: AVC avc: denied { bpf } for pid=2534 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:35.691000 audit[2534]: AVC avc: denied { bpf } for pid=2534 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:35.691000 audit[2534]: AVC avc: denied { perfmon } for pid=2534 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:35.691000 audit[2534]: AVC avc: denied { perfmon } for pid=2534 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:35.691000 audit[2534]: AVC avc: denied { perfmon } for pid=2534 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:35.691000 audit[2534]: AVC avc: denied { perfmon } for pid=2534 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:35.691000 audit[2534]: AVC avc: denied { perfmon } for pid=2534 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:35.691000 audit[2534]: AVC avc: denied { bpf } for pid=2534 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:35.691000 audit[2534]: AVC avc: denied { bpf } for pid=2534 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:35.691000 audit: BPF prog-id=90 op=LOAD Feb 9 10:08:35.691000 audit[2534]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=2493 pid=2534 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:35.691000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6334646634646464383839613533643830656664313530396635393266 Feb 9 10:08:35.708134 env[1133]: time="2024-02-09T10:08:35.705250941Z" level=info msg="StartContainer for \"c4df4ddd889a53d80efd1509f592fdb7b33e19a6aaac56053b8cbcf6773daaf0\" returns successfully" Feb 9 10:08:35.708134 env[1133]: time="2024-02-09T10:08:35.706730012Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node-driver-registrar:v3.27.0\"" Feb 9 10:08:36.125585 kubelet[1436]: E0209 10:08:36.125474 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:36.187643 env[1133]: time="2024-02-09T10:08:36.187608189Z" level=info msg="StopPodSandbox for \"91ed6e48cc56eca1e865643cf8f55d94a7bb8262caf5eacec635cd244a90248c\"" Feb 9 10:08:36.258004 systemd-networkd[1037]: cali3d39f3b07bb: Gained IPv6LL Feb 9 10:08:36.261673 env[1133]: 2024-02-09 10:08:36.226 [INFO][2577] k8s.go 578: Cleaning up netns ContainerID="91ed6e48cc56eca1e865643cf8f55d94a7bb8262caf5eacec635cd244a90248c" Feb 9 10:08:36.261673 env[1133]: 2024-02-09 10:08:36.226 [INFO][2577] dataplane_linux.go 530: Deleting workload's device in netns. ContainerID="91ed6e48cc56eca1e865643cf8f55d94a7bb8262caf5eacec635cd244a90248c" iface="eth0" netns="/var/run/netns/cni-a7e86f1a-e27d-7126-342f-a28df039ee2a" Feb 9 10:08:36.261673 env[1133]: 2024-02-09 10:08:36.226 [INFO][2577] dataplane_linux.go 541: Entered netns, deleting veth. ContainerID="91ed6e48cc56eca1e865643cf8f55d94a7bb8262caf5eacec635cd244a90248c" iface="eth0" netns="/var/run/netns/cni-a7e86f1a-e27d-7126-342f-a28df039ee2a" Feb 9 10:08:36.261673 env[1133]: 2024-02-09 10:08:36.226 [INFO][2577] dataplane_linux.go 568: Workload's veth was already gone. Nothing to do. ContainerID="91ed6e48cc56eca1e865643cf8f55d94a7bb8262caf5eacec635cd244a90248c" iface="eth0" netns="/var/run/netns/cni-a7e86f1a-e27d-7126-342f-a28df039ee2a" Feb 9 10:08:36.261673 env[1133]: 2024-02-09 10:08:36.226 [INFO][2577] k8s.go 585: Releasing IP address(es) ContainerID="91ed6e48cc56eca1e865643cf8f55d94a7bb8262caf5eacec635cd244a90248c" Feb 9 10:08:36.261673 env[1133]: 2024-02-09 10:08:36.226 [INFO][2577] utils.go 188: Calico CNI releasing IP address ContainerID="91ed6e48cc56eca1e865643cf8f55d94a7bb8262caf5eacec635cd244a90248c" Feb 9 10:08:36.261673 env[1133]: 2024-02-09 10:08:36.244 [INFO][2584] ipam_plugin.go 415: Releasing address using handleID ContainerID="91ed6e48cc56eca1e865643cf8f55d94a7bb8262caf5eacec635cd244a90248c" HandleID="k8s-pod-network.91ed6e48cc56eca1e865643cf8f55d94a7bb8262caf5eacec635cd244a90248c" Workload="10.0.0.130-k8s-nginx--deployment--845c78c8b9--gx9vt-eth0" Feb 9 10:08:36.261673 env[1133]: 2024-02-09 10:08:36.244 [INFO][2584] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 10:08:36.261673 env[1133]: 2024-02-09 10:08:36.244 [INFO][2584] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 10:08:36.261673 env[1133]: 2024-02-09 10:08:36.255 [WARNING][2584] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="91ed6e48cc56eca1e865643cf8f55d94a7bb8262caf5eacec635cd244a90248c" HandleID="k8s-pod-network.91ed6e48cc56eca1e865643cf8f55d94a7bb8262caf5eacec635cd244a90248c" Workload="10.0.0.130-k8s-nginx--deployment--845c78c8b9--gx9vt-eth0" Feb 9 10:08:36.261673 env[1133]: 2024-02-09 10:08:36.255 [INFO][2584] ipam_plugin.go 443: Releasing address using workloadID ContainerID="91ed6e48cc56eca1e865643cf8f55d94a7bb8262caf5eacec635cd244a90248c" HandleID="k8s-pod-network.91ed6e48cc56eca1e865643cf8f55d94a7bb8262caf5eacec635cd244a90248c" Workload="10.0.0.130-k8s-nginx--deployment--845c78c8b9--gx9vt-eth0" Feb 9 10:08:36.261673 env[1133]: 2024-02-09 10:08:36.257 [INFO][2584] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 10:08:36.261673 env[1133]: 2024-02-09 10:08:36.260 [INFO][2577] k8s.go 591: Teardown processing complete. ContainerID="91ed6e48cc56eca1e865643cf8f55d94a7bb8262caf5eacec635cd244a90248c" Feb 9 10:08:36.262096 env[1133]: time="2024-02-09T10:08:36.261882085Z" level=info msg="TearDown network for sandbox \"91ed6e48cc56eca1e865643cf8f55d94a7bb8262caf5eacec635cd244a90248c\" successfully" Feb 9 10:08:36.262096 env[1133]: time="2024-02-09T10:08:36.261912534Z" level=info msg="StopPodSandbox for \"91ed6e48cc56eca1e865643cf8f55d94a7bb8262caf5eacec635cd244a90248c\" returns successfully" Feb 9 10:08:36.262646 env[1133]: time="2024-02-09T10:08:36.262594857Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-845c78c8b9-gx9vt,Uid:f1b16b88-9f2a-4951-b663-adc58a79e96f,Namespace:default,Attempt:1,}" Feb 9 10:08:36.297126 systemd[1]: run-containerd-runc-k8s.io-c4df4ddd889a53d80efd1509f592fdb7b33e19a6aaac56053b8cbcf6773daaf0-runc.XDEUfZ.mount: Deactivated successfully. Feb 9 10:08:36.297221 systemd[1]: run-netns-cni\x2da7e86f1a\x2de27d\x2d7126\x2d342f\x2da28df039ee2a.mount: Deactivated successfully. Feb 9 10:08:36.362220 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 9 10:08:36.362305 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): calieb62f275ff6: link becomes ready Feb 9 10:08:36.362563 systemd-networkd[1037]: calieb62f275ff6: Link UP Feb 9 10:08:36.362698 systemd-networkd[1037]: calieb62f275ff6: Gained carrier Feb 9 10:08:36.371098 env[1133]: 2024-02-09 10:08:36.300 [INFO][2592] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {10.0.0.130-k8s-nginx--deployment--845c78c8b9--gx9vt-eth0 nginx-deployment-845c78c8b9- default f1b16b88-9f2a-4951-b663-adc58a79e96f 955 0 2024-02-09 10:08:24 +0000 UTC map[app:nginx pod-template-hash:845c78c8b9 projectcalico.org/namespace:default projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 10.0.0.130 nginx-deployment-845c78c8b9-gx9vt eth0 default [] [] [kns.default ksa.default.default] calieb62f275ff6 [] []}} ContainerID="4f35bab31860e673f5346e560c121d7aa21137fc1aa6aaf20e6f28224c70665c" Namespace="default" Pod="nginx-deployment-845c78c8b9-gx9vt" WorkloadEndpoint="10.0.0.130-k8s-nginx--deployment--845c78c8b9--gx9vt-" Feb 9 10:08:36.371098 env[1133]: 2024-02-09 10:08:36.301 [INFO][2592] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="4f35bab31860e673f5346e560c121d7aa21137fc1aa6aaf20e6f28224c70665c" Namespace="default" Pod="nginx-deployment-845c78c8b9-gx9vt" WorkloadEndpoint="10.0.0.130-k8s-nginx--deployment--845c78c8b9--gx9vt-eth0" Feb 9 10:08:36.371098 env[1133]: 2024-02-09 10:08:36.321 [INFO][2605] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="4f35bab31860e673f5346e560c121d7aa21137fc1aa6aaf20e6f28224c70665c" HandleID="k8s-pod-network.4f35bab31860e673f5346e560c121d7aa21137fc1aa6aaf20e6f28224c70665c" Workload="10.0.0.130-k8s-nginx--deployment--845c78c8b9--gx9vt-eth0" Feb 9 10:08:36.371098 env[1133]: 2024-02-09 10:08:36.334 [INFO][2605] ipam_plugin.go 268: Auto assigning IP ContainerID="4f35bab31860e673f5346e560c121d7aa21137fc1aa6aaf20e6f28224c70665c" HandleID="k8s-pod-network.4f35bab31860e673f5346e560c121d7aa21137fc1aa6aaf20e6f28224c70665c" Workload="10.0.0.130-k8s-nginx--deployment--845c78c8b9--gx9vt-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x40004b6f70), Attrs:map[string]string{"namespace":"default", "node":"10.0.0.130", "pod":"nginx-deployment-845c78c8b9-gx9vt", "timestamp":"2024-02-09 10:08:36.321643736 +0000 UTC"}, Hostname:"10.0.0.130", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 9 10:08:36.371098 env[1133]: 2024-02-09 10:08:36.334 [INFO][2605] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 10:08:36.371098 env[1133]: 2024-02-09 10:08:36.334 [INFO][2605] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 10:08:36.371098 env[1133]: 2024-02-09 10:08:36.334 [INFO][2605] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '10.0.0.130' Feb 9 10:08:36.371098 env[1133]: 2024-02-09 10:08:36.336 [INFO][2605] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.4f35bab31860e673f5346e560c121d7aa21137fc1aa6aaf20e6f28224c70665c" host="10.0.0.130" Feb 9 10:08:36.371098 env[1133]: 2024-02-09 10:08:36.339 [INFO][2605] ipam.go 372: Looking up existing affinities for host host="10.0.0.130" Feb 9 10:08:36.371098 env[1133]: 2024-02-09 10:08:36.345 [INFO][2605] ipam.go 489: Trying affinity for 192.168.2.64/26 host="10.0.0.130" Feb 9 10:08:36.371098 env[1133]: 2024-02-09 10:08:36.347 [INFO][2605] ipam.go 155: Attempting to load block cidr=192.168.2.64/26 host="10.0.0.130" Feb 9 10:08:36.371098 env[1133]: 2024-02-09 10:08:36.349 [INFO][2605] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.2.64/26 host="10.0.0.130" Feb 9 10:08:36.371098 env[1133]: 2024-02-09 10:08:36.349 [INFO][2605] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.2.64/26 handle="k8s-pod-network.4f35bab31860e673f5346e560c121d7aa21137fc1aa6aaf20e6f28224c70665c" host="10.0.0.130" Feb 9 10:08:36.371098 env[1133]: 2024-02-09 10:08:36.350 [INFO][2605] ipam.go 1682: Creating new handle: k8s-pod-network.4f35bab31860e673f5346e560c121d7aa21137fc1aa6aaf20e6f28224c70665c Feb 9 10:08:36.371098 env[1133]: 2024-02-09 10:08:36.353 [INFO][2605] ipam.go 1203: Writing block in order to claim IPs block=192.168.2.64/26 handle="k8s-pod-network.4f35bab31860e673f5346e560c121d7aa21137fc1aa6aaf20e6f28224c70665c" host="10.0.0.130" Feb 9 10:08:36.371098 env[1133]: 2024-02-09 10:08:36.357 [INFO][2605] ipam.go 1216: Successfully claimed IPs: [192.168.2.66/26] block=192.168.2.64/26 handle="k8s-pod-network.4f35bab31860e673f5346e560c121d7aa21137fc1aa6aaf20e6f28224c70665c" host="10.0.0.130" Feb 9 10:08:36.371098 env[1133]: 2024-02-09 10:08:36.357 [INFO][2605] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.2.66/26] handle="k8s-pod-network.4f35bab31860e673f5346e560c121d7aa21137fc1aa6aaf20e6f28224c70665c" host="10.0.0.130" Feb 9 10:08:36.371098 env[1133]: 2024-02-09 10:08:36.357 [INFO][2605] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 10:08:36.371098 env[1133]: 2024-02-09 10:08:36.357 [INFO][2605] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.2.66/26] IPv6=[] ContainerID="4f35bab31860e673f5346e560c121d7aa21137fc1aa6aaf20e6f28224c70665c" HandleID="k8s-pod-network.4f35bab31860e673f5346e560c121d7aa21137fc1aa6aaf20e6f28224c70665c" Workload="10.0.0.130-k8s-nginx--deployment--845c78c8b9--gx9vt-eth0" Feb 9 10:08:36.371610 env[1133]: 2024-02-09 10:08:36.359 [INFO][2592] k8s.go 385: Populated endpoint ContainerID="4f35bab31860e673f5346e560c121d7aa21137fc1aa6aaf20e6f28224c70665c" Namespace="default" Pod="nginx-deployment-845c78c8b9-gx9vt" WorkloadEndpoint="10.0.0.130-k8s-nginx--deployment--845c78c8b9--gx9vt-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.130-k8s-nginx--deployment--845c78c8b9--gx9vt-eth0", GenerateName:"nginx-deployment-845c78c8b9-", Namespace:"default", SelfLink:"", UID:"f1b16b88-9f2a-4951-b663-adc58a79e96f", ResourceVersion:"955", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 10, 8, 24, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"845c78c8b9", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.130", ContainerID:"", Pod:"nginx-deployment-845c78c8b9-gx9vt", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.2.66/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"calieb62f275ff6", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 10:08:36.371610 env[1133]: 2024-02-09 10:08:36.359 [INFO][2592] k8s.go 386: Calico CNI using IPs: [192.168.2.66/32] ContainerID="4f35bab31860e673f5346e560c121d7aa21137fc1aa6aaf20e6f28224c70665c" Namespace="default" Pod="nginx-deployment-845c78c8b9-gx9vt" WorkloadEndpoint="10.0.0.130-k8s-nginx--deployment--845c78c8b9--gx9vt-eth0" Feb 9 10:08:36.371610 env[1133]: 2024-02-09 10:08:36.359 [INFO][2592] dataplane_linux.go 68: Setting the host side veth name to calieb62f275ff6 ContainerID="4f35bab31860e673f5346e560c121d7aa21137fc1aa6aaf20e6f28224c70665c" Namespace="default" Pod="nginx-deployment-845c78c8b9-gx9vt" WorkloadEndpoint="10.0.0.130-k8s-nginx--deployment--845c78c8b9--gx9vt-eth0" Feb 9 10:08:36.371610 env[1133]: 2024-02-09 10:08:36.362 [INFO][2592] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="4f35bab31860e673f5346e560c121d7aa21137fc1aa6aaf20e6f28224c70665c" Namespace="default" Pod="nginx-deployment-845c78c8b9-gx9vt" WorkloadEndpoint="10.0.0.130-k8s-nginx--deployment--845c78c8b9--gx9vt-eth0" Feb 9 10:08:36.371610 env[1133]: 2024-02-09 10:08:36.363 [INFO][2592] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="4f35bab31860e673f5346e560c121d7aa21137fc1aa6aaf20e6f28224c70665c" Namespace="default" Pod="nginx-deployment-845c78c8b9-gx9vt" WorkloadEndpoint="10.0.0.130-k8s-nginx--deployment--845c78c8b9--gx9vt-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.130-k8s-nginx--deployment--845c78c8b9--gx9vt-eth0", GenerateName:"nginx-deployment-845c78c8b9-", Namespace:"default", SelfLink:"", UID:"f1b16b88-9f2a-4951-b663-adc58a79e96f", ResourceVersion:"955", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 10, 8, 24, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"845c78c8b9", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.130", ContainerID:"4f35bab31860e673f5346e560c121d7aa21137fc1aa6aaf20e6f28224c70665c", Pod:"nginx-deployment-845c78c8b9-gx9vt", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.2.66/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"calieb62f275ff6", MAC:"a2:95:7a:37:5b:97", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 10:08:36.371610 env[1133]: 2024-02-09 10:08:36.368 [INFO][2592] k8s.go 491: Wrote updated endpoint to datastore ContainerID="4f35bab31860e673f5346e560c121d7aa21137fc1aa6aaf20e6f28224c70665c" Namespace="default" Pod="nginx-deployment-845c78c8b9-gx9vt" WorkloadEndpoint="10.0.0.130-k8s-nginx--deployment--845c78c8b9--gx9vt-eth0" Feb 9 10:08:36.381000 audit[2629]: NETFILTER_CFG table=filter:74 family=2 entries=40 op=nft_register_chain pid=2629 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 10:08:36.381000 audit[2629]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=21064 a0=3 a1=fffff09c9a40 a2=0 a3=ffff8a6d6fa8 items=0 ppid=2121 pid=2629 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:36.381000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 10:08:36.386365 env[1133]: time="2024-02-09T10:08:36.386295244Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 9 10:08:36.386365 env[1133]: time="2024-02-09T10:08:36.386336816Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 9 10:08:36.386511 env[1133]: time="2024-02-09T10:08:36.386347019Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 9 10:08:36.386682 env[1133]: time="2024-02-09T10:08:36.386642948Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/4f35bab31860e673f5346e560c121d7aa21137fc1aa6aaf20e6f28224c70665c pid=2638 runtime=io.containerd.runc.v2 Feb 9 10:08:36.398327 systemd[1]: Started cri-containerd-4f35bab31860e673f5346e560c121d7aa21137fc1aa6aaf20e6f28224c70665c.scope. Feb 9 10:08:36.419000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.419000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.419000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.419000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.419000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.419000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.419000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.419000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.419000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.419000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.419000 audit: BPF prog-id=91 op=LOAD Feb 9 10:08:36.419000 audit[2648]: AVC avc: denied { bpf } for pid=2648 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.419000 audit[2648]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=40000d7b38 a2=10 a3=0 items=0 ppid=2638 pid=2648 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:36.419000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3466333562616233313836306536373366353334366535363063313231 Feb 9 10:08:36.419000 audit[2648]: AVC avc: denied { perfmon } for pid=2648 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.419000 audit[2648]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40000d75a0 a2=3c a3=0 items=0 ppid=2638 pid=2648 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:36.419000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3466333562616233313836306536373366353334366535363063313231 Feb 9 10:08:36.419000 audit[2648]: AVC avc: denied { bpf } for pid=2648 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.419000 audit[2648]: AVC avc: denied { bpf } for pid=2648 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.419000 audit[2648]: AVC avc: denied { bpf } for pid=2648 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.419000 audit[2648]: AVC avc: denied { perfmon } for pid=2648 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.419000 audit[2648]: AVC avc: denied { perfmon } for pid=2648 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.419000 audit[2648]: AVC avc: denied { perfmon } for pid=2648 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.419000 audit[2648]: AVC avc: denied { perfmon } for pid=2648 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.419000 audit[2648]: AVC avc: denied { perfmon } for pid=2648 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.419000 audit[2648]: AVC avc: denied { bpf } for pid=2648 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.419000 audit[2648]: AVC avc: denied { bpf } for pid=2648 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.419000 audit: BPF prog-id=92 op=LOAD Feb 9 10:08:36.419000 audit[2648]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40000d78e0 a2=78 a3=0 items=0 ppid=2638 pid=2648 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:36.419000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3466333562616233313836306536373366353334366535363063313231 Feb 9 10:08:36.419000 audit[2648]: AVC avc: denied { bpf } for pid=2648 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.419000 audit[2648]: AVC avc: denied { bpf } for pid=2648 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.419000 audit[2648]: AVC avc: denied { perfmon } for pid=2648 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.419000 audit[2648]: AVC avc: denied { perfmon } for pid=2648 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.419000 audit[2648]: AVC avc: denied { perfmon } for pid=2648 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.419000 audit[2648]: AVC avc: denied { perfmon } for pid=2648 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.419000 audit[2648]: AVC avc: denied { perfmon } for pid=2648 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.419000 audit[2648]: AVC avc: denied { bpf } for pid=2648 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.419000 audit[2648]: AVC avc: denied { bpf } for pid=2648 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.419000 audit: BPF prog-id=93 op=LOAD Feb 9 10:08:36.419000 audit[2648]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=40000d7670 a2=78 a3=0 items=0 ppid=2638 pid=2648 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:36.419000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3466333562616233313836306536373366353334366535363063313231 Feb 9 10:08:36.420000 audit: BPF prog-id=93 op=UNLOAD Feb 9 10:08:36.420000 audit: BPF prog-id=92 op=UNLOAD Feb 9 10:08:36.420000 audit[2648]: AVC avc: denied { bpf } for pid=2648 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.420000 audit[2648]: AVC avc: denied { bpf } for pid=2648 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.420000 audit[2648]: AVC avc: denied { bpf } for pid=2648 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.420000 audit[2648]: AVC avc: denied { perfmon } for pid=2648 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.420000 audit[2648]: AVC avc: denied { perfmon } for pid=2648 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.420000 audit[2648]: AVC avc: denied { perfmon } for pid=2648 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.420000 audit[2648]: AVC avc: denied { perfmon } for pid=2648 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.420000 audit[2648]: AVC avc: denied { perfmon } for pid=2648 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.420000 audit[2648]: AVC avc: denied { bpf } for pid=2648 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.420000 audit[2648]: AVC avc: denied { bpf } for pid=2648 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.420000 audit: BPF prog-id=94 op=LOAD Feb 9 10:08:36.420000 audit[2648]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40000d7b40 a2=78 a3=0 items=0 ppid=2638 pid=2648 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:36.420000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3466333562616233313836306536373366353334366535363063313231 Feb 9 10:08:36.422259 systemd-resolved[1081]: Failed to determine the local hostname and LLMNR/mDNS names, ignoring: No such device or address Feb 9 10:08:36.437649 env[1133]: time="2024-02-09T10:08:36.437595373Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-845c78c8b9-gx9vt,Uid:f1b16b88-9f2a-4951-b663-adc58a79e96f,Namespace:default,Attempt:1,} returns sandbox id \"4f35bab31860e673f5346e560c121d7aa21137fc1aa6aaf20e6f28224c70665c\"" Feb 9 10:08:36.760847 env[1133]: time="2024-02-09T10:08:36.760746843Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node-driver-registrar:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:36.763107 env[1133]: time="2024-02-09T10:08:36.763065534Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:9dbda087e98c46610fb8629cf530f1fe49eee4b17d2afe455664ca446ec39d43,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:36.764483 env[1133]: time="2024-02-09T10:08:36.764439784Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/node-driver-registrar:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:36.766234 env[1133]: time="2024-02-09T10:08:36.766208711Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node-driver-registrar@sha256:45a7aba6020a7cf7b866cb8a8d481b30c97e9b3407e1459aaa65a5b4cc06633a,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:36.766699 env[1133]: time="2024-02-09T10:08:36.766667007Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node-driver-registrar:v3.27.0\" returns image reference \"sha256:9dbda087e98c46610fb8629cf530f1fe49eee4b17d2afe455664ca446ec39d43\"" Feb 9 10:08:36.767617 env[1133]: time="2024-02-09T10:08:36.767583320Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\"" Feb 9 10:08:36.768865 env[1133]: time="2024-02-09T10:08:36.768593622Z" level=info msg="CreateContainer within sandbox \"b45bac69090d82ab708b2a1fdfa0ae5f99aa9f325495da6301d0718f1671b4f7\" for container &ContainerMetadata{Name:csi-node-driver-registrar,Attempt:0,}" Feb 9 10:08:36.778312 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount96985493.mount: Deactivated successfully. Feb 9 10:08:36.780523 env[1133]: time="2024-02-09T10:08:36.780485046Z" level=info msg="CreateContainer within sandbox \"b45bac69090d82ab708b2a1fdfa0ae5f99aa9f325495da6301d0718f1671b4f7\" for &ContainerMetadata{Name:csi-node-driver-registrar,Attempt:0,} returns container id \"c9952f6c8c44dabd9b057fb09835f0e7aa081b50c1f91b3517da350db7c3698a\"" Feb 9 10:08:36.781134 env[1133]: time="2024-02-09T10:08:36.781040491Z" level=info msg="StartContainer for \"c9952f6c8c44dabd9b057fb09835f0e7aa081b50c1f91b3517da350db7c3698a\"" Feb 9 10:08:36.795496 systemd[1]: Started cri-containerd-c9952f6c8c44dabd9b057fb09835f0e7aa081b50c1f91b3517da350db7c3698a.scope. Feb 9 10:08:36.819000 audit[2680]: AVC avc: denied { perfmon } for pid=2680 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.819000 audit[2680]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=2493 pid=2680 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:36.819000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6339393532663663386334346461626439623035376662303938333566 Feb 9 10:08:36.819000 audit[2680]: AVC avc: denied { bpf } for pid=2680 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.819000 audit[2680]: AVC avc: denied { bpf } for pid=2680 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.819000 audit[2680]: AVC avc: denied { bpf } for pid=2680 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.819000 audit[2680]: AVC avc: denied { perfmon } for pid=2680 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.819000 audit[2680]: AVC avc: denied { perfmon } for pid=2680 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.819000 audit[2680]: AVC avc: denied { perfmon } for pid=2680 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.819000 audit[2680]: AVC avc: denied { perfmon } for pid=2680 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.819000 audit[2680]: AVC avc: denied { perfmon } for pid=2680 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.819000 audit[2680]: AVC avc: denied { bpf } for pid=2680 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.819000 audit[2680]: AVC avc: denied { bpf } for pid=2680 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.819000 audit: BPF prog-id=95 op=LOAD Feb 9 10:08:36.819000 audit[2680]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=2493 pid=2680 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:36.819000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6339393532663663386334346461626439623035376662303938333566 Feb 9 10:08:36.819000 audit[2680]: AVC avc: denied { bpf } for pid=2680 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.819000 audit[2680]: AVC avc: denied { bpf } for pid=2680 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.819000 audit[2680]: AVC avc: denied { perfmon } for pid=2680 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.819000 audit[2680]: AVC avc: denied { perfmon } for pid=2680 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.819000 audit[2680]: AVC avc: denied { perfmon } for pid=2680 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.819000 audit[2680]: AVC avc: denied { perfmon } for pid=2680 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.819000 audit[2680]: AVC avc: denied { perfmon } for pid=2680 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.819000 audit[2680]: AVC avc: denied { bpf } for pid=2680 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.819000 audit[2680]: AVC avc: denied { bpf } for pid=2680 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.819000 audit: BPF prog-id=96 op=LOAD Feb 9 10:08:36.819000 audit[2680]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=2493 pid=2680 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:36.819000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6339393532663663386334346461626439623035376662303938333566 Feb 9 10:08:36.819000 audit: BPF prog-id=96 op=UNLOAD Feb 9 10:08:36.819000 audit: BPF prog-id=95 op=UNLOAD Feb 9 10:08:36.819000 audit[2680]: AVC avc: denied { bpf } for pid=2680 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.819000 audit[2680]: AVC avc: denied { bpf } for pid=2680 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.819000 audit[2680]: AVC avc: denied { bpf } for pid=2680 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.819000 audit[2680]: AVC avc: denied { perfmon } for pid=2680 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.819000 audit[2680]: AVC avc: denied { perfmon } for pid=2680 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.819000 audit[2680]: AVC avc: denied { perfmon } for pid=2680 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.819000 audit[2680]: AVC avc: denied { perfmon } for pid=2680 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.819000 audit[2680]: AVC avc: denied { perfmon } for pid=2680 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.819000 audit[2680]: AVC avc: denied { bpf } for pid=2680 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.819000 audit[2680]: AVC avc: denied { bpf } for pid=2680 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:36.819000 audit: BPF prog-id=97 op=LOAD Feb 9 10:08:36.819000 audit[2680]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=2493 pid=2680 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:36.819000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6339393532663663386334346461626439623035376662303938333566 Feb 9 10:08:36.836711 env[1133]: time="2024-02-09T10:08:36.836670511Z" level=info msg="StartContainer for \"c9952f6c8c44dabd9b057fb09835f0e7aa081b50c1f91b3517da350db7c3698a\" returns successfully" Feb 9 10:08:37.126520 kubelet[1436]: E0209 10:08:37.126416 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:37.175108 kubelet[1436]: I0209 10:08:37.175081 1436 csi_plugin.go:99] kubernetes.io/csi: Trying to validate a new CSI Driver with name: csi.tigera.io endpoint: /var/lib/kubelet/plugins/csi.tigera.io/csi.sock versions: 1.0.0 Feb 9 10:08:37.175108 kubelet[1436]: I0209 10:08:37.175111 1436 csi_plugin.go:112] kubernetes.io/csi: Register new plugin with name: csi.tigera.io at endpoint: /var/lib/kubelet/plugins/csi.tigera.io/csi.sock Feb 9 10:08:37.250869 kubelet[1436]: I0209 10:08:37.250826 1436 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="calico-system/csi-node-driver-rggxx" podStartSLOduration=22.974055522 podCreationTimestamp="2024-02-09 10:08:12 +0000 UTC" firstStartedPulling="2024-02-09 10:08:34.490314269 +0000 UTC m=+23.836074508" lastFinishedPulling="2024-02-09 10:08:36.7670452 +0000 UTC m=+26.112805439" observedRunningTime="2024-02-09 10:08:37.250598361 +0000 UTC m=+26.596358600" watchObservedRunningTime="2024-02-09 10:08:37.250786453 +0000 UTC m=+26.596546692" Feb 9 10:08:38.126775 kubelet[1436]: E0209 10:08:38.126732 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:38.370145 systemd-networkd[1037]: calieb62f275ff6: Gained IPv6LL Feb 9 10:08:38.872793 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1731912330.mount: Deactivated successfully. Feb 9 10:08:39.127130 kubelet[1436]: E0209 10:08:39.127026 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:39.694103 env[1133]: time="2024-02-09T10:08:39.694056059Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:39.695913 env[1133]: time="2024-02-09T10:08:39.695884628Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:01bfff6bfbc6f0e8a890bad9e22c5392e6dbfd67def93467db6231d4be1b719b,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:39.698063 env[1133]: time="2024-02-09T10:08:39.698025994Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:39.699959 env[1133]: time="2024-02-09T10:08:39.699927461Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/nginx@sha256:e34a272f01984c973b1e034e197c02f77dda18981038e3a54e957554ada4fec6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:39.700670 env[1133]: time="2024-02-09T10:08:39.700647598Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\" returns image reference \"sha256:01bfff6bfbc6f0e8a890bad9e22c5392e6dbfd67def93467db6231d4be1b719b\"" Feb 9 10:08:39.703245 env[1133]: time="2024-02-09T10:08:39.703205106Z" level=info msg="CreateContainer within sandbox \"4f35bab31860e673f5346e560c121d7aa21137fc1aa6aaf20e6f28224c70665c\" for container &ContainerMetadata{Name:nginx,Attempt:0,}" Feb 9 10:08:39.713319 env[1133]: time="2024-02-09T10:08:39.713275299Z" level=info msg="CreateContainer within sandbox \"4f35bab31860e673f5346e560c121d7aa21137fc1aa6aaf20e6f28224c70665c\" for &ContainerMetadata{Name:nginx,Attempt:0,} returns container id \"002aa0cdf54a114d3ab06ab826086708ebe67d5a89e5990dabd1fa2a56fad5e8\"" Feb 9 10:08:39.713885 env[1133]: time="2024-02-09T10:08:39.713852280Z" level=info msg="StartContainer for \"002aa0cdf54a114d3ab06ab826086708ebe67d5a89e5990dabd1fa2a56fad5e8\"" Feb 9 10:08:39.734916 systemd[1]: Started cri-containerd-002aa0cdf54a114d3ab06ab826086708ebe67d5a89e5990dabd1fa2a56fad5e8.scope. Feb 9 10:08:39.766000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.770227 kernel: kauditd_printk_skb: 196 callbacks suppressed Feb 9 10:08:39.770285 kernel: audit: type=1400 audit(1707473319.766:733): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.770309 kernel: audit: type=1400 audit(1707473319.768:734): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.768000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.770000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.773602 kernel: audit: type=1400 audit(1707473319.770:735): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.771000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.775817 kernel: audit: type=1400 audit(1707473319.771:736): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.775864 kernel: audit: type=1400 audit(1707473319.771:737): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.771000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.771000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.779440 kernel: audit: type=1400 audit(1707473319.771:738): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.771000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.781775 kernel: audit: type=1400 audit(1707473319.771:739): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.781830 kernel: audit: type=1400 audit(1707473319.771:740): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.771000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.783517 kernel: audit: type=1400 audit(1707473319.771:741): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.771000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.771000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.787093 kernel: audit: type=1400 audit(1707473319.771:742): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.772000 audit: BPF prog-id=98 op=LOAD Feb 9 10:08:39.775000 audit[2727]: AVC avc: denied { bpf } for pid=2727 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.775000 audit[2727]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000195b38 a2=10 a3=0 items=0 ppid=2638 pid=2727 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:39.775000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3030326161306364663534613131346433616230366162383236303836 Feb 9 10:08:39.775000 audit[2727]: AVC avc: denied { perfmon } for pid=2727 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.775000 audit[2727]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=2638 pid=2727 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:39.775000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3030326161306364663534613131346433616230366162383236303836 Feb 9 10:08:39.777000 audit[2727]: AVC avc: denied { bpf } for pid=2727 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.777000 audit[2727]: AVC avc: denied { bpf } for pid=2727 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.777000 audit[2727]: AVC avc: denied { bpf } for pid=2727 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.777000 audit[2727]: AVC avc: denied { perfmon } for pid=2727 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.777000 audit[2727]: AVC avc: denied { perfmon } for pid=2727 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.777000 audit[2727]: AVC avc: denied { perfmon } for pid=2727 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.777000 audit[2727]: AVC avc: denied { perfmon } for pid=2727 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.777000 audit[2727]: AVC avc: denied { perfmon } for pid=2727 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.777000 audit[2727]: AVC avc: denied { bpf } for pid=2727 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.777000 audit[2727]: AVC avc: denied { bpf } for pid=2727 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.777000 audit: BPF prog-id=99 op=LOAD Feb 9 10:08:39.777000 audit[2727]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=2638 pid=2727 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:39.777000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3030326161306364663534613131346433616230366162383236303836 Feb 9 10:08:39.777000 audit[2727]: AVC avc: denied { bpf } for pid=2727 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.777000 audit[2727]: AVC avc: denied { bpf } for pid=2727 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.777000 audit[2727]: AVC avc: denied { perfmon } for pid=2727 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.777000 audit[2727]: AVC avc: denied { perfmon } for pid=2727 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.777000 audit[2727]: AVC avc: denied { perfmon } for pid=2727 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.777000 audit[2727]: AVC avc: denied { perfmon } for pid=2727 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.777000 audit[2727]: AVC avc: denied { perfmon } for pid=2727 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.777000 audit[2727]: AVC avc: denied { bpf } for pid=2727 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.777000 audit[2727]: AVC avc: denied { bpf } for pid=2727 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.777000 audit: BPF prog-id=100 op=LOAD Feb 9 10:08:39.777000 audit[2727]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=2638 pid=2727 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:39.777000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3030326161306364663534613131346433616230366162383236303836 Feb 9 10:08:39.777000 audit: BPF prog-id=100 op=UNLOAD Feb 9 10:08:39.777000 audit: BPF prog-id=99 op=UNLOAD Feb 9 10:08:39.777000 audit[2727]: AVC avc: denied { bpf } for pid=2727 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.777000 audit[2727]: AVC avc: denied { bpf } for pid=2727 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.777000 audit[2727]: AVC avc: denied { bpf } for pid=2727 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.777000 audit[2727]: AVC avc: denied { perfmon } for pid=2727 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.777000 audit[2727]: AVC avc: denied { perfmon } for pid=2727 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.777000 audit[2727]: AVC avc: denied { perfmon } for pid=2727 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.777000 audit[2727]: AVC avc: denied { perfmon } for pid=2727 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.777000 audit[2727]: AVC avc: denied { perfmon } for pid=2727 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.777000 audit[2727]: AVC avc: denied { bpf } for pid=2727 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.777000 audit[2727]: AVC avc: denied { bpf } for pid=2727 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:39.777000 audit: BPF prog-id=101 op=LOAD Feb 9 10:08:39.777000 audit[2727]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=2638 pid=2727 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:39.777000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3030326161306364663534613131346433616230366162383236303836 Feb 9 10:08:39.805905 env[1133]: time="2024-02-09T10:08:39.805854275Z" level=info msg="StartContainer for \"002aa0cdf54a114d3ab06ab826086708ebe67d5a89e5990dabd1fa2a56fad5e8\" returns successfully" Feb 9 10:08:40.127477 kubelet[1436]: E0209 10:08:40.127359 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:40.254964 kubelet[1436]: I0209 10:08:40.254922 1436 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="default/nginx-deployment-845c78c8b9-gx9vt" podStartSLOduration=12.992681227 podCreationTimestamp="2024-02-09 10:08:24 +0000 UTC" firstStartedPulling="2024-02-09 10:08:36.438713666 +0000 UTC m=+25.784473905" lastFinishedPulling="2024-02-09 10:08:39.700920985 +0000 UTC m=+29.046681224" observedRunningTime="2024-02-09 10:08:40.25451662 +0000 UTC m=+29.600276859" watchObservedRunningTime="2024-02-09 10:08:40.254888546 +0000 UTC m=+29.600648785" Feb 9 10:08:41.127906 kubelet[1436]: E0209 10:08:41.127859 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:42.128534 kubelet[1436]: E0209 10:08:42.128463 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:43.129220 kubelet[1436]: E0209 10:08:43.129173 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:44.130282 kubelet[1436]: E0209 10:08:44.130230 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:45.130629 kubelet[1436]: E0209 10:08:45.130591 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:46.131706 kubelet[1436]: E0209 10:08:46.131655 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:46.481087 kernel: kauditd_printk_skb: 47 callbacks suppressed Feb 9 10:08:46.481207 kernel: audit: type=1325 audit(1707473326.479:751): table=filter:75 family=2 entries=20 op=nft_register_rule pid=2785 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 10:08:46.479000 audit[2785]: NETFILTER_CFG table=filter:75 family=2 entries=20 op=nft_register_rule pid=2785 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 10:08:46.479000 audit[2785]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=11292 a0=3 a1=ffffe92ef140 a2=0 a3=ffffa8b8d6c0 items=0 ppid=1700 pid=2785 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:46.485128 kernel: audit: type=1300 audit(1707473326.479:751): arch=c00000b7 syscall=211 success=yes exit=11292 a0=3 a1=ffffe92ef140 a2=0 a3=ffffa8b8d6c0 items=0 ppid=1700 pid=2785 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:46.485198 kernel: audit: type=1327 audit(1707473326.479:751): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 10:08:46.479000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 10:08:46.480000 audit[2785]: NETFILTER_CFG table=nat:76 family=2 entries=20 op=nft_register_rule pid=2785 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 10:08:46.480000 audit[2785]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5484 a0=3 a1=ffffe92ef140 a2=0 a3=ffffa8b8d6c0 items=0 ppid=1700 pid=2785 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:46.496009 kernel: audit: type=1325 audit(1707473326.480:752): table=nat:76 family=2 entries=20 op=nft_register_rule pid=2785 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 10:08:46.496054 kernel: audit: type=1300 audit(1707473326.480:752): arch=c00000b7 syscall=211 success=yes exit=5484 a0=3 a1=ffffe92ef140 a2=0 a3=ffffa8b8d6c0 items=0 ppid=1700 pid=2785 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:46.496079 kernel: audit: type=1327 audit(1707473326.480:752): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 10:08:46.480000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 10:08:46.497000 audit[2787]: NETFILTER_CFG table=filter:77 family=2 entries=32 op=nft_register_rule pid=2787 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 10:08:46.497000 audit[2787]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=11292 a0=3 a1=fffffb1a0ac0 a2=0 a3=ffffba02a6c0 items=0 ppid=1700 pid=2787 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:46.511042 kernel: audit: type=1325 audit(1707473326.497:753): table=filter:77 family=2 entries=32 op=nft_register_rule pid=2787 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 10:08:46.511118 kernel: audit: type=1300 audit(1707473326.497:753): arch=c00000b7 syscall=211 success=yes exit=11292 a0=3 a1=fffffb1a0ac0 a2=0 a3=ffffba02a6c0 items=0 ppid=1700 pid=2787 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:46.511141 kernel: audit: type=1327 audit(1707473326.497:753): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 10:08:46.497000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 10:08:46.515028 kubelet[1436]: I0209 10:08:46.514993 1436 topology_manager.go:212] "Topology Admit Handler" Feb 9 10:08:46.507000 audit[2787]: NETFILTER_CFG table=nat:78 family=2 entries=20 op=nft_register_rule pid=2787 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 10:08:46.520257 systemd[1]: Created slice kubepods-besteffort-pod086432af_4f66_43fa_81b0_d0a1946a2e8a.slice. Feb 9 10:08:46.521060 kernel: audit: type=1325 audit(1707473326.507:754): table=nat:78 family=2 entries=20 op=nft_register_rule pid=2787 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 10:08:46.507000 audit[2787]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5484 a0=3 a1=fffffb1a0ac0 a2=0 a3=ffffba02a6c0 items=0 ppid=1700 pid=2787 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:46.507000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 10:08:46.613125 kubelet[1436]: I0209 10:08:46.613085 1436 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"data\" (UniqueName: \"kubernetes.io/empty-dir/086432af-4f66-43fa-81b0-d0a1946a2e8a-data\") pod \"nfs-server-provisioner-0\" (UID: \"086432af-4f66-43fa-81b0-d0a1946a2e8a\") " pod="default/nfs-server-provisioner-0" Feb 9 10:08:46.613262 kubelet[1436]: I0209 10:08:46.613210 1436 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-7k9vp\" (UniqueName: \"kubernetes.io/projected/086432af-4f66-43fa-81b0-d0a1946a2e8a-kube-api-access-7k9vp\") pod \"nfs-server-provisioner-0\" (UID: \"086432af-4f66-43fa-81b0-d0a1946a2e8a\") " pod="default/nfs-server-provisioner-0" Feb 9 10:08:46.823050 env[1133]: time="2024-02-09T10:08:46.822944587Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nfs-server-provisioner-0,Uid:086432af-4f66-43fa-81b0-d0a1946a2e8a,Namespace:default,Attempt:0,}" Feb 9 10:08:46.993170 systemd-networkd[1037]: cali60e51b789ff: Link UP Feb 9 10:08:46.994769 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 9 10:08:46.994837 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali60e51b789ff: link becomes ready Feb 9 10:08:46.994775 systemd-networkd[1037]: cali60e51b789ff: Gained carrier Feb 9 10:08:47.013270 env[1133]: 2024-02-09 10:08:46.924 [INFO][2789] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {10.0.0.130-k8s-nfs--server--provisioner--0-eth0 nfs-server-provisioner- default 086432af-4f66-43fa-81b0-d0a1946a2e8a 1012 0 2024-02-09 10:08:46 +0000 UTC map[app:nfs-server-provisioner chart:nfs-server-provisioner-1.8.0 controller-revision-hash:nfs-server-provisioner-d5cbb7f57 heritage:Helm projectcalico.org/namespace:default projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:nfs-server-provisioner release:nfs-server-provisioner statefulset.kubernetes.io/pod-name:nfs-server-provisioner-0] map[] [] [] []} {k8s 10.0.0.130 nfs-server-provisioner-0 eth0 nfs-server-provisioner [] [] [kns.default ksa.default.nfs-server-provisioner] cali60e51b789ff [{nfs TCP 2049 0 } {nfs-udp UDP 2049 0 } {nlockmgr TCP 32803 0 } {nlockmgr-udp UDP 32803 0 } {mountd TCP 20048 0 } {mountd-udp UDP 20048 0 } {rquotad TCP 875 0 } {rquotad-udp UDP 875 0 } {rpcbind TCP 111 0 } {rpcbind-udp UDP 111 0 } {statd TCP 662 0 } {statd-udp UDP 662 0 }] []}} ContainerID="19826650602de94ba171ab962365978c694a7da9af4929fbfc76e3f3f53c19b5" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="10.0.0.130-k8s-nfs--server--provisioner--0-" Feb 9 10:08:47.013270 env[1133]: 2024-02-09 10:08:46.924 [INFO][2789] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="19826650602de94ba171ab962365978c694a7da9af4929fbfc76e3f3f53c19b5" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="10.0.0.130-k8s-nfs--server--provisioner--0-eth0" Feb 9 10:08:47.013270 env[1133]: 2024-02-09 10:08:46.948 [INFO][2804] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="19826650602de94ba171ab962365978c694a7da9af4929fbfc76e3f3f53c19b5" HandleID="k8s-pod-network.19826650602de94ba171ab962365978c694a7da9af4929fbfc76e3f3f53c19b5" Workload="10.0.0.130-k8s-nfs--server--provisioner--0-eth0" Feb 9 10:08:47.013270 env[1133]: 2024-02-09 10:08:46.962 [INFO][2804] ipam_plugin.go 268: Auto assigning IP ContainerID="19826650602de94ba171ab962365978c694a7da9af4929fbfc76e3f3f53c19b5" HandleID="k8s-pod-network.19826650602de94ba171ab962365978c694a7da9af4929fbfc76e3f3f53c19b5" Workload="10.0.0.130-k8s-nfs--server--provisioner--0-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x40004ffeb0), Attrs:map[string]string{"namespace":"default", "node":"10.0.0.130", "pod":"nfs-server-provisioner-0", "timestamp":"2024-02-09 10:08:46.948714728 +0000 UTC"}, Hostname:"10.0.0.130", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 9 10:08:47.013270 env[1133]: 2024-02-09 10:08:46.962 [INFO][2804] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 10:08:47.013270 env[1133]: 2024-02-09 10:08:46.963 [INFO][2804] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 10:08:47.013270 env[1133]: 2024-02-09 10:08:46.963 [INFO][2804] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '10.0.0.130' Feb 9 10:08:47.013270 env[1133]: 2024-02-09 10:08:46.964 [INFO][2804] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.19826650602de94ba171ab962365978c694a7da9af4929fbfc76e3f3f53c19b5" host="10.0.0.130" Feb 9 10:08:47.013270 env[1133]: 2024-02-09 10:08:46.968 [INFO][2804] ipam.go 372: Looking up existing affinities for host host="10.0.0.130" Feb 9 10:08:47.013270 env[1133]: 2024-02-09 10:08:46.973 [INFO][2804] ipam.go 489: Trying affinity for 192.168.2.64/26 host="10.0.0.130" Feb 9 10:08:47.013270 env[1133]: 2024-02-09 10:08:46.974 [INFO][2804] ipam.go 155: Attempting to load block cidr=192.168.2.64/26 host="10.0.0.130" Feb 9 10:08:47.013270 env[1133]: 2024-02-09 10:08:46.977 [INFO][2804] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.2.64/26 host="10.0.0.130" Feb 9 10:08:47.013270 env[1133]: 2024-02-09 10:08:46.977 [INFO][2804] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.2.64/26 handle="k8s-pod-network.19826650602de94ba171ab962365978c694a7da9af4929fbfc76e3f3f53c19b5" host="10.0.0.130" Feb 9 10:08:47.013270 env[1133]: 2024-02-09 10:08:46.978 [INFO][2804] ipam.go 1682: Creating new handle: k8s-pod-network.19826650602de94ba171ab962365978c694a7da9af4929fbfc76e3f3f53c19b5 Feb 9 10:08:47.013270 env[1133]: 2024-02-09 10:08:46.982 [INFO][2804] ipam.go 1203: Writing block in order to claim IPs block=192.168.2.64/26 handle="k8s-pod-network.19826650602de94ba171ab962365978c694a7da9af4929fbfc76e3f3f53c19b5" host="10.0.0.130" Feb 9 10:08:47.013270 env[1133]: 2024-02-09 10:08:46.986 [INFO][2804] ipam.go 1216: Successfully claimed IPs: [192.168.2.67/26] block=192.168.2.64/26 handle="k8s-pod-network.19826650602de94ba171ab962365978c694a7da9af4929fbfc76e3f3f53c19b5" host="10.0.0.130" Feb 9 10:08:47.013270 env[1133]: 2024-02-09 10:08:46.986 [INFO][2804] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.2.67/26] handle="k8s-pod-network.19826650602de94ba171ab962365978c694a7da9af4929fbfc76e3f3f53c19b5" host="10.0.0.130" Feb 9 10:08:47.013270 env[1133]: 2024-02-09 10:08:46.986 [INFO][2804] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 10:08:47.013270 env[1133]: 2024-02-09 10:08:46.986 [INFO][2804] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.2.67/26] IPv6=[] ContainerID="19826650602de94ba171ab962365978c694a7da9af4929fbfc76e3f3f53c19b5" HandleID="k8s-pod-network.19826650602de94ba171ab962365978c694a7da9af4929fbfc76e3f3f53c19b5" Workload="10.0.0.130-k8s-nfs--server--provisioner--0-eth0" Feb 9 10:08:47.016107 env[1133]: 2024-02-09 10:08:46.988 [INFO][2789] k8s.go 385: Populated endpoint ContainerID="19826650602de94ba171ab962365978c694a7da9af4929fbfc76e3f3f53c19b5" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="10.0.0.130-k8s-nfs--server--provisioner--0-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.130-k8s-nfs--server--provisioner--0-eth0", GenerateName:"nfs-server-provisioner-", Namespace:"default", SelfLink:"", UID:"086432af-4f66-43fa-81b0-d0a1946a2e8a", ResourceVersion:"1012", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 10, 8, 46, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nfs-server-provisioner", "chart":"nfs-server-provisioner-1.8.0", "controller-revision-hash":"nfs-server-provisioner-d5cbb7f57", "heritage":"Helm", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"nfs-server-provisioner", "release":"nfs-server-provisioner", "statefulset.kubernetes.io/pod-name":"nfs-server-provisioner-0"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.130", ContainerID:"", Pod:"nfs-server-provisioner-0", Endpoint:"eth0", ServiceAccountName:"nfs-server-provisioner", IPNetworks:[]string{"192.168.2.67/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.nfs-server-provisioner"}, InterfaceName:"cali60e51b789ff", MAC:"", Ports:[]v3.WorkloadEndpointPort{v3.WorkloadEndpointPort{Name:"nfs", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nfs-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x296, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x296, HostPort:0x0, HostIP:""}}, AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 10:08:47.016107 env[1133]: 2024-02-09 10:08:46.988 [INFO][2789] k8s.go 386: Calico CNI using IPs: [192.168.2.67/32] ContainerID="19826650602de94ba171ab962365978c694a7da9af4929fbfc76e3f3f53c19b5" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="10.0.0.130-k8s-nfs--server--provisioner--0-eth0" Feb 9 10:08:47.016107 env[1133]: 2024-02-09 10:08:46.988 [INFO][2789] dataplane_linux.go 68: Setting the host side veth name to cali60e51b789ff ContainerID="19826650602de94ba171ab962365978c694a7da9af4929fbfc76e3f3f53c19b5" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="10.0.0.130-k8s-nfs--server--provisioner--0-eth0" Feb 9 10:08:47.016107 env[1133]: 2024-02-09 10:08:46.994 [INFO][2789] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="19826650602de94ba171ab962365978c694a7da9af4929fbfc76e3f3f53c19b5" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="10.0.0.130-k8s-nfs--server--provisioner--0-eth0" Feb 9 10:08:47.016264 env[1133]: 2024-02-09 10:08:46.995 [INFO][2789] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="19826650602de94ba171ab962365978c694a7da9af4929fbfc76e3f3f53c19b5" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="10.0.0.130-k8s-nfs--server--provisioner--0-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.130-k8s-nfs--server--provisioner--0-eth0", GenerateName:"nfs-server-provisioner-", Namespace:"default", SelfLink:"", UID:"086432af-4f66-43fa-81b0-d0a1946a2e8a", ResourceVersion:"1012", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 10, 8, 46, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nfs-server-provisioner", "chart":"nfs-server-provisioner-1.8.0", "controller-revision-hash":"nfs-server-provisioner-d5cbb7f57", "heritage":"Helm", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"nfs-server-provisioner", "release":"nfs-server-provisioner", "statefulset.kubernetes.io/pod-name":"nfs-server-provisioner-0"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.130", ContainerID:"19826650602de94ba171ab962365978c694a7da9af4929fbfc76e3f3f53c19b5", Pod:"nfs-server-provisioner-0", Endpoint:"eth0", ServiceAccountName:"nfs-server-provisioner", IPNetworks:[]string{"192.168.2.67/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.nfs-server-provisioner"}, InterfaceName:"cali60e51b789ff", MAC:"32:f8:8e:c2:a8:5c", Ports:[]v3.WorkloadEndpointPort{v3.WorkloadEndpointPort{Name:"nfs", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nfs-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x296, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x296, HostPort:0x0, HostIP:""}}, AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 10:08:47.016264 env[1133]: 2024-02-09 10:08:47.010 [INFO][2789] k8s.go 491: Wrote updated endpoint to datastore ContainerID="19826650602de94ba171ab962365978c694a7da9af4929fbfc76e3f3f53c19b5" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="10.0.0.130-k8s-nfs--server--provisioner--0-eth0" Feb 9 10:08:47.025000 audit[2831]: NETFILTER_CFG table=filter:79 family=2 entries=38 op=nft_register_chain pid=2831 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 10:08:47.025000 audit[2831]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=19500 a0=3 a1=ffffdd019ad0 a2=0 a3=ffffb0a32fa8 items=0 ppid=2121 pid=2831 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:47.025000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 10:08:47.032045 env[1133]: time="2024-02-09T10:08:47.031978879Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 9 10:08:47.032204 env[1133]: time="2024-02-09T10:08:47.032033648Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 9 10:08:47.032286 env[1133]: time="2024-02-09T10:08:47.032259761Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 9 10:08:47.032577 env[1133]: time="2024-02-09T10:08:47.032541282Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/19826650602de94ba171ab962365978c694a7da9af4929fbfc76e3f3f53c19b5 pid=2839 runtime=io.containerd.runc.v2 Feb 9 10:08:47.047683 systemd[1]: Started cri-containerd-19826650602de94ba171ab962365978c694a7da9af4929fbfc76e3f3f53c19b5.scope. Feb 9 10:08:47.073000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.073000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.073000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.073000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.073000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.073000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit: BPF prog-id=102 op=LOAD Feb 9 10:08:47.074000 audit[2850]: AVC avc: denied { bpf } for pid=2850 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit[2850]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000195b38 a2=10 a3=0 items=0 ppid=2839 pid=2850 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:47.074000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3139383236363530363032646539346261313731616239363233363539 Feb 9 10:08:47.074000 audit[2850]: AVC avc: denied { perfmon } for pid=2850 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit[2850]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=2839 pid=2850 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:47.074000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3139383236363530363032646539346261313731616239363233363539 Feb 9 10:08:47.074000 audit[2850]: AVC avc: denied { bpf } for pid=2850 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit[2850]: AVC avc: denied { bpf } for pid=2850 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit[2850]: AVC avc: denied { bpf } for pid=2850 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit[2850]: AVC avc: denied { perfmon } for pid=2850 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit[2850]: AVC avc: denied { perfmon } for pid=2850 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit[2850]: AVC avc: denied { perfmon } for pid=2850 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit[2850]: AVC avc: denied { perfmon } for pid=2850 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit[2850]: AVC avc: denied { perfmon } for pid=2850 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit[2850]: AVC avc: denied { bpf } for pid=2850 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit[2850]: AVC avc: denied { bpf } for pid=2850 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit: BPF prog-id=103 op=LOAD Feb 9 10:08:47.074000 audit[2850]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=2839 pid=2850 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:47.074000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3139383236363530363032646539346261313731616239363233363539 Feb 9 10:08:47.074000 audit[2850]: AVC avc: denied { bpf } for pid=2850 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit[2850]: AVC avc: denied { bpf } for pid=2850 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit[2850]: AVC avc: denied { perfmon } for pid=2850 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit[2850]: AVC avc: denied { perfmon } for pid=2850 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit[2850]: AVC avc: denied { perfmon } for pid=2850 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit[2850]: AVC avc: denied { perfmon } for pid=2850 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit[2850]: AVC avc: denied { perfmon } for pid=2850 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit[2850]: AVC avc: denied { bpf } for pid=2850 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit[2850]: AVC avc: denied { bpf } for pid=2850 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit: BPF prog-id=104 op=LOAD Feb 9 10:08:47.074000 audit[2850]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=2839 pid=2850 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:47.074000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3139383236363530363032646539346261313731616239363233363539 Feb 9 10:08:47.074000 audit: BPF prog-id=104 op=UNLOAD Feb 9 10:08:47.074000 audit: BPF prog-id=103 op=UNLOAD Feb 9 10:08:47.074000 audit[2850]: AVC avc: denied { bpf } for pid=2850 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit[2850]: AVC avc: denied { bpf } for pid=2850 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit[2850]: AVC avc: denied { bpf } for pid=2850 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit[2850]: AVC avc: denied { perfmon } for pid=2850 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit[2850]: AVC avc: denied { perfmon } for pid=2850 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit[2850]: AVC avc: denied { perfmon } for pid=2850 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit[2850]: AVC avc: denied { perfmon } for pid=2850 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit[2850]: AVC avc: denied { perfmon } for pid=2850 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit[2850]: AVC avc: denied { bpf } for pid=2850 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit[2850]: AVC avc: denied { bpf } for pid=2850 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:47.074000 audit: BPF prog-id=105 op=LOAD Feb 9 10:08:47.074000 audit[2850]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=2839 pid=2850 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:47.074000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3139383236363530363032646539346261313731616239363233363539 Feb 9 10:08:47.077097 systemd-resolved[1081]: Failed to determine the local hostname and LLMNR/mDNS names, ignoring: No such device or address Feb 9 10:08:47.094617 env[1133]: time="2024-02-09T10:08:47.094573133Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nfs-server-provisioner-0,Uid:086432af-4f66-43fa-81b0-d0a1946a2e8a,Namespace:default,Attempt:0,} returns sandbox id \"19826650602de94ba171ab962365978c694a7da9af4929fbfc76e3f3f53c19b5\"" Feb 9 10:08:47.096279 env[1133]: time="2024-02-09T10:08:47.096240058Z" level=info msg="PullImage \"registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8\"" Feb 9 10:08:47.131841 kubelet[1436]: E0209 10:08:47.131794 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:48.132325 kubelet[1436]: E0209 10:08:48.132275 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:48.482710 systemd-networkd[1037]: cali60e51b789ff: Gained IPv6LL Feb 9 10:08:49.013219 update_engine[1123]: I0209 10:08:49.012782 1123 update_attempter.cc:509] Updating boot flags... Feb 9 10:08:49.133043 kubelet[1436]: E0209 10:08:49.133001 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:49.287638 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1864368788.mount: Deactivated successfully. Feb 9 10:08:50.133288 kubelet[1436]: E0209 10:08:50.133239 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:51.032119 env[1133]: time="2024-02-09T10:08:51.032068155Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:51.033602 env[1133]: time="2024-02-09T10:08:51.033569725Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:5a42a519e0a8cf95c3c5f18f767c58c8c8b072aaea0a26e5e47a6f206c7df685,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:51.035318 env[1133]: time="2024-02-09T10:08:51.035282839Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:51.036863 env[1133]: time="2024-02-09T10:08:51.036836535Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/sig-storage/nfs-provisioner@sha256:c825f3d5e28bde099bd7a3daace28772d412c9157ad47fa752a9ad0baafc118d,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:08:51.037638 env[1133]: time="2024-02-09T10:08:51.037610062Z" level=info msg="PullImage \"registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8\" returns image reference \"sha256:5a42a519e0a8cf95c3c5f18f767c58c8c8b072aaea0a26e5e47a6f206c7df685\"" Feb 9 10:08:51.039542 env[1133]: time="2024-02-09T10:08:51.039509437Z" level=info msg="CreateContainer within sandbox \"19826650602de94ba171ab962365978c694a7da9af4929fbfc76e3f3f53c19b5\" for container &ContainerMetadata{Name:nfs-server-provisioner,Attempt:0,}" Feb 9 10:08:51.054144 env[1133]: time="2024-02-09T10:08:51.054095649Z" level=info msg="CreateContainer within sandbox \"19826650602de94ba171ab962365978c694a7da9af4929fbfc76e3f3f53c19b5\" for &ContainerMetadata{Name:nfs-server-provisioner,Attempt:0,} returns container id \"f478d601df96fedd62f9f1eb2f0fb57c0e9a2979e1364c317da5d98cb97bfb7e\"" Feb 9 10:08:51.054564 env[1133]: time="2024-02-09T10:08:51.054526777Z" level=info msg="StartContainer for \"f478d601df96fedd62f9f1eb2f0fb57c0e9a2979e1364c317da5d98cb97bfb7e\"" Feb 9 10:08:51.075883 systemd[1]: Started cri-containerd-f478d601df96fedd62f9f1eb2f0fb57c0e9a2979e1364c317da5d98cb97bfb7e.scope. Feb 9 10:08:51.094000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit: BPF prog-id=106 op=LOAD Feb 9 10:08:51.095000 audit[2903]: AVC avc: denied { bpf } for pid=2903 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[2903]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000195b38 a2=10 a3=0 items=0 ppid=2839 pid=2903 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:51.095000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6634373864363031646639366665646436326639663165623266306662 Feb 9 10:08:51.095000 audit[2903]: AVC avc: denied { perfmon } for pid=2903 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[2903]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=2839 pid=2903 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:51.095000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6634373864363031646639366665646436326639663165623266306662 Feb 9 10:08:51.095000 audit[2903]: AVC avc: denied { bpf } for pid=2903 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[2903]: AVC avc: denied { bpf } for pid=2903 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[2903]: AVC avc: denied { bpf } for pid=2903 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[2903]: AVC avc: denied { perfmon } for pid=2903 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[2903]: AVC avc: denied { perfmon } for pid=2903 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[2903]: AVC avc: denied { perfmon } for pid=2903 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[2903]: AVC avc: denied { perfmon } for pid=2903 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[2903]: AVC avc: denied { perfmon } for pid=2903 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[2903]: AVC avc: denied { bpf } for pid=2903 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[2903]: AVC avc: denied { bpf } for pid=2903 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit: BPF prog-id=107 op=LOAD Feb 9 10:08:51.095000 audit[2903]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=2839 pid=2903 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:51.095000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6634373864363031646639366665646436326639663165623266306662 Feb 9 10:08:51.095000 audit[2903]: AVC avc: denied { bpf } for pid=2903 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[2903]: AVC avc: denied { bpf } for pid=2903 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[2903]: AVC avc: denied { perfmon } for pid=2903 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[2903]: AVC avc: denied { perfmon } for pid=2903 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[2903]: AVC avc: denied { perfmon } for pid=2903 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[2903]: AVC avc: denied { perfmon } for pid=2903 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[2903]: AVC avc: denied { perfmon } for pid=2903 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[2903]: AVC avc: denied { bpf } for pid=2903 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[2903]: AVC avc: denied { bpf } for pid=2903 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit: BPF prog-id=108 op=LOAD Feb 9 10:08:51.095000 audit[2903]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=2839 pid=2903 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:51.095000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6634373864363031646639366665646436326639663165623266306662 Feb 9 10:08:51.095000 audit: BPF prog-id=108 op=UNLOAD Feb 9 10:08:51.095000 audit: BPF prog-id=107 op=UNLOAD Feb 9 10:08:51.095000 audit[2903]: AVC avc: denied { bpf } for pid=2903 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[2903]: AVC avc: denied { bpf } for pid=2903 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[2903]: AVC avc: denied { bpf } for pid=2903 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[2903]: AVC avc: denied { perfmon } for pid=2903 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[2903]: AVC avc: denied { perfmon } for pid=2903 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[2903]: AVC avc: denied { perfmon } for pid=2903 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[2903]: AVC avc: denied { perfmon } for pid=2903 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[2903]: AVC avc: denied { perfmon } for pid=2903 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[2903]: AVC avc: denied { bpf } for pid=2903 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit[2903]: AVC avc: denied { bpf } for pid=2903 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:08:51.095000 audit: BPF prog-id=109 op=LOAD Feb 9 10:08:51.095000 audit[2903]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=2839 pid=2903 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:51.095000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6634373864363031646639366665646436326639663165623266306662 Feb 9 10:08:51.108020 kubelet[1436]: E0209 10:08:51.107993 1436 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:51.109784 env[1133]: time="2024-02-09T10:08:51.109747829Z" level=info msg="StartContainer for \"f478d601df96fedd62f9f1eb2f0fb57c0e9a2979e1364c317da5d98cb97bfb7e\" returns successfully" Feb 9 10:08:51.133459 kubelet[1436]: E0209 10:08:51.133429 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:51.225000 audit[2932]: AVC avc: denied { search } for pid=2932 comm="rpcbind" name="crypto" dev="proc" ino=17873 scontext=system_u:system_r:svirt_lxc_net_t:s0:c214,c465 tcontext=system_u:object_r:sysctl_crypto_t:s0 tclass=dir permissive=0 Feb 9 10:08:51.225000 audit[2932]: SYSCALL arch=c00000b7 syscall=56 success=no exit=-13 a0=ffffffffffffff9c a1=ffffb521f000 a2=0 a3=0 items=0 ppid=2914 pid=2932 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="rpcbind" exe="/usr/bin/rpcbind" subj=system_u:system_r:svirt_lxc_net_t:s0:c214,c465 key=(null) Feb 9 10:08:51.225000 audit: PROCTITLE proctitle=2F7573722F7362696E2F72706362696E64002D77 Feb 9 10:08:51.269000 audit[2937]: AVC avc: denied { search } for pid=2937 comm="dbus-daemon" name="crypto" dev="proc" ino=17873 scontext=system_u:system_r:svirt_lxc_net_t:s0:c214,c465 tcontext=system_u:object_r:sysctl_crypto_t:s0 tclass=dir permissive=0 Feb 9 10:08:51.269000 audit[2937]: SYSCALL arch=c00000b7 syscall=56 success=no exit=-13 a0=ffffffffffffff9c a1=ffff9e0ef000 a2=0 a3=0 items=0 ppid=2914 pid=2937 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="dbus-daemon" exe="/usr/bin/dbus-daemon" subj=system_u:system_r:svirt_lxc_net_t:s0:c214,c465 key=(null) Feb 9 10:08:51.269000 audit: PROCTITLE proctitle=646275732D6461656D6F6E002D2D73797374656D002D2D6E6F70696466696C65 Feb 9 10:08:51.279172 kubelet[1436]: I0209 10:08:51.279136 1436 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="default/nfs-server-provisioner-0" podStartSLOduration=1.337106355 podCreationTimestamp="2024-02-09 10:08:46 +0000 UTC" firstStartedPulling="2024-02-09 10:08:47.095837879 +0000 UTC m=+36.441598118" lastFinishedPulling="2024-02-09 10:08:51.037828167 +0000 UTC m=+40.383588366" observedRunningTime="2024-02-09 10:08:51.278949106 +0000 UTC m=+40.624709345" watchObservedRunningTime="2024-02-09 10:08:51.279096603 +0000 UTC m=+40.624856802" Feb 9 10:08:51.280000 audit[2939]: AVC avc: denied { watch } for pid=2939 comm="dbus-daemon" path="/usr/share/dbus-1/system.d" dev="overlay" ino=537947 scontext=system_u:system_r:svirt_lxc_net_t:s0:c214,c465 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c214,c465 tclass=dir permissive=0 Feb 9 10:08:51.280000 audit[2939]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=6 a1=aaaafbd90ce0 a2=2c8 a3=aaaafbd8ca60 items=0 ppid=2914 pid=2939 auid=4294967295 uid=81 gid=81 euid=81 suid=81 fsuid=81 egid=81 sgid=81 fsgid=81 tty=(none) ses=4294967295 comm="dbus-daemon" exe="/usr/bin/dbus-daemon" subj=system_u:system_r:svirt_lxc_net_t:s0:c214,c465 key=(null) Feb 9 10:08:51.280000 audit: PROCTITLE proctitle=646275732D6461656D6F6E002D2D73797374656D002D2D6E6F70696466696C65 Feb 9 10:08:51.284000 audit[2941]: NETFILTER_CFG table=filter:80 family=2 entries=20 op=nft_register_rule pid=2941 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 10:08:51.284000 audit[2941]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=2844 a0=3 a1=ffffdbf421f0 a2=0 a3=ffffa72606c0 items=0 ppid=1700 pid=2941 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:51.284000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 10:08:51.289000 audit[2940]: AVC avc: denied { read } for pid=2940 comm="ganesha.nfsd" name="overcommit_memory" dev="proc" ino=19507 scontext=system_u:system_r:svirt_lxc_net_t:s0:c214,c465 tcontext=system_u:object_r:sysctl_vm_overcommit_t:s0 tclass=file permissive=0 Feb 9 10:08:51.289000 audit[2940]: SYSCALL arch=c00000b7 syscall=56 success=no exit=-13 a0=ffffff9c a1=ffffac42a570 a2=80000 a3=0 items=0 ppid=2914 pid=2940 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ganesha.nfsd" exe="/usr/local/bin/ganesha.nfsd" subj=system_u:system_r:svirt_lxc_net_t:s0:c214,c465 key=(null) Feb 9 10:08:51.289000 audit: PROCTITLE proctitle=67616E657368612E6E667364002D46002D4C002F6578706F72742F67616E657368612E6C6F67002D70002F7661722F72756E2F67616E657368612E706964002D66002F6578706F72742F7666732E636F6E66 Feb 9 10:08:51.289000 audit[2940]: AVC avc: denied { search } for pid=2940 comm="ganesha.nfsd" name="crypto" dev="proc" ino=17873 scontext=system_u:system_r:svirt_lxc_net_t:s0:c214,c465 tcontext=system_u:object_r:sysctl_crypto_t:s0 tclass=dir permissive=0 Feb 9 10:08:51.289000 audit[2940]: SYSCALL arch=c00000b7 syscall=56 success=no exit=-13 a0=ffffffffffffff9c a1=ffffab7bf000 a2=0 a3=0 items=0 ppid=2914 pid=2940 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ganesha.nfsd" exe="/usr/local/bin/ganesha.nfsd" subj=system_u:system_r:svirt_lxc_net_t:s0:c214,c465 key=(null) Feb 9 10:08:51.289000 audit: PROCTITLE proctitle=67616E657368612E6E667364002D46002D4C002F6578706F72742F67616E657368612E6C6F67002D70002F7661722F72756E2F67616E657368612E706964002D66002F6578706F72742F7666732E636F6E66 Feb 9 10:08:51.287000 audit[2941]: NETFILTER_CFG table=nat:81 family=2 entries=104 op=nft_register_chain pid=2941 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 10:08:51.287000 audit[2941]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=47436 a0=3 a1=ffffdbf421f0 a2=0 a3=ffffa72606c0 items=0 ppid=1700 pid=2941 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:08:51.287000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 10:08:52.134569 kubelet[1436]: E0209 10:08:52.134536 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:53.135265 kubelet[1436]: E0209 10:08:53.135231 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:54.136315 kubelet[1436]: E0209 10:08:54.136283 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:55.136964 kubelet[1436]: E0209 10:08:55.136926 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:56.138020 kubelet[1436]: E0209 10:08:56.137943 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:57.138273 kubelet[1436]: E0209 10:08:57.138242 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:58.042805 kubelet[1436]: E0209 10:08:58.042517 1436 dns.go:158] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 1.1.1.1 1.0.0.1 8.8.8.8" Feb 9 10:08:58.138962 kubelet[1436]: E0209 10:08:58.138903 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:08:59.139831 kubelet[1436]: E0209 10:08:59.139777 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:09:00.140108 kubelet[1436]: E0209 10:09:00.140051 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:09:01.033540 kubelet[1436]: I0209 10:09:01.033491 1436 topology_manager.go:212] "Topology Admit Handler" Feb 9 10:09:01.038545 systemd[1]: Created slice kubepods-besteffort-pod7ebc0321_5c4a_44b2_b825_26baf0cbe913.slice. Feb 9 10:09:01.140518 kubelet[1436]: E0209 10:09:01.140482 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:09:01.193816 kubelet[1436]: I0209 10:09:01.193774 1436 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-chvrd\" (UniqueName: \"kubernetes.io/projected/7ebc0321-5c4a-44b2-b825-26baf0cbe913-kube-api-access-chvrd\") pod \"test-pod-1\" (UID: \"7ebc0321-5c4a-44b2-b825-26baf0cbe913\") " pod="default/test-pod-1" Feb 9 10:09:01.193816 kubelet[1436]: I0209 10:09:01.193827 1436 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"pvc-1aa6726e-4112-4091-88ac-814941f9b7ef\" (UniqueName: \"kubernetes.io/nfs/7ebc0321-5c4a-44b2-b825-26baf0cbe913-pvc-1aa6726e-4112-4091-88ac-814941f9b7ef\") pod \"test-pod-1\" (UID: \"7ebc0321-5c4a-44b2-b825-26baf0cbe913\") " pod="default/test-pod-1" Feb 9 10:09:01.316032 kernel: Failed to create system directory netfs Feb 9 10:09:01.316149 kernel: kauditd_printk_skb: 140 callbacks suppressed Feb 9 10:09:01.316173 kernel: audit: type=1400 audit(1707473341.313:799): avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.316197 kernel: Failed to create system directory netfs Feb 9 10:09:01.313000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.313000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.316743 kernel: audit: type=1400 audit(1707473341.313:799): avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.320747 kernel: Failed to create system directory netfs Feb 9 10:09:01.320841 kernel: audit: type=1400 audit(1707473341.313:799): avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.313000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.322995 kernel: Failed to create system directory netfs Feb 9 10:09:01.323042 kernel: audit: type=1400 audit(1707473341.313:799): avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.313000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.325749 kernel: audit: type=1300 audit(1707473341.313:799): arch=c00000b7 syscall=105 success=yes exit=0 a0=aaab065f15e0 a1=12c14 a2=aaaade1be028 a3=aaab065e2010 items=0 ppid=1897 pid=2989 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:01.313000 audit[2989]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=aaab065f15e0 a1=12c14 a2=aaaade1be028 a3=aaab065e2010 items=0 ppid=1897 pid=2989 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:01.313000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Feb 9 10:09:01.329463 kernel: audit: type=1327 audit(1707473341.313:799): proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Feb 9 10:09:01.327000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.334379 kernel: Failed to create system directory fscache Feb 9 10:09:01.334419 kernel: audit: type=1400 audit(1707473341.327:800): avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.334441 kernel: Failed to create system directory fscache Feb 9 10:09:01.334456 kernel: audit: type=1400 audit(1707473341.327:800): avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.327000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.334788 kernel: Failed to create system directory fscache Feb 9 10:09:01.334839 kernel: Failed to create system directory fscache Feb 9 10:09:01.336600 kernel: audit: type=1400 audit(1707473341.327:800): avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.327000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.337019 kernel: Failed to create system directory fscache Feb 9 10:09:01.327000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.339264 kernel: audit: type=1400 audit(1707473341.327:800): avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.339304 kernel: Failed to create system directory fscache Feb 9 10:09:01.327000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.327000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.327000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.327000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.342756 kernel: Failed to create system directory fscache Feb 9 10:09:01.342780 kernel: Failed to create system directory fscache Feb 9 10:09:01.342813 kernel: Failed to create system directory fscache Feb 9 10:09:01.327000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.327000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.327000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.343966 kernel: Failed to create system directory fscache Feb 9 10:09:01.343993 kernel: Failed to create system directory fscache Feb 9 10:09:01.344014 kernel: Failed to create system directory fscache Feb 9 10:09:01.327000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.327000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.344767 kernel: Failed to create system directory fscache Feb 9 10:09:01.344787 kernel: Failed to create system directory fscache Feb 9 10:09:01.327000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.347766 kernel: FS-Cache: Loaded Feb 9 10:09:01.327000 audit[2989]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=aaab06804210 a1=4c344 a2=aaaade1be028 a3=aaab065e2010 items=0 ppid=1897 pid=2989 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:01.327000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.365949 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.365988 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.366004 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.366740 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.366780 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.367939 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.367970 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.367988 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.368732 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.368763 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.369924 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.369952 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.369967 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.371135 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.371169 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.371194 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.371937 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.371961 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.372733 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.372761 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.373960 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.373987 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.374003 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.374774 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.374895 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.376002 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.376033 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.376050 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.376808 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.376839 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.378035 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.378064 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.378080 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.378858 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.378907 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.380076 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.380108 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.380123 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.380897 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.380933 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.382140 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.382171 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.382190 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.382970 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.383002 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.383786 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.383816 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.385035 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.385065 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.385079 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.385890 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.385942 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.387109 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.387136 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.387165 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.387941 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.387978 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.388748 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.388774 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.389975 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.390001 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.390021 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.390790 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.390814 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.392016 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.392051 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.392066 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.392840 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.392863 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.394074 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.394105 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.394138 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.394895 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.394935 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.396141 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.396184 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.396199 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.396973 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.397015 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.397864 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.398742 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.398797 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.398815 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.400078 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.400109 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.400138 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.400922 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.400960 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.401733 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.401773 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.402989 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.403025 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.403040 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.403817 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.403847 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.404836 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.405844 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.405886 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.405903 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.407122 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.407151 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.408064 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.408107 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.408206 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.408912 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.408952 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.409763 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.409814 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.412116 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.412190 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.412207 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.412220 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.412233 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.410000 audit[2993]: NETFILTER_CFG table=filter:82 family=2 entries=9 op=nft_register_rule pid=2993 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 10:09:01.410000 audit[2993]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=3548 a0=3 a1=fffff1781820 a2=0 a3=ffffbe6cb6c0 items=0 ppid=1700 pid=2993 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:01.410000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.412821 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.412860 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.414061 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.414092 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.414111 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.414929 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.415810 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.415840 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.415854 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.417059 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.417094 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.417107 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.359000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.417887 kernel: Failed to create system directory sunrpc Feb 9 10:09:01.421112 kubelet[1436]: I0209 10:09:01.421073 1436 topology_manager.go:212] "Topology Admit Handler" Feb 9 10:09:01.424879 kernel: RPC: Registered named UNIX socket transport module. Feb 9 10:09:01.424944 kernel: RPC: Registered udp transport module. Feb 9 10:09:01.424980 kernel: RPC: Registered tcp transport module. Feb 9 10:09:01.425955 kernel: RPC: Registered tcp NFSv4.1 backchannel transport module. Feb 9 10:09:01.359000 audit[2989]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=aaab06850560 a1=fbb6c a2=aaaade1be028 a3=aaab065e2010 items=6 ppid=1897 pid=2989 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:01.359000 audit: CWD cwd="/" Feb 9 10:09:01.359000 audit: PATH item=0 name=(null) inode=1 dev=00:07 mode=040700 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 10:09:01.359000 audit: PATH item=1 name=(null) inode=17960 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 10:09:01.359000 audit: PATH item=2 name=(null) inode=17960 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 10:09:01.359000 audit: PATH item=3 name=(null) inode=17961 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 10:09:01.359000 audit: PATH item=4 name=(null) inode=17960 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 10:09:01.359000 audit: PATH item=5 name=(null) inode=17962 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Feb 9 10:09:01.359000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Feb 9 10:09:01.428000 audit[2993]: NETFILTER_CFG table=nat:83 family=2 entries=44 op=nft_register_rule pid=2993 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 10:09:01.428000 audit[2993]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=14220 a0=3 a1=fffff1781820 a2=0 a3=ffffbe6cb6c0 items=0 ppid=1700 pid=2993 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:01.428000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 10:09:01.429513 systemd[1]: Created slice kubepods-besteffort-podf6936b4e_0060_4a54_811a_1ba7de9bf7c9.slice. Feb 9 10:09:01.441000 audit[2997]: NETFILTER_CFG table=filter:84 family=2 entries=10 op=nft_register_rule pid=2997 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 10:09:01.441000 audit[2997]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=3548 a0=3 a1=ffffd0c46cf0 a2=0 a3=ffffb94756c0 items=0 ppid=1700 pid=2997 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:01.441000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.448112 kernel: Failed to create system directory nfs Feb 9 10:09:01.448173 kernel: Failed to create system directory nfs Feb 9 10:09:01.448193 kernel: Failed to create system directory nfs Feb 9 10:09:01.448206 kernel: Failed to create system directory nfs Feb 9 10:09:01.448220 kernel: Failed to create system directory nfs Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.448875 kernel: Failed to create system directory nfs Feb 9 10:09:01.448912 kernel: Failed to create system directory nfs Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.450028 kernel: Failed to create system directory nfs Feb 9 10:09:01.450066 kernel: Failed to create system directory nfs Feb 9 10:09:01.450084 kernel: Failed to create system directory nfs Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.450792 kernel: Failed to create system directory nfs Feb 9 10:09:01.450827 kernel: Failed to create system directory nfs Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.451941 kernel: Failed to create system directory nfs Feb 9 10:09:01.451973 kernel: Failed to create system directory nfs Feb 9 10:09:01.451988 kernel: Failed to create system directory nfs Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.453118 kernel: Failed to create system directory nfs Feb 9 10:09:01.453155 kernel: Failed to create system directory nfs Feb 9 10:09:01.453169 kernel: Failed to create system directory nfs Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.453885 kernel: Failed to create system directory nfs Feb 9 10:09:01.453925 kernel: Failed to create system directory nfs Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.455045 kernel: Failed to create system directory nfs Feb 9 10:09:01.455084 kernel: Failed to create system directory nfs Feb 9 10:09:01.455100 kernel: Failed to create system directory nfs Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.455817 kernel: Failed to create system directory nfs Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.457100 kernel: Failed to create system directory nfs Feb 9 10:09:01.457128 kernel: Failed to create system directory nfs Feb 9 10:09:01.457149 kernel: Failed to create system directory nfs Feb 9 10:09:01.457169 kernel: Failed to create system directory nfs Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.457874 kernel: Failed to create system directory nfs Feb 9 10:09:01.457903 kernel: Failed to create system directory nfs Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.459037 kernel: Failed to create system directory nfs Feb 9 10:09:01.459071 kernel: Failed to create system directory nfs Feb 9 10:09:01.459085 kernel: Failed to create system directory nfs Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.459887 kernel: Failed to create system directory nfs Feb 9 10:09:01.459924 kernel: Failed to create system directory nfs Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.461058 kernel: Failed to create system directory nfs Feb 9 10:09:01.461092 kernel: Failed to create system directory nfs Feb 9 10:09:01.461110 kernel: Failed to create system directory nfs Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.461818 kernel: Failed to create system directory nfs Feb 9 10:09:01.461850 kernel: Failed to create system directory nfs Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.462965 kernel: Failed to create system directory nfs Feb 9 10:09:01.462995 kernel: Failed to create system directory nfs Feb 9 10:09:01.463009 kernel: Failed to create system directory nfs Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.463727 kernel: Failed to create system directory nfs Feb 9 10:09:01.463756 kernel: Failed to create system directory nfs Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.464871 kernel: Failed to create system directory nfs Feb 9 10:09:01.464909 kernel: Failed to create system directory nfs Feb 9 10:09:01.464923 kernel: Failed to create system directory nfs Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.466038 kernel: Failed to create system directory nfs Feb 9 10:09:01.466068 kernel: Failed to create system directory nfs Feb 9 10:09:01.466082 kernel: Failed to create system directory nfs Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.466808 kernel: Failed to create system directory nfs Feb 9 10:09:01.466851 kernel: Failed to create system directory nfs Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.467953 kernel: Failed to create system directory nfs Feb 9 10:09:01.467984 kernel: Failed to create system directory nfs Feb 9 10:09:01.467998 kernel: Failed to create system directory nfs Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.469109 kernel: Failed to create system directory nfs Feb 9 10:09:01.469158 kernel: Failed to create system directory nfs Feb 9 10:09:01.469180 kernel: Failed to create system directory nfs Feb 9 10:09:01.442000 audit[2989]: AVC avc: denied { confidentiality } for pid=2989 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.442000 audit[2997]: NETFILTER_CFG table=nat:85 family=2 entries=44 op=nft_register_rule pid=2997 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 10:09:01.442000 audit[2997]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=14220 a0=3 a1=ffffd0c46cf0 a2=0 a3=ffffb94756c0 items=0 ppid=1700 pid=2997 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:01.442000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 10:09:01.442000 audit[2989]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=aaab0697cb40 a1=ae35c a2=aaaade1be028 a3=aaab065e2010 items=0 ppid=1897 pid=2989 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:01.442000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Feb 9 10:09:01.478801 kernel: FS-Cache: Netfs 'nfs' registered for caching Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.504069 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.504111 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.505151 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.505189 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.505738 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.507118 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.507153 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.507171 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.507741 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.509133 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.509167 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.509182 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.509749 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.511123 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.511170 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.511187 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.511745 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.513168 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.513200 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.513222 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.513771 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.514735 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.514755 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.516134 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.516172 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.516186 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.516735 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.518213 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.518246 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.518271 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.518794 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.519975 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.520006 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.520978 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.521007 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.521995 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.522026 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.523008 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.523035 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.524011 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.524038 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.525012 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.525040 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.526041 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.526068 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.527014 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.527039 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.527984 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.528011 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.529038 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.529069 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.530053 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.530081 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.531097 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.531134 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.532128 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.532179 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.532773 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.533770 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.533799 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.534748 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.534784 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.535737 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.535771 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.536735 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.536765 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.538110 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.538137 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.538171 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.539128 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.539169 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.540121 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.540154 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.541093 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.541120 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.542097 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.542131 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.543099 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.543135 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.544112 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.544155 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.545113 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.545149 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.546101 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.546128 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.547081 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.547121 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.548089 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.548116 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.549075 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.549111 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.550082 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.550120 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.496000 audit[2999]: AVC avc: denied { confidentiality } for pid=2999 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.550734 kernel: Failed to create system directory nfs4 Feb 9 10:09:01.597239 kubelet[1436]: I0209 10:09:01.597184 1436 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"calico-apiserver-certs\" (UniqueName: \"kubernetes.io/secret/f6936b4e-0060-4a54-811a-1ba7de9bf7c9-calico-apiserver-certs\") pod \"calico-apiserver-58cc4975f9-hrj4f\" (UID: \"f6936b4e-0060-4a54-811a-1ba7de9bf7c9\") " pod="calico-apiserver/calico-apiserver-58cc4975f9-hrj4f" Feb 9 10:09:01.597239 kubelet[1436]: I0209 10:09:01.597240 1436 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-vcdc8\" (UniqueName: \"kubernetes.io/projected/f6936b4e-0060-4a54-811a-1ba7de9bf7c9-kube-api-access-vcdc8\") pod \"calico-apiserver-58cc4975f9-hrj4f\" (UID: \"f6936b4e-0060-4a54-811a-1ba7de9bf7c9\") " pod="calico-apiserver/calico-apiserver-58cc4975f9-hrj4f" Feb 9 10:09:01.655780 kernel: NFS: Registering the id_resolver key type Feb 9 10:09:01.655833 kernel: Key type id_resolver registered Feb 9 10:09:01.655848 kernel: Key type id_legacy registered Feb 9 10:09:01.496000 audit[2999]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=ffffb722b010 a1=167c04 a2=aaaab143e028 a3=aaaac337c010 items=0 ppid=1897 pid=2999 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:01.496000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D006E66737634 Feb 9 10:09:01.660000 audit[3000]: AVC avc: denied { confidentiality } for pid=3000 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.660000 audit[3000]: AVC avc: denied { confidentiality } for pid=3000 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.660000 audit[3000]: AVC avc: denied { confidentiality } for pid=3000 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.660000 audit[3000]: AVC avc: denied { confidentiality } for pid=3000 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.665007 kernel: Failed to create system directory rpcgss Feb 9 10:09:01.665036 kernel: Failed to create system directory rpcgss Feb 9 10:09:01.665049 kernel: Failed to create system directory rpcgss Feb 9 10:09:01.665062 kernel: Failed to create system directory rpcgss Feb 9 10:09:01.665074 kernel: Failed to create system directory rpcgss Feb 9 10:09:01.660000 audit[3000]: AVC avc: denied { confidentiality } for pid=3000 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.660000 audit[3000]: AVC avc: denied { confidentiality } for pid=3000 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.665832 kernel: Failed to create system directory rpcgss Feb 9 10:09:01.665851 kernel: Failed to create system directory rpcgss Feb 9 10:09:01.660000 audit[3000]: AVC avc: denied { confidentiality } for pid=3000 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.660000 audit[3000]: AVC avc: denied { confidentiality } for pid=3000 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.660000 audit[3000]: AVC avc: denied { confidentiality } for pid=3000 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.667060 kernel: Failed to create system directory rpcgss Feb 9 10:09:01.667081 kernel: Failed to create system directory rpcgss Feb 9 10:09:01.667095 kernel: Failed to create system directory rpcgss Feb 9 10:09:01.660000 audit[3000]: AVC avc: denied { confidentiality } for pid=3000 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.660000 audit[3000]: AVC avc: denied { confidentiality } for pid=3000 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.667876 kernel: Failed to create system directory rpcgss Feb 9 10:09:01.667893 kernel: Failed to create system directory rpcgss Feb 9 10:09:01.660000 audit[3000]: AVC avc: denied { confidentiality } for pid=3000 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.660000 audit[3000]: AVC avc: denied { confidentiality } for pid=3000 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.660000 audit[3000]: AVC avc: denied { confidentiality } for pid=3000 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.669102 kernel: Failed to create system directory rpcgss Feb 9 10:09:01.669126 kernel: Failed to create system directory rpcgss Feb 9 10:09:01.669141 kernel: Failed to create system directory rpcgss Feb 9 10:09:01.660000 audit[3000]: AVC avc: denied { confidentiality } for pid=3000 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.660000 audit[3000]: AVC avc: denied { confidentiality } for pid=3000 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.669921 kernel: Failed to create system directory rpcgss Feb 9 10:09:01.669938 kernel: Failed to create system directory rpcgss Feb 9 10:09:01.660000 audit[3000]: AVC avc: denied { confidentiality } for pid=3000 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.660000 audit[3000]: AVC avc: denied { confidentiality } for pid=3000 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.670726 kernel: Failed to create system directory rpcgss Feb 9 10:09:01.670744 kernel: Failed to create system directory rpcgss Feb 9 10:09:01.660000 audit[3000]: AVC avc: denied { confidentiality } for pid=3000 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.660000 audit[3000]: AVC avc: denied { confidentiality } for pid=3000 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.660000 audit[3000]: AVC avc: denied { confidentiality } for pid=3000 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.671940 kernel: Failed to create system directory rpcgss Feb 9 10:09:01.671961 kernel: Failed to create system directory rpcgss Feb 9 10:09:01.671974 kernel: Failed to create system directory rpcgss Feb 9 10:09:01.660000 audit[3000]: AVC avc: denied { confidentiality } for pid=3000 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.660000 audit[3000]: AVC avc: denied { confidentiality } for pid=3000 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.672743 kernel: Failed to create system directory rpcgss Feb 9 10:09:01.672767 kernel: Failed to create system directory rpcgss Feb 9 10:09:01.660000 audit[3000]: AVC avc: denied { confidentiality } for pid=3000 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.660000 audit[3000]: AVC avc: denied { confidentiality } for pid=3000 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.660000 audit[3000]: AVC avc: denied { confidentiality } for pid=3000 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Feb 9 10:09:01.673966 kernel: Failed to create system directory rpcgss Feb 9 10:09:01.673981 kernel: Failed to create system directory rpcgss Feb 9 10:09:01.660000 audit[3000]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=ffff94653010 a1=3e09c a2=aaaadc19e028 a3=aaaae45c3010 items=0 ppid=1897 pid=3000 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:01.660000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D007270632D617574682D36 Feb 9 10:09:01.690121 nfsidmap[3008]: nss_getpwnam: name 'root@nfs-server-provisioner.default.svc.cluster.local' does not map into domain 'localdomain' Feb 9 10:09:01.692833 nfsidmap[3011]: nss_name_to_gid: name 'root@nfs-server-provisioner.default.svc.cluster.local' does not map into domain 'localdomain' Feb 9 10:09:01.703000 audit[1194]: AVC avc: denied { watch_reads } for pid=1194 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2403 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 9 10:09:01.703000 audit[1194]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=e a1=aaaadfcbb0e0 a2=10 a3=0 items=0 ppid=1 pid=1194 auid=4294967295 uid=500 gid=500 euid=500 suid=500 fsuid=500 egid=500 sgid=500 fsgid=500 tty=(none) ses=4294967295 comm="systemd" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:01.703000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D64002D2D75736572 Feb 9 10:09:01.703000 audit[1194]: AVC avc: denied { watch_reads } for pid=1194 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2403 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 9 10:09:01.703000 audit[1194]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=e a1=aaaadfcbb0e0 a2=10 a3=0 items=0 ppid=1 pid=1194 auid=4294967295 uid=500 gid=500 euid=500 suid=500 fsuid=500 egid=500 sgid=500 fsgid=500 tty=(none) ses=4294967295 comm="systemd" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:01.703000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D64002D2D75736572 Feb 9 10:09:01.703000 audit[1194]: AVC avc: denied { watch_reads } for pid=1194 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2403 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 9 10:09:01.703000 audit[1194]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=e a1=aaaadfcbb0e0 a2=10 a3=0 items=0 ppid=1 pid=1194 auid=4294967295 uid=500 gid=500 euid=500 suid=500 fsuid=500 egid=500 sgid=500 fsgid=500 tty=(none) ses=4294967295 comm="systemd" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:01.703000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D64002D2D75736572 Feb 9 10:09:01.703000 audit[1]: AVC avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2403 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 9 10:09:01.703000 audit[1]: AVC avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2403 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 9 10:09:01.703000 audit[1]: AVC avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2403 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Feb 9 10:09:01.733490 env[1133]: time="2024-02-09T10:09:01.733101416Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-apiserver-58cc4975f9-hrj4f,Uid:f6936b4e-0060-4a54-811a-1ba7de9bf7c9,Namespace:calico-apiserver,Attempt:0,}" Feb 9 10:09:01.845765 systemd-networkd[1037]: cali27e821e5b3c: Link UP Feb 9 10:09:01.847336 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Feb 9 10:09:01.847392 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali27e821e5b3c: link becomes ready Feb 9 10:09:01.847554 systemd-networkd[1037]: cali27e821e5b3c: Gained carrier Feb 9 10:09:01.860736 env[1133]: 2024-02-09 10:09:01.780 [INFO][3016] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {10.0.0.130-k8s-calico--apiserver--58cc4975f9--hrj4f-eth0 calico-apiserver-58cc4975f9- calico-apiserver f6936b4e-0060-4a54-811a-1ba7de9bf7c9 1117 0 2024-02-09 10:09:01 +0000 UTC map[apiserver:true app.kubernetes.io/name:calico-apiserver k8s-app:calico-apiserver pod-template-hash:58cc4975f9 projectcalico.org/namespace:calico-apiserver projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:calico-apiserver] map[] [] [] []} {k8s 10.0.0.130 calico-apiserver-58cc4975f9-hrj4f eth0 calico-apiserver [] [] [kns.calico-apiserver ksa.calico-apiserver.calico-apiserver] cali27e821e5b3c [] []}} ContainerID="feeea350711d75b0d50e1ac682f1e95bfc625b896fb7e0447c902ee1fc72538c" Namespace="calico-apiserver" Pod="calico-apiserver-58cc4975f9-hrj4f" WorkloadEndpoint="10.0.0.130-k8s-calico--apiserver--58cc4975f9--hrj4f-" Feb 9 10:09:01.860736 env[1133]: 2024-02-09 10:09:01.780 [INFO][3016] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="feeea350711d75b0d50e1ac682f1e95bfc625b896fb7e0447c902ee1fc72538c" Namespace="calico-apiserver" Pod="calico-apiserver-58cc4975f9-hrj4f" WorkloadEndpoint="10.0.0.130-k8s-calico--apiserver--58cc4975f9--hrj4f-eth0" Feb 9 10:09:01.860736 env[1133]: 2024-02-09 10:09:01.803 [INFO][3031] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="feeea350711d75b0d50e1ac682f1e95bfc625b896fb7e0447c902ee1fc72538c" HandleID="k8s-pod-network.feeea350711d75b0d50e1ac682f1e95bfc625b896fb7e0447c902ee1fc72538c" Workload="10.0.0.130-k8s-calico--apiserver--58cc4975f9--hrj4f-eth0" Feb 9 10:09:01.860736 env[1133]: 2024-02-09 10:09:01.816 [INFO][3031] ipam_plugin.go 268: Auto assigning IP ContainerID="feeea350711d75b0d50e1ac682f1e95bfc625b896fb7e0447c902ee1fc72538c" HandleID="k8s-pod-network.feeea350711d75b0d50e1ac682f1e95bfc625b896fb7e0447c902ee1fc72538c" Workload="10.0.0.130-k8s-calico--apiserver--58cc4975f9--hrj4f-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x4000517e30), Attrs:map[string]string{"namespace":"calico-apiserver", "node":"10.0.0.130", "pod":"calico-apiserver-58cc4975f9-hrj4f", "timestamp":"2024-02-09 10:09:01.803575481 +0000 UTC"}, Hostname:"10.0.0.130", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 9 10:09:01.860736 env[1133]: 2024-02-09 10:09:01.816 [INFO][3031] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 10:09:01.860736 env[1133]: 2024-02-09 10:09:01.816 [INFO][3031] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 10:09:01.860736 env[1133]: 2024-02-09 10:09:01.816 [INFO][3031] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '10.0.0.130' Feb 9 10:09:01.860736 env[1133]: 2024-02-09 10:09:01.818 [INFO][3031] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.feeea350711d75b0d50e1ac682f1e95bfc625b896fb7e0447c902ee1fc72538c" host="10.0.0.130" Feb 9 10:09:01.860736 env[1133]: 2024-02-09 10:09:01.823 [INFO][3031] ipam.go 372: Looking up existing affinities for host host="10.0.0.130" Feb 9 10:09:01.860736 env[1133]: 2024-02-09 10:09:01.828 [INFO][3031] ipam.go 489: Trying affinity for 192.168.2.64/26 host="10.0.0.130" Feb 9 10:09:01.860736 env[1133]: 2024-02-09 10:09:01.830 [INFO][3031] ipam.go 155: Attempting to load block cidr=192.168.2.64/26 host="10.0.0.130" Feb 9 10:09:01.860736 env[1133]: 2024-02-09 10:09:01.832 [INFO][3031] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.2.64/26 host="10.0.0.130" Feb 9 10:09:01.860736 env[1133]: 2024-02-09 10:09:01.832 [INFO][3031] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.2.64/26 handle="k8s-pod-network.feeea350711d75b0d50e1ac682f1e95bfc625b896fb7e0447c902ee1fc72538c" host="10.0.0.130" Feb 9 10:09:01.860736 env[1133]: 2024-02-09 10:09:01.834 [INFO][3031] ipam.go 1682: Creating new handle: k8s-pod-network.feeea350711d75b0d50e1ac682f1e95bfc625b896fb7e0447c902ee1fc72538c Feb 9 10:09:01.860736 env[1133]: 2024-02-09 10:09:01.837 [INFO][3031] ipam.go 1203: Writing block in order to claim IPs block=192.168.2.64/26 handle="k8s-pod-network.feeea350711d75b0d50e1ac682f1e95bfc625b896fb7e0447c902ee1fc72538c" host="10.0.0.130" Feb 9 10:09:01.860736 env[1133]: 2024-02-09 10:09:01.842 [INFO][3031] ipam.go 1216: Successfully claimed IPs: [192.168.2.68/26] block=192.168.2.64/26 handle="k8s-pod-network.feeea350711d75b0d50e1ac682f1e95bfc625b896fb7e0447c902ee1fc72538c" host="10.0.0.130" Feb 9 10:09:01.860736 env[1133]: 2024-02-09 10:09:01.842 [INFO][3031] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.2.68/26] handle="k8s-pod-network.feeea350711d75b0d50e1ac682f1e95bfc625b896fb7e0447c902ee1fc72538c" host="10.0.0.130" Feb 9 10:09:01.860736 env[1133]: 2024-02-09 10:09:01.842 [INFO][3031] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 10:09:01.860736 env[1133]: 2024-02-09 10:09:01.842 [INFO][3031] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.2.68/26] IPv6=[] ContainerID="feeea350711d75b0d50e1ac682f1e95bfc625b896fb7e0447c902ee1fc72538c" HandleID="k8s-pod-network.feeea350711d75b0d50e1ac682f1e95bfc625b896fb7e0447c902ee1fc72538c" Workload="10.0.0.130-k8s-calico--apiserver--58cc4975f9--hrj4f-eth0" Feb 9 10:09:01.861320 env[1133]: 2024-02-09 10:09:01.843 [INFO][3016] k8s.go 385: Populated endpoint ContainerID="feeea350711d75b0d50e1ac682f1e95bfc625b896fb7e0447c902ee1fc72538c" Namespace="calico-apiserver" Pod="calico-apiserver-58cc4975f9-hrj4f" WorkloadEndpoint="10.0.0.130-k8s-calico--apiserver--58cc4975f9--hrj4f-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.130-k8s-calico--apiserver--58cc4975f9--hrj4f-eth0", GenerateName:"calico-apiserver-58cc4975f9-", Namespace:"calico-apiserver", SelfLink:"", UID:"f6936b4e-0060-4a54-811a-1ba7de9bf7c9", ResourceVersion:"1117", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 10, 9, 1, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"apiserver":"true", "app.kubernetes.io/name":"calico-apiserver", "k8s-app":"calico-apiserver", "pod-template-hash":"58cc4975f9", "projectcalico.org/namespace":"calico-apiserver", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"calico-apiserver"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.130", ContainerID:"", Pod:"calico-apiserver-58cc4975f9-hrj4f", Endpoint:"eth0", ServiceAccountName:"calico-apiserver", IPNetworks:[]string{"192.168.2.68/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-apiserver", "ksa.calico-apiserver.calico-apiserver"}, InterfaceName:"cali27e821e5b3c", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 10:09:01.861320 env[1133]: 2024-02-09 10:09:01.843 [INFO][3016] k8s.go 386: Calico CNI using IPs: [192.168.2.68/32] ContainerID="feeea350711d75b0d50e1ac682f1e95bfc625b896fb7e0447c902ee1fc72538c" Namespace="calico-apiserver" Pod="calico-apiserver-58cc4975f9-hrj4f" WorkloadEndpoint="10.0.0.130-k8s-calico--apiserver--58cc4975f9--hrj4f-eth0" Feb 9 10:09:01.861320 env[1133]: 2024-02-09 10:09:01.843 [INFO][3016] dataplane_linux.go 68: Setting the host side veth name to cali27e821e5b3c ContainerID="feeea350711d75b0d50e1ac682f1e95bfc625b896fb7e0447c902ee1fc72538c" Namespace="calico-apiserver" Pod="calico-apiserver-58cc4975f9-hrj4f" WorkloadEndpoint="10.0.0.130-k8s-calico--apiserver--58cc4975f9--hrj4f-eth0" Feb 9 10:09:01.861320 env[1133]: 2024-02-09 10:09:01.847 [INFO][3016] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="feeea350711d75b0d50e1ac682f1e95bfc625b896fb7e0447c902ee1fc72538c" Namespace="calico-apiserver" Pod="calico-apiserver-58cc4975f9-hrj4f" WorkloadEndpoint="10.0.0.130-k8s-calico--apiserver--58cc4975f9--hrj4f-eth0" Feb 9 10:09:01.861320 env[1133]: 2024-02-09 10:09:01.848 [INFO][3016] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="feeea350711d75b0d50e1ac682f1e95bfc625b896fb7e0447c902ee1fc72538c" Namespace="calico-apiserver" Pod="calico-apiserver-58cc4975f9-hrj4f" WorkloadEndpoint="10.0.0.130-k8s-calico--apiserver--58cc4975f9--hrj4f-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.130-k8s-calico--apiserver--58cc4975f9--hrj4f-eth0", GenerateName:"calico-apiserver-58cc4975f9-", Namespace:"calico-apiserver", SelfLink:"", UID:"f6936b4e-0060-4a54-811a-1ba7de9bf7c9", ResourceVersion:"1117", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 10, 9, 1, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"apiserver":"true", "app.kubernetes.io/name":"calico-apiserver", "k8s-app":"calico-apiserver", "pod-template-hash":"58cc4975f9", "projectcalico.org/namespace":"calico-apiserver", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"calico-apiserver"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.130", ContainerID:"feeea350711d75b0d50e1ac682f1e95bfc625b896fb7e0447c902ee1fc72538c", Pod:"calico-apiserver-58cc4975f9-hrj4f", Endpoint:"eth0", ServiceAccountName:"calico-apiserver", IPNetworks:[]string{"192.168.2.68/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-apiserver", "ksa.calico-apiserver.calico-apiserver"}, InterfaceName:"cali27e821e5b3c", MAC:"6e:09:11:7f:e5:79", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 10:09:01.861320 env[1133]: 2024-02-09 10:09:01.859 [INFO][3016] k8s.go 491: Wrote updated endpoint to datastore ContainerID="feeea350711d75b0d50e1ac682f1e95bfc625b896fb7e0447c902ee1fc72538c" Namespace="calico-apiserver" Pod="calico-apiserver-58cc4975f9-hrj4f" WorkloadEndpoint="10.0.0.130-k8s-calico--apiserver--58cc4975f9--hrj4f-eth0" Feb 9 10:09:01.876000 audit[3054]: NETFILTER_CFG table=filter:86 family=2 entries=55 op=nft_register_chain pid=3054 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 10:09:01.876000 audit[3054]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=28104 a0=3 a1=fffffcd062f0 a2=0 a3=ffff8fe87fa8 items=0 ppid=2121 pid=3054 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:01.876000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 10:09:01.894136 env[1133]: time="2024-02-09T10:09:01.894064214Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 9 10:09:01.894136 env[1133]: time="2024-02-09T10:09:01.894104176Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 9 10:09:01.894359 env[1133]: time="2024-02-09T10:09:01.894120777Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 9 10:09:01.894546 env[1133]: time="2024-02-09T10:09:01.894514961Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/feeea350711d75b0d50e1ac682f1e95bfc625b896fb7e0447c902ee1fc72538c pid=3063 runtime=io.containerd.runc.v2 Feb 9 10:09:01.905767 systemd[1]: Started cri-containerd-feeea350711d75b0d50e1ac682f1e95bfc625b896fb7e0447c902ee1fc72538c.scope. Feb 9 10:09:01.933000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.933000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.933000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.933000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit: BPF prog-id=110 op=LOAD Feb 9 10:09:01.934000 audit[3073]: AVC avc: denied { bpf } for pid=3073 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit[3073]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000145b38 a2=10 a3=0 items=0 ppid=3063 pid=3073 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:01.934000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6665656561333530373131643735623064353065316163363832663165 Feb 9 10:09:01.934000 audit[3073]: AVC avc: denied { perfmon } for pid=3073 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit[3073]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=3063 pid=3073 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:01.934000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6665656561333530373131643735623064353065316163363832663165 Feb 9 10:09:01.934000 audit[3073]: AVC avc: denied { bpf } for pid=3073 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit[3073]: AVC avc: denied { bpf } for pid=3073 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit[3073]: AVC avc: denied { bpf } for pid=3073 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit[3073]: AVC avc: denied { perfmon } for pid=3073 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit[3073]: AVC avc: denied { perfmon } for pid=3073 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit[3073]: AVC avc: denied { perfmon } for pid=3073 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit[3073]: AVC avc: denied { perfmon } for pid=3073 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit[3073]: AVC avc: denied { perfmon } for pid=3073 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit[3073]: AVC avc: denied { bpf } for pid=3073 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit[3073]: AVC avc: denied { bpf } for pid=3073 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit: BPF prog-id=111 op=LOAD Feb 9 10:09:01.934000 audit[3073]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=3063 pid=3073 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:01.934000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6665656561333530373131643735623064353065316163363832663165 Feb 9 10:09:01.934000 audit[3073]: AVC avc: denied { bpf } for pid=3073 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit[3073]: AVC avc: denied { bpf } for pid=3073 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit[3073]: AVC avc: denied { perfmon } for pid=3073 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit[3073]: AVC avc: denied { perfmon } for pid=3073 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit[3073]: AVC avc: denied { perfmon } for pid=3073 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit[3073]: AVC avc: denied { perfmon } for pid=3073 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit[3073]: AVC avc: denied { perfmon } for pid=3073 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit[3073]: AVC avc: denied { bpf } for pid=3073 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit[3073]: AVC avc: denied { bpf } for pid=3073 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit: BPF prog-id=112 op=LOAD Feb 9 10:09:01.934000 audit[3073]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=3063 pid=3073 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:01.934000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6665656561333530373131643735623064353065316163363832663165 Feb 9 10:09:01.934000 audit: BPF prog-id=112 op=UNLOAD Feb 9 10:09:01.934000 audit: BPF prog-id=111 op=UNLOAD Feb 9 10:09:01.934000 audit[3073]: AVC avc: denied { bpf } for pid=3073 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit[3073]: AVC avc: denied { bpf } for pid=3073 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit[3073]: AVC avc: denied { bpf } for pid=3073 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit[3073]: AVC avc: denied { perfmon } for pid=3073 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit[3073]: AVC avc: denied { perfmon } for pid=3073 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit[3073]: AVC avc: denied { perfmon } for pid=3073 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit[3073]: AVC avc: denied { perfmon } for pid=3073 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit[3073]: AVC avc: denied { perfmon } for pid=3073 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit[3073]: AVC avc: denied { bpf } for pid=3073 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit[3073]: AVC avc: denied { bpf } for pid=3073 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:01.934000 audit: BPF prog-id=113 op=LOAD Feb 9 10:09:01.934000 audit[3073]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=3063 pid=3073 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:01.934000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6665656561333530373131643735623064353065316163363832663165 Feb 9 10:09:01.936770 systemd-resolved[1081]: Failed to determine the local hostname and LLMNR/mDNS names, ignoring: No such device or address Feb 9 10:09:01.942534 env[1133]: time="2024-02-09T10:09:01.942487129Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:test-pod-1,Uid:7ebc0321-5c4a-44b2-b825-26baf0cbe913,Namespace:default,Attempt:0,}" Feb 9 10:09:01.954816 env[1133]: time="2024-02-09T10:09:01.954778219Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-apiserver-58cc4975f9-hrj4f,Uid:f6936b4e-0060-4a54-811a-1ba7de9bf7c9,Namespace:calico-apiserver,Attempt:0,} returns sandbox id \"feeea350711d75b0d50e1ac682f1e95bfc625b896fb7e0447c902ee1fc72538c\"" Feb 9 10:09:01.956431 env[1133]: time="2024-02-09T10:09:01.956409916Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/apiserver:v3.27.0\"" Feb 9 10:09:02.046897 systemd-networkd[1037]: cali5ec59c6bf6e: Link UP Feb 9 10:09:02.047747 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali5ec59c6bf6e: link becomes ready Feb 9 10:09:02.047806 systemd-networkd[1037]: cali5ec59c6bf6e: Gained carrier Feb 9 10:09:02.056031 env[1133]: 2024-02-09 10:09:01.984 [INFO][3097] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {10.0.0.130-k8s-test--pod--1-eth0 default 7ebc0321-5c4a-44b2-b825-26baf0cbe913 1078 0 2024-02-09 10:08:46 +0000 UTC map[projectcalico.org/namespace:default projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 10.0.0.130 test-pod-1 eth0 default [] [] [kns.default ksa.default.default] cali5ec59c6bf6e [] []}} ContainerID="1e7eeaf96c93a5a96e99657e48f494c9ad5fdaba2201c4065945d10862d2b2c8" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="10.0.0.130-k8s-test--pod--1-" Feb 9 10:09:02.056031 env[1133]: 2024-02-09 10:09:01.984 [INFO][3097] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="1e7eeaf96c93a5a96e99657e48f494c9ad5fdaba2201c4065945d10862d2b2c8" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="10.0.0.130-k8s-test--pod--1-eth0" Feb 9 10:09:02.056031 env[1133]: 2024-02-09 10:09:02.005 [INFO][3109] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="1e7eeaf96c93a5a96e99657e48f494c9ad5fdaba2201c4065945d10862d2b2c8" HandleID="k8s-pod-network.1e7eeaf96c93a5a96e99657e48f494c9ad5fdaba2201c4065945d10862d2b2c8" Workload="10.0.0.130-k8s-test--pod--1-eth0" Feb 9 10:09:02.056031 env[1133]: 2024-02-09 10:09:02.019 [INFO][3109] ipam_plugin.go 268: Auto assigning IP ContainerID="1e7eeaf96c93a5a96e99657e48f494c9ad5fdaba2201c4065945d10862d2b2c8" HandleID="k8s-pod-network.1e7eeaf96c93a5a96e99657e48f494c9ad5fdaba2201c4065945d10862d2b2c8" Workload="10.0.0.130-k8s-test--pod--1-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x400025b2c0), Attrs:map[string]string{"namespace":"default", "node":"10.0.0.130", "pod":"test-pod-1", "timestamp":"2024-02-09 10:09:02.005761628 +0000 UTC"}, Hostname:"10.0.0.130", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Feb 9 10:09:02.056031 env[1133]: 2024-02-09 10:09:02.020 [INFO][3109] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Feb 9 10:09:02.056031 env[1133]: 2024-02-09 10:09:02.020 [INFO][3109] ipam_plugin.go 371: Acquired host-wide IPAM lock. Feb 9 10:09:02.056031 env[1133]: 2024-02-09 10:09:02.020 [INFO][3109] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '10.0.0.130' Feb 9 10:09:02.056031 env[1133]: 2024-02-09 10:09:02.023 [INFO][3109] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.1e7eeaf96c93a5a96e99657e48f494c9ad5fdaba2201c4065945d10862d2b2c8" host="10.0.0.130" Feb 9 10:09:02.056031 env[1133]: 2024-02-09 10:09:02.027 [INFO][3109] ipam.go 372: Looking up existing affinities for host host="10.0.0.130" Feb 9 10:09:02.056031 env[1133]: 2024-02-09 10:09:02.031 [INFO][3109] ipam.go 489: Trying affinity for 192.168.2.64/26 host="10.0.0.130" Feb 9 10:09:02.056031 env[1133]: 2024-02-09 10:09:02.032 [INFO][3109] ipam.go 155: Attempting to load block cidr=192.168.2.64/26 host="10.0.0.130" Feb 9 10:09:02.056031 env[1133]: 2024-02-09 10:09:02.034 [INFO][3109] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.2.64/26 host="10.0.0.130" Feb 9 10:09:02.056031 env[1133]: 2024-02-09 10:09:02.034 [INFO][3109] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.2.64/26 handle="k8s-pod-network.1e7eeaf96c93a5a96e99657e48f494c9ad5fdaba2201c4065945d10862d2b2c8" host="10.0.0.130" Feb 9 10:09:02.056031 env[1133]: 2024-02-09 10:09:02.036 [INFO][3109] ipam.go 1682: Creating new handle: k8s-pod-network.1e7eeaf96c93a5a96e99657e48f494c9ad5fdaba2201c4065945d10862d2b2c8 Feb 9 10:09:02.056031 env[1133]: 2024-02-09 10:09:02.039 [INFO][3109] ipam.go 1203: Writing block in order to claim IPs block=192.168.2.64/26 handle="k8s-pod-network.1e7eeaf96c93a5a96e99657e48f494c9ad5fdaba2201c4065945d10862d2b2c8" host="10.0.0.130" Feb 9 10:09:02.056031 env[1133]: 2024-02-09 10:09:02.043 [INFO][3109] ipam.go 1216: Successfully claimed IPs: [192.168.2.69/26] block=192.168.2.64/26 handle="k8s-pod-network.1e7eeaf96c93a5a96e99657e48f494c9ad5fdaba2201c4065945d10862d2b2c8" host="10.0.0.130" Feb 9 10:09:02.056031 env[1133]: 2024-02-09 10:09:02.044 [INFO][3109] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.2.69/26] handle="k8s-pod-network.1e7eeaf96c93a5a96e99657e48f494c9ad5fdaba2201c4065945d10862d2b2c8" host="10.0.0.130" Feb 9 10:09:02.056031 env[1133]: 2024-02-09 10:09:02.044 [INFO][3109] ipam_plugin.go 377: Released host-wide IPAM lock. Feb 9 10:09:02.056031 env[1133]: 2024-02-09 10:09:02.044 [INFO][3109] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.2.69/26] IPv6=[] ContainerID="1e7eeaf96c93a5a96e99657e48f494c9ad5fdaba2201c4065945d10862d2b2c8" HandleID="k8s-pod-network.1e7eeaf96c93a5a96e99657e48f494c9ad5fdaba2201c4065945d10862d2b2c8" Workload="10.0.0.130-k8s-test--pod--1-eth0" Feb 9 10:09:02.056031 env[1133]: 2024-02-09 10:09:02.045 [INFO][3097] k8s.go 385: Populated endpoint ContainerID="1e7eeaf96c93a5a96e99657e48f494c9ad5fdaba2201c4065945d10862d2b2c8" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="10.0.0.130-k8s-test--pod--1-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.130-k8s-test--pod--1-eth0", GenerateName:"", Namespace:"default", SelfLink:"", UID:"7ebc0321-5c4a-44b2-b825-26baf0cbe913", ResourceVersion:"1078", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 10, 8, 46, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.130", ContainerID:"", Pod:"test-pod-1", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.2.69/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali5ec59c6bf6e", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 10:09:02.056031 env[1133]: 2024-02-09 10:09:02.045 [INFO][3097] k8s.go 386: Calico CNI using IPs: [192.168.2.69/32] ContainerID="1e7eeaf96c93a5a96e99657e48f494c9ad5fdaba2201c4065945d10862d2b2c8" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="10.0.0.130-k8s-test--pod--1-eth0" Feb 9 10:09:02.058553 env[1133]: 2024-02-09 10:09:02.045 [INFO][3097] dataplane_linux.go 68: Setting the host side veth name to cali5ec59c6bf6e ContainerID="1e7eeaf96c93a5a96e99657e48f494c9ad5fdaba2201c4065945d10862d2b2c8" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="10.0.0.130-k8s-test--pod--1-eth0" Feb 9 10:09:02.058553 env[1133]: 2024-02-09 10:09:02.048 [INFO][3097] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="1e7eeaf96c93a5a96e99657e48f494c9ad5fdaba2201c4065945d10862d2b2c8" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="10.0.0.130-k8s-test--pod--1-eth0" Feb 9 10:09:02.058553 env[1133]: 2024-02-09 10:09:02.048 [INFO][3097] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="1e7eeaf96c93a5a96e99657e48f494c9ad5fdaba2201c4065945d10862d2b2c8" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="10.0.0.130-k8s-test--pod--1-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"10.0.0.130-k8s-test--pod--1-eth0", GenerateName:"", Namespace:"default", SelfLink:"", UID:"7ebc0321-5c4a-44b2-b825-26baf0cbe913", ResourceVersion:"1078", Generation:0, CreationTimestamp:time.Date(2024, time.February, 9, 10, 8, 46, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"10.0.0.130", ContainerID:"1e7eeaf96c93a5a96e99657e48f494c9ad5fdaba2201c4065945d10862d2b2c8", Pod:"test-pod-1", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.2.69/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali5ec59c6bf6e", MAC:"16:79:5c:73:f3:4b", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Feb 9 10:09:02.058553 env[1133]: 2024-02-09 10:09:02.054 [INFO][3097] k8s.go 491: Wrote updated endpoint to datastore ContainerID="1e7eeaf96c93a5a96e99657e48f494c9ad5fdaba2201c4065945d10862d2b2c8" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="10.0.0.130-k8s-test--pod--1-eth0" Feb 9 10:09:02.067000 audit[3134]: NETFILTER_CFG table=filter:87 family=2 entries=42 op=nft_register_chain pid=3134 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Feb 9 10:09:02.067000 audit[3134]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=20268 a0=3 a1=ffffc65ed770 a2=0 a3=ffff965a6fa8 items=0 ppid=2121 pid=3134 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:02.067000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Feb 9 10:09:02.070736 env[1133]: time="2024-02-09T10:09:02.070642440Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Feb 9 10:09:02.071641 env[1133]: time="2024-02-09T10:09:02.070692043Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Feb 9 10:09:02.071641 env[1133]: time="2024-02-09T10:09:02.070702363Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Feb 9 10:09:02.071641 env[1133]: time="2024-02-09T10:09:02.070863932Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/1e7eeaf96c93a5a96e99657e48f494c9ad5fdaba2201c4065945d10862d2b2c8 pid=3139 runtime=io.containerd.runc.v2 Feb 9 10:09:02.080594 systemd[1]: Started cri-containerd-1e7eeaf96c93a5a96e99657e48f494c9ad5fdaba2201c4065945d10862d2b2c8.scope. Feb 9 10:09:02.102000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.102000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.102000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.102000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.102000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.102000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.102000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.102000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.102000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.103000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.103000 audit: BPF prog-id=114 op=LOAD Feb 9 10:09:02.104000 audit[3148]: AVC avc: denied { bpf } for pid=3148 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.104000 audit[3148]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000195b38 a2=10 a3=0 items=0 ppid=3139 pid=3148 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:02.104000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3165376565616639366339336135613936653939363537653438663439 Feb 9 10:09:02.104000 audit[3148]: AVC avc: denied { perfmon } for pid=3148 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.104000 audit[3148]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=3139 pid=3148 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:02.104000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3165376565616639366339336135613936653939363537653438663439 Feb 9 10:09:02.104000 audit[3148]: AVC avc: denied { bpf } for pid=3148 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.104000 audit[3148]: AVC avc: denied { bpf } for pid=3148 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.104000 audit[3148]: AVC avc: denied { bpf } for pid=3148 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.104000 audit[3148]: AVC avc: denied { perfmon } for pid=3148 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.104000 audit[3148]: AVC avc: denied { perfmon } for pid=3148 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.104000 audit[3148]: AVC avc: denied { perfmon } for pid=3148 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.104000 audit[3148]: AVC avc: denied { perfmon } for pid=3148 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.104000 audit[3148]: AVC avc: denied { perfmon } for pid=3148 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.104000 audit[3148]: AVC avc: denied { bpf } for pid=3148 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.104000 audit[3148]: AVC avc: denied { bpf } for pid=3148 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.104000 audit: BPF prog-id=115 op=LOAD Feb 9 10:09:02.104000 audit[3148]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=3139 pid=3148 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:02.104000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3165376565616639366339336135613936653939363537653438663439 Feb 9 10:09:02.104000 audit[3148]: AVC avc: denied { bpf } for pid=3148 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.104000 audit[3148]: AVC avc: denied { bpf } for pid=3148 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.104000 audit[3148]: AVC avc: denied { perfmon } for pid=3148 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.104000 audit[3148]: AVC avc: denied { perfmon } for pid=3148 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.104000 audit[3148]: AVC avc: denied { perfmon } for pid=3148 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.104000 audit[3148]: AVC avc: denied { perfmon } for pid=3148 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.104000 audit[3148]: AVC avc: denied { perfmon } for pid=3148 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.104000 audit[3148]: AVC avc: denied { bpf } for pid=3148 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.104000 audit[3148]: AVC avc: denied { bpf } for pid=3148 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.104000 audit: BPF prog-id=116 op=LOAD Feb 9 10:09:02.104000 audit[3148]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=3139 pid=3148 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:02.104000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3165376565616639366339336135613936653939363537653438663439 Feb 9 10:09:02.104000 audit: BPF prog-id=116 op=UNLOAD Feb 9 10:09:02.104000 audit: BPF prog-id=115 op=UNLOAD Feb 9 10:09:02.104000 audit[3148]: AVC avc: denied { bpf } for pid=3148 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.104000 audit[3148]: AVC avc: denied { bpf } for pid=3148 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.104000 audit[3148]: AVC avc: denied { bpf } for pid=3148 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.104000 audit[3148]: AVC avc: denied { perfmon } for pid=3148 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.104000 audit[3148]: AVC avc: denied { perfmon } for pid=3148 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.104000 audit[3148]: AVC avc: denied { perfmon } for pid=3148 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.104000 audit[3148]: AVC avc: denied { perfmon } for pid=3148 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.104000 audit[3148]: AVC avc: denied { perfmon } for pid=3148 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.104000 audit[3148]: AVC avc: denied { bpf } for pid=3148 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.104000 audit[3148]: AVC avc: denied { bpf } for pid=3148 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:02.104000 audit: BPF prog-id=117 op=LOAD Feb 9 10:09:02.104000 audit[3148]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=3139 pid=3148 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:02.104000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3165376565616639366339336135613936653939363537653438663439 Feb 9 10:09:02.106839 systemd-resolved[1081]: Failed to determine the local hostname and LLMNR/mDNS names, ignoring: No such device or address Feb 9 10:09:02.123104 env[1133]: time="2024-02-09T10:09:02.123058998Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:test-pod-1,Uid:7ebc0321-5c4a-44b2-b825-26baf0cbe913,Namespace:default,Attempt:0,} returns sandbox id \"1e7eeaf96c93a5a96e99657e48f494c9ad5fdaba2201c4065945d10862d2b2c8\"" Feb 9 10:09:02.141198 kubelet[1436]: E0209 10:09:02.141162 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:09:03.137901 systemd-networkd[1037]: cali5ec59c6bf6e: Gained IPv6LL Feb 9 10:09:03.142191 kubelet[1436]: E0209 10:09:03.142151 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:09:03.777879 systemd-networkd[1037]: cali27e821e5b3c: Gained IPv6LL Feb 9 10:09:04.142341 kubelet[1436]: E0209 10:09:04.142290 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:09:04.176863 env[1133]: time="2024-02-09T10:09:04.176807591Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/apiserver:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:09:04.178906 env[1133]: time="2024-02-09T10:09:04.178048772Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:24494ef6c7de0e2dcf21ad9fb6c94801c53f120443e256a5e1b54eccd57058a9,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:09:04.179775 env[1133]: time="2024-02-09T10:09:04.179744055Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/apiserver:v3.27.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:09:04.181230 env[1133]: time="2024-02-09T10:09:04.181200166Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/apiserver@sha256:5ff0bdc8d0b2e9d7819703b18867f60f9153ed01da81e2bbfa22002abec9dc26,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:09:04.181731 env[1133]: time="2024-02-09T10:09:04.181691310Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/apiserver:v3.27.0\" returns image reference \"sha256:24494ef6c7de0e2dcf21ad9fb6c94801c53f120443e256a5e1b54eccd57058a9\"" Feb 9 10:09:04.182972 env[1133]: time="2024-02-09T10:09:04.182936731Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\"" Feb 9 10:09:04.184588 env[1133]: time="2024-02-09T10:09:04.184552450Z" level=info msg="CreateContainer within sandbox \"feeea350711d75b0d50e1ac682f1e95bfc625b896fb7e0447c902ee1fc72538c\" for container &ContainerMetadata{Name:calico-apiserver,Attempt:0,}" Feb 9 10:09:04.269586 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3495101799.mount: Deactivated successfully. Feb 9 10:09:04.305261 env[1133]: time="2024-02-09T10:09:04.305201593Z" level=info msg="CreateContainer within sandbox \"feeea350711d75b0d50e1ac682f1e95bfc625b896fb7e0447c902ee1fc72538c\" for &ContainerMetadata{Name:calico-apiserver,Attempt:0,} returns container id \"a225ce24ed6b385fa3d5e27e64a6d0a84e5b48a1495fc8e87645c5ee430a4214\"" Feb 9 10:09:04.305810 env[1133]: time="2024-02-09T10:09:04.305781462Z" level=info msg="StartContainer for \"a225ce24ed6b385fa3d5e27e64a6d0a84e5b48a1495fc8e87645c5ee430a4214\"" Feb 9 10:09:04.335598 systemd[1]: run-containerd-runc-k8s.io-a225ce24ed6b385fa3d5e27e64a6d0a84e5b48a1495fc8e87645c5ee430a4214-runc.u0c9Dv.mount: Deactivated successfully. Feb 9 10:09:04.339424 systemd[1]: Started cri-containerd-a225ce24ed6b385fa3d5e27e64a6d0a84e5b48a1495fc8e87645c5ee430a4214.scope. Feb 9 10:09:04.380000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.380000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.380000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.380000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.380000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.380000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.380000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.380000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.380000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.380000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.380000 audit: BPF prog-id=118 op=LOAD Feb 9 10:09:04.380000 audit[3182]: AVC avc: denied { bpf } for pid=3182 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.380000 audit[3182]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000195b38 a2=10 a3=0 items=0 ppid=3063 pid=3182 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:04.380000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6132323563653234656436623338356661336435653237653634613664 Feb 9 10:09:04.380000 audit[3182]: AVC avc: denied { perfmon } for pid=3182 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.380000 audit[3182]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=3063 pid=3182 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:04.380000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6132323563653234656436623338356661336435653237653634613664 Feb 9 10:09:04.380000 audit[3182]: AVC avc: denied { bpf } for pid=3182 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.380000 audit[3182]: AVC avc: denied { bpf } for pid=3182 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.380000 audit[3182]: AVC avc: denied { bpf } for pid=3182 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.380000 audit[3182]: AVC avc: denied { perfmon } for pid=3182 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.380000 audit[3182]: AVC avc: denied { perfmon } for pid=3182 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.380000 audit[3182]: AVC avc: denied { perfmon } for pid=3182 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.380000 audit[3182]: AVC avc: denied { perfmon } for pid=3182 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.380000 audit[3182]: AVC avc: denied { perfmon } for pid=3182 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.380000 audit[3182]: AVC avc: denied { bpf } for pid=3182 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.380000 audit[3182]: AVC avc: denied { bpf } for pid=3182 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.380000 audit: BPF prog-id=119 op=LOAD Feb 9 10:09:04.380000 audit[3182]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=3063 pid=3182 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:04.380000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6132323563653234656436623338356661336435653237653634613664 Feb 9 10:09:04.380000 audit[3182]: AVC avc: denied { bpf } for pid=3182 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.380000 audit[3182]: AVC avc: denied { bpf } for pid=3182 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.380000 audit[3182]: AVC avc: denied { perfmon } for pid=3182 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.380000 audit[3182]: AVC avc: denied { perfmon } for pid=3182 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.380000 audit[3182]: AVC avc: denied { perfmon } for pid=3182 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.380000 audit[3182]: AVC avc: denied { perfmon } for pid=3182 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.380000 audit[3182]: AVC avc: denied { perfmon } for pid=3182 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.380000 audit[3182]: AVC avc: denied { bpf } for pid=3182 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.380000 audit[3182]: AVC avc: denied { bpf } for pid=3182 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.380000 audit: BPF prog-id=120 op=LOAD Feb 9 10:09:04.380000 audit[3182]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=3063 pid=3182 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:04.380000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6132323563653234656436623338356661336435653237653634613664 Feb 9 10:09:04.380000 audit: BPF prog-id=120 op=UNLOAD Feb 9 10:09:04.380000 audit: BPF prog-id=119 op=UNLOAD Feb 9 10:09:04.381000 audit[3182]: AVC avc: denied { bpf } for pid=3182 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.381000 audit[3182]: AVC avc: denied { bpf } for pid=3182 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.381000 audit[3182]: AVC avc: denied { bpf } for pid=3182 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.381000 audit[3182]: AVC avc: denied { perfmon } for pid=3182 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.381000 audit[3182]: AVC avc: denied { perfmon } for pid=3182 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.381000 audit[3182]: AVC avc: denied { perfmon } for pid=3182 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.381000 audit[3182]: AVC avc: denied { perfmon } for pid=3182 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.381000 audit[3182]: AVC avc: denied { perfmon } for pid=3182 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.381000 audit[3182]: AVC avc: denied { bpf } for pid=3182 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.381000 audit[3182]: AVC avc: denied { bpf } for pid=3182 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.381000 audit: BPF prog-id=121 op=LOAD Feb 9 10:09:04.381000 audit[3182]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=3063 pid=3182 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:04.381000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6132323563653234656436623338356661336435653237653634613664 Feb 9 10:09:04.407032 env[1133]: time="2024-02-09T10:09:04.405774634Z" level=info msg="StartContainer for \"a225ce24ed6b385fa3d5e27e64a6d0a84e5b48a1495fc8e87645c5ee430a4214\" returns successfully" Feb 9 10:09:04.465799 env[1133]: time="2024-02-09T10:09:04.465752729Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:09:04.467615 env[1133]: time="2024-02-09T10:09:04.467588179Z" level=info msg="ImageUpdate event &ImageUpdate{Name:sha256:01bfff6bfbc6f0e8a890bad9e22c5392e6dbfd67def93467db6231d4be1b719b,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:09:04.470929 env[1133]: time="2024-02-09T10:09:04.470903181Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:09:04.473255 env[1133]: time="2024-02-09T10:09:04.473226735Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx@sha256:e34a272f01984c973b1e034e197c02f77dda18981038e3a54e957554ada4fec6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Feb 9 10:09:04.474030 env[1133]: time="2024-02-09T10:09:04.474005293Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\" returns image reference \"sha256:01bfff6bfbc6f0e8a890bad9e22c5392e6dbfd67def93467db6231d4be1b719b\"" Feb 9 10:09:04.476390 env[1133]: time="2024-02-09T10:09:04.476359008Z" level=info msg="CreateContainer within sandbox \"1e7eeaf96c93a5a96e99657e48f494c9ad5fdaba2201c4065945d10862d2b2c8\" for container &ContainerMetadata{Name:test,Attempt:0,}" Feb 9 10:09:04.489574 env[1133]: time="2024-02-09T10:09:04.489527852Z" level=info msg="CreateContainer within sandbox \"1e7eeaf96c93a5a96e99657e48f494c9ad5fdaba2201c4065945d10862d2b2c8\" for &ContainerMetadata{Name:test,Attempt:0,} returns container id \"bafc6337bbe2e1ea7a2427978fc8fac71997e158a5e791045db38f5fac1ec570\"" Feb 9 10:09:04.490950 env[1133]: time="2024-02-09T10:09:04.490908800Z" level=info msg="StartContainer for \"bafc6337bbe2e1ea7a2427978fc8fac71997e158a5e791045db38f5fac1ec570\"" Feb 9 10:09:04.504221 systemd[1]: Started cri-containerd-bafc6337bbe2e1ea7a2427978fc8fac71997e158a5e791045db38f5fac1ec570.scope. Feb 9 10:09:04.524000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.524000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.524000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.524000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.524000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.524000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.524000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.524000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.524000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.525000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.525000 audit: BPF prog-id=122 op=LOAD Feb 9 10:09:04.525000 audit[3221]: AVC avc: denied { bpf } for pid=3221 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.525000 audit[3221]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000145b38 a2=10 a3=0 items=0 ppid=3139 pid=3221 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:04.525000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6261666336333337626265326531656137613234323739373866633866 Feb 9 10:09:04.525000 audit[3221]: AVC avc: denied { perfmon } for pid=3221 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.525000 audit[3221]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=3139 pid=3221 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:04.525000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6261666336333337626265326531656137613234323739373866633866 Feb 9 10:09:04.525000 audit[3221]: AVC avc: denied { bpf } for pid=3221 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.525000 audit[3221]: AVC avc: denied { bpf } for pid=3221 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.525000 audit[3221]: AVC avc: denied { bpf } for pid=3221 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.525000 audit[3221]: AVC avc: denied { perfmon } for pid=3221 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.525000 audit[3221]: AVC avc: denied { perfmon } for pid=3221 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.525000 audit[3221]: AVC avc: denied { perfmon } for pid=3221 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.525000 audit[3221]: AVC avc: denied { perfmon } for pid=3221 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.525000 audit[3221]: AVC avc: denied { perfmon } for pid=3221 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.525000 audit[3221]: AVC avc: denied { bpf } for pid=3221 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.525000 audit[3221]: AVC avc: denied { bpf } for pid=3221 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.525000 audit: BPF prog-id=123 op=LOAD Feb 9 10:09:04.525000 audit[3221]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=3139 pid=3221 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:04.525000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6261666336333337626265326531656137613234323739373866633866 Feb 9 10:09:04.525000 audit[3221]: AVC avc: denied { bpf } for pid=3221 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.525000 audit[3221]: AVC avc: denied { bpf } for pid=3221 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.525000 audit[3221]: AVC avc: denied { perfmon } for pid=3221 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.525000 audit[3221]: AVC avc: denied { perfmon } for pid=3221 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.525000 audit[3221]: AVC avc: denied { perfmon } for pid=3221 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.525000 audit[3221]: AVC avc: denied { perfmon } for pid=3221 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.525000 audit[3221]: AVC avc: denied { perfmon } for pid=3221 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.525000 audit[3221]: AVC avc: denied { bpf } for pid=3221 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.525000 audit[3221]: AVC avc: denied { bpf } for pid=3221 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.525000 audit: BPF prog-id=124 op=LOAD Feb 9 10:09:04.525000 audit[3221]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=3139 pid=3221 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:04.525000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6261666336333337626265326531656137613234323739373866633866 Feb 9 10:09:04.525000 audit: BPF prog-id=124 op=UNLOAD Feb 9 10:09:04.525000 audit: BPF prog-id=123 op=UNLOAD Feb 9 10:09:04.525000 audit[3221]: AVC avc: denied { bpf } for pid=3221 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.525000 audit[3221]: AVC avc: denied { bpf } for pid=3221 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.525000 audit[3221]: AVC avc: denied { bpf } for pid=3221 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.525000 audit[3221]: AVC avc: denied { perfmon } for pid=3221 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.525000 audit[3221]: AVC avc: denied { perfmon } for pid=3221 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.525000 audit[3221]: AVC avc: denied { perfmon } for pid=3221 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.525000 audit[3221]: AVC avc: denied { perfmon } for pid=3221 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.525000 audit[3221]: AVC avc: denied { perfmon } for pid=3221 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.525000 audit[3221]: AVC avc: denied { bpf } for pid=3221 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.525000 audit[3221]: AVC avc: denied { bpf } for pid=3221 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Feb 9 10:09:04.525000 audit: BPF prog-id=125 op=LOAD Feb 9 10:09:04.525000 audit[3221]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=3139 pid=3221 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:04.525000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6261666336333337626265326531656137613234323739373866633866 Feb 9 10:09:04.541206 env[1133]: time="2024-02-09T10:09:04.541153978Z" level=info msg="StartContainer for \"bafc6337bbe2e1ea7a2427978fc8fac71997e158a5e791045db38f5fac1ec570\" returns successfully" Feb 9 10:09:04.987000 audit[3274]: NETFILTER_CFG table=filter:88 family=2 entries=10 op=nft_register_rule pid=3274 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 10:09:04.987000 audit[3274]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=3548 a0=3 a1=ffffeb701100 a2=0 a3=ffff965e56c0 items=0 ppid=1700 pid=3274 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:04.987000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 10:09:04.988000 audit[3274]: NETFILTER_CFG table=nat:89 family=2 entries=44 op=nft_register_rule pid=3274 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 10:09:04.988000 audit[3274]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=14220 a0=3 a1=ffffeb701100 a2=0 a3=ffff965e56c0 items=0 ppid=1700 pid=3274 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:04.988000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 10:09:05.136000 audit[3193]: AVC avc: denied { watch } for pid=3193 comm="apiserver" path="/calico-apiserver-certs/..2024_02_09_10_09_01.400350059/tls.crt" dev="tmpfs" ino=3 scontext=system_u:system_r:svirt_lxc_net_t:s0:c248,c368 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c248,c368 tclass=file permissive=0 Feb 9 10:09:05.136000 audit[3193]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=8 a1=40002eb560 a2=fc6 a3=0 items=0 ppid=3063 pid=3193 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="apiserver" exe="/code/apiserver" subj=system_u:system_r:svirt_lxc_net_t:s0:c248,c368 key=(null) Feb 9 10:09:05.136000 audit: PROCTITLE proctitle=2E2F617069736572766572002D2D7365637572652D706F72743D35343433002D2D746C732D707269766174652D6B65792D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C732E6B6579002D2D746C732D636572742D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C Feb 9 10:09:05.142619 kubelet[1436]: E0209 10:09:05.142578 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:09:05.309171 kubelet[1436]: I0209 10:09:05.308737 1436 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="default/test-pod-1" podStartSLOduration=16.957994239 podCreationTimestamp="2024-02-09 10:08:46 +0000 UTC" firstStartedPulling="2024-02-09 10:09:02.124142018 +0000 UTC m=+51.469902257" lastFinishedPulling="2024-02-09 10:09:04.474818453 +0000 UTC m=+53.820578692" observedRunningTime="2024-02-09 10:09:05.308554748 +0000 UTC m=+54.654314987" watchObservedRunningTime="2024-02-09 10:09:05.308670674 +0000 UTC m=+54.654430913" Feb 9 10:09:05.330000 audit[3276]: NETFILTER_CFG table=filter:90 family=2 entries=10 op=nft_register_rule pid=3276 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 10:09:05.330000 audit[3276]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=3548 a0=3 a1=ffffc1138130 a2=0 a3=ffffa886e6c0 items=0 ppid=1700 pid=3276 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:05.330000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 10:09:05.331000 audit[3276]: NETFILTER_CFG table=nat:91 family=2 entries=44 op=nft_register_rule pid=3276 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Feb 9 10:09:05.331000 audit[3276]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=14220 a0=3 a1=ffffc1138130 a2=0 a3=ffffa886e6c0 items=0 ppid=1700 pid=3276 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Feb 9 10:09:05.331000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Feb 9 10:09:06.143286 kubelet[1436]: E0209 10:09:06.143251 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:09:07.144969 kubelet[1436]: E0209 10:09:07.143912 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:09:08.144956 kubelet[1436]: E0209 10:09:08.144901 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Feb 9 10:09:09.145396 kubelet[1436]: E0209 10:09:09.145346 1436 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests"