Apr 12 18:47:50.238355 kernel: Linux version 5.15.154-flatcar (build@pony-truck.infra.kinvolk.io) (x86_64-cros-linux-gnu-gcc (Gentoo Hardened 11.3.1_p20221209 p3) 11.3.1 20221209, GNU ld (Gentoo 2.39 p5) 2.39.0) #1 SMP Fri Apr 12 17:19:00 -00 2024 Apr 12 18:47:50.238410 kernel: Command line: BOOT_IMAGE=/flatcar/vmlinuz-a mount.usr=/dev/mapper/usr verity.usr=PARTUUID=7130c94a-213a-4e5a-8e26-6cce9662f132 rootflags=rw mount.usrflags=ro consoleblank=0 root=LABEL=ROOT console=ttyS0,115200n8 flatcar.first_boot=detected flatcar.oem.id=ec2 modprobe.blacklist=xen_fbfront net.ifnames=0 nvme_core.io_timeout=4294967295 verity.usrhash=189121f7c8c0a24098d3bb1e040d34611f7c276be43815ff7fe409fce185edaf Apr 12 18:47:50.238427 kernel: BIOS-provided physical RAM map: Apr 12 18:47:50.238438 kernel: BIOS-e820: [mem 0x0000000000000000-0x000000000009fbff] usable Apr 12 18:47:50.238448 kernel: BIOS-e820: [mem 0x000000000009fc00-0x000000000009ffff] reserved Apr 12 18:47:50.238459 kernel: BIOS-e820: [mem 0x00000000000f0000-0x00000000000fffff] reserved Apr 12 18:47:50.238475 kernel: BIOS-e820: [mem 0x0000000000100000-0x000000007d9e9fff] usable Apr 12 18:47:50.238487 kernel: BIOS-e820: [mem 0x000000007d9ea000-0x000000007fffffff] reserved Apr 12 18:47:50.238498 kernel: BIOS-e820: [mem 0x00000000e0000000-0x00000000e03fffff] reserved Apr 12 18:47:50.238510 kernel: BIOS-e820: [mem 0x00000000fffc0000-0x00000000ffffffff] reserved Apr 12 18:47:50.238521 kernel: NX (Execute Disable) protection: active Apr 12 18:47:50.238578 kernel: SMBIOS 2.7 present. Apr 12 18:47:50.238594 kernel: DMI: Amazon EC2 t3.small/, BIOS 1.0 10/16/2017 Apr 12 18:47:50.238607 kernel: Hypervisor detected: KVM Apr 12 18:47:50.238624 kernel: kvm-clock: Using msrs 4b564d01 and 4b564d00 Apr 12 18:47:50.238637 kernel: kvm-clock: cpu 0, msr 7b191001, primary cpu clock Apr 12 18:47:50.238649 kernel: kvm-clock: using sched offset of 8022678389 cycles Apr 12 18:47:50.238663 kernel: clocksource: kvm-clock: mask: 0xffffffffffffffff max_cycles: 0x1cd42e4dffb, max_idle_ns: 881590591483 ns Apr 12 18:47:50.238676 kernel: tsc: Detected 2499.998 MHz processor Apr 12 18:47:50.238689 kernel: e820: update [mem 0x00000000-0x00000fff] usable ==> reserved Apr 12 18:47:50.238704 kernel: e820: remove [mem 0x000a0000-0x000fffff] usable Apr 12 18:47:50.238717 kernel: last_pfn = 0x7d9ea max_arch_pfn = 0x400000000 Apr 12 18:47:50.238729 kernel: x86/PAT: Configuration [0-7]: WB WC UC- UC WB WP UC- WT Apr 12 18:47:50.238741 kernel: Using GB pages for direct mapping Apr 12 18:47:50.238754 kernel: ACPI: Early table checksum verification disabled Apr 12 18:47:50.238767 kernel: ACPI: RSDP 0x00000000000F8F40 000014 (v00 AMAZON) Apr 12 18:47:50.238779 kernel: ACPI: RSDT 0x000000007D9EE350 000044 (v01 AMAZON AMZNRSDT 00000001 AMZN 00000001) Apr 12 18:47:50.238792 kernel: ACPI: FACP 0x000000007D9EFF80 000074 (v01 AMAZON AMZNFACP 00000001 AMZN 00000001) Apr 12 18:47:50.238804 kernel: ACPI: DSDT 0x000000007D9EE3A0 0010E9 (v01 AMAZON AMZNDSDT 00000001 AMZN 00000001) Apr 12 18:47:50.238819 kernel: ACPI: FACS 0x000000007D9EFF40 000040 Apr 12 18:47:50.238832 kernel: ACPI: SSDT 0x000000007D9EF6C0 00087A (v01 AMAZON AMZNSSDT 00000001 AMZN 00000001) Apr 12 18:47:50.238844 kernel: ACPI: APIC 0x000000007D9EF5D0 000076 (v01 AMAZON AMZNAPIC 00000001 AMZN 00000001) Apr 12 18:47:50.238856 kernel: ACPI: SRAT 0x000000007D9EF530 0000A0 (v01 AMAZON AMZNSRAT 00000001 AMZN 00000001) Apr 12 18:47:50.238869 kernel: ACPI: SLIT 0x000000007D9EF4C0 00006C (v01 AMAZON AMZNSLIT 00000001 AMZN 00000001) Apr 12 18:47:50.238881 kernel: ACPI: WAET 0x000000007D9EF490 000028 (v01 AMAZON AMZNWAET 00000001 AMZN 00000001) Apr 12 18:47:50.238893 kernel: ACPI: HPET 0x00000000000C9000 000038 (v01 AMAZON AMZNHPET 00000001 AMZN 00000001) Apr 12 18:47:50.238905 kernel: ACPI: SSDT 0x00000000000C9040 00007B (v01 AMAZON AMZNSSDT 00000001 AMZN 00000001) Apr 12 18:47:50.238920 kernel: ACPI: Reserving FACP table memory at [mem 0x7d9eff80-0x7d9efff3] Apr 12 18:47:50.238933 kernel: ACPI: Reserving DSDT table memory at [mem 0x7d9ee3a0-0x7d9ef488] Apr 12 18:47:50.238946 kernel: ACPI: Reserving FACS table memory at [mem 0x7d9eff40-0x7d9eff7f] Apr 12 18:47:50.238963 kernel: ACPI: Reserving SSDT table memory at [mem 0x7d9ef6c0-0x7d9eff39] Apr 12 18:47:50.238976 kernel: ACPI: Reserving APIC table memory at [mem 0x7d9ef5d0-0x7d9ef645] Apr 12 18:47:50.238989 kernel: ACPI: Reserving SRAT table memory at [mem 0x7d9ef530-0x7d9ef5cf] Apr 12 18:47:50.239003 kernel: ACPI: Reserving SLIT table memory at [mem 0x7d9ef4c0-0x7d9ef52b] Apr 12 18:47:50.239018 kernel: ACPI: Reserving WAET table memory at [mem 0x7d9ef490-0x7d9ef4b7] Apr 12 18:47:50.239032 kernel: ACPI: Reserving HPET table memory at [mem 0xc9000-0xc9037] Apr 12 18:47:50.239046 kernel: ACPI: Reserving SSDT table memory at [mem 0xc9040-0xc90ba] Apr 12 18:47:50.239059 kernel: SRAT: PXM 0 -> APIC 0x00 -> Node 0 Apr 12 18:47:50.239072 kernel: SRAT: PXM 0 -> APIC 0x01 -> Node 0 Apr 12 18:47:50.239086 kernel: ACPI: SRAT: Node 0 PXM 0 [mem 0x00000000-0x7fffffff] Apr 12 18:47:50.239099 kernel: NUMA: Initialized distance table, cnt=1 Apr 12 18:47:50.239112 kernel: NODE_DATA(0) allocated [mem 0x7d9e3000-0x7d9e8fff] Apr 12 18:47:50.239128 kernel: Zone ranges: Apr 12 18:47:50.239141 kernel: DMA [mem 0x0000000000001000-0x0000000000ffffff] Apr 12 18:47:50.239154 kernel: DMA32 [mem 0x0000000001000000-0x000000007d9e9fff] Apr 12 18:47:50.239167 kernel: Normal empty Apr 12 18:47:50.239180 kernel: Movable zone start for each node Apr 12 18:47:50.239282 kernel: Early memory node ranges Apr 12 18:47:50.239297 kernel: node 0: [mem 0x0000000000001000-0x000000000009efff] Apr 12 18:47:50.239323 kernel: node 0: [mem 0x0000000000100000-0x000000007d9e9fff] Apr 12 18:47:50.239337 kernel: Initmem setup node 0 [mem 0x0000000000001000-0x000000007d9e9fff] Apr 12 18:47:50.239354 kernel: On node 0, zone DMA: 1 pages in unavailable ranges Apr 12 18:47:50.239367 kernel: On node 0, zone DMA: 97 pages in unavailable ranges Apr 12 18:47:50.239380 kernel: On node 0, zone DMA32: 9750 pages in unavailable ranges Apr 12 18:47:50.239393 kernel: ACPI: PM-Timer IO Port: 0xb008 Apr 12 18:47:50.239462 kernel: ACPI: LAPIC_NMI (acpi_id[0xff] dfl dfl lint[0x1]) Apr 12 18:47:50.239477 kernel: IOAPIC[0]: apic_id 0, version 32, address 0xfec00000, GSI 0-23 Apr 12 18:47:50.239492 kernel: ACPI: INT_SRC_OVR (bus 0 bus_irq 5 global_irq 5 high level) Apr 12 18:47:50.239506 kernel: ACPI: INT_SRC_OVR (bus 0 bus_irq 9 global_irq 9 high level) Apr 12 18:47:50.239519 kernel: ACPI: INT_SRC_OVR (bus 0 bus_irq 10 global_irq 10 high level) Apr 12 18:47:50.239586 kernel: ACPI: INT_SRC_OVR (bus 0 bus_irq 11 global_irq 11 high level) Apr 12 18:47:50.239600 kernel: ACPI: Using ACPI (MADT) for SMP configuration information Apr 12 18:47:50.239614 kernel: ACPI: HPET id: 0x8086a201 base: 0xfed00000 Apr 12 18:47:50.239627 kernel: TSC deadline timer available Apr 12 18:47:50.239641 kernel: smpboot: Allowing 2 CPUs, 0 hotplug CPUs Apr 12 18:47:50.239654 kernel: [mem 0x80000000-0xdfffffff] available for PCI devices Apr 12 18:47:50.239667 kernel: Booting paravirtualized kernel on KVM Apr 12 18:47:50.239681 kernel: clocksource: refined-jiffies: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 1910969940391419 ns Apr 12 18:47:50.239694 kernel: setup_percpu: NR_CPUS:512 nr_cpumask_bits:512 nr_cpu_ids:2 nr_node_ids:1 Apr 12 18:47:50.239711 kernel: percpu: Embedded 56 pages/cpu s188696 r8192 d32488 u1048576 Apr 12 18:47:50.239725 kernel: pcpu-alloc: s188696 r8192 d32488 u1048576 alloc=1*2097152 Apr 12 18:47:50.239738 kernel: pcpu-alloc: [0] 0 1 Apr 12 18:47:50.239751 kernel: kvm-guest: stealtime: cpu 0, msr 7b61c0c0 Apr 12 18:47:50.239764 kernel: kvm-guest: PV spinlocks enabled Apr 12 18:47:50.239778 kernel: PV qspinlock hash table entries: 256 (order: 0, 4096 bytes, linear) Apr 12 18:47:50.239792 kernel: Built 1 zonelists, mobility grouping on. Total pages: 506242 Apr 12 18:47:50.239805 kernel: Policy zone: DMA32 Apr 12 18:47:50.239820 kernel: Kernel command line: rootflags=rw mount.usrflags=ro BOOT_IMAGE=/flatcar/vmlinuz-a mount.usr=/dev/mapper/usr verity.usr=PARTUUID=7130c94a-213a-4e5a-8e26-6cce9662f132 rootflags=rw mount.usrflags=ro consoleblank=0 root=LABEL=ROOT console=ttyS0,115200n8 flatcar.first_boot=detected flatcar.oem.id=ec2 modprobe.blacklist=xen_fbfront net.ifnames=0 nvme_core.io_timeout=4294967295 verity.usrhash=189121f7c8c0a24098d3bb1e040d34611f7c276be43815ff7fe409fce185edaf Apr 12 18:47:50.239837 kernel: Unknown kernel command line parameters "BOOT_IMAGE=/flatcar/vmlinuz-a", will be passed to user space. Apr 12 18:47:50.239850 kernel: Dentry cache hash table entries: 262144 (order: 9, 2097152 bytes, linear) Apr 12 18:47:50.239863 kernel: Inode-cache hash table entries: 131072 (order: 8, 1048576 bytes, linear) Apr 12 18:47:50.239877 kernel: mem auto-init: stack:off, heap alloc:off, heap free:off Apr 12 18:47:50.239891 kernel: Memory: 1934420K/2057760K available (12294K kernel code, 2275K rwdata, 13708K rodata, 47440K init, 4148K bss, 123080K reserved, 0K cma-reserved) Apr 12 18:47:50.239904 kernel: SLUB: HWalign=64, Order=0-3, MinObjects=0, CPUs=2, Nodes=1 Apr 12 18:47:50.239918 kernel: Kernel/User page tables isolation: enabled Apr 12 18:47:50.239931 kernel: ftrace: allocating 34508 entries in 135 pages Apr 12 18:47:50.239947 kernel: ftrace: allocated 135 pages with 4 groups Apr 12 18:47:50.240024 kernel: rcu: Hierarchical RCU implementation. Apr 12 18:47:50.240040 kernel: rcu: RCU event tracing is enabled. Apr 12 18:47:50.240054 kernel: rcu: RCU restricting CPUs from NR_CPUS=512 to nr_cpu_ids=2. Apr 12 18:47:50.240069 kernel: Rude variant of Tasks RCU enabled. Apr 12 18:47:50.240082 kernel: Tracing variant of Tasks RCU enabled. Apr 12 18:47:50.240096 kernel: rcu: RCU calculated value of scheduler-enlistment delay is 100 jiffies. Apr 12 18:47:50.240109 kernel: rcu: Adjusting geometry for rcu_fanout_leaf=16, nr_cpu_ids=2 Apr 12 18:47:50.240123 kernel: NR_IRQS: 33024, nr_irqs: 440, preallocated irqs: 16 Apr 12 18:47:50.240139 kernel: random: crng init done Apr 12 18:47:50.240152 kernel: Console: colour VGA+ 80x25 Apr 12 18:47:50.240165 kernel: printk: console [ttyS0] enabled Apr 12 18:47:50.240178 kernel: ACPI: Core revision 20210730 Apr 12 18:47:50.240192 kernel: clocksource: hpet: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 30580167144 ns Apr 12 18:47:50.240205 kernel: APIC: Switch to symmetric I/O mode setup Apr 12 18:47:50.240218 kernel: x2apic enabled Apr 12 18:47:50.240231 kernel: Switched APIC routing to physical x2apic. Apr 12 18:47:50.240245 kernel: clocksource: tsc-early: mask: 0xffffffffffffffff max_cycles: 0x240937b9988, max_idle_ns: 440795218083 ns Apr 12 18:47:50.240261 kernel: Calibrating delay loop (skipped) preset value.. 4999.99 BogoMIPS (lpj=2499998) Apr 12 18:47:50.240274 kernel: Last level iTLB entries: 4KB 64, 2MB 8, 4MB 8 Apr 12 18:47:50.240287 kernel: Last level dTLB entries: 4KB 64, 2MB 0, 4MB 0, 1GB 4 Apr 12 18:47:50.240312 kernel: Spectre V1 : Mitigation: usercopy/swapgs barriers and __user pointer sanitization Apr 12 18:47:50.240336 kernel: Spectre V2 : Mitigation: Retpolines Apr 12 18:47:50.240353 kernel: Spectre V2 : Spectre v2 / SpectreRSB mitigation: Filling RSB on context switch Apr 12 18:47:50.240366 kernel: Spectre V2 : Spectre v2 / SpectreRSB : Filling RSB on VMEXIT Apr 12 18:47:50.240380 kernel: RETBleed: WARNING: Spectre v2 mitigation leaves CPU vulnerable to RETBleed attacks, data leaks possible! Apr 12 18:47:50.240394 kernel: RETBleed: Vulnerable Apr 12 18:47:50.240408 kernel: Speculative Store Bypass: Vulnerable Apr 12 18:47:50.240422 kernel: MDS: Vulnerable: Clear CPU buffers attempted, no microcode Apr 12 18:47:50.240436 kernel: MMIO Stale Data: Vulnerable: Clear CPU buffers attempted, no microcode Apr 12 18:47:50.240449 kernel: GDS: Unknown: Dependent on hypervisor status Apr 12 18:47:50.240463 kernel: x86/fpu: Supporting XSAVE feature 0x001: 'x87 floating point registers' Apr 12 18:47:50.240480 kernel: x86/fpu: Supporting XSAVE feature 0x002: 'SSE registers' Apr 12 18:47:50.240494 kernel: x86/fpu: Supporting XSAVE feature 0x004: 'AVX registers' Apr 12 18:47:50.240508 kernel: x86/fpu: Supporting XSAVE feature 0x008: 'MPX bounds registers' Apr 12 18:47:50.240522 kernel: x86/fpu: Supporting XSAVE feature 0x010: 'MPX CSR' Apr 12 18:47:50.240537 kernel: x86/fpu: Supporting XSAVE feature 0x020: 'AVX-512 opmask' Apr 12 18:47:50.240553 kernel: x86/fpu: Supporting XSAVE feature 0x040: 'AVX-512 Hi256' Apr 12 18:47:50.240567 kernel: x86/fpu: Supporting XSAVE feature 0x080: 'AVX-512 ZMM_Hi256' Apr 12 18:47:50.240581 kernel: x86/fpu: Supporting XSAVE feature 0x200: 'Protection Keys User registers' Apr 12 18:47:50.240595 kernel: x86/fpu: xstate_offset[2]: 576, xstate_sizes[2]: 256 Apr 12 18:47:50.240609 kernel: x86/fpu: xstate_offset[3]: 832, xstate_sizes[3]: 64 Apr 12 18:47:50.240698 kernel: x86/fpu: xstate_offset[4]: 896, xstate_sizes[4]: 64 Apr 12 18:47:50.240715 kernel: x86/fpu: xstate_offset[5]: 960, xstate_sizes[5]: 64 Apr 12 18:47:50.240730 kernel: x86/fpu: xstate_offset[6]: 1024, xstate_sizes[6]: 512 Apr 12 18:47:50.240744 kernel: x86/fpu: xstate_offset[7]: 1536, xstate_sizes[7]: 1024 Apr 12 18:47:50.240758 kernel: x86/fpu: xstate_offset[9]: 2560, xstate_sizes[9]: 8 Apr 12 18:47:50.240773 kernel: x86/fpu: Enabled xstate features 0x2ff, context size is 2568 bytes, using 'compacted' format. Apr 12 18:47:50.240787 kernel: Freeing SMP alternatives memory: 32K Apr 12 18:47:50.240804 kernel: pid_max: default: 32768 minimum: 301 Apr 12 18:47:50.240818 kernel: LSM: Security Framework initializing Apr 12 18:47:50.240832 kernel: SELinux: Initializing. Apr 12 18:47:50.240847 kernel: Mount-cache hash table entries: 4096 (order: 3, 32768 bytes, linear) Apr 12 18:47:50.240861 kernel: Mountpoint-cache hash table entries: 4096 (order: 3, 32768 bytes, linear) Apr 12 18:47:50.240908 kernel: smpboot: CPU0: Intel(R) Xeon(R) Platinum 8259CL CPU @ 2.50GHz (family: 0x6, model: 0x55, stepping: 0x7) Apr 12 18:47:50.240922 kernel: Performance Events: unsupported p6 CPU model 85 no PMU driver, software events only. Apr 12 18:47:50.240937 kernel: signal: max sigframe size: 3632 Apr 12 18:47:50.240951 kernel: rcu: Hierarchical SRCU implementation. Apr 12 18:47:50.240991 kernel: NMI watchdog: Perf NMI watchdog permanently disabled Apr 12 18:47:50.241009 kernel: smp: Bringing up secondary CPUs ... Apr 12 18:47:50.241023 kernel: x86: Booting SMP configuration: Apr 12 18:47:50.241037 kernel: .... node #0, CPUs: #1 Apr 12 18:47:50.241203 kernel: kvm-clock: cpu 1, msr 7b191041, secondary cpu clock Apr 12 18:47:50.241242 kernel: kvm-guest: stealtime: cpu 1, msr 7b71c0c0 Apr 12 18:47:50.241258 kernel: MDS CPU bug present and SMT on, data leak possible. See https://www.kernel.org/doc/html/latest/admin-guide/hw-vuln/mds.html for more details. Apr 12 18:47:50.241274 kernel: MMIO Stale Data CPU bug present and SMT on, data leak possible. See https://www.kernel.org/doc/html/latest/admin-guide/hw-vuln/processor_mmio_stale_data.html for more details. Apr 12 18:47:50.241288 kernel: smp: Brought up 1 node, 2 CPUs Apr 12 18:47:50.241314 kernel: smpboot: Max logical packages: 1 Apr 12 18:47:50.241332 kernel: smpboot: Total of 2 processors activated (9999.99 BogoMIPS) Apr 12 18:47:50.241422 kernel: devtmpfs: initialized Apr 12 18:47:50.241437 kernel: x86/mm: Memory block size: 128MB Apr 12 18:47:50.241451 kernel: clocksource: jiffies: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 1911260446275000 ns Apr 12 18:47:50.241465 kernel: futex hash table entries: 512 (order: 3, 32768 bytes, linear) Apr 12 18:47:50.241480 kernel: pinctrl core: initialized pinctrl subsystem Apr 12 18:47:50.241494 kernel: NET: Registered PF_NETLINK/PF_ROUTE protocol family Apr 12 18:47:50.241508 kernel: audit: initializing netlink subsys (disabled) Apr 12 18:47:50.241522 kernel: audit: type=2000 audit(1712947668.807:1): state=initialized audit_enabled=0 res=1 Apr 12 18:47:50.241540 kernel: thermal_sys: Registered thermal governor 'step_wise' Apr 12 18:47:50.241554 kernel: thermal_sys: Registered thermal governor 'user_space' Apr 12 18:47:50.241568 kernel: cpuidle: using governor menu Apr 12 18:47:50.241582 kernel: ACPI: bus type PCI registered Apr 12 18:47:50.241596 kernel: acpiphp: ACPI Hot Plug PCI Controller Driver version: 0.5 Apr 12 18:47:50.241610 kernel: dca service started, version 1.12.1 Apr 12 18:47:50.241624 kernel: PCI: Using configuration type 1 for base access Apr 12 18:47:50.241691 kernel: kprobes: kprobe jump-optimization is enabled. All kprobes are optimized if possible. Apr 12 18:47:50.241708 kernel: HugeTLB registered 1.00 GiB page size, pre-allocated 0 pages Apr 12 18:47:50.241726 kernel: HugeTLB registered 2.00 MiB page size, pre-allocated 0 pages Apr 12 18:47:50.241741 kernel: ACPI: Added _OSI(Module Device) Apr 12 18:47:50.241756 kernel: ACPI: Added _OSI(Processor Device) Apr 12 18:47:50.241770 kernel: ACPI: Added _OSI(3.0 _SCP Extensions) Apr 12 18:47:50.241784 kernel: ACPI: Added _OSI(Processor Aggregator Device) Apr 12 18:47:50.241798 kernel: ACPI: Added _OSI(Linux-Dell-Video) Apr 12 18:47:50.241812 kernel: ACPI: Added _OSI(Linux-Lenovo-NV-HDMI-Audio) Apr 12 18:47:50.241827 kernel: ACPI: Added _OSI(Linux-HPI-Hybrid-Graphics) Apr 12 18:47:50.241841 kernel: ACPI: 3 ACPI AML tables successfully acquired and loaded Apr 12 18:47:50.241857 kernel: ACPI: Interpreter enabled Apr 12 18:47:50.241872 kernel: ACPI: PM: (supports S0 S5) Apr 12 18:47:50.241945 kernel: ACPI: Using IOAPIC for interrupt routing Apr 12 18:47:50.241964 kernel: PCI: Using host bridge windows from ACPI; if necessary, use "pci=nocrs" and report a bug Apr 12 18:47:50.241979 kernel: ACPI: Enabled 16 GPEs in block 00 to 0F Apr 12 18:47:50.241994 kernel: ACPI: PCI Root Bridge [PCI0] (domain 0000 [bus 00-ff]) Apr 12 18:47:50.242223 kernel: acpi PNP0A03:00: _OSC: OS supports [ASPM ClockPM Segments MSI HPX-Type3] Apr 12 18:47:50.250492 kernel: acpi PNP0A03:00: fail to add MMCONFIG information, can't access extended PCI configuration space under this bridge. Apr 12 18:47:50.250544 kernel: acpiphp: Slot [3] registered Apr 12 18:47:50.250561 kernel: acpiphp: Slot [4] registered Apr 12 18:47:50.250577 kernel: acpiphp: Slot [5] registered Apr 12 18:47:50.250591 kernel: acpiphp: Slot [6] registered Apr 12 18:47:50.250606 kernel: acpiphp: Slot [7] registered Apr 12 18:47:50.250621 kernel: acpiphp: Slot [8] registered Apr 12 18:47:50.250635 kernel: acpiphp: Slot [9] registered Apr 12 18:47:50.250650 kernel: acpiphp: Slot [10] registered Apr 12 18:47:50.250664 kernel: acpiphp: Slot [11] registered Apr 12 18:47:50.250681 kernel: acpiphp: Slot [12] registered Apr 12 18:47:50.250696 kernel: acpiphp: Slot [13] registered Apr 12 18:47:50.250710 kernel: acpiphp: Slot [14] registered Apr 12 18:47:50.250725 kernel: acpiphp: Slot [15] registered Apr 12 18:47:50.250740 kernel: acpiphp: Slot [16] registered Apr 12 18:47:50.250754 kernel: acpiphp: Slot [17] registered Apr 12 18:47:50.250769 kernel: acpiphp: Slot [18] registered Apr 12 18:47:50.250783 kernel: acpiphp: Slot [19] registered Apr 12 18:47:50.250797 kernel: acpiphp: Slot [20] registered Apr 12 18:47:50.250814 kernel: acpiphp: Slot [21] registered Apr 12 18:47:50.250829 kernel: acpiphp: Slot [22] registered Apr 12 18:47:50.250843 kernel: acpiphp: Slot [23] registered Apr 12 18:47:50.250857 kernel: acpiphp: Slot [24] registered Apr 12 18:47:50.250872 kernel: acpiphp: Slot [25] registered Apr 12 18:47:50.250886 kernel: acpiphp: Slot [26] registered Apr 12 18:47:50.250900 kernel: acpiphp: Slot [27] registered Apr 12 18:47:50.250915 kernel: acpiphp: Slot [28] registered Apr 12 18:47:50.250929 kernel: acpiphp: Slot [29] registered Apr 12 18:47:50.250943 kernel: acpiphp: Slot [30] registered Apr 12 18:47:50.250961 kernel: acpiphp: Slot [31] registered Apr 12 18:47:50.250975 kernel: PCI host bridge to bus 0000:00 Apr 12 18:47:50.251112 kernel: pci_bus 0000:00: root bus resource [io 0x0000-0x0cf7 window] Apr 12 18:47:50.251228 kernel: pci_bus 0000:00: root bus resource [io 0x0d00-0xffff window] Apr 12 18:47:50.251349 kernel: pci_bus 0000:00: root bus resource [mem 0x000a0000-0x000bffff window] Apr 12 18:47:50.251777 kernel: pci_bus 0000:00: root bus resource [mem 0x80000000-0xfebfffff window] Apr 12 18:47:50.251924 kernel: pci_bus 0000:00: root bus resource [bus 00-ff] Apr 12 18:47:50.252065 kernel: pci 0000:00:00.0: [8086:1237] type 00 class 0x060000 Apr 12 18:47:50.252197 kernel: pci 0000:00:01.0: [8086:7000] type 00 class 0x060100 Apr 12 18:47:50.252340 kernel: pci 0000:00:01.3: [8086:7113] type 00 class 0x000000 Apr 12 18:47:50.252464 kernel: pci 0000:00:01.3: quirk: [io 0xb000-0xb03f] claimed by PIIX4 ACPI Apr 12 18:47:50.252583 kernel: pci 0000:00:01.3: quirk: [io 0xb100-0xb10f] claimed by PIIX4 SMB Apr 12 18:47:50.252699 kernel: pci 0000:00:01.3: PIIX4 devres E PIO at fff0-ffff Apr 12 18:47:50.252814 kernel: pci 0000:00:01.3: PIIX4 devres F MMIO at ffc00000-ffffffff Apr 12 18:47:50.252988 kernel: pci 0000:00:01.3: PIIX4 devres G PIO at fff0-ffff Apr 12 18:47:50.253198 kernel: pci 0000:00:01.3: PIIX4 devres H MMIO at ffc00000-ffffffff Apr 12 18:47:50.253347 kernel: pci 0000:00:01.3: PIIX4 devres I PIO at fff0-ffff Apr 12 18:47:50.253856 kernel: pci 0000:00:01.3: PIIX4 devres J PIO at fff0-ffff Apr 12 18:47:50.254104 kernel: pci 0000:00:03.0: [1d0f:1111] type 00 class 0x030000 Apr 12 18:47:50.254241 kernel: pci 0000:00:03.0: reg 0x10: [mem 0xfe400000-0xfe7fffff pref] Apr 12 18:47:50.259481 kernel: pci 0000:00:03.0: reg 0x30: [mem 0xfebe0000-0xfebeffff pref] Apr 12 18:47:50.259648 kernel: pci 0000:00:03.0: Video device with shadowed ROM at [mem 0x000c0000-0x000dffff] Apr 12 18:47:50.259876 kernel: pci 0000:00:04.0: [1d0f:8061] type 00 class 0x010802 Apr 12 18:47:50.260124 kernel: pci 0000:00:04.0: reg 0x10: [mem 0xfebf0000-0xfebf3fff] Apr 12 18:47:50.262486 kernel: pci 0000:00:05.0: [1d0f:ec20] type 00 class 0x020000 Apr 12 18:47:50.262641 kernel: pci 0000:00:05.0: reg 0x10: [mem 0xfebf4000-0xfebf7fff] Apr 12 18:47:50.262662 kernel: ACPI: PCI: Interrupt link LNKA configured for IRQ 10 Apr 12 18:47:50.262685 kernel: ACPI: PCI: Interrupt link LNKB configured for IRQ 10 Apr 12 18:47:50.262701 kernel: ACPI: PCI: Interrupt link LNKC configured for IRQ 11 Apr 12 18:47:50.262716 kernel: ACPI: PCI: Interrupt link LNKD configured for IRQ 11 Apr 12 18:47:50.262731 kernel: ACPI: PCI: Interrupt link LNKS configured for IRQ 9 Apr 12 18:47:50.262746 kernel: iommu: Default domain type: Translated Apr 12 18:47:50.262762 kernel: iommu: DMA domain TLB invalidation policy: lazy mode Apr 12 18:47:50.262896 kernel: pci 0000:00:03.0: vgaarb: setting as boot VGA device Apr 12 18:47:50.263023 kernel: pci 0000:00:03.0: vgaarb: VGA device added: decodes=io+mem,owns=io+mem,locks=none Apr 12 18:47:50.263147 kernel: pci 0000:00:03.0: vgaarb: bridge control possible Apr 12 18:47:50.263168 kernel: vgaarb: loaded Apr 12 18:47:50.263183 kernel: pps_core: LinuxPPS API ver. 1 registered Apr 12 18:47:50.263198 kernel: pps_core: Software ver. 5.3.6 - Copyright 2005-2007 Rodolfo Giometti Apr 12 18:47:50.263212 kernel: PTP clock support registered Apr 12 18:47:50.263226 kernel: PCI: Using ACPI for IRQ routing Apr 12 18:47:50.263240 kernel: PCI: pci_cache_line_size set to 64 bytes Apr 12 18:47:50.263255 kernel: e820: reserve RAM buffer [mem 0x0009fc00-0x0009ffff] Apr 12 18:47:50.263269 kernel: e820: reserve RAM buffer [mem 0x7d9ea000-0x7fffffff] Apr 12 18:47:50.263285 kernel: hpet0: at MMIO 0xfed00000, IRQs 2, 8, 0, 0, 0, 0, 0, 0 Apr 12 18:47:50.263326 kernel: hpet0: 8 comparators, 32-bit 62.500000 MHz counter Apr 12 18:47:50.263341 kernel: clocksource: Switched to clocksource kvm-clock Apr 12 18:47:50.263355 kernel: VFS: Disk quotas dquot_6.6.0 Apr 12 18:47:50.263370 kernel: VFS: Dquot-cache hash table entries: 512 (order 0, 4096 bytes) Apr 12 18:47:50.263384 kernel: pnp: PnP ACPI init Apr 12 18:47:50.263399 kernel: pnp: PnP ACPI: found 5 devices Apr 12 18:47:50.263413 kernel: clocksource: acpi_pm: mask: 0xffffff max_cycles: 0xffffff, max_idle_ns: 2085701024 ns Apr 12 18:47:50.263427 kernel: NET: Registered PF_INET protocol family Apr 12 18:47:50.263445 kernel: IP idents hash table entries: 32768 (order: 6, 262144 bytes, linear) Apr 12 18:47:50.263459 kernel: tcp_listen_portaddr_hash hash table entries: 1024 (order: 2, 16384 bytes, linear) Apr 12 18:47:50.263474 kernel: Table-perturb hash table entries: 65536 (order: 6, 262144 bytes, linear) Apr 12 18:47:50.263488 kernel: TCP established hash table entries: 16384 (order: 5, 131072 bytes, linear) Apr 12 18:47:50.263502 kernel: TCP bind hash table entries: 16384 (order: 6, 262144 bytes, linear) Apr 12 18:47:50.263516 kernel: TCP: Hash tables configured (established 16384 bind 16384) Apr 12 18:47:50.263530 kernel: UDP hash table entries: 1024 (order: 3, 32768 bytes, linear) Apr 12 18:47:50.263545 kernel: UDP-Lite hash table entries: 1024 (order: 3, 32768 bytes, linear) Apr 12 18:47:50.263559 kernel: NET: Registered PF_UNIX/PF_LOCAL protocol family Apr 12 18:47:50.263576 kernel: NET: Registered PF_XDP protocol family Apr 12 18:47:50.263693 kernel: pci_bus 0000:00: resource 4 [io 0x0000-0x0cf7 window] Apr 12 18:47:50.263875 kernel: pci_bus 0000:00: resource 5 [io 0x0d00-0xffff window] Apr 12 18:47:50.263984 kernel: pci_bus 0000:00: resource 6 [mem 0x000a0000-0x000bffff window] Apr 12 18:47:50.264091 kernel: pci_bus 0000:00: resource 7 [mem 0x80000000-0xfebfffff window] Apr 12 18:47:50.264212 kernel: pci 0000:00:00.0: Limiting direct PCI/PCI transfers Apr 12 18:47:50.264345 kernel: pci 0000:00:01.0: Activating ISA DMA hang workarounds Apr 12 18:47:50.264367 kernel: PCI: CLS 0 bytes, default 64 Apr 12 18:47:50.264381 kernel: RAPL PMU: API unit is 2^-32 Joules, 0 fixed counters, 10737418240 ms ovfl timer Apr 12 18:47:50.264396 kernel: clocksource: tsc: mask: 0xffffffffffffffff max_cycles: 0x240937b9988, max_idle_ns: 440795218083 ns Apr 12 18:47:50.264410 kernel: clocksource: Switched to clocksource tsc Apr 12 18:47:50.264424 kernel: Initialise system trusted keyrings Apr 12 18:47:50.264438 kernel: workingset: timestamp_bits=39 max_order=19 bucket_order=0 Apr 12 18:47:50.264452 kernel: Key type asymmetric registered Apr 12 18:47:50.264465 kernel: Asymmetric key parser 'x509' registered Apr 12 18:47:50.264478 kernel: Block layer SCSI generic (bsg) driver version 0.4 loaded (major 249) Apr 12 18:47:50.264495 kernel: io scheduler mq-deadline registered Apr 12 18:47:50.264508 kernel: io scheduler kyber registered Apr 12 18:47:50.264522 kernel: io scheduler bfq registered Apr 12 18:47:50.264536 kernel: ioatdma: Intel(R) QuickData Technology Driver 5.00 Apr 12 18:47:50.264549 kernel: Serial: 8250/16550 driver, 4 ports, IRQ sharing enabled Apr 12 18:47:50.264562 kernel: 00:04: ttyS0 at I/O 0x3f8 (irq = 4, base_baud = 115200) is a 16550A Apr 12 18:47:50.264577 kernel: i8042: PNP: PS/2 Controller [PNP0303:KBD,PNP0f13:MOU] at 0x60,0x64 irq 1,12 Apr 12 18:47:50.264591 kernel: i8042: Warning: Keylock active Apr 12 18:47:50.264605 kernel: serio: i8042 KBD port at 0x60,0x64 irq 1 Apr 12 18:47:50.264621 kernel: serio: i8042 AUX port at 0x60,0x64 irq 12 Apr 12 18:47:50.264746 kernel: rtc_cmos 00:00: RTC can wake from S4 Apr 12 18:47:50.264853 kernel: rtc_cmos 00:00: registered as rtc0 Apr 12 18:47:50.264964 kernel: rtc_cmos 00:00: setting system clock to 2024-04-12T18:47:49 UTC (1712947669) Apr 12 18:47:50.265135 kernel: rtc_cmos 00:00: alarms up to one day, 114 bytes nvram Apr 12 18:47:50.265156 kernel: intel_pstate: CPU model not supported Apr 12 18:47:50.265171 kernel: NET: Registered PF_INET6 protocol family Apr 12 18:47:50.265185 kernel: Segment Routing with IPv6 Apr 12 18:47:50.265204 kernel: In-situ OAM (IOAM) with IPv6 Apr 12 18:47:50.265219 kernel: NET: Registered PF_PACKET protocol family Apr 12 18:47:50.265233 kernel: Key type dns_resolver registered Apr 12 18:47:50.265246 kernel: IPI shorthand broadcast: enabled Apr 12 18:47:50.265276 kernel: sched_clock: Marking stable (501290770, 410057552)->(1126954995, -215606673) Apr 12 18:47:50.265295 kernel: registered taskstats version 1 Apr 12 18:47:50.265322 kernel: Loading compiled-in X.509 certificates Apr 12 18:47:50.265337 kernel: Loaded X.509 cert 'Kinvolk GmbH: Module signing key for 5.15.154-flatcar: 1fa140a38fc6bd27c8b56127e4d1eb4f665c7ec4' Apr 12 18:47:50.265351 kernel: Key type .fscrypt registered Apr 12 18:47:50.265368 kernel: Key type fscrypt-provisioning registered Apr 12 18:47:50.265383 kernel: ima: No TPM chip found, activating TPM-bypass! Apr 12 18:47:50.265397 kernel: ima: Allocated hash algorithm: sha1 Apr 12 18:47:50.265412 kernel: ima: No architecture policies found Apr 12 18:47:50.265427 kernel: Freeing unused kernel image (initmem) memory: 47440K Apr 12 18:47:50.265442 kernel: Write protecting the kernel read-only data: 28672k Apr 12 18:47:50.265457 kernel: Freeing unused kernel image (text/rodata gap) memory: 2040K Apr 12 18:47:50.265472 kernel: Freeing unused kernel image (rodata/data gap) memory: 628K Apr 12 18:47:50.265487 kernel: Run /init as init process Apr 12 18:47:50.265503 kernel: with arguments: Apr 12 18:47:50.265518 kernel: /init Apr 12 18:47:50.265532 kernel: with environment: Apr 12 18:47:50.265546 kernel: HOME=/ Apr 12 18:47:50.265561 kernel: TERM=linux Apr 12 18:47:50.265575 kernel: BOOT_IMAGE=/flatcar/vmlinuz-a Apr 12 18:47:50.265593 systemd[1]: systemd 252 running in system mode (+PAM +AUDIT +SELINUX -APPARMOR +IMA +SMACK +SECCOMP +GCRYPT -GNUTLS +OPENSSL -ACL +BLKID +CURL -ELFUTILS -FIDO2 +IDN2 -IDN +IPTC +KMOD +LIBCRYPTSETUP +LIBFDISK +PCRE2 -PWQUALITY -P11KIT -QRENCODE -TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD -BPF_FRAMEWORK -XKBCOMMON +UTMP +SYSVINIT default-hierarchy=unified) Apr 12 18:47:50.265614 systemd[1]: Detected virtualization amazon. Apr 12 18:47:50.265630 systemd[1]: Detected architecture x86-64. Apr 12 18:47:50.265645 systemd[1]: Running in initrd. Apr 12 18:47:50.265659 systemd[1]: No hostname configured, using default hostname. Apr 12 18:47:50.265675 systemd[1]: Hostname set to . Apr 12 18:47:50.265708 systemd[1]: Initializing machine ID from VM UUID. Apr 12 18:47:50.265727 kernel: input: AT Translated Set 2 keyboard as /devices/platform/i8042/serio0/input/input0 Apr 12 18:47:50.265742 systemd[1]: Queued start job for default target initrd.target. Apr 12 18:47:50.265758 systemd[1]: Started systemd-ask-password-console.path. Apr 12 18:47:50.265774 systemd[1]: Reached target cryptsetup.target. Apr 12 18:47:50.265789 systemd[1]: Reached target paths.target. Apr 12 18:47:50.265803 systemd[1]: Reached target slices.target. Apr 12 18:47:50.265818 systemd[1]: Reached target swap.target. Apr 12 18:47:50.265834 systemd[1]: Reached target timers.target. Apr 12 18:47:50.265852 systemd[1]: Listening on iscsid.socket. Apr 12 18:47:50.265866 systemd[1]: Listening on iscsiuio.socket. Apr 12 18:47:50.265961 systemd[1]: Listening on systemd-journald-audit.socket. Apr 12 18:47:50.265984 systemd[1]: Listening on systemd-journald-dev-log.socket. Apr 12 18:47:50.265998 systemd[1]: Listening on systemd-journald.socket. Apr 12 18:47:50.266011 systemd[1]: Listening on systemd-networkd.socket. Apr 12 18:47:50.266025 systemd[1]: Listening on systemd-udevd-control.socket. Apr 12 18:47:50.266038 systemd[1]: Listening on systemd-udevd-kernel.socket. Apr 12 18:47:50.266056 systemd[1]: Reached target sockets.target. Apr 12 18:47:50.266070 systemd[1]: Starting kmod-static-nodes.service... Apr 12 18:47:50.266085 systemd[1]: Finished network-cleanup.service. Apr 12 18:47:50.266100 systemd[1]: Starting systemd-fsck-usr.service... Apr 12 18:47:50.266116 systemd[1]: Starting systemd-journald.service... Apr 12 18:47:50.266133 systemd[1]: Starting systemd-modules-load.service... Apr 12 18:47:50.266149 systemd[1]: Starting systemd-resolved.service... Apr 12 18:47:50.266166 systemd[1]: Starting systemd-vconsole-setup.service... Apr 12 18:47:50.266179 systemd[1]: Finished kmod-static-nodes.service. Apr 12 18:47:50.266195 systemd[1]: Finished systemd-fsck-usr.service. Apr 12 18:47:50.266211 kernel: bridge: filtering via arp/ip/ip6tables is no longer available by default. Update your scripts to load br_netfilter if you need this. Apr 12 18:47:50.266224 kernel: Bridge firewalling registered Apr 12 18:47:50.266244 systemd-journald[185]: Journal started Apr 12 18:47:50.289799 systemd-journald[185]: Runtime Journal (/run/log/journal/ec2f6f18a14b29b98d6ae3a1d4766ab3) is 4.8M, max 38.7M, 33.9M free. Apr 12 18:47:50.193566 systemd-modules-load[186]: Inserted module 'overlay' Apr 12 18:47:50.447335 kernel: SCSI subsystem initialized Apr 12 18:47:50.447363 kernel: device-mapper: core: CONFIG_IMA_DISABLE_HTABLE is disabled. Duplicate IMA measurements will not be recorded in the IMA log. Apr 12 18:47:50.447375 kernel: device-mapper: uevent: version 1.0.3 Apr 12 18:47:50.447390 kernel: device-mapper: ioctl: 4.45.0-ioctl (2021-03-22) initialised: dm-devel@redhat.com Apr 12 18:47:50.266005 systemd-modules-load[186]: Inserted module 'br_netfilter' Apr 12 18:47:50.309643 systemd-resolved[187]: Positive Trust Anchors: Apr 12 18:47:50.459442 systemd[1]: Started systemd-journald.service. Apr 12 18:47:50.459475 kernel: audit: type=1130 audit(1712947670.446:2): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-usr comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:50.459490 kernel: audit: type=1130 audit(1712947670.457:3): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:50.446000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-usr comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:50.457000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:50.309655 systemd-resolved[187]: . IN DS 20326 8 2 e06d44b80b8f1d39a95c0b0d7c65d08458e880409bbc683457104237c7f8ec8d Apr 12 18:47:50.309726 systemd-resolved[187]: Negative trust anchors: home.arpa 10.in-addr.arpa 16.172.in-addr.arpa 17.172.in-addr.arpa 18.172.in-addr.arpa 19.172.in-addr.arpa 20.172.in-addr.arpa 21.172.in-addr.arpa 22.172.in-addr.arpa 23.172.in-addr.arpa 24.172.in-addr.arpa 25.172.in-addr.arpa 26.172.in-addr.arpa 27.172.in-addr.arpa 28.172.in-addr.arpa 29.172.in-addr.arpa 30.172.in-addr.arpa 31.172.in-addr.arpa 168.192.in-addr.arpa d.f.ip6.arpa corp home internal intranet lan local private test Apr 12 18:47:50.480776 kernel: audit: type=1130 audit(1712947670.466:4): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:50.466000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:50.326120 systemd-resolved[187]: Defaulting to hostname 'linux'. Apr 12 18:47:50.490697 kernel: audit: type=1130 audit(1712947670.483:5): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:50.490733 kernel: audit: type=1130 audit(1712947670.489:6): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:50.483000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:50.489000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:50.330075 systemd-modules-load[186]: Inserted module 'dm_multipath' Apr 12 18:47:50.458209 systemd[1]: Started systemd-resolved.service. Apr 12 18:47:50.481008 systemd[1]: Finished systemd-modules-load.service. Apr 12 18:47:50.483687 systemd[1]: Finished systemd-vconsole-setup.service. Apr 12 18:47:50.489753 systemd[1]: Reached target nss-lookup.target. Apr 12 18:47:50.504939 systemd[1]: Starting dracut-cmdline-ask.service... Apr 12 18:47:50.506899 systemd[1]: Starting systemd-sysctl.service... Apr 12 18:47:50.510651 systemd[1]: Starting systemd-tmpfiles-setup-dev.service... Apr 12 18:47:50.518826 systemd[1]: Finished systemd-tmpfiles-setup-dev.service. Apr 12 18:47:50.518000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:50.524315 kernel: audit: type=1130 audit(1712947670.518:7): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:50.528035 systemd[1]: Finished systemd-sysctl.service. Apr 12 18:47:50.527000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:50.539327 kernel: audit: type=1130 audit(1712947670.527:8): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:50.555649 systemd[1]: Finished dracut-cmdline-ask.service. Apr 12 18:47:50.564612 kernel: audit: type=1130 audit(1712947670.556:9): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:50.556000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:50.557647 systemd[1]: Starting dracut-cmdline.service... Apr 12 18:47:50.585102 dracut-cmdline[207]: dracut-dracut-053 Apr 12 18:47:50.593430 dracut-cmdline[207]: Using kernel command line parameters: rd.driver.pre=btrfs rootflags=rw mount.usrflags=ro BOOT_IMAGE=/flatcar/vmlinuz-a mount.usr=/dev/mapper/usr verity.usr=PARTUUID=7130c94a-213a-4e5a-8e26-6cce9662f132 rootflags=rw mount.usrflags=ro consoleblank=0 root=LABEL=ROOT console=ttyS0,115200n8 flatcar.first_boot=detected flatcar.oem.id=ec2 modprobe.blacklist=xen_fbfront net.ifnames=0 nvme_core.io_timeout=4294967295 verity.usrhash=189121f7c8c0a24098d3bb1e040d34611f7c276be43815ff7fe409fce185edaf Apr 12 18:47:50.700327 kernel: Loading iSCSI transport class v2.0-870. Apr 12 18:47:50.723326 kernel: iscsi: registered transport (tcp) Apr 12 18:47:50.765692 kernel: iscsi: registered transport (qla4xxx) Apr 12 18:47:50.765820 kernel: QLogic iSCSI HBA Driver Apr 12 18:47:50.817997 systemd[1]: Finished dracut-cmdline.service. Apr 12 18:47:50.827783 kernel: audit: type=1130 audit(1712947670.819:10): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:50.819000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:50.820962 systemd[1]: Starting dracut-pre-udev.service... Apr 12 18:47:50.888356 kernel: raid6: avx512x4 gen() 14625 MB/s Apr 12 18:47:50.905366 kernel: raid6: avx512x4 xor() 7127 MB/s Apr 12 18:47:50.923362 kernel: raid6: avx512x2 gen() 16201 MB/s Apr 12 18:47:50.941351 kernel: raid6: avx512x2 xor() 21372 MB/s Apr 12 18:47:50.960364 kernel: raid6: avx512x1 gen() 14163 MB/s Apr 12 18:47:50.978355 kernel: raid6: avx512x1 xor() 16907 MB/s Apr 12 18:47:50.996509 kernel: raid6: avx2x4 gen() 14386 MB/s Apr 12 18:47:51.013363 kernel: raid6: avx2x4 xor() 5655 MB/s Apr 12 18:47:51.030363 kernel: raid6: avx2x2 gen() 15500 MB/s Apr 12 18:47:51.049359 kernel: raid6: avx2x2 xor() 15712 MB/s Apr 12 18:47:51.068547 kernel: raid6: avx2x1 gen() 11594 MB/s Apr 12 18:47:51.085353 kernel: raid6: avx2x1 xor() 12974 MB/s Apr 12 18:47:51.103343 kernel: raid6: sse2x4 gen() 7489 MB/s Apr 12 18:47:51.121355 kernel: raid6: sse2x4 xor() 4765 MB/s Apr 12 18:47:51.139384 kernel: raid6: sse2x2 gen() 8573 MB/s Apr 12 18:47:51.157475 kernel: raid6: sse2x2 xor() 4469 MB/s Apr 12 18:47:51.175352 kernel: raid6: sse2x1 gen() 6782 MB/s Apr 12 18:47:51.196758 kernel: raid6: sse2x1 xor() 3872 MB/s Apr 12 18:47:51.196892 kernel: raid6: using algorithm avx512x2 gen() 16201 MB/s Apr 12 18:47:51.196913 kernel: raid6: .... xor() 21372 MB/s, rmw enabled Apr 12 18:47:51.197961 kernel: raid6: using avx512x2 recovery algorithm Apr 12 18:47:51.216324 kernel: xor: automatically using best checksumming function avx Apr 12 18:47:51.373330 kernel: Btrfs loaded, crc32c=crc32c-intel, zoned=no, fsverity=no Apr 12 18:47:51.385224 systemd[1]: Finished dracut-pre-udev.service. Apr 12 18:47:51.387000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-udev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:51.389000 audit: BPF prog-id=7 op=LOAD Apr 12 18:47:51.389000 audit: BPF prog-id=8 op=LOAD Apr 12 18:47:51.392130 systemd[1]: Starting systemd-udevd.service... Apr 12 18:47:51.424518 systemd-udevd[385]: Using default interface naming scheme 'v252'. Apr 12 18:47:51.437789 systemd[1]: Started systemd-udevd.service. Apr 12 18:47:51.439000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:51.443807 systemd[1]: Starting dracut-pre-trigger.service... Apr 12 18:47:51.475499 dracut-pre-trigger[392]: rd.md=0: removing MD RAID activation Apr 12 18:47:51.551934 systemd[1]: Finished dracut-pre-trigger.service. Apr 12 18:47:51.553000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:51.556153 systemd[1]: Starting systemd-udev-trigger.service... Apr 12 18:47:51.622246 systemd[1]: Finished systemd-udev-trigger.service. Apr 12 18:47:51.623000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:51.723766 kernel: ena 0000:00:05.0: ENA device version: 0.10 Apr 12 18:47:51.724063 kernel: ena 0000:00:05.0: ENA controller version: 0.0.1 implementation version 1 Apr 12 18:47:51.724271 kernel: cryptd: max_cpu_qlen set to 1000 Apr 12 18:47:51.739326 kernel: ena 0000:00:05.0: LLQ is not supported Fallback to host mode policy. Apr 12 18:47:51.755477 kernel: ena 0000:00:05.0: Elastic Network Adapter (ENA) found at mem febf4000, mac addr 06:0f:55:f8:15:91 Apr 12 18:47:51.758164 (udev-worker)[423]: Network interface NamePolicy= disabled on kernel command line. Apr 12 18:47:51.957584 kernel: nvme nvme0: pci function 0000:00:04.0 Apr 12 18:47:51.957900 kernel: ACPI: \_SB_.LNKD: Enabled at IRQ 11 Apr 12 18:47:51.957924 kernel: nvme nvme0: 2/0/0 default/read/poll queues Apr 12 18:47:51.958081 kernel: GPT:Primary header thinks Alt. header is not at the end of the disk. Apr 12 18:47:51.958189 kernel: GPT:9289727 != 16777215 Apr 12 18:47:51.958207 kernel: GPT:Alternate GPT header not at the end of the disk. Apr 12 18:47:51.958222 kernel: GPT:9289727 != 16777215 Apr 12 18:47:51.958239 kernel: GPT: Use GNU Parted to correct GPT errors. Apr 12 18:47:51.959070 kernel: nvme0n1: p1 p2 p3 p4 p6 p7 p9 Apr 12 18:47:51.959103 kernel: AVX2 version of gcm_enc/dec engaged. Apr 12 18:47:51.959148 kernel: AES CTR mode by8 optimization enabled Apr 12 18:47:51.959163 kernel: BTRFS: device label OEM devid 1 transid 12 /dev/nvme0n1p6 scanned by (udev-worker) (427) Apr 12 18:47:51.990276 systemd[1]: Found device dev-disk-by\x2dlabel-EFI\x2dSYSTEM.device. Apr 12 18:47:52.013015 systemd[1]: Found device dev-disk-by\x2dlabel-OEM.device. Apr 12 18:47:52.035086 systemd[1]: Found device dev-disk-by\x2dlabel-ROOT.device. Apr 12 18:47:52.049051 systemd[1]: Found device dev-disk-by\x2dpartlabel-USR\x2dA.device. Apr 12 18:47:52.049187 systemd[1]: Found device dev-disk-by\x2dpartuuid-7130c94a\x2d213a\x2d4e5a\x2d8e26\x2d6cce9662f132.device. Apr 12 18:47:52.059183 systemd[1]: Starting disk-uuid.service... Apr 12 18:47:52.068015 disk-uuid[585]: Primary Header is updated. Apr 12 18:47:52.068015 disk-uuid[585]: Secondary Entries is updated. Apr 12 18:47:52.068015 disk-uuid[585]: Secondary Header is updated. Apr 12 18:47:52.074327 kernel: nvme0n1: p1 p2 p3 p4 p6 p7 p9 Apr 12 18:47:52.082332 kernel: nvme0n1: p1 p2 p3 p4 p6 p7 p9 Apr 12 18:47:52.095332 kernel: nvme0n1: p1 p2 p3 p4 p6 p7 p9 Apr 12 18:47:53.092328 kernel: nvme0n1: p1 p2 p3 p4 p6 p7 p9 Apr 12 18:47:53.093049 disk-uuid[586]: The operation has completed successfully. Apr 12 18:47:53.290819 systemd[1]: disk-uuid.service: Deactivated successfully. Apr 12 18:47:53.291049 systemd[1]: Finished disk-uuid.service. Apr 12 18:47:53.293000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=disk-uuid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:53.293000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=disk-uuid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:53.321080 systemd[1]: Starting verity-setup.service... Apr 12 18:47:53.358337 kernel: device-mapper: verity: sha256 using implementation "sha256-avx2" Apr 12 18:47:53.480330 systemd[1]: Found device dev-mapper-usr.device. Apr 12 18:47:53.484782 systemd[1]: Mounting sysusr-usr.mount... Apr 12 18:47:53.493000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=verity-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:53.491687 systemd[1]: Finished verity-setup.service. Apr 12 18:47:53.626369 kernel: EXT4-fs (dm-0): mounted filesystem without journal. Opts: norecovery. Quota mode: none. Apr 12 18:47:53.638134 systemd[1]: Mounted sysusr-usr.mount. Apr 12 18:47:53.641397 systemd[1]: afterburn-network-kargs.service was skipped because no trigger condition checks were met. Apr 12 18:47:53.644807 systemd[1]: Starting ignition-setup.service... Apr 12 18:47:53.647048 systemd[1]: Starting parse-ip-for-networkd.service... Apr 12 18:47:53.672579 kernel: BTRFS info (device nvme0n1p6): using crc32c (crc32c-intel) checksum algorithm Apr 12 18:47:53.672655 kernel: BTRFS info (device nvme0n1p6): using free space tree Apr 12 18:47:53.672677 kernel: BTRFS info (device nvme0n1p6): has skinny extents Apr 12 18:47:53.697468 kernel: BTRFS info (device nvme0n1p6): enabling ssd optimizations Apr 12 18:47:53.711556 systemd[1]: mnt-oem.mount: Deactivated successfully. Apr 12 18:47:53.733457 systemd[1]: Finished ignition-setup.service. Apr 12 18:47:53.735000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:53.736888 systemd[1]: Starting ignition-fetch-offline.service... Apr 12 18:47:53.746437 systemd[1]: Finished parse-ip-for-networkd.service. Apr 12 18:47:53.747000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=parse-ip-for-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:53.748000 audit: BPF prog-id=9 op=LOAD Apr 12 18:47:53.750163 systemd[1]: Starting systemd-networkd.service... Apr 12 18:47:53.786417 systemd-networkd[1097]: lo: Link UP Apr 12 18:47:53.786429 systemd-networkd[1097]: lo: Gained carrier Apr 12 18:47:53.789000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:53.787726 systemd-networkd[1097]: Enumeration completed Apr 12 18:47:53.787941 systemd[1]: Started systemd-networkd.service. Apr 12 18:47:53.789046 systemd-networkd[1097]: eth0: Configuring with /usr/lib/systemd/network/zz-default.network. Apr 12 18:47:53.789780 systemd[1]: Reached target network.target. Apr 12 18:47:53.795904 systemd[1]: Starting iscsiuio.service... Apr 12 18:47:53.804815 systemd-networkd[1097]: eth0: Link UP Apr 12 18:47:53.804945 systemd-networkd[1097]: eth0: Gained carrier Apr 12 18:47:53.806000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsiuio comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:53.805387 systemd[1]: Started iscsiuio.service. Apr 12 18:47:53.808069 systemd[1]: Starting iscsid.service... Apr 12 18:47:53.818662 iscsid[1102]: iscsid: can't open InitiatorName configuration file /etc/iscsi/initiatorname.iscsi Apr 12 18:47:53.818662 iscsid[1102]: iscsid: Warning: InitiatorName file /etc/iscsi/initiatorname.iscsi does not exist or does not contain a properly formatted InitiatorName. If using software iscsi (iscsi_tcp or ib_iser) or partial offload (bnx2i or cxgbi iscsi), you may not be able to log into or discover targets. Please create a file /etc/iscsi/initiatorname.iscsi that contains a sting with the format: InitiatorName=iqn.yyyy-mm.[:identifier]. Apr 12 18:47:53.818662 iscsid[1102]: Example: InitiatorName=iqn.2001-04.com.redhat:fc6. Apr 12 18:47:53.818662 iscsid[1102]: If using hardware iscsi like qla4xxx this message can be ignored. Apr 12 18:47:53.818662 iscsid[1102]: iscsid: can't open InitiatorAlias configuration file /etc/iscsi/initiatorname.iscsi Apr 12 18:47:53.821000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:53.821130 systemd[1]: Started iscsid.service. Apr 12 18:47:53.848478 iscsid[1102]: iscsid: can't open iscsid.safe_logout configuration file /etc/iscsi/iscsid.conf Apr 12 18:47:53.823539 systemd[1]: Starting dracut-initqueue.service... Apr 12 18:47:53.856437 systemd-networkd[1097]: eth0: DHCPv4 address 172.31.22.61/20, gateway 172.31.16.1 acquired from 172.31.16.1 Apr 12 18:47:53.863753 systemd[1]: Finished dracut-initqueue.service. Apr 12 18:47:53.866000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:53.866853 systemd[1]: Reached target remote-fs-pre.target. Apr 12 18:47:53.873775 systemd[1]: Reached target remote-cryptsetup.target. Apr 12 18:47:53.878716 systemd[1]: Reached target remote-fs.target. Apr 12 18:47:53.882466 systemd[1]: Starting dracut-pre-mount.service... Apr 12 18:47:53.898974 systemd[1]: Finished dracut-pre-mount.service. Apr 12 18:47:53.900000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:54.527077 ignition[1093]: Ignition 2.14.0 Apr 12 18:47:54.527092 ignition[1093]: Stage: fetch-offline Apr 12 18:47:54.527232 ignition[1093]: reading system config file "/usr/lib/ignition/base.d/base.ign" Apr 12 18:47:54.527291 ignition[1093]: parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Apr 12 18:47:54.571039 ignition[1093]: no config dir at "/usr/lib/ignition/base.platform.d/aws" Apr 12 18:47:54.573454 ignition[1093]: Ignition finished successfully Apr 12 18:47:54.576619 systemd[1]: Finished ignition-fetch-offline.service. Apr 12 18:47:54.591882 kernel: kauditd_printk_skb: 17 callbacks suppressed Apr 12 18:47:54.591989 kernel: audit: type=1130 audit(1712947674.578:28): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:54.578000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:54.579755 systemd[1]: Starting ignition-fetch.service... Apr 12 18:47:54.600565 ignition[1121]: Ignition 2.14.0 Apr 12 18:47:54.600605 ignition[1121]: Stage: fetch Apr 12 18:47:54.601048 ignition[1121]: reading system config file "/usr/lib/ignition/base.d/base.ign" Apr 12 18:47:54.601083 ignition[1121]: parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Apr 12 18:47:54.615291 ignition[1121]: no config dir at "/usr/lib/ignition/base.platform.d/aws" Apr 12 18:47:54.617309 ignition[1121]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Apr 12 18:47:54.643049 ignition[1121]: INFO : PUT result: OK Apr 12 18:47:54.657654 ignition[1121]: DEBUG : parsed url from cmdline: "" Apr 12 18:47:54.657654 ignition[1121]: INFO : no config URL provided Apr 12 18:47:54.657654 ignition[1121]: INFO : reading system config file "/usr/lib/ignition/user.ign" Apr 12 18:47:54.657654 ignition[1121]: INFO : no config at "/usr/lib/ignition/user.ign" Apr 12 18:47:54.677837 ignition[1121]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Apr 12 18:47:54.677837 ignition[1121]: INFO : PUT result: OK Apr 12 18:47:54.694316 ignition[1121]: INFO : GET http://169.254.169.254/2019-10-01/user-data: attempt #1 Apr 12 18:47:54.696518 ignition[1121]: INFO : GET result: OK Apr 12 18:47:54.702407 ignition[1121]: DEBUG : parsing config with SHA512: ff9ff0d0aec847d15341600d1293761542d7c38072b77ba38fb1f78d552fc6dcf57a1d2071b39e668aa5af30e1c01667d89877cab036f82ad26baf83d60946ac Apr 12 18:47:54.727522 unknown[1121]: fetched base config from "system" Apr 12 18:47:54.727717 unknown[1121]: fetched base config from "system" Apr 12 18:47:54.728616 ignition[1121]: fetch: fetch complete Apr 12 18:47:54.727726 unknown[1121]: fetched user config from "aws" Apr 12 18:47:54.728622 ignition[1121]: fetch: fetch passed Apr 12 18:47:54.728675 ignition[1121]: Ignition finished successfully Apr 12 18:47:54.733444 systemd[1]: Finished ignition-fetch.service. Apr 12 18:47:54.736000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:54.738338 systemd[1]: Starting ignition-kargs.service... Apr 12 18:47:54.745139 kernel: audit: type=1130 audit(1712947674.736:29): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:54.759205 ignition[1127]: Ignition 2.14.0 Apr 12 18:47:54.759221 ignition[1127]: Stage: kargs Apr 12 18:47:54.759444 ignition[1127]: reading system config file "/usr/lib/ignition/base.d/base.ign" Apr 12 18:47:54.759480 ignition[1127]: parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Apr 12 18:47:54.770729 ignition[1127]: no config dir at "/usr/lib/ignition/base.platform.d/aws" Apr 12 18:47:54.772532 ignition[1127]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Apr 12 18:47:54.774470 ignition[1127]: INFO : PUT result: OK Apr 12 18:47:54.779710 ignition[1127]: kargs: kargs passed Apr 12 18:47:54.779937 ignition[1127]: Ignition finished successfully Apr 12 18:47:54.785242 systemd[1]: Finished ignition-kargs.service. Apr 12 18:47:54.788422 systemd[1]: Starting ignition-disks.service... Apr 12 18:47:54.797796 kernel: audit: type=1130 audit(1712947674.786:30): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:54.786000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:54.812713 ignition[1133]: Ignition 2.14.0 Apr 12 18:47:54.812727 ignition[1133]: Stage: disks Apr 12 18:47:54.812941 ignition[1133]: reading system config file "/usr/lib/ignition/base.d/base.ign" Apr 12 18:47:54.812973 ignition[1133]: parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Apr 12 18:47:54.828725 ignition[1133]: no config dir at "/usr/lib/ignition/base.platform.d/aws" Apr 12 18:47:54.830776 ignition[1133]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Apr 12 18:47:54.832918 ignition[1133]: INFO : PUT result: OK Apr 12 18:47:54.840429 ignition[1133]: disks: disks passed Apr 12 18:47:54.841609 ignition[1133]: Ignition finished successfully Apr 12 18:47:54.844493 systemd[1]: Finished ignition-disks.service. Apr 12 18:47:54.844000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:54.844830 systemd[1]: Reached target initrd-root-device.target. Apr 12 18:47:54.853973 kernel: audit: type=1130 audit(1712947674.844:31): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:54.854087 systemd[1]: Reached target local-fs-pre.target. Apr 12 18:47:54.854250 systemd[1]: Reached target local-fs.target. Apr 12 18:47:54.859907 systemd[1]: Reached target sysinit.target. Apr 12 18:47:54.862371 systemd[1]: Reached target basic.target. Apr 12 18:47:54.865855 systemd[1]: Starting systemd-fsck-root.service... Apr 12 18:47:54.921860 systemd-fsck[1141]: ROOT: clean, 612/553520 files, 56019/553472 blocks Apr 12 18:47:54.929531 systemd[1]: Finished systemd-fsck-root.service. Apr 12 18:47:54.935538 systemd[1]: Mounting sysroot.mount... Apr 12 18:47:54.929000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:54.950545 kernel: audit: type=1130 audit(1712947674.929:32): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:54.962327 kernel: EXT4-fs (nvme0n1p9): mounted filesystem with ordered data mode. Opts: (null). Quota mode: none. Apr 12 18:47:54.963233 systemd[1]: Mounted sysroot.mount. Apr 12 18:47:54.969824 systemd[1]: Reached target initrd-root-fs.target. Apr 12 18:47:54.974433 systemd[1]: Mounting sysroot-usr.mount... Apr 12 18:47:54.977003 systemd[1]: flatcar-metadata-hostname.service was skipped because no trigger condition checks were met. Apr 12 18:47:54.977090 systemd[1]: ignition-remount-sysroot.service was skipped because of an unmet condition check (ConditionPathIsReadWrite=!/sysroot). Apr 12 18:47:54.977199 systemd[1]: Reached target ignition-diskful.target. Apr 12 18:47:54.988174 systemd[1]: Mounted sysroot-usr.mount. Apr 12 18:47:55.025439 systemd[1]: Mounting sysroot-usr-share-oem.mount... Apr 12 18:47:55.030295 systemd[1]: Starting initrd-setup-root.service... Apr 12 18:47:55.043398 kernel: BTRFS: device label OEM devid 1 transid 14 /dev/nvme0n1p6 scanned by mount (1158) Apr 12 18:47:55.046494 initrd-setup-root[1163]: cut: /sysroot/etc/passwd: No such file or directory Apr 12 18:47:55.052310 kernel: BTRFS info (device nvme0n1p6): using crc32c (crc32c-intel) checksum algorithm Apr 12 18:47:55.052335 kernel: BTRFS info (device nvme0n1p6): using free space tree Apr 12 18:47:55.052356 kernel: BTRFS info (device nvme0n1p6): has skinny extents Apr 12 18:47:55.056322 kernel: BTRFS info (device nvme0n1p6): enabling ssd optimizations Apr 12 18:47:55.059908 systemd[1]: Mounted sysroot-usr-share-oem.mount. Apr 12 18:47:55.069022 initrd-setup-root[1189]: cut: /sysroot/etc/group: No such file or directory Apr 12 18:47:55.076091 initrd-setup-root[1197]: cut: /sysroot/etc/shadow: No such file or directory Apr 12 18:47:55.082443 initrd-setup-root[1205]: cut: /sysroot/etc/gshadow: No such file or directory Apr 12 18:47:55.238466 systemd-networkd[1097]: eth0: Gained IPv6LL Apr 12 18:47:55.327041 systemd[1]: Finished initrd-setup-root.service. Apr 12 18:47:55.341469 kernel: audit: type=1130 audit(1712947675.326:33): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:55.326000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:55.329616 systemd[1]: Starting ignition-mount.service... Apr 12 18:47:55.342572 systemd[1]: Starting sysroot-boot.service... Apr 12 18:47:55.350541 systemd[1]: sysusr-usr-share-oem.mount: Deactivated successfully. Apr 12 18:47:55.352193 systemd[1]: sysroot-usr-share-oem.mount: Deactivated successfully. Apr 12 18:47:55.370239 ignition[1223]: INFO : Ignition 2.14.0 Apr 12 18:47:55.370239 ignition[1223]: INFO : Stage: mount Apr 12 18:47:55.373672 ignition[1223]: INFO : reading system config file "/usr/lib/ignition/base.d/base.ign" Apr 12 18:47:55.373672 ignition[1223]: DEBUG : parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Apr 12 18:47:55.391442 ignition[1223]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/aws" Apr 12 18:47:55.393899 ignition[1223]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Apr 12 18:47:55.396150 ignition[1223]: INFO : PUT result: OK Apr 12 18:47:55.404146 ignition[1223]: INFO : mount: mount passed Apr 12 18:47:55.407263 ignition[1223]: INFO : Ignition finished successfully Apr 12 18:47:55.412632 systemd[1]: Finished sysroot-boot.service. Apr 12 18:47:55.414874 systemd[1]: Finished ignition-mount.service. Apr 12 18:47:55.414000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:55.418008 systemd[1]: Starting ignition-files.service... Apr 12 18:47:55.444604 kernel: audit: type=1130 audit(1712947675.414:34): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:55.444640 kernel: audit: type=1130 audit(1712947675.417:35): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:55.417000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:55.449221 systemd[1]: Mounting sysroot-usr-share-oem.mount... Apr 12 18:47:55.472349 kernel: BTRFS: device label OEM devid 1 transid 15 /dev/nvme0n1p6 scanned by mount (1233) Apr 12 18:47:55.480259 kernel: BTRFS info (device nvme0n1p6): using crc32c (crc32c-intel) checksum algorithm Apr 12 18:47:55.480361 kernel: BTRFS info (device nvme0n1p6): using free space tree Apr 12 18:47:55.480380 kernel: BTRFS info (device nvme0n1p6): has skinny extents Apr 12 18:47:55.495509 kernel: BTRFS info (device nvme0n1p6): enabling ssd optimizations Apr 12 18:47:55.507398 systemd[1]: Mounted sysroot-usr-share-oem.mount. Apr 12 18:47:55.523473 ignition[1252]: INFO : Ignition 2.14.0 Apr 12 18:47:55.523473 ignition[1252]: INFO : Stage: files Apr 12 18:47:55.526418 ignition[1252]: INFO : reading system config file "/usr/lib/ignition/base.d/base.ign" Apr 12 18:47:55.526418 ignition[1252]: DEBUG : parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Apr 12 18:47:55.554956 ignition[1252]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/aws" Apr 12 18:47:55.556700 ignition[1252]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Apr 12 18:47:55.560581 ignition[1252]: INFO : PUT result: OK Apr 12 18:47:55.565125 ignition[1252]: DEBUG : files: compiled without relabeling support, skipping Apr 12 18:47:55.571392 ignition[1252]: INFO : files: ensureUsers: op(1): [started] creating or modifying user "core" Apr 12 18:47:55.571392 ignition[1252]: DEBUG : files: ensureUsers: op(1): executing: "usermod" "--root" "/sysroot" "core" Apr 12 18:47:55.685273 ignition[1252]: INFO : files: ensureUsers: op(1): [finished] creating or modifying user "core" Apr 12 18:47:55.688148 ignition[1252]: INFO : files: ensureUsers: op(2): [started] adding ssh keys to user "core" Apr 12 18:47:55.694470 unknown[1252]: wrote ssh authorized keys file for user: core Apr 12 18:47:55.696229 ignition[1252]: INFO : files: ensureUsers: op(2): [finished] adding ssh keys to user "core" Apr 12 18:47:55.696229 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(3): [started] writing file "/sysroot/opt/cni-plugins-linux-amd64-v1.3.0.tgz" Apr 12 18:47:55.696229 ignition[1252]: INFO : GET https://github.com/containernetworking/plugins/releases/download/v1.3.0/cni-plugins-linux-amd64-v1.3.0.tgz: attempt #1 Apr 12 18:47:56.173753 ignition[1252]: INFO : GET result: OK Apr 12 18:47:56.568758 ignition[1252]: DEBUG : file matches expected sum of: 5d0324ca8a3c90c680b6e1fddb245a2255582fa15949ba1f3c6bb7323df9d3af754dae98d6e40ac9ccafb2999c932df2c4288d418949a4915d928eb23c090540 Apr 12 18:47:56.572198 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(3): [finished] writing file "/sysroot/opt/cni-plugins-linux-amd64-v1.3.0.tgz" Apr 12 18:47:56.572198 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(4): [started] writing file "/sysroot/opt/crictl-v1.27.0-linux-amd64.tar.gz" Apr 12 18:47:56.572198 ignition[1252]: INFO : GET https://github.com/kubernetes-sigs/cri-tools/releases/download/v1.27.0/crictl-v1.27.0-linux-amd64.tar.gz: attempt #1 Apr 12 18:47:56.995473 ignition[1252]: INFO : GET result: OK Apr 12 18:47:57.146068 ignition[1252]: DEBUG : file matches expected sum of: aa622325bf05520939f9e020d7a28ab48ac23e2fae6f47d5a4e52174c88c1ebc31b464853e4fd65bd8f5331f330a6ca96fd370d247d3eeaed042da4ee2d1219a Apr 12 18:47:57.149703 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(4): [finished] writing file "/sysroot/opt/crictl-v1.27.0-linux-amd64.tar.gz" Apr 12 18:47:57.149703 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(5): [started] writing file "/sysroot/etc/eks/bootstrap.sh" Apr 12 18:47:57.157283 ignition[1252]: INFO : oem config not found in "/usr/share/oem", looking on oem partition Apr 12 18:47:57.172407 ignition[1252]: INFO : op(1): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3177074504" Apr 12 18:47:57.182631 kernel: BTRFS info: devid 1 device path /dev/nvme0n1p6 changed to /dev/disk/by-label/OEM scanned by ignition (1257) Apr 12 18:47:57.182663 ignition[1252]: CRITICAL : op(1): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3177074504": device or resource busy Apr 12 18:47:57.182663 ignition[1252]: ERROR : failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem3177074504", trying btrfs: device or resource busy Apr 12 18:47:57.182663 ignition[1252]: INFO : op(2): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3177074504" Apr 12 18:47:57.182663 ignition[1252]: INFO : op(2): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3177074504" Apr 12 18:47:57.182663 ignition[1252]: INFO : op(3): [started] unmounting "/mnt/oem3177074504" Apr 12 18:47:57.182663 ignition[1252]: INFO : op(3): [finished] unmounting "/mnt/oem3177074504" Apr 12 18:47:57.182663 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(5): [finished] writing file "/sysroot/etc/eks/bootstrap.sh" Apr 12 18:47:57.201597 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(6): [started] writing file "/sysroot/opt/bin/kubeadm" Apr 12 18:47:57.201597 ignition[1252]: INFO : GET https://dl.k8s.io/release/v1.27.2/bin/linux/amd64/kubeadm: attempt #1 Apr 12 18:47:57.184235 systemd[1]: mnt-oem3177074504.mount: Deactivated successfully. Apr 12 18:47:57.315042 ignition[1252]: INFO : GET result: OK Apr 12 18:47:57.709263 ignition[1252]: DEBUG : file matches expected sum of: f40216b7d14046931c58072d10c7122934eac5a23c08821371f8b08ac1779443ad11d3458a4c5dcde7cf80fc600a9fefb14b1942aa46a52330248d497ca88836 Apr 12 18:47:57.712343 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(6): [finished] writing file "/sysroot/opt/bin/kubeadm" Apr 12 18:47:57.712343 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(7): [started] writing file "/sysroot/opt/bin/kubelet" Apr 12 18:47:57.712343 ignition[1252]: INFO : GET https://dl.k8s.io/release/v1.27.2/bin/linux/amd64/kubelet: attempt #1 Apr 12 18:47:57.773500 ignition[1252]: INFO : GET result: OK Apr 12 18:47:58.606389 ignition[1252]: DEBUG : file matches expected sum of: a283da2224d456958b2cb99b4f6faf4457c4ed89e9e95f37d970c637f6a7f64ff4dd4d2bfce538759b2d2090933bece599a285ef8fd132eb383fece9a3941560 Apr 12 18:47:58.606389 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(7): [finished] writing file "/sysroot/opt/bin/kubelet" Apr 12 18:47:58.606389 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(8): [started] writing file "/sysroot/home/core/install.sh" Apr 12 18:47:58.623473 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(8): [finished] writing file "/sysroot/home/core/install.sh" Apr 12 18:47:58.623473 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(9): [started] writing file "/sysroot/etc/docker/daemon.json" Apr 12 18:47:58.623473 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(9): [finished] writing file "/sysroot/etc/docker/daemon.json" Apr 12 18:47:58.623473 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(a): [started] writing file "/sysroot/etc/flatcar/update.conf" Apr 12 18:47:58.623473 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(a): [finished] writing file "/sysroot/etc/flatcar/update.conf" Apr 12 18:47:58.623473 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(b): [started] writing file "/sysroot/etc/amazon/ssm/amazon-ssm-agent.json" Apr 12 18:47:58.623473 ignition[1252]: INFO : oem config not found in "/usr/share/oem", looking on oem partition Apr 12 18:47:58.645081 ignition[1252]: INFO : op(4): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3344313568" Apr 12 18:47:58.645081 ignition[1252]: CRITICAL : op(4): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3344313568": device or resource busy Apr 12 18:47:58.645081 ignition[1252]: ERROR : failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem3344313568", trying btrfs: device or resource busy Apr 12 18:47:58.645081 ignition[1252]: INFO : op(5): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3344313568" Apr 12 18:47:58.661386 ignition[1252]: INFO : op(5): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3344313568" Apr 12 18:47:58.661386 ignition[1252]: INFO : op(6): [started] unmounting "/mnt/oem3344313568" Apr 12 18:47:58.661386 ignition[1252]: INFO : op(6): [finished] unmounting "/mnt/oem3344313568" Apr 12 18:47:58.661386 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(b): [finished] writing file "/sysroot/etc/amazon/ssm/amazon-ssm-agent.json" Apr 12 18:47:58.661386 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(c): [started] writing file "/sysroot/etc/amazon/ssm/seelog.xml" Apr 12 18:47:58.661386 ignition[1252]: INFO : oem config not found in "/usr/share/oem", looking on oem partition Apr 12 18:47:58.683754 systemd[1]: mnt-oem3344313568.mount: Deactivated successfully. Apr 12 18:47:58.723704 ignition[1252]: INFO : op(7): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem2999038183" Apr 12 18:47:58.732620 ignition[1252]: CRITICAL : op(7): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem2999038183": device or resource busy Apr 12 18:47:58.732620 ignition[1252]: ERROR : failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem2999038183", trying btrfs: device or resource busy Apr 12 18:47:58.732620 ignition[1252]: INFO : op(8): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem2999038183" Apr 12 18:47:58.742079 ignition[1252]: INFO : op(8): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem2999038183" Apr 12 18:47:58.744380 ignition[1252]: INFO : op(9): [started] unmounting "/mnt/oem2999038183" Apr 12 18:47:58.744380 ignition[1252]: INFO : op(9): [finished] unmounting "/mnt/oem2999038183" Apr 12 18:47:58.744267 systemd[1]: mnt-oem2999038183.mount: Deactivated successfully. Apr 12 18:47:58.749477 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(c): [finished] writing file "/sysroot/etc/amazon/ssm/seelog.xml" Apr 12 18:47:58.749477 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(d): [started] writing file "/sysroot/etc/systemd/system/nvidia.service" Apr 12 18:47:58.749477 ignition[1252]: INFO : oem config not found in "/usr/share/oem", looking on oem partition Apr 12 18:47:58.778363 ignition[1252]: INFO : op(a): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem2359265498" Apr 12 18:47:58.780363 ignition[1252]: CRITICAL : op(a): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem2359265498": device or resource busy Apr 12 18:47:58.780363 ignition[1252]: ERROR : failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem2359265498", trying btrfs: device or resource busy Apr 12 18:47:58.780363 ignition[1252]: INFO : op(b): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem2359265498" Apr 12 18:47:58.821284 ignition[1252]: INFO : op(b): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem2359265498" Apr 12 18:47:58.821284 ignition[1252]: INFO : op(c): [started] unmounting "/mnt/oem2359265498" Apr 12 18:47:58.821284 ignition[1252]: INFO : op(c): [finished] unmounting "/mnt/oem2359265498" Apr 12 18:47:58.821284 ignition[1252]: INFO : files: createFilesystemsFiles: createFiles: op(d): [finished] writing file "/sysroot/etc/systemd/system/nvidia.service" Apr 12 18:47:58.821284 ignition[1252]: INFO : files: op(e): [started] processing unit "coreos-metadata-sshkeys@.service" Apr 12 18:47:58.821284 ignition[1252]: INFO : files: op(e): [finished] processing unit "coreos-metadata-sshkeys@.service" Apr 12 18:47:58.821284 ignition[1252]: INFO : files: op(f): [started] processing unit "amazon-ssm-agent.service" Apr 12 18:47:58.821284 ignition[1252]: INFO : files: op(f): op(10): [started] writing unit "amazon-ssm-agent.service" at "/sysroot/etc/systemd/system/amazon-ssm-agent.service" Apr 12 18:47:58.821284 ignition[1252]: INFO : files: op(f): op(10): [finished] writing unit "amazon-ssm-agent.service" at "/sysroot/etc/systemd/system/amazon-ssm-agent.service" Apr 12 18:47:58.821284 ignition[1252]: INFO : files: op(f): [finished] processing unit "amazon-ssm-agent.service" Apr 12 18:47:58.821284 ignition[1252]: INFO : files: op(11): [started] processing unit "nvidia.service" Apr 12 18:47:58.821284 ignition[1252]: INFO : files: op(11): [finished] processing unit "nvidia.service" Apr 12 18:47:58.821284 ignition[1252]: INFO : files: op(12): [started] processing unit "prepare-critools.service" Apr 12 18:47:58.821284 ignition[1252]: INFO : files: op(12): op(13): [started] writing unit "prepare-critools.service" at "/sysroot/etc/systemd/system/prepare-critools.service" Apr 12 18:47:58.821284 ignition[1252]: INFO : files: op(12): op(13): [finished] writing unit "prepare-critools.service" at "/sysroot/etc/systemd/system/prepare-critools.service" Apr 12 18:47:58.821284 ignition[1252]: INFO : files: op(12): [finished] processing unit "prepare-critools.service" Apr 12 18:47:58.821284 ignition[1252]: INFO : files: op(14): [started] processing unit "prepare-cni-plugins.service" Apr 12 18:47:58.821284 ignition[1252]: INFO : files: op(14): op(15): [started] writing unit "prepare-cni-plugins.service" at "/sysroot/etc/systemd/system/prepare-cni-plugins.service" Apr 12 18:47:58.880551 ignition[1252]: INFO : files: op(14): op(15): [finished] writing unit "prepare-cni-plugins.service" at "/sysroot/etc/systemd/system/prepare-cni-plugins.service" Apr 12 18:47:58.880551 ignition[1252]: INFO : files: op(14): [finished] processing unit "prepare-cni-plugins.service" Apr 12 18:47:58.880551 ignition[1252]: INFO : files: op(16): [started] setting preset to enabled for "coreos-metadata-sshkeys@.service " Apr 12 18:47:58.880551 ignition[1252]: INFO : files: op(16): [finished] setting preset to enabled for "coreos-metadata-sshkeys@.service " Apr 12 18:47:58.880551 ignition[1252]: INFO : files: op(17): [started] setting preset to enabled for "amazon-ssm-agent.service" Apr 12 18:47:58.880551 ignition[1252]: INFO : files: op(17): [finished] setting preset to enabled for "amazon-ssm-agent.service" Apr 12 18:47:58.880551 ignition[1252]: INFO : files: op(18): [started] setting preset to enabled for "nvidia.service" Apr 12 18:47:58.880551 ignition[1252]: INFO : files: op(18): [finished] setting preset to enabled for "nvidia.service" Apr 12 18:47:58.880551 ignition[1252]: INFO : files: op(19): [started] setting preset to enabled for "prepare-critools.service" Apr 12 18:47:58.880551 ignition[1252]: INFO : files: op(19): [finished] setting preset to enabled for "prepare-critools.service" Apr 12 18:47:58.880551 ignition[1252]: INFO : files: op(1a): [started] setting preset to enabled for "prepare-cni-plugins.service" Apr 12 18:47:58.880551 ignition[1252]: INFO : files: op(1a): [finished] setting preset to enabled for "prepare-cni-plugins.service" Apr 12 18:47:58.924449 ignition[1252]: INFO : files: createResultFile: createFiles: op(1b): [started] writing file "/sysroot/etc/.ignition-result.json" Apr 12 18:47:58.924449 ignition[1252]: INFO : files: createResultFile: createFiles: op(1b): [finished] writing file "/sysroot/etc/.ignition-result.json" Apr 12 18:47:58.924449 ignition[1252]: INFO : files: files passed Apr 12 18:47:58.924449 ignition[1252]: INFO : Ignition finished successfully Apr 12 18:47:58.945283 kernel: audit: type=1130 audit(1712947678.933:36): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:58.933000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:58.928249 systemd[1]: Finished ignition-files.service. Apr 12 18:47:58.945508 systemd[1]: Starting initrd-setup-root-after-ignition.service... Apr 12 18:47:58.948906 systemd[1]: torcx-profile-populate.service was skipped because of an unmet condition check (ConditionPathExists=/sysroot/etc/torcx/next-profile). Apr 12 18:47:58.950297 systemd[1]: Starting ignition-quench.service... Apr 12 18:47:58.955239 systemd[1]: ignition-quench.service: Deactivated successfully. Apr 12 18:47:58.959000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:58.955396 systemd[1]: Finished ignition-quench.service. Apr 12 18:47:58.984219 kernel: audit: type=1130 audit(1712947678.959:37): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:58.961000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:58.967114 systemd[1]: Finished initrd-setup-root-after-ignition.service. Apr 12 18:47:58.984481 initrd-setup-root-after-ignition[1277]: grep: /sysroot/etc/flatcar/enabled-sysext.conf: No such file or directory Apr 12 18:47:58.984000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:58.984374 systemd[1]: Reached target ignition-complete.target. Apr 12 18:47:58.992321 systemd[1]: Starting initrd-parse-etc.service... Apr 12 18:47:59.015676 systemd[1]: initrd-parse-etc.service: Deactivated successfully. Apr 12 18:47:59.015857 systemd[1]: Finished initrd-parse-etc.service. Apr 12 18:47:59.018000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.018000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.018580 systemd[1]: Reached target initrd-fs.target. Apr 12 18:47:59.020574 systemd[1]: Reached target initrd.target. Apr 12 18:47:59.024107 systemd[1]: dracut-mount.service was skipped because no trigger condition checks were met. Apr 12 18:47:59.025658 systemd[1]: Starting dracut-pre-pivot.service... Apr 12 18:47:59.041804 systemd[1]: Finished dracut-pre-pivot.service. Apr 12 18:47:59.042000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.044142 systemd[1]: Starting initrd-cleanup.service... Apr 12 18:47:59.056610 systemd[1]: Stopped target nss-lookup.target. Apr 12 18:47:59.056891 systemd[1]: Stopped target remote-cryptsetup.target. Apr 12 18:47:59.061545 systemd[1]: Stopped target timers.target. Apr 12 18:47:59.063564 systemd[1]: dracut-pre-pivot.service: Deactivated successfully. Apr 12 18:47:59.065053 systemd[1]: Stopped dracut-pre-pivot.service. Apr 12 18:47:59.067000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.068124 systemd[1]: Stopped target initrd.target. Apr 12 18:47:59.070153 systemd[1]: Stopped target basic.target. Apr 12 18:47:59.079936 systemd[1]: Stopped target ignition-complete.target. Apr 12 18:47:59.087697 systemd[1]: Stopped target ignition-diskful.target. Apr 12 18:47:59.089976 systemd[1]: Stopped target initrd-root-device.target. Apr 12 18:47:59.092681 systemd[1]: Stopped target remote-fs.target. Apr 12 18:47:59.094691 systemd[1]: Stopped target remote-fs-pre.target. Apr 12 18:47:59.097081 systemd[1]: Stopped target sysinit.target. Apr 12 18:47:59.098939 systemd[1]: Stopped target local-fs.target. Apr 12 18:47:59.101499 systemd[1]: Stopped target local-fs-pre.target. Apr 12 18:47:59.103716 systemd[1]: Stopped target swap.target. Apr 12 18:47:59.107045 systemd[1]: dracut-pre-mount.service: Deactivated successfully. Apr 12 18:47:59.110162 systemd[1]: Stopped dracut-pre-mount.service. Apr 12 18:47:59.112000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.113072 systemd[1]: Stopped target cryptsetup.target. Apr 12 18:47:59.116285 systemd[1]: dracut-initqueue.service: Deactivated successfully. Apr 12 18:47:59.116602 systemd[1]: Stopped dracut-initqueue.service. Apr 12 18:47:59.130000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.132108 systemd[1]: initrd-setup-root-after-ignition.service: Deactivated successfully. Apr 12 18:47:59.134649 systemd[1]: Stopped initrd-setup-root-after-ignition.service. Apr 12 18:47:59.139000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.139699 systemd[1]: ignition-files.service: Deactivated successfully. Apr 12 18:47:59.141652 systemd[1]: Stopped ignition-files.service. Apr 12 18:47:59.144000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.155000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.157000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.145586 systemd[1]: Stopping ignition-mount.service... Apr 12 18:47:59.147719 systemd[1]: Stopping iscsiuio.service... Apr 12 18:47:59.151243 systemd[1]: Stopping sysroot-boot.service... Apr 12 18:47:59.168292 ignition[1290]: INFO : Ignition 2.14.0 Apr 12 18:47:59.168292 ignition[1290]: INFO : Stage: umount Apr 12 18:47:59.168292 ignition[1290]: INFO : reading system config file "/usr/lib/ignition/base.d/base.ign" Apr 12 18:47:59.168292 ignition[1290]: DEBUG : parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Apr 12 18:47:59.152954 systemd[1]: systemd-udev-trigger.service: Deactivated successfully. Apr 12 18:47:59.153514 systemd[1]: Stopped systemd-udev-trigger.service. Apr 12 18:47:59.155520 systemd[1]: dracut-pre-trigger.service: Deactivated successfully. Apr 12 18:47:59.155698 systemd[1]: Stopped dracut-pre-trigger.service. Apr 12 18:47:59.161997 systemd[1]: iscsiuio.service: Deactivated successfully. Apr 12 18:47:59.162126 systemd[1]: Stopped iscsiuio.service. Apr 12 18:47:59.192155 ignition[1290]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/aws" Apr 12 18:47:59.192155 ignition[1290]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Apr 12 18:47:59.197485 ignition[1290]: INFO : PUT result: OK Apr 12 18:47:59.198000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsiuio comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.200471 systemd[1]: initrd-cleanup.service: Deactivated successfully. Apr 12 18:47:59.207371 ignition[1290]: INFO : umount: umount passed Apr 12 18:47:59.207371 ignition[1290]: INFO : Ignition finished successfully Apr 12 18:47:59.200761 systemd[1]: Finished initrd-cleanup.service. Apr 12 18:47:59.215000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.217000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.217965 systemd[1]: ignition-mount.service: Deactivated successfully. Apr 12 18:47:59.220240 systemd[1]: Stopped ignition-mount.service. Apr 12 18:47:59.241000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.247462 systemd[1]: sysroot-boot.service: Deactivated successfully. Apr 12 18:47:59.247911 systemd[1]: Stopped sysroot-boot.service. Apr 12 18:47:59.255000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.255966 systemd[1]: ignition-disks.service: Deactivated successfully. Apr 12 18:47:59.256048 systemd[1]: Stopped ignition-disks.service. Apr 12 18:47:59.258000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.258699 systemd[1]: ignition-kargs.service: Deactivated successfully. Apr 12 18:47:59.260000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.258773 systemd[1]: Stopped ignition-kargs.service. Apr 12 18:47:59.262115 systemd[1]: ignition-fetch.service: Deactivated successfully. Apr 12 18:47:59.264000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.262188 systemd[1]: Stopped ignition-fetch.service. Apr 12 18:47:59.265544 systemd[1]: Stopped target network.target. Apr 12 18:47:59.268139 systemd[1]: ignition-fetch-offline.service: Deactivated successfully. Apr 12 18:47:59.270000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.268229 systemd[1]: Stopped ignition-fetch-offline.service. Apr 12 18:47:59.271535 systemd[1]: Stopped target paths.target. Apr 12 18:47:59.273668 systemd[1]: systemd-ask-password-console.path: Deactivated successfully. Apr 12 18:47:59.281384 systemd[1]: Stopped systemd-ask-password-console.path. Apr 12 18:47:59.283944 systemd[1]: Stopped target slices.target. Apr 12 18:47:59.286509 systemd[1]: Stopped target sockets.target. Apr 12 18:47:59.288038 systemd[1]: iscsid.socket: Deactivated successfully. Apr 12 18:47:59.288087 systemd[1]: Closed iscsid.socket. Apr 12 18:47:59.297000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.290618 systemd[1]: iscsiuio.socket: Deactivated successfully. Apr 12 18:47:59.299000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.290752 systemd[1]: Closed iscsiuio.socket. Apr 12 18:47:59.296497 systemd[1]: ignition-setup.service: Deactivated successfully. Apr 12 18:47:59.296560 systemd[1]: Stopped ignition-setup.service. Apr 12 18:47:59.297988 systemd[1]: initrd-setup-root.service: Deactivated successfully. Apr 12 18:47:59.298951 systemd[1]: Stopped initrd-setup-root.service. Apr 12 18:47:59.302591 systemd[1]: Stopping systemd-networkd.service... Apr 12 18:47:59.307713 systemd-networkd[1097]: eth0: DHCPv6 lease lost Apr 12 18:47:59.313000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.308656 systemd[1]: Stopping systemd-resolved.service... Apr 12 18:47:59.312671 systemd[1]: systemd-networkd.service: Deactivated successfully. Apr 12 18:47:59.312796 systemd[1]: Stopped systemd-networkd.service. Apr 12 18:47:59.325685 systemd[1]: systemd-resolved.service: Deactivated successfully. Apr 12 18:47:59.331000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.336000 audit: BPF prog-id=9 op=UNLOAD Apr 12 18:47:59.327600 systemd[1]: Stopped systemd-resolved.service. Apr 12 18:47:59.336729 systemd[1]: systemd-networkd.socket: Deactivated successfully. Apr 12 18:47:59.340000 audit: BPF prog-id=6 op=UNLOAD Apr 12 18:47:59.336850 systemd[1]: Closed systemd-networkd.socket. Apr 12 18:47:59.340644 systemd[1]: Stopping network-cleanup.service... Apr 12 18:47:59.348233 systemd[1]: parse-ip-for-networkd.service: Deactivated successfully. Apr 12 18:47:59.348000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=parse-ip-for-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.348420 systemd[1]: Stopped parse-ip-for-networkd.service. Apr 12 18:47:59.355000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.348976 systemd[1]: systemd-sysctl.service: Deactivated successfully. Apr 12 18:47:59.349044 systemd[1]: Stopped systemd-sysctl.service. Apr 12 18:47:59.360000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.357841 systemd[1]: systemd-modules-load.service: Deactivated successfully. Apr 12 18:47:59.357927 systemd[1]: Stopped systemd-modules-load.service. Apr 12 18:47:59.360906 systemd[1]: Stopping systemd-udevd.service... Apr 12 18:47:59.381320 systemd[1]: systemd-udevd.service: Deactivated successfully. Apr 12 18:47:59.382000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.381501 systemd[1]: Stopped systemd-udevd.service. Apr 12 18:47:59.385117 systemd[1]: network-cleanup.service: Deactivated successfully. Apr 12 18:47:59.385237 systemd[1]: Stopped network-cleanup.service. Apr 12 18:47:59.389000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=network-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.389744 systemd[1]: systemd-udevd-control.socket: Deactivated successfully. Apr 12 18:47:59.389837 systemd[1]: Closed systemd-udevd-control.socket. Apr 12 18:47:59.391751 systemd[1]: systemd-udevd-kernel.socket: Deactivated successfully. Apr 12 18:47:59.398000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-udev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.391806 systemd[1]: Closed systemd-udevd-kernel.socket. Apr 12 18:47:59.402000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.396459 systemd[1]: dracut-pre-udev.service: Deactivated successfully. Apr 12 18:47:59.396544 systemd[1]: Stopped dracut-pre-udev.service. Apr 12 18:47:59.404000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.399859 systemd[1]: dracut-cmdline.service: Deactivated successfully. Apr 12 18:47:59.400066 systemd[1]: Stopped dracut-cmdline.service. Apr 12 18:47:59.402250 systemd[1]: dracut-cmdline-ask.service: Deactivated successfully. Apr 12 18:47:59.402398 systemd[1]: Stopped dracut-cmdline-ask.service. Apr 12 18:47:59.415000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.417000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.412919 systemd[1]: Starting initrd-udevadm-cleanup-db.service... Apr 12 18:47:59.423000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.414224 systemd[1]: systemd-tmpfiles-setup-dev.service: Deactivated successfully. Apr 12 18:47:59.414293 systemd[1]: Stopped systemd-tmpfiles-setup-dev.service. Apr 12 18:47:59.431000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-udevadm-cleanup-db comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.431000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-udevadm-cleanup-db comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:47:59.416135 systemd[1]: kmod-static-nodes.service: Deactivated successfully. Apr 12 18:47:59.416182 systemd[1]: Stopped kmod-static-nodes.service. Apr 12 18:47:59.417772 systemd[1]: systemd-vconsole-setup.service: Deactivated successfully. Apr 12 18:47:59.417816 systemd[1]: Stopped systemd-vconsole-setup.service. Apr 12 18:47:59.426941 systemd[1]: initrd-udevadm-cleanup-db.service: Deactivated successfully. Apr 12 18:47:59.428618 systemd[1]: Finished initrd-udevadm-cleanup-db.service. Apr 12 18:47:59.435019 systemd[1]: Reached target initrd-switch-root.target. Apr 12 18:47:59.443278 systemd[1]: Starting initrd-switch-root.service... Apr 12 18:47:59.467747 systemd[1]: Switching root. Apr 12 18:47:59.494591 iscsid[1102]: iscsid shutting down. Apr 12 18:47:59.495918 systemd-journald[185]: Received SIGTERM from PID 1 (n/a). Apr 12 18:47:59.495995 systemd-journald[185]: Journal stopped Apr 12 18:48:07.520920 kernel: SELinux: Class mctp_socket not defined in policy. Apr 12 18:48:07.521001 kernel: SELinux: Class anon_inode not defined in policy. Apr 12 18:48:07.521021 kernel: SELinux: the above unknown classes and permissions will be allowed Apr 12 18:48:07.521043 kernel: SELinux: policy capability network_peer_controls=1 Apr 12 18:48:07.521061 kernel: SELinux: policy capability open_perms=1 Apr 12 18:48:07.521079 kernel: SELinux: policy capability extended_socket_class=1 Apr 12 18:48:07.521097 kernel: SELinux: policy capability always_check_network=0 Apr 12 18:48:07.521118 kernel: SELinux: policy capability cgroup_seclabel=1 Apr 12 18:48:07.521135 kernel: SELinux: policy capability nnp_nosuid_transition=1 Apr 12 18:48:07.521158 kernel: SELinux: policy capability genfs_seclabel_symlinks=0 Apr 12 18:48:07.521182 kernel: SELinux: policy capability ioctl_skip_cloexec=0 Apr 12 18:48:07.521200 kernel: kauditd_printk_skb: 40 callbacks suppressed Apr 12 18:48:07.521218 kernel: audit: type=1403 audit(1712947680.502:78): auid=4294967295 ses=4294967295 lsm=selinux res=1 Apr 12 18:48:07.521242 systemd[1]: Successfully loaded SELinux policy in 167.814ms. Apr 12 18:48:07.521265 systemd[1]: Relabelled /dev, /dev/shm, /run, /sys/fs/cgroup in 10.263ms. Apr 12 18:48:07.521285 systemd[1]: systemd 252 running in system mode (+PAM +AUDIT +SELINUX -APPARMOR +IMA +SMACK +SECCOMP +GCRYPT -GNUTLS +OPENSSL -ACL +BLKID +CURL -ELFUTILS -FIDO2 +IDN2 -IDN +IPTC +KMOD +LIBCRYPTSETUP +LIBFDISK +PCRE2 -PWQUALITY -P11KIT -QRENCODE -TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD -BPF_FRAMEWORK -XKBCOMMON +UTMP +SYSVINIT default-hierarchy=unified) Apr 12 18:48:07.521330 systemd[1]: Detected virtualization amazon. Apr 12 18:48:07.521349 systemd[1]: Detected architecture x86-64. Apr 12 18:48:07.521367 systemd[1]: Detected first boot. Apr 12 18:48:07.521389 systemd[1]: Initializing machine ID from VM UUID. Apr 12 18:48:07.521411 kernel: audit: type=1400 audit(1712947680.643:79): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=1 Apr 12 18:48:07.521430 kernel: audit: type=1400 audit(1712947680.643:80): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=1 Apr 12 18:48:07.521448 kernel: audit: type=1334 audit(1712947680.651:81): prog-id=10 op=LOAD Apr 12 18:48:07.521465 kernel: audit: type=1334 audit(1712947680.651:82): prog-id=10 op=UNLOAD Apr 12 18:48:07.521486 kernel: audit: type=1334 audit(1712947680.657:83): prog-id=11 op=LOAD Apr 12 18:48:07.521508 kernel: audit: type=1334 audit(1712947680.657:84): prog-id=11 op=UNLOAD Apr 12 18:48:07.521527 kernel: SELinux: Context system_u:object_r:container_file_t:s0:c1022,c1023 is not valid (left unmapped). Apr 12 18:48:07.521545 kernel: audit: type=1400 audit(1712947681.022:85): avc: denied { associate } for pid=1323 comm="torcx-generator" name="docker" dev="tmpfs" ino=2 scontext=system_u:object_r:unlabeled_t:s0 tcontext=system_u:object_r:tmpfs_t:s0 tclass=filesystem permissive=1 srawcon="system_u:object_r:container_file_t:s0:c1022,c1023" Apr 12 18:48:07.521564 kernel: audit: type=1300 audit(1712947681.022:85): arch=c000003e syscall=188 success=yes exit=0 a0=c0001078e2 a1=c00002ae40 a2=c000029100 a3=32 items=0 ppid=1306 pid=1323 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="torcx-generator" exe="/usr/lib/systemd/system-generators/torcx-generator" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:07.521582 kernel: audit: type=1327 audit(1712947681.022:85): proctitle=2F7573722F6C69622F73797374656D642F73797374656D2D67656E657261746F72732F746F7263782D67656E657261746F72002F72756E2F73797374656D642F67656E657261746F72002F72756E2F73797374656D642F67656E657261746F722E6561726C79002F72756E2F73797374656D642F67656E657261746F722E6C61 Apr 12 18:48:07.521601 systemd[1]: Populated /etc with preset unit settings. Apr 12 18:48:07.521623 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Apr 12 18:48:07.521642 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Apr 12 18:48:07.521666 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Apr 12 18:48:07.521685 kernel: kauditd_printk_skb: 6 callbacks suppressed Apr 12 18:48:07.521704 kernel: audit: type=1334 audit(1712947687.160:87): prog-id=12 op=LOAD Apr 12 18:48:07.521722 kernel: audit: type=1334 audit(1712947687.160:88): prog-id=3 op=UNLOAD Apr 12 18:48:07.521738 kernel: audit: type=1334 audit(1712947687.163:89): prog-id=13 op=LOAD Apr 12 18:48:07.521755 kernel: audit: type=1334 audit(1712947687.165:90): prog-id=14 op=LOAD Apr 12 18:48:07.521774 kernel: audit: type=1334 audit(1712947687.165:91): prog-id=4 op=UNLOAD Apr 12 18:48:07.521792 kernel: audit: type=1334 audit(1712947687.165:92): prog-id=5 op=UNLOAD Apr 12 18:48:07.521815 kernel: audit: type=1131 audit(1712947687.167:93): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:07.521832 systemd[1]: iscsid.service: Deactivated successfully. Apr 12 18:48:07.521948 systemd[1]: Stopped iscsid.service. Apr 12 18:48:07.521971 kernel: audit: type=1334 audit(1712947687.181:94): prog-id=12 op=UNLOAD Apr 12 18:48:07.521989 kernel: audit: type=1131 audit(1712947687.184:95): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=iscsid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:07.522012 systemd[1]: initrd-switch-root.service: Deactivated successfully. Apr 12 18:48:07.522030 systemd[1]: Stopped initrd-switch-root.service. Apr 12 18:48:07.522050 kernel: audit: type=1130 audit(1712947687.195:96): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=initrd-switch-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:07.522068 systemd[1]: systemd-journald.service: Scheduled restart job, restart counter is at 1. Apr 12 18:48:07.522088 systemd[1]: Created slice system-addon\x2dconfig.slice. Apr 12 18:48:07.522107 systemd[1]: Created slice system-addon\x2drun.slice. Apr 12 18:48:07.522126 systemd[1]: Created slice system-coreos\x2dmetadata\x2dsshkeys.slice. Apr 12 18:48:07.522145 systemd[1]: Created slice system-getty.slice. Apr 12 18:48:07.522166 systemd[1]: Created slice system-modprobe.slice. Apr 12 18:48:07.522185 systemd[1]: Created slice system-serial\x2dgetty.slice. Apr 12 18:48:07.522206 systemd[1]: Created slice system-system\x2dcloudinit.slice. Apr 12 18:48:07.522224 systemd[1]: Created slice system-systemd\x2dfsck.slice. Apr 12 18:48:07.522243 systemd[1]: Created slice user.slice. Apr 12 18:48:07.522262 systemd[1]: Started systemd-ask-password-console.path. Apr 12 18:48:07.522282 systemd[1]: Started systemd-ask-password-wall.path. Apr 12 18:48:07.522311 systemd[1]: Set up automount boot.automount. Apr 12 18:48:07.522330 systemd[1]: Set up automount proc-sys-fs-binfmt_misc.automount. Apr 12 18:48:07.522369 systemd[1]: Stopped target initrd-switch-root.target. Apr 12 18:48:07.522396 systemd[1]: Stopped target initrd-fs.target. Apr 12 18:48:07.522417 systemd[1]: Stopped target initrd-root-fs.target. Apr 12 18:48:07.522436 systemd[1]: Reached target integritysetup.target. Apr 12 18:48:07.522455 systemd[1]: Reached target remote-cryptsetup.target. Apr 12 18:48:07.522475 systemd[1]: Reached target remote-fs.target. Apr 12 18:48:07.522496 systemd[1]: Reached target slices.target. Apr 12 18:48:07.522515 systemd[1]: Reached target swap.target. Apr 12 18:48:07.522534 systemd[1]: Reached target torcx.target. Apr 12 18:48:07.522555 systemd[1]: Reached target veritysetup.target. Apr 12 18:48:07.522574 systemd[1]: Listening on systemd-coredump.socket. Apr 12 18:48:07.522612 systemd[1]: Listening on systemd-initctl.socket. Apr 12 18:48:07.522631 systemd[1]: Listening on systemd-networkd.socket. Apr 12 18:48:07.522654 systemd[1]: Listening on systemd-udevd-control.socket. Apr 12 18:48:07.522685 systemd[1]: Listening on systemd-udevd-kernel.socket. Apr 12 18:48:07.522704 systemd[1]: Listening on systemd-userdbd.socket. Apr 12 18:48:07.522724 systemd[1]: Mounting dev-hugepages.mount... Apr 12 18:48:07.522743 systemd[1]: Mounting dev-mqueue.mount... Apr 12 18:48:07.522763 systemd[1]: Mounting media.mount... Apr 12 18:48:07.522836 systemd[1]: proc-xen.mount was skipped because of an unmet condition check (ConditionVirtualization=xen). Apr 12 18:48:07.522857 systemd[1]: Mounting sys-kernel-debug.mount... Apr 12 18:48:07.522876 systemd[1]: Mounting sys-kernel-tracing.mount... Apr 12 18:48:07.522896 systemd[1]: Mounting tmp.mount... Apr 12 18:48:07.522919 systemd[1]: Starting flatcar-tmpfiles.service... Apr 12 18:48:07.522939 systemd[1]: ignition-delete-config.service was skipped because no trigger condition checks were met. Apr 12 18:48:07.522959 systemd[1]: Starting kmod-static-nodes.service... Apr 12 18:48:07.523055 systemd[1]: Starting modprobe@configfs.service... Apr 12 18:48:07.523078 systemd[1]: Starting modprobe@dm_mod.service... Apr 12 18:48:07.523097 systemd[1]: Starting modprobe@drm.service... Apr 12 18:48:07.523117 systemd[1]: Starting modprobe@efi_pstore.service... Apr 12 18:48:07.523137 systemd[1]: Starting modprobe@fuse.service... Apr 12 18:48:07.523155 systemd[1]: Starting modprobe@loop.service... Apr 12 18:48:07.523179 systemd[1]: setup-nsswitch.service was skipped because of an unmet condition check (ConditionPathExists=!/etc/nsswitch.conf). Apr 12 18:48:07.523198 systemd[1]: systemd-fsck-root.service: Deactivated successfully. Apr 12 18:48:07.523216 systemd[1]: Stopped systemd-fsck-root.service. Apr 12 18:48:07.523361 systemd[1]: systemd-fsck-usr.service: Deactivated successfully. Apr 12 18:48:07.523383 systemd[1]: Stopped systemd-fsck-usr.service. Apr 12 18:48:07.523402 systemd[1]: Stopped systemd-journald.service. Apr 12 18:48:07.523422 systemd[1]: Starting systemd-journald.service... Apr 12 18:48:07.523441 systemd[1]: Starting systemd-modules-load.service... Apr 12 18:48:07.523878 systemd[1]: Starting systemd-network-generator.service... Apr 12 18:48:07.523905 systemd[1]: Starting systemd-remount-fs.service... Apr 12 18:48:07.523925 systemd[1]: Starting systemd-udev-trigger.service... Apr 12 18:48:07.523946 systemd[1]: verity-setup.service: Deactivated successfully. Apr 12 18:48:07.523964 systemd[1]: Stopped verity-setup.service. Apr 12 18:48:07.523983 systemd[1]: xenserver-pv-version.service was skipped because of an unmet condition check (ConditionVirtualization=xen). Apr 12 18:48:07.524002 systemd[1]: Mounted dev-hugepages.mount. Apr 12 18:48:07.524021 systemd[1]: Mounted dev-mqueue.mount. Apr 12 18:48:07.524582 systemd[1]: Mounted media.mount. Apr 12 18:48:07.524606 systemd[1]: Mounted sys-kernel-debug.mount. Apr 12 18:48:07.524629 systemd[1]: Mounted sys-kernel-tracing.mount. Apr 12 18:48:07.524646 systemd[1]: Mounted tmp.mount. Apr 12 18:48:07.524664 systemd[1]: Finished kmod-static-nodes.service. Apr 12 18:48:07.524682 systemd[1]: modprobe@configfs.service: Deactivated successfully. Apr 12 18:48:07.524701 systemd[1]: Finished modprobe@configfs.service. Apr 12 18:48:07.524723 systemd[1]: modprobe@dm_mod.service: Deactivated successfully. Apr 12 18:48:07.524745 systemd[1]: Finished modprobe@dm_mod.service. Apr 12 18:48:07.524782 systemd-journald[1398]: Journal started Apr 12 18:48:07.524855 systemd-journald[1398]: Runtime Journal (/run/log/journal/ec2f6f18a14b29b98d6ae3a1d4766ab3) is 4.8M, max 38.7M, 33.9M free. Apr 12 18:48:00.502000 audit: MAC_POLICY_LOAD auid=4294967295 ses=4294967295 lsm=selinux res=1 Apr 12 18:48:00.643000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=1 Apr 12 18:48:00.643000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=1 Apr 12 18:48:00.651000 audit: BPF prog-id=10 op=LOAD Apr 12 18:48:00.651000 audit: BPF prog-id=10 op=UNLOAD Apr 12 18:48:00.657000 audit: BPF prog-id=11 op=LOAD Apr 12 18:48:00.657000 audit: BPF prog-id=11 op=UNLOAD Apr 12 18:48:01.022000 audit[1323]: AVC avc: denied { associate } for pid=1323 comm="torcx-generator" name="docker" dev="tmpfs" ino=2 scontext=system_u:object_r:unlabeled_t:s0 tcontext=system_u:object_r:tmpfs_t:s0 tclass=filesystem permissive=1 srawcon="system_u:object_r:container_file_t:s0:c1022,c1023" Apr 12 18:48:01.022000 audit[1323]: SYSCALL arch=c000003e syscall=188 success=yes exit=0 a0=c0001078e2 a1=c00002ae40 a2=c000029100 a3=32 items=0 ppid=1306 pid=1323 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="torcx-generator" exe="/usr/lib/systemd/system-generators/torcx-generator" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:01.022000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D2D67656E657261746F72732F746F7263782D67656E657261746F72002F72756E2F73797374656D642F67656E657261746F72002F72756E2F73797374656D642F67656E657261746F722E6561726C79002F72756E2F73797374656D642F67656E657261746F722E6C61 Apr 12 18:48:01.029000 audit[1323]: AVC avc: denied { associate } for pid=1323 comm="torcx-generator" name="usr" scontext=system_u:object_r:unlabeled_t:s0 tcontext=system_u:object_r:tmpfs_t:s0 tclass=filesystem permissive=1 Apr 12 18:48:01.029000 audit[1323]: SYSCALL arch=c000003e syscall=258 success=yes exit=0 a0=ffffffffffffff9c a1=c0001079b9 a2=1ed a3=0 items=2 ppid=1306 pid=1323 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="torcx-generator" exe="/usr/lib/systemd/system-generators/torcx-generator" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:01.029000 audit: CWD cwd="/" Apr 12 18:48:01.029000 audit: PATH item=0 name=(null) inode=2 dev=00:1b mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:unlabeled_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:01.029000 audit: PATH item=1 name=(null) inode=3 dev=00:1b mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:unlabeled_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:01.029000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D2D67656E657261746F72732F746F7263782D67656E657261746F72002F72756E2F73797374656D642F67656E657261746F72002F72756E2F73797374656D642F67656E657261746F722E6561726C79002F72756E2F73797374656D642F67656E657261746F722E6C61 Apr 12 18:48:07.160000 audit: BPF prog-id=12 op=LOAD Apr 12 18:48:07.160000 audit: BPF prog-id=3 op=UNLOAD Apr 12 18:48:07.163000 audit: BPF prog-id=13 op=LOAD Apr 12 18:48:07.165000 audit: BPF prog-id=14 op=LOAD Apr 12 18:48:07.165000 audit: BPF prog-id=4 op=UNLOAD Apr 12 18:48:07.165000 audit: BPF prog-id=5 op=UNLOAD Apr 12 18:48:07.167000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:07.181000 audit: BPF prog-id=12 op=UNLOAD Apr 12 18:48:07.184000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=iscsid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:07.195000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=initrd-switch-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:07.195000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=initrd-switch-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:07.413000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:07.421000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck-usr comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:07.425000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:07.425000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:07.426000 audit: BPF prog-id=15 op=LOAD Apr 12 18:48:07.426000 audit: BPF prog-id=16 op=LOAD Apr 12 18:48:07.426000 audit: BPF prog-id=17 op=LOAD Apr 12 18:48:07.426000 audit: BPF prog-id=13 op=UNLOAD Apr 12 18:48:07.426000 audit: BPF prog-id=14 op=UNLOAD Apr 12 18:48:07.479000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=verity-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:07.512000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:07.517000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@configfs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:07.517000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@configfs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:07.518000 audit: CONFIG_CHANGE op=set audit_enabled=1 old=1 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 res=1 Apr 12 18:48:07.518000 audit[1398]: SYSCALL arch=c000003e syscall=46 success=yes exit=60 a0=6 a1=7ffeb47e1070 a2=4000 a3=7ffeb47e110c items=0 ppid=1 pid=1398 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="systemd-journal" exe="/usr/lib/systemd/systemd-journald" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:07.518000 audit: PROCTITLE proctitle="/usr/lib/systemd/systemd-journald" Apr 12 18:48:07.525000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:07.525000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:07.157698 systemd[1]: Queued start job for default target multi-user.target. Apr 12 18:48:01.000047 /usr/lib/systemd/system-generators/torcx-generator[1323]: time="2024-04-12T18:48:00Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.3 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.3 /var/lib/torcx/store]" Apr 12 18:48:07.167689 systemd[1]: systemd-journald.service: Deactivated successfully. Apr 12 18:48:01.002729 /usr/lib/systemd/system-generators/torcx-generator[1323]: time="2024-04-12T18:48:01Z" level=debug msg="profile found" name=docker-1.12-no path=/usr/share/torcx/profiles/docker-1.12-no.json Apr 12 18:48:01.002763 /usr/lib/systemd/system-generators/torcx-generator[1323]: time="2024-04-12T18:48:01Z" level=debug msg="profile found" name=vendor path=/usr/share/torcx/profiles/vendor.json Apr 12 18:48:01.002809 /usr/lib/systemd/system-generators/torcx-generator[1323]: time="2024-04-12T18:48:01Z" level=info msg="no vendor profile selected by /etc/flatcar/docker-1.12" Apr 12 18:48:01.002824 /usr/lib/systemd/system-generators/torcx-generator[1323]: time="2024-04-12T18:48:01Z" level=debug msg="skipped missing lower profile" missing profile=oem Apr 12 18:48:01.002873 /usr/lib/systemd/system-generators/torcx-generator[1323]: time="2024-04-12T18:48:01Z" level=warning msg="no next profile: unable to read profile file: open /etc/torcx/next-profile: no such file or directory" Apr 12 18:48:01.002893 /usr/lib/systemd/system-generators/torcx-generator[1323]: time="2024-04-12T18:48:01Z" level=debug msg="apply configuration parsed" lower profiles (vendor/oem)="[vendor]" upper profile (user)= Apr 12 18:48:01.003570 /usr/lib/systemd/system-generators/torcx-generator[1323]: time="2024-04-12T18:48:01Z" level=debug msg="mounted tmpfs" target=/run/torcx/unpack Apr 12 18:48:01.003639 /usr/lib/systemd/system-generators/torcx-generator[1323]: time="2024-04-12T18:48:01Z" level=debug msg="profile found" name=docker-1.12-no path=/usr/share/torcx/profiles/docker-1.12-no.json Apr 12 18:48:01.003659 /usr/lib/systemd/system-generators/torcx-generator[1323]: time="2024-04-12T18:48:01Z" level=debug msg="profile found" name=vendor path=/usr/share/torcx/profiles/vendor.json Apr 12 18:48:01.009248 /usr/lib/systemd/system-generators/torcx-generator[1323]: time="2024-04-12T18:48:01Z" level=debug msg="new archive/reference added to cache" format=tgz name=docker path="/usr/share/torcx/store/docker:20.10.torcx.tgz" reference=20.10 Apr 12 18:48:07.530362 systemd[1]: Started systemd-journald.service. Apr 12 18:48:01.009326 /usr/lib/systemd/system-generators/torcx-generator[1323]: time="2024-04-12T18:48:01Z" level=debug msg="new archive/reference added to cache" format=tgz name=docker path="/usr/share/torcx/store/docker:com.coreos.cl.torcx.tgz" reference=com.coreos.cl Apr 12 18:48:07.530000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:01.009358 /usr/lib/systemd/system-generators/torcx-generator[1323]: time="2024-04-12T18:48:01Z" level=info msg="store skipped" err="open /usr/share/oem/torcx/store/3510.3.3: no such file or directory" path=/usr/share/oem/torcx/store/3510.3.3 Apr 12 18:48:01.009381 /usr/lib/systemd/system-generators/torcx-generator[1323]: time="2024-04-12T18:48:01Z" level=info msg="store skipped" err="open /usr/share/oem/torcx/store: no such file or directory" path=/usr/share/oem/torcx/store Apr 12 18:48:01.009413 /usr/lib/systemd/system-generators/torcx-generator[1323]: time="2024-04-12T18:48:01Z" level=info msg="store skipped" err="open /var/lib/torcx/store/3510.3.3: no such file or directory" path=/var/lib/torcx/store/3510.3.3 Apr 12 18:48:01.009435 /usr/lib/systemd/system-generators/torcx-generator[1323]: time="2024-04-12T18:48:01Z" level=info msg="store skipped" err="open /var/lib/torcx/store: no such file or directory" path=/var/lib/torcx/store Apr 12 18:48:06.335535 /usr/lib/systemd/system-generators/torcx-generator[1323]: time="2024-04-12T18:48:06Z" level=debug msg="image unpacked" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Apr 12 18:48:06.335820 /usr/lib/systemd/system-generators/torcx-generator[1323]: time="2024-04-12T18:48:06Z" level=debug msg="binaries propagated" assets="[/bin/containerd /bin/containerd-shim /bin/ctr /bin/docker /bin/docker-containerd /bin/docker-containerd-shim /bin/docker-init /bin/docker-proxy /bin/docker-runc /bin/dockerd /bin/runc /bin/tini]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Apr 12 18:48:07.533000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@drm comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:07.533000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@drm comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:07.535000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:07.535000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:07.537000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-network-generator comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:07.539000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-remount-fs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:06.336031 /usr/lib/systemd/system-generators/torcx-generator[1323]: time="2024-04-12T18:48:06Z" level=debug msg="networkd units propagated" assets="[/lib/systemd/network/50-docker.network /lib/systemd/network/90-docker-veth.network]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Apr 12 18:48:07.531439 systemd[1]: modprobe@drm.service: Deactivated successfully. Apr 12 18:48:06.336347 /usr/lib/systemd/system-generators/torcx-generator[1323]: time="2024-04-12T18:48:06Z" level=debug msg="systemd units propagated" assets="[/lib/systemd/system/containerd.service /lib/systemd/system/docker.service /lib/systemd/system/docker.socket /lib/systemd/system/sockets.target.wants /lib/systemd/system/multi-user.target.wants]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Apr 12 18:48:07.531651 systemd[1]: Finished modprobe@drm.service. Apr 12 18:48:06.336411 /usr/lib/systemd/system-generators/torcx-generator[1323]: time="2024-04-12T18:48:06Z" level=debug msg="profile applied" sealed profile=/run/torcx/profile.json upper profile= Apr 12 18:48:07.533960 systemd[1]: modprobe@efi_pstore.service: Deactivated successfully. Apr 12 18:48:06.336599 /usr/lib/systemd/system-generators/torcx-generator[1323]: time="2024-04-12T18:48:06Z" level=debug msg="system state sealed" content="[TORCX_LOWER_PROFILES=\"vendor\" TORCX_UPPER_PROFILE=\"\" TORCX_PROFILE_PATH=\"/run/torcx/profile.json\" TORCX_BINDIR=\"/run/torcx/bin\" TORCX_UNPACKDIR=\"/run/torcx/unpack\"]" path=/run/metadata/torcx Apr 12 18:48:07.534527 systemd[1]: Finished modprobe@efi_pstore.service. Apr 12 18:48:07.536438 systemd[1]: Finished systemd-network-generator.service. Apr 12 18:48:07.538202 systemd[1]: Finished systemd-remount-fs.service. Apr 12 18:48:07.540242 systemd[1]: Reached target network-pre.target. Apr 12 18:48:07.543626 systemd[1]: Mounting sys-kernel-config.mount... Apr 12 18:48:07.544832 systemd[1]: remount-root.service was skipped because of an unmet condition check (ConditionPathIsReadWrite=!/). Apr 12 18:48:07.547786 systemd[1]: Starting systemd-hwdb-update.service... Apr 12 18:48:07.564642 kernel: fuse: init (API version 7.34) Apr 12 18:48:07.564835 kernel: loop: module loaded Apr 12 18:48:07.552628 systemd[1]: Starting systemd-journal-flush.service... Apr 12 18:48:07.556644 systemd[1]: systemd-pstore.service was skipped because of an unmet condition check (ConditionDirectoryNotEmpty=/sys/fs/pstore). Apr 12 18:48:07.558975 systemd[1]: Starting systemd-random-seed.service... Apr 12 18:48:07.562636 systemd[1]: modprobe@fuse.service: Deactivated successfully. Apr 12 18:48:07.563376 systemd[1]: Finished modprobe@fuse.service. Apr 12 18:48:07.565000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@fuse comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:07.565000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@fuse comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:07.568000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:07.568000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:07.569000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:07.573000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-random-seed comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:07.566422 systemd[1]: modprobe@loop.service: Deactivated successfully. Apr 12 18:48:07.566687 systemd[1]: Finished modprobe@loop.service. Apr 12 18:48:07.568826 systemd[1]: Finished systemd-modules-load.service. Apr 12 18:48:07.570412 systemd[1]: Mounted sys-kernel-config.mount. Apr 12 18:48:07.572230 systemd[1]: Finished systemd-random-seed.service. Apr 12 18:48:07.573940 systemd[1]: Reached target first-boot-complete.target. Apr 12 18:48:07.579217 systemd[1]: Mounting sys-fs-fuse-connections.mount... Apr 12 18:48:07.581222 systemd[1]: systemd-repart.service was skipped because no trigger condition checks were met. Apr 12 18:48:07.589132 systemd[1]: Starting systemd-sysctl.service... Apr 12 18:48:07.609272 systemd[1]: Mounted sys-fs-fuse-connections.mount. Apr 12 18:48:07.685043 systemd[1]: Finished systemd-sysctl.service. Apr 12 18:48:07.686000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:07.695896 systemd-journald[1398]: Time spent on flushing to /var/log/journal/ec2f6f18a14b29b98d6ae3a1d4766ab3 is 81.414ms for 1211 entries. Apr 12 18:48:07.695896 systemd-journald[1398]: System Journal (/var/log/journal/ec2f6f18a14b29b98d6ae3a1d4766ab3) is 8.0M, max 195.6M, 187.6M free. Apr 12 18:48:07.802872 systemd-journald[1398]: Received client request to flush runtime journal. Apr 12 18:48:07.730000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=flatcar-tmpfiles comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:07.770000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:07.725929 systemd[1]: Finished flatcar-tmpfiles.service. Apr 12 18:48:07.732150 systemd[1]: Starting systemd-sysusers.service... Apr 12 18:48:07.808447 udevadm[1438]: systemd-udev-settle.service is deprecated. Please fix lvm2-activation.service, lvm2-activation-early.service not to pull it in. Apr 12 18:48:07.769017 systemd[1]: Finished systemd-udev-trigger.service. Apr 12 18:48:07.772208 systemd[1]: Starting systemd-udev-settle.service... Apr 12 18:48:07.808234 systemd[1]: Finished systemd-journal-flush.service. Apr 12 18:48:07.809000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journal-flush comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:07.894610 systemd[1]: Finished systemd-sysusers.service. Apr 12 18:48:07.896000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysusers comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:07.898073 systemd[1]: Starting systemd-tmpfiles-setup-dev.service... Apr 12 18:48:08.015340 systemd[1]: Finished systemd-tmpfiles-setup-dev.service. Apr 12 18:48:08.016000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:08.648544 systemd[1]: Finished systemd-hwdb-update.service. Apr 12 18:48:08.650000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-hwdb-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:08.651000 audit: BPF prog-id=18 op=LOAD Apr 12 18:48:08.651000 audit: BPF prog-id=19 op=LOAD Apr 12 18:48:08.651000 audit: BPF prog-id=7 op=UNLOAD Apr 12 18:48:08.652000 audit: BPF prog-id=8 op=UNLOAD Apr 12 18:48:08.654140 systemd[1]: Starting systemd-udevd.service... Apr 12 18:48:08.675529 systemd-udevd[1442]: Using default interface naming scheme 'v252'. Apr 12 18:48:08.706800 systemd[1]: Started systemd-udevd.service. Apr 12 18:48:08.707000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:08.712000 audit: BPF prog-id=20 op=LOAD Apr 12 18:48:08.714233 systemd[1]: Starting systemd-networkd.service... Apr 12 18:48:08.734000 audit: BPF prog-id=21 op=LOAD Apr 12 18:48:08.734000 audit: BPF prog-id=22 op=LOAD Apr 12 18:48:08.734000 audit: BPF prog-id=23 op=LOAD Apr 12 18:48:08.736030 systemd[1]: Starting systemd-userdbd.service... Apr 12 18:48:08.777909 systemd[1]: Condition check resulted in dev-ttyS0.device being skipped. Apr 12 18:48:08.780940 (udev-worker)[1452]: Network interface NamePolicy= disabled on kernel command line. Apr 12 18:48:08.818000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-userdbd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:08.817237 systemd[1]: Started systemd-userdbd.service. Apr 12 18:48:08.867327 kernel: input: Power Button as /devices/LNXSYSTM:00/LNXPWRBN:00/input/input2 Apr 12 18:48:08.889204 kernel: ACPI: button: Power Button [PWRF] Apr 12 18:48:08.899328 kernel: input: Sleep Button as /devices/LNXSYSTM:00/LNXSLPBN:00/input/input3 Apr 12 18:48:08.934344 kernel: ACPI: button: Sleep Button [SLPF] Apr 12 18:48:08.957000 audit[1444]: AVC avc: denied { confidentiality } for pid=1444 comm="(udev-worker)" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=1 Apr 12 18:48:08.957000 audit[1444]: SYSCALL arch=c000003e syscall=175 success=yes exit=0 a0=55f2ea7183b0 a1=32194 a2=7f96efe87bc5 a3=5 items=108 ppid=1442 pid=1444 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="(udev-worker)" exe="/usr/bin/udevadm" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:08.957000 audit: CWD cwd="/" Apr 12 18:48:08.957000 audit: PATH item=0 name=(null) inode=1042 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=1 name=(null) inode=14718 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=2 name=(null) inode=14718 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=3 name=(null) inode=14719 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=4 name=(null) inode=14718 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=5 name=(null) inode=14720 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=6 name=(null) inode=14718 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=7 name=(null) inode=14721 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=8 name=(null) inode=14721 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=9 name=(null) inode=14722 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=10 name=(null) inode=14721 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=11 name=(null) inode=14723 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=12 name=(null) inode=14721 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=13 name=(null) inode=14724 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=14 name=(null) inode=14721 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=15 name=(null) inode=14725 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=16 name=(null) inode=14721 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=17 name=(null) inode=14726 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=18 name=(null) inode=14718 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=19 name=(null) inode=14727 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=20 name=(null) inode=14727 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=21 name=(null) inode=14728 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=22 name=(null) inode=14727 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=23 name=(null) inode=14729 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=24 name=(null) inode=14727 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=25 name=(null) inode=14730 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=26 name=(null) inode=14727 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=27 name=(null) inode=14731 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=28 name=(null) inode=14727 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=29 name=(null) inode=14732 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.968095 systemd-networkd[1453]: lo: Link UP Apr 12 18:48:08.968101 systemd-networkd[1453]: lo: Gained carrier Apr 12 18:48:08.957000 audit: PATH item=30 name=(null) inode=14718 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=31 name=(null) inode=14733 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=32 name=(null) inode=14733 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=33 name=(null) inode=14734 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.968738 systemd-networkd[1453]: Enumeration completed Apr 12 18:48:08.957000 audit: PATH item=34 name=(null) inode=14733 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.968856 systemd[1]: Started systemd-networkd.service. Apr 12 18:48:08.957000 audit: PATH item=35 name=(null) inode=14735 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=36 name=(null) inode=14733 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=37 name=(null) inode=14736 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=38 name=(null) inode=14733 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=39 name=(null) inode=14737 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=40 name=(null) inode=14733 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=41 name=(null) inode=14738 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=42 name=(null) inode=14718 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=43 name=(null) inode=14739 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=44 name=(null) inode=14739 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=45 name=(null) inode=14740 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=46 name=(null) inode=14739 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=47 name=(null) inode=14741 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=48 name=(null) inode=14739 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=49 name=(null) inode=14742 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=50 name=(null) inode=14739 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.970000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:08.957000 audit: PATH item=51 name=(null) inode=14743 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=52 name=(null) inode=14739 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=53 name=(null) inode=14744 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=54 name=(null) inode=1042 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=55 name=(null) inode=14745 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=56 name=(null) inode=14745 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=57 name=(null) inode=14746 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=58 name=(null) inode=14745 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=59 name=(null) inode=14747 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=60 name=(null) inode=14745 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=61 name=(null) inode=14748 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=62 name=(null) inode=14748 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=63 name=(null) inode=14749 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=64 name=(null) inode=14748 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=65 name=(null) inode=14750 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=66 name=(null) inode=14748 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=67 name=(null) inode=14751 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.972270 systemd[1]: Starting systemd-networkd-wait-online.service... Apr 12 18:48:08.957000 audit: PATH item=68 name=(null) inode=14748 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=69 name=(null) inode=14752 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=70 name=(null) inode=14748 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=71 name=(null) inode=14753 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=72 name=(null) inode=14745 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=73 name=(null) inode=14754 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=74 name=(null) inode=14754 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=75 name=(null) inode=14755 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.974189 systemd-networkd[1453]: eth0: Configuring with /usr/lib/systemd/network/zz-default.network. Apr 12 18:48:08.979329 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Apr 12 18:48:08.957000 audit: PATH item=76 name=(null) inode=14754 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=77 name=(null) inode=14756 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=78 name=(null) inode=14754 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=79 name=(null) inode=14757 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=80 name=(null) inode=14754 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=81 name=(null) inode=14758 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=82 name=(null) inode=14754 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=83 name=(null) inode=14759 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=84 name=(null) inode=14745 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=85 name=(null) inode=14760 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=86 name=(null) inode=14760 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=87 name=(null) inode=14761 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=88 name=(null) inode=14760 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=89 name=(null) inode=14762 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=90 name=(null) inode=14760 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=91 name=(null) inode=14763 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=92 name=(null) inode=14760 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=93 name=(null) inode=14764 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=94 name=(null) inode=14760 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=95 name=(null) inode=14765 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.979450 systemd-networkd[1453]: eth0: Link UP Apr 12 18:48:08.979637 systemd-networkd[1453]: eth0: Gained carrier Apr 12 18:48:08.988491 systemd-networkd[1453]: eth0: DHCPv4 address 172.31.22.61/20, gateway 172.31.16.1 acquired from 172.31.16.1 Apr 12 18:48:08.957000 audit: PATH item=96 name=(null) inode=14745 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=97 name=(null) inode=14766 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=98 name=(null) inode=14766 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=99 name=(null) inode=14767 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=100 name=(null) inode=14766 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=101 name=(null) inode=14768 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=102 name=(null) inode=14766 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=103 name=(null) inode=14769 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=104 name=(null) inode=14766 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=105 name=(null) inode=14770 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=106 name=(null) inode=14766 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PATH item=107 name=(null) inode=14771 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:08.957000 audit: PROCTITLE proctitle="(udev-worker)" Apr 12 18:48:09.014349 kernel: piix4_smbus 0000:00:01.3: SMBus Host Controller at 0xb100, revision 255 Apr 12 18:48:09.049327 kernel: BTRFS info: devid 1 device path /dev/disk/by-label/OEM changed to /dev/nvme0n1p6 scanned by (udev-worker) (1452) Apr 12 18:48:09.062388 kernel: input: ImPS/2 Generic Wheel Mouse as /devices/platform/i8042/serio1/input/input4 Apr 12 18:48:09.070436 kernel: mousedev: PS/2 mouse device common for all mice Apr 12 18:48:09.165075 systemd[1]: Found device dev-disk-by\x2dlabel-OEM.device. Apr 12 18:48:09.272756 systemd[1]: Finished systemd-udev-settle.service. Apr 12 18:48:09.274000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udev-settle comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:09.276279 systemd[1]: Starting lvm2-activation-early.service... Apr 12 18:48:09.330851 lvm[1556]: WARNING: Failed to connect to lvmetad. Falling back to device scanning. Apr 12 18:48:09.371791 systemd[1]: Finished lvm2-activation-early.service. Apr 12 18:48:09.372000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=lvm2-activation-early comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:09.373115 systemd[1]: Reached target cryptsetup.target. Apr 12 18:48:09.376467 systemd[1]: Starting lvm2-activation.service... Apr 12 18:48:09.382951 lvm[1557]: WARNING: Failed to connect to lvmetad. Falling back to device scanning. Apr 12 18:48:09.409646 systemd[1]: Finished lvm2-activation.service. Apr 12 18:48:09.411000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=lvm2-activation comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:09.411317 systemd[1]: Reached target local-fs-pre.target. Apr 12 18:48:09.412444 systemd[1]: var-lib-machines.mount was skipped because of an unmet condition check (ConditionPathExists=/var/lib/machines.raw). Apr 12 18:48:09.412485 systemd[1]: Reached target local-fs.target. Apr 12 18:48:09.413485 systemd[1]: Reached target machines.target. Apr 12 18:48:09.416100 systemd[1]: Starting ldconfig.service... Apr 12 18:48:09.418857 systemd[1]: systemd-binfmt.service was skipped because no trigger condition checks were met. Apr 12 18:48:09.418952 systemd[1]: systemd-boot-system-token.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/LoaderFeatures-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Apr 12 18:48:09.421872 systemd[1]: Starting systemd-boot-update.service... Apr 12 18:48:09.426216 systemd[1]: Starting systemd-fsck@dev-disk-by\x2dlabel-OEM.service... Apr 12 18:48:09.431608 systemd[1]: Starting systemd-machine-id-commit.service... Apr 12 18:48:09.433427 systemd[1]: systemd-sysext.service was skipped because no trigger condition checks were met. Apr 12 18:48:09.433519 systemd[1]: ensure-sysext.service was skipped because no trigger condition checks were met. Apr 12 18:48:09.436545 systemd[1]: Starting systemd-tmpfiles-setup.service... Apr 12 18:48:09.471122 systemd[1]: boot.automount: Got automount request for /boot, triggered by 1559 (bootctl) Apr 12 18:48:09.473189 systemd[1]: Starting systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM.service... Apr 12 18:48:09.490956 systemd-tmpfiles[1562]: /usr/lib/tmpfiles.d/legacy.conf:13: Duplicate line for path "/run/lock", ignoring. Apr 12 18:48:09.494830 systemd-tmpfiles[1562]: /usr/lib/tmpfiles.d/provision.conf:20: Duplicate line for path "/root", ignoring. Apr 12 18:48:09.495580 systemd[1]: Finished systemd-fsck@dev-disk-by\x2dlabel-OEM.service. Apr 12 18:48:09.495000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck@dev-disk-by\x2dlabel-OEM comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:09.499801 systemd-tmpfiles[1562]: /usr/lib/tmpfiles.d/systemd.conf:29: Duplicate line for path "/var/lib/systemd", ignoring. Apr 12 18:48:09.706772 systemd-fsck[1567]: fsck.fat 4.2 (2021-01-31) Apr 12 18:48:09.706772 systemd-fsck[1567]: /dev/nvme0n1p1: 789 files, 119240/258078 clusters Apr 12 18:48:09.708963 systemd[1]: Finished systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM.service. Apr 12 18:48:09.710000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:09.712380 systemd[1]: Mounting boot.mount... Apr 12 18:48:09.725784 systemd[1]: Mounted boot.mount. Apr 12 18:48:09.769647 systemd[1]: Finished systemd-boot-update.service. Apr 12 18:48:09.771000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-boot-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:09.880340 systemd[1]: Finished systemd-tmpfiles-setup.service. Apr 12 18:48:09.881000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-tmpfiles-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:09.883346 systemd[1]: Starting audit-rules.service... Apr 12 18:48:09.885940 systemd[1]: Starting clean-ca-certificates.service... Apr 12 18:48:09.894000 audit: BPF prog-id=24 op=LOAD Apr 12 18:48:09.897000 audit: BPF prog-id=25 op=LOAD Apr 12 18:48:09.891875 systemd[1]: Starting systemd-journal-catalog-update.service... Apr 12 18:48:09.895598 systemd[1]: Starting systemd-resolved.service... Apr 12 18:48:09.898570 systemd[1]: Starting systemd-timesyncd.service... Apr 12 18:48:09.901122 systemd[1]: Starting systemd-update-utmp.service... Apr 12 18:48:09.927249 systemd[1]: Finished clean-ca-certificates.service. Apr 12 18:48:09.928000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=clean-ca-certificates comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:09.928796 systemd[1]: update-ca-certificates.service was skipped because of an unmet condition check (ConditionPathIsSymbolicLink=!/etc/ssl/certs/ca-certificates.crt). Apr 12 18:48:09.936000 audit[1586]: SYSTEM_BOOT pid=1586 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg=' comm="systemd-update-utmp" exe="/usr/lib/systemd/systemd-update-utmp" hostname=? addr=? terminal=? res=success' Apr 12 18:48:09.951783 systemd[1]: Finished systemd-update-utmp.service. Apr 12 18:48:09.953000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-update-utmp comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:10.016034 systemd[1]: Finished systemd-journal-catalog-update.service. Apr 12 18:48:10.017000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journal-catalog-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:10.040136 systemd[1]: Started systemd-timesyncd.service. Apr 12 18:48:10.041000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-timesyncd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:10.041767 systemd[1]: Reached target time-set.target. Apr 12 18:48:10.052795 systemd-resolved[1584]: Positive Trust Anchors: Apr 12 18:48:10.053482 systemd-resolved[1584]: . IN DS 20326 8 2 e06d44b80b8f1d39a95c0b0d7c65d08458e880409bbc683457104237c7f8ec8d Apr 12 18:48:10.053739 systemd-resolved[1584]: Negative trust anchors: home.arpa 10.in-addr.arpa 16.172.in-addr.arpa 17.172.in-addr.arpa 18.172.in-addr.arpa 19.172.in-addr.arpa 20.172.in-addr.arpa 21.172.in-addr.arpa 22.172.in-addr.arpa 23.172.in-addr.arpa 24.172.in-addr.arpa 25.172.in-addr.arpa 26.172.in-addr.arpa 27.172.in-addr.arpa 28.172.in-addr.arpa 29.172.in-addr.arpa 30.172.in-addr.arpa 31.172.in-addr.arpa 168.192.in-addr.arpa d.f.ip6.arpa corp home internal intranet lan local private test Apr 12 18:48:10.067000 audit: CONFIG_CHANGE auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=add_rule key=(null) list=5 res=1 Apr 12 18:48:10.067000 audit[1602]: SYSCALL arch=c000003e syscall=44 success=yes exit=1056 a0=3 a1=7ffc62236d10 a2=420 a3=0 items=0 ppid=1581 pid=1602 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:10.067000 audit: PROCTITLE proctitle=2F7362696E2F617564697463746C002D52002F6574632F61756469742F61756469742E72756C6573 Apr 12 18:48:10.075250 augenrules[1602]: No rules Apr 12 18:48:10.076847 systemd[1]: Finished audit-rules.service. Apr 12 18:48:10.106940 systemd-resolved[1584]: Defaulting to hostname 'linux'. Apr 12 18:48:10.108905 systemd[1]: Started systemd-resolved.service. Apr 12 18:48:10.110194 systemd[1]: Reached target network.target. Apr 12 18:48:10.111257 systemd[1]: Reached target nss-lookup.target. Apr 12 18:48:10.155360 systemd-timesyncd[1585]: Contacted time server 69.10.223.132:123 (0.flatcar.pool.ntp.org). Apr 12 18:48:10.155543 systemd-timesyncd[1585]: Initial clock synchronization to Fri 2024-04-12 18:48:10.527827 UTC. Apr 12 18:48:10.214439 systemd-networkd[1453]: eth0: Gained IPv6LL Apr 12 18:48:10.216756 systemd[1]: Finished systemd-networkd-wait-online.service. Apr 12 18:48:10.219911 systemd[1]: Reached target network-online.target. Apr 12 18:48:10.892864 ldconfig[1558]: /sbin/ldconfig: /lib/ld.so.conf is not an ELF file - it has the wrong magic bytes at the start. Apr 12 18:48:10.951341 systemd[1]: Finished ldconfig.service. Apr 12 18:48:10.954099 systemd[1]: Starting systemd-update-done.service... Apr 12 18:48:10.964140 systemd[1]: Finished systemd-update-done.service. Apr 12 18:48:10.965481 systemd[1]: Reached target sysinit.target. Apr 12 18:48:10.966619 systemd[1]: Started motdgen.path. Apr 12 18:48:10.967620 systemd[1]: Started user-cloudinit@var-lib-flatcar\x2dinstall-user_data.path. Apr 12 18:48:10.970033 systemd[1]: Started logrotate.timer. Apr 12 18:48:10.973814 systemd[1]: Started mdadm.timer. Apr 12 18:48:10.975441 systemd[1]: Started systemd-tmpfiles-clean.timer. Apr 12 18:48:10.976824 systemd[1]: update-engine-stub.timer was skipped because of an unmet condition check (ConditionPathExists=/usr/.noupdate). Apr 12 18:48:10.976859 systemd[1]: Reached target paths.target. Apr 12 18:48:10.977855 systemd[1]: Reached target timers.target. Apr 12 18:48:10.979296 systemd[1]: Listening on dbus.socket. Apr 12 18:48:10.989235 systemd[1]: Starting docker.socket... Apr 12 18:48:10.995235 systemd[1]: Listening on sshd.socket. Apr 12 18:48:10.999442 systemd[1]: systemd-pcrphase-sysinit.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/StubPcrKernelImage-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Apr 12 18:48:11.000239 systemd[1]: Listening on docker.socket. Apr 12 18:48:11.001481 systemd[1]: Reached target sockets.target. Apr 12 18:48:11.002669 systemd[1]: Reached target basic.target. Apr 12 18:48:11.004601 systemd[1]: addon-config@usr-share-oem.service was skipped because no trigger condition checks were met. Apr 12 18:48:11.004641 systemd[1]: addon-run@usr-share-oem.service was skipped because no trigger condition checks were met. Apr 12 18:48:11.006475 systemd[1]: Started amazon-ssm-agent.service. Apr 12 18:48:11.009919 systemd[1]: Starting containerd.service... Apr 12 18:48:11.016935 systemd[1]: Starting coreos-metadata-sshkeys@core.service... Apr 12 18:48:11.020981 systemd[1]: Starting dbus.service... Apr 12 18:48:11.025497 systemd[1]: Starting enable-oem-cloudinit.service... Apr 12 18:48:11.028639 systemd[1]: Starting extend-filesystems.service... Apr 12 18:48:11.031569 systemd[1]: flatcar-setup-environment.service was skipped because of an unmet condition check (ConditionPathExists=/usr/share/oem/bin/flatcar-setup-environment). Apr 12 18:48:11.204231 jq[1614]: false Apr 12 18:48:11.033126 systemd[1]: Starting motdgen.service... Apr 12 18:48:11.035998 systemd[1]: Started nvidia.service. Apr 12 18:48:11.039462 systemd[1]: Starting prepare-cni-plugins.service... Apr 12 18:48:11.043171 systemd[1]: Starting prepare-critools.service... Apr 12 18:48:11.046891 systemd[1]: Starting ssh-key-proc-cmdline.service... Apr 12 18:48:11.056385 systemd[1]: Starting sshd-keygen.service... Apr 12 18:48:11.069210 systemd[1]: Starting systemd-logind.service... Apr 12 18:48:11.070707 systemd[1]: systemd-pcrphase.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/StubPcrKernelImage-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Apr 12 18:48:11.295166 jq[1625]: true Apr 12 18:48:11.070902 systemd[1]: tcsd.service was skipped because of an unmet condition check (ConditionPathExists=/dev/tpm0). Apr 12 18:48:11.072056 systemd[1]: cgroup compatibility translation between legacy and unified hierarchy settings activated. See cgroup-compat debug messages for details. Apr 12 18:48:11.074571 systemd[1]: Starting update-engine.service... Apr 12 18:48:11.079553 systemd[1]: Starting update-ssh-keys-after-ignition.service... Apr 12 18:48:11.186369 systemd[1]: enable-oem-cloudinit.service: Skipped due to 'exec-condition'. Apr 12 18:48:11.186606 systemd[1]: Condition check resulted in enable-oem-cloudinit.service being skipped. Apr 12 18:48:11.314119 jq[1639]: true Apr 12 18:48:11.321231 tar[1628]: ./ Apr 12 18:48:11.321231 tar[1628]: ./loopback Apr 12 18:48:11.234072 systemd[1]: ssh-key-proc-cmdline.service: Deactivated successfully. Apr 12 18:48:11.349003 tar[1631]: crictl Apr 12 18:48:11.234293 systemd[1]: Finished ssh-key-proc-cmdline.service. Apr 12 18:48:11.380477 dbus-daemon[1613]: [system] SELinux support is enabled Apr 12 18:48:11.393879 amazon-ssm-agent[1610]: 2024/04/12 18:48:11 Failed to load instance info from vault. RegistrationKey does not exist. Apr 12 18:48:11.393879 amazon-ssm-agent[1610]: Initializing new seelog logger Apr 12 18:48:11.393879 amazon-ssm-agent[1610]: New Seelog Logger Creation Complete Apr 12 18:48:11.393879 amazon-ssm-agent[1610]: 2024/04/12 18:48:11 Found config file at /etc/amazon/ssm/amazon-ssm-agent.json. Apr 12 18:48:11.393879 amazon-ssm-agent[1610]: Applying config override from /etc/amazon/ssm/amazon-ssm-agent.json. Apr 12 18:48:11.303227 systemd[1]: etc-machine\x2did.mount: Deactivated successfully. Apr 12 18:48:11.304217 systemd[1]: Finished systemd-machine-id-commit.service. Apr 12 18:48:11.352787 systemd[1]: motdgen.service: Deactivated successfully. Apr 12 18:48:11.353008 systemd[1]: Finished motdgen.service. Apr 12 18:48:11.380704 systemd[1]: Started dbus.service. Apr 12 18:48:11.385841 systemd[1]: system-cloudinit@usr-share-oem-cloud\x2dconfig.yml.service was skipped because of an unmet condition check (ConditionFileNotEmpty=/usr/share/oem/cloud-config.yml). Apr 12 18:48:11.385876 systemd[1]: Reached target system-config.target. Apr 12 18:48:11.387303 systemd[1]: user-cloudinit-proc-cmdline.service was skipped because of an unmet condition check (ConditionKernelCommandLine=cloud-config-url). Apr 12 18:48:11.387351 systemd[1]: Reached target user-config.target. Apr 12 18:48:11.395572 amazon-ssm-agent[1610]: 2024/04/12 18:48:11 processing appconfig overrides Apr 12 18:48:11.435972 dbus-daemon[1613]: [system] Activating via systemd: service name='org.freedesktop.hostname1' unit='dbus-org.freedesktop.hostname1.service' requested by ':1.0' (uid=244 pid=1453 comm="/usr/lib/systemd/systemd-networkd" label="system_u:system_r:kernel_t:s0") Apr 12 18:48:11.442113 systemd[1]: Starting systemd-hostnamed.service... Apr 12 18:48:11.452267 bash[1678]: Updated "/home/core/.ssh/authorized_keys" Apr 12 18:48:11.454736 systemd[1]: Finished update-ssh-keys-after-ignition.service. Apr 12 18:48:11.487688 extend-filesystems[1615]: Found nvme0n1 Apr 12 18:48:11.493334 extend-filesystems[1615]: Found nvme0n1p1 Apr 12 18:48:11.495821 extend-filesystems[1615]: Found nvme0n1p2 Apr 12 18:48:11.498598 extend-filesystems[1615]: Found nvme0n1p3 Apr 12 18:48:11.504477 extend-filesystems[1615]: Found usr Apr 12 18:48:11.506217 extend-filesystems[1615]: Found nvme0n1p4 Apr 12 18:48:11.508183 extend-filesystems[1615]: Found nvme0n1p6 Apr 12 18:48:11.511527 extend-filesystems[1615]: Found nvme0n1p7 Apr 12 18:48:11.512861 extend-filesystems[1615]: Found nvme0n1p9 Apr 12 18:48:11.516835 extend-filesystems[1615]: Checking size of /dev/nvme0n1p9 Apr 12 18:48:11.553807 extend-filesystems[1615]: Resized partition /dev/nvme0n1p9 Apr 12 18:48:11.568418 extend-filesystems[1686]: resize2fs 1.46.5 (30-Dec-2021) Apr 12 18:48:11.575936 tar[1628]: ./bandwidth Apr 12 18:48:11.592378 kernel: EXT4-fs (nvme0n1p9): resizing filesystem from 553472 to 1489915 blocks Apr 12 18:48:11.602036 env[1629]: time="2024-04-12T18:48:11.601926880Z" level=info msg="starting containerd" revision=92b3a9d6f1b3bcc6dc74875cfdea653fe39f09c2 version=1.6.16 Apr 12 18:48:11.619611 update_engine[1624]: I0412 18:48:11.619016 1624 main.cc:92] Flatcar Update Engine starting Apr 12 18:48:11.624989 systemd[1]: Started update-engine.service. Apr 12 18:48:11.629150 systemd[1]: Started locksmithd.service. Apr 12 18:48:11.631227 update_engine[1624]: I0412 18:48:11.631047 1624 update_check_scheduler.cc:74] Next update check in 6m28s Apr 12 18:48:11.690335 kernel: EXT4-fs (nvme0n1p9): resized filesystem to 1489915 Apr 12 18:48:11.758583 extend-filesystems[1686]: Filesystem at /dev/nvme0n1p9 is mounted on /; on-line resizing required Apr 12 18:48:11.758583 extend-filesystems[1686]: old_desc_blocks = 1, new_desc_blocks = 1 Apr 12 18:48:11.758583 extend-filesystems[1686]: The filesystem on /dev/nvme0n1p9 is now 1489915 (4k) blocks long. Apr 12 18:48:11.756778 systemd[1]: extend-filesystems.service: Deactivated successfully. Apr 12 18:48:11.773551 extend-filesystems[1615]: Resized filesystem in /dev/nvme0n1p9 Apr 12 18:48:11.757012 systemd[1]: Finished extend-filesystems.service. Apr 12 18:48:11.843571 systemd-logind[1623]: Watching system buttons on /dev/input/event1 (Power Button) Apr 12 18:48:11.843605 systemd-logind[1623]: Watching system buttons on /dev/input/event2 (Sleep Button) Apr 12 18:48:11.843630 systemd-logind[1623]: Watching system buttons on /dev/input/event0 (AT Translated Set 2 keyboard) Apr 12 18:48:11.844961 env[1629]: time="2024-04-12T18:48:11.844722185Z" level=info msg="loading plugin \"io.containerd.content.v1.content\"..." type=io.containerd.content.v1 Apr 12 18:48:11.845727 env[1629]: time="2024-04-12T18:48:11.845693834Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.aufs\"..." type=io.containerd.snapshotter.v1 Apr 12 18:48:11.849509 systemd-logind[1623]: New seat seat0. Apr 12 18:48:11.855926 systemd[1]: Started systemd-logind.service. Apr 12 18:48:11.859538 env[1629]: time="2024-04-12T18:48:11.859478925Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.aufs\"..." error="aufs is not supported (modprobe aufs failed: exit status 1 \"modprobe: FATAL: Module aufs not found in directory /lib/modules/5.15.154-flatcar\\n\"): skip plugin" type=io.containerd.snapshotter.v1 Apr 12 18:48:11.859738 env[1629]: time="2024-04-12T18:48:11.859712694Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.btrfs\"..." type=io.containerd.snapshotter.v1 Apr 12 18:48:11.860671 env[1629]: time="2024-04-12T18:48:11.860632366Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.btrfs\"..." error="path /var/lib/containerd/io.containerd.snapshotter.v1.btrfs (ext4) must be a btrfs filesystem to be used with the btrfs snapshotter: skip plugin" type=io.containerd.snapshotter.v1 Apr 12 18:48:11.861815 env[1629]: time="2024-04-12T18:48:11.861786732Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.devmapper\"..." type=io.containerd.snapshotter.v1 Apr 12 18:48:11.861939 env[1629]: time="2024-04-12T18:48:11.861916066Z" level=warning msg="failed to load plugin io.containerd.snapshotter.v1.devmapper" error="devmapper not configured" Apr 12 18:48:11.862009 env[1629]: time="2024-04-12T18:48:11.861995070Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.native\"..." type=io.containerd.snapshotter.v1 Apr 12 18:48:11.862781 env[1629]: time="2024-04-12T18:48:11.862755169Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.overlayfs\"..." type=io.containerd.snapshotter.v1 Apr 12 18:48:11.865285 env[1629]: time="2024-04-12T18:48:11.865257371Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.zfs\"..." type=io.containerd.snapshotter.v1 Apr 12 18:48:11.866092 env[1629]: time="2024-04-12T18:48:11.866059185Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.zfs\"..." error="path /var/lib/containerd/io.containerd.snapshotter.v1.zfs must be a zfs filesystem to be used with the zfs snapshotter: skip plugin" type=io.containerd.snapshotter.v1 Apr 12 18:48:11.867622 env[1629]: time="2024-04-12T18:48:11.867593881Z" level=info msg="loading plugin \"io.containerd.metadata.v1.bolt\"..." type=io.containerd.metadata.v1 Apr 12 18:48:11.868045 env[1629]: time="2024-04-12T18:48:11.868018332Z" level=warning msg="could not use snapshotter devmapper in metadata plugin" error="devmapper not configured" Apr 12 18:48:11.868436 env[1629]: time="2024-04-12T18:48:11.868152733Z" level=info msg="metadata content store policy set" policy=shared Apr 12 18:48:11.876297 env[1629]: time="2024-04-12T18:48:11.876257326Z" level=info msg="loading plugin \"io.containerd.differ.v1.walking\"..." type=io.containerd.differ.v1 Apr 12 18:48:11.876520 env[1629]: time="2024-04-12T18:48:11.876498846Z" level=info msg="loading plugin \"io.containerd.event.v1.exchange\"..." type=io.containerd.event.v1 Apr 12 18:48:11.876616 env[1629]: time="2024-04-12T18:48:11.876599179Z" level=info msg="loading plugin \"io.containerd.gc.v1.scheduler\"..." type=io.containerd.gc.v1 Apr 12 18:48:11.878017 env[1629]: time="2024-04-12T18:48:11.876726662Z" level=info msg="loading plugin \"io.containerd.service.v1.introspection-service\"..." type=io.containerd.service.v1 Apr 12 18:48:11.878254 env[1629]: time="2024-04-12T18:48:11.878228208Z" level=info msg="loading plugin \"io.containerd.service.v1.containers-service\"..." type=io.containerd.service.v1 Apr 12 18:48:11.878455 env[1629]: time="2024-04-12T18:48:11.878431495Z" level=info msg="loading plugin \"io.containerd.service.v1.content-service\"..." type=io.containerd.service.v1 Apr 12 18:48:11.878549 env[1629]: time="2024-04-12T18:48:11.878533907Z" level=info msg="loading plugin \"io.containerd.service.v1.diff-service\"..." type=io.containerd.service.v1 Apr 12 18:48:11.878629 env[1629]: time="2024-04-12T18:48:11.878611997Z" level=info msg="loading plugin \"io.containerd.service.v1.images-service\"..." type=io.containerd.service.v1 Apr 12 18:48:11.878928 env[1629]: time="2024-04-12T18:48:11.878907380Z" level=info msg="loading plugin \"io.containerd.service.v1.leases-service\"..." type=io.containerd.service.v1 Apr 12 18:48:11.879025 env[1629]: time="2024-04-12T18:48:11.879008858Z" level=info msg="loading plugin \"io.containerd.service.v1.namespaces-service\"..." type=io.containerd.service.v1 Apr 12 18:48:11.879127 env[1629]: time="2024-04-12T18:48:11.879110418Z" level=info msg="loading plugin \"io.containerd.service.v1.snapshots-service\"..." type=io.containerd.service.v1 Apr 12 18:48:11.879214 env[1629]: time="2024-04-12T18:48:11.879198822Z" level=info msg="loading plugin \"io.containerd.runtime.v1.linux\"..." type=io.containerd.runtime.v1 Apr 12 18:48:11.879468 env[1629]: time="2024-04-12T18:48:11.879449274Z" level=info msg="loading plugin \"io.containerd.runtime.v2.task\"..." type=io.containerd.runtime.v2 Apr 12 18:48:11.879933 env[1629]: time="2024-04-12T18:48:11.879907224Z" level=info msg="loading plugin \"io.containerd.monitor.v1.cgroups\"..." type=io.containerd.monitor.v1 Apr 12 18:48:11.880770 env[1629]: time="2024-04-12T18:48:11.880743620Z" level=info msg="loading plugin \"io.containerd.service.v1.tasks-service\"..." type=io.containerd.service.v1 Apr 12 18:48:11.881208 env[1629]: time="2024-04-12T18:48:11.881182105Z" level=info msg="loading plugin \"io.containerd.grpc.v1.introspection\"..." type=io.containerd.grpc.v1 Apr 12 18:48:11.881358 env[1629]: time="2024-04-12T18:48:11.881321970Z" level=info msg="loading plugin \"io.containerd.internal.v1.restart\"..." type=io.containerd.internal.v1 Apr 12 18:48:11.881750 env[1629]: time="2024-04-12T18:48:11.881728881Z" level=info msg="loading plugin \"io.containerd.grpc.v1.containers\"..." type=io.containerd.grpc.v1 Apr 12 18:48:11.881934 env[1629]: time="2024-04-12T18:48:11.881915179Z" level=info msg="loading plugin \"io.containerd.grpc.v1.content\"..." type=io.containerd.grpc.v1 Apr 12 18:48:11.882018 env[1629]: time="2024-04-12T18:48:11.882003340Z" level=info msg="loading plugin \"io.containerd.grpc.v1.diff\"..." type=io.containerd.grpc.v1 Apr 12 18:48:11.882099 env[1629]: time="2024-04-12T18:48:11.882084977Z" level=info msg="loading plugin \"io.containerd.grpc.v1.events\"..." type=io.containerd.grpc.v1 Apr 12 18:48:11.882177 env[1629]: time="2024-04-12T18:48:11.882162927Z" level=info msg="loading plugin \"io.containerd.grpc.v1.healthcheck\"..." type=io.containerd.grpc.v1 Apr 12 18:48:11.884245 env[1629]: time="2024-04-12T18:48:11.884216403Z" level=info msg="loading plugin \"io.containerd.grpc.v1.images\"..." type=io.containerd.grpc.v1 Apr 12 18:48:11.884401 env[1629]: time="2024-04-12T18:48:11.884380980Z" level=info msg="loading plugin \"io.containerd.grpc.v1.leases\"..." type=io.containerd.grpc.v1 Apr 12 18:48:11.884741 env[1629]: time="2024-04-12T18:48:11.884718087Z" level=info msg="loading plugin \"io.containerd.grpc.v1.namespaces\"..." type=io.containerd.grpc.v1 Apr 12 18:48:11.884876 env[1629]: time="2024-04-12T18:48:11.884857417Z" level=info msg="loading plugin \"io.containerd.internal.v1.opt\"..." type=io.containerd.internal.v1 Apr 12 18:48:11.885161 env[1629]: time="2024-04-12T18:48:11.885140021Z" level=info msg="loading plugin \"io.containerd.grpc.v1.snapshots\"..." type=io.containerd.grpc.v1 Apr 12 18:48:11.885525 env[1629]: time="2024-04-12T18:48:11.885499961Z" level=info msg="loading plugin \"io.containerd.grpc.v1.tasks\"..." type=io.containerd.grpc.v1 Apr 12 18:48:11.885637 env[1629]: time="2024-04-12T18:48:11.885618352Z" level=info msg="loading plugin \"io.containerd.grpc.v1.version\"..." type=io.containerd.grpc.v1 Apr 12 18:48:11.886510 env[1629]: time="2024-04-12T18:48:11.886414727Z" level=info msg="loading plugin \"io.containerd.tracing.processor.v1.otlp\"..." type=io.containerd.tracing.processor.v1 Apr 12 18:48:11.886954 env[1629]: time="2024-04-12T18:48:11.886924080Z" level=info msg="skip loading plugin \"io.containerd.tracing.processor.v1.otlp\"..." error="no OpenTelemetry endpoint: skip plugin" type=io.containerd.tracing.processor.v1 Apr 12 18:48:11.887072 env[1629]: time="2024-04-12T18:48:11.887053930Z" level=info msg="loading plugin \"io.containerd.internal.v1.tracing\"..." type=io.containerd.internal.v1 Apr 12 18:48:11.887184 env[1629]: time="2024-04-12T18:48:11.887162760Z" level=error msg="failed to initialize a tracing processor \"otlp\"" error="no OpenTelemetry endpoint: skip plugin" Apr 12 18:48:11.887316 env[1629]: time="2024-04-12T18:48:11.887297921Z" level=info msg="loading plugin \"io.containerd.grpc.v1.cri\"..." type=io.containerd.grpc.v1 Apr 12 18:48:11.889505 env[1629]: time="2024-04-12T18:48:11.889417296Z" level=info msg="Start cri plugin with config {PluginConfig:{ContainerdConfig:{Snapshotter:overlayfs DefaultRuntimeName:runc DefaultRuntime:{Type: Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0} UntrustedWorkloadRuntime:{Type: Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0} Runtimes:map[runc:{Type:io.containerd.runc.v2 Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[SystemdCgroup:true] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0}] NoPivot:false DisableSnapshotAnnotations:true DiscardUnpackedLayers:false IgnoreRdtNotEnabledErrors:false} CniConfig:{NetworkPluginBinDir:/opt/cni/bin NetworkPluginConfDir:/etc/cni/net.d NetworkPluginMaxConfNum:1 NetworkPluginConfTemplate: IPPreference:} Registry:{ConfigPath: Mirrors:map[] Configs:map[] Auths:map[] Headers:map[]} ImageDecryption:{KeyModel:node} DisableTCPService:true StreamServerAddress:127.0.0.1 StreamServerPort:0 StreamIdleTimeout:4h0m0s EnableSelinux:true SelinuxCategoryRange:1024 SandboxImage:registry.k8s.io/pause:3.6 StatsCollectPeriod:10 SystemdCgroup:false EnableTLSStreaming:false X509KeyPairStreaming:{TLSCertFile: TLSKeyFile:} MaxContainerLogLineSize:16384 DisableCgroup:false DisableApparmor:false RestrictOOMScoreAdj:false MaxConcurrentDownloads:3 DisableProcMount:false UnsetSeccompProfile: TolerateMissingHugetlbController:true DisableHugetlbController:true DeviceOwnershipFromSecurityContext:false IgnoreImageDefinedVolumes:false NetNSMountsUnderStateDir:false EnableUnprivilegedPorts:false EnableUnprivilegedICMP:false} ContainerdRootDir:/var/lib/containerd ContainerdEndpoint:/run/containerd/containerd.sock RootDir:/var/lib/containerd/io.containerd.grpc.v1.cri StateDir:/run/containerd/io.containerd.grpc.v1.cri}" Apr 12 18:48:11.893136 env[1629]: time="2024-04-12T18:48:11.889698142Z" level=info msg="Connect containerd service" Apr 12 18:48:11.893136 env[1629]: time="2024-04-12T18:48:11.889770786Z" level=info msg="Get image filesystem path \"/var/lib/containerd/io.containerd.snapshotter.v1.overlayfs\"" Apr 12 18:48:11.894322 env[1629]: time="2024-04-12T18:48:11.894282457Z" level=error msg="failed to load cni during init, please check CRI plugin status before setting up network for pods" error="cni config load failed: no network config found in /etc/cni/net.d: cni plugin not initialized: failed to load cni config" Apr 12 18:48:11.902029 env[1629]: time="2024-04-12T18:48:11.901550716Z" level=info msg="Start subscribing containerd event" Apr 12 18:48:11.902029 env[1629]: time="2024-04-12T18:48:11.901668022Z" level=info msg="Start recovering state" Apr 12 18:48:11.902029 env[1629]: time="2024-04-12T18:48:11.901800610Z" level=info msg="Start event monitor" Apr 12 18:48:11.902029 env[1629]: time="2024-04-12T18:48:11.901830542Z" level=info msg="Start snapshots syncer" Apr 12 18:48:11.902029 env[1629]: time="2024-04-12T18:48:11.901894230Z" level=info msg="Start cni network conf syncer for default" Apr 12 18:48:11.902029 env[1629]: time="2024-04-12T18:48:11.901907919Z" level=info msg="Start streaming server" Apr 12 18:48:11.902029 env[1629]: time="2024-04-12T18:48:11.901922208Z" level=info msg=serving... address=/run/containerd/containerd.sock.ttrpc Apr 12 18:48:11.902029 env[1629]: time="2024-04-12T18:48:11.901986340Z" level=info msg=serving... address=/run/containerd/containerd.sock Apr 12 18:48:11.906210 systemd[1]: Started containerd.service. Apr 12 18:48:11.908830 env[1629]: time="2024-04-12T18:48:11.908794586Z" level=info msg="containerd successfully booted in 0.362680s" Apr 12 18:48:11.953621 systemd[1]: nvidia.service: Deactivated successfully. Apr 12 18:48:11.997335 tar[1628]: ./ptp Apr 12 18:48:12.025163 dbus-daemon[1613]: [system] Successfully activated service 'org.freedesktop.hostname1' Apr 12 18:48:12.025383 systemd[1]: Started systemd-hostnamed.service. Apr 12 18:48:12.028387 dbus-daemon[1613]: [system] Activating via systemd: service name='org.freedesktop.PolicyKit1' unit='polkit.service' requested by ':1.6' (uid=0 pid=1679 comm="/usr/lib/systemd/systemd-hostnamed" label="system_u:system_r:kernel_t:s0") Apr 12 18:48:12.032539 systemd[1]: Starting polkit.service... Apr 12 18:48:12.064805 polkitd[1720]: Started polkitd version 121 Apr 12 18:48:12.102903 polkitd[1720]: Loading rules from directory /etc/polkit-1/rules.d Apr 12 18:48:12.105867 polkitd[1720]: Loading rules from directory /usr/share/polkit-1/rules.d Apr 12 18:48:12.132558 polkitd[1720]: Finished loading, compiling and executing 2 rules Apr 12 18:48:12.133409 dbus-daemon[1613]: [system] Successfully activated service 'org.freedesktop.PolicyKit1' Apr 12 18:48:12.133622 systemd[1]: Started polkit.service. Apr 12 18:48:12.141996 polkitd[1720]: Acquired the name org.freedesktop.PolicyKit1 on the system bus Apr 12 18:48:12.192234 systemd-hostnamed[1679]: Hostname set to (transient) Apr 12 18:48:12.192380 systemd-resolved[1584]: System hostname changed to 'ip-172-31-22-61'. Apr 12 18:48:12.307170 tar[1628]: ./vlan Apr 12 18:48:12.343202 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO Create new startup processor Apr 12 18:48:12.343495 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [LongRunningPluginsManager] registered plugins: {} Apr 12 18:48:12.343640 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO Initializing bookkeeping folders Apr 12 18:48:12.343640 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO removing the completed state files Apr 12 18:48:12.343640 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO Initializing bookkeeping folders for long running plugins Apr 12 18:48:12.343640 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO Initializing replies folder for MDS reply requests that couldn't reach the service Apr 12 18:48:12.343640 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO Initializing healthcheck folders for long running plugins Apr 12 18:48:12.343841 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO Initializing locations for inventory plugin Apr 12 18:48:12.343841 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO Initializing default location for custom inventory Apr 12 18:48:12.343841 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO Initializing default location for file inventory Apr 12 18:48:12.343841 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO Initializing default location for role inventory Apr 12 18:48:12.343841 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO Init the cloudwatchlogs publisher Apr 12 18:48:12.343841 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [instanceID=i-0b6f0c133deed1aac] Successfully loaded platform independent plugin aws:configureDocker Apr 12 18:48:12.343841 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [instanceID=i-0b6f0c133deed1aac] Successfully loaded platform independent plugin aws:runDockerAction Apr 12 18:48:12.343841 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [instanceID=i-0b6f0c133deed1aac] Successfully loaded platform independent plugin aws:refreshAssociation Apr 12 18:48:12.343841 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [instanceID=i-0b6f0c133deed1aac] Successfully loaded platform independent plugin aws:configurePackage Apr 12 18:48:12.343841 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [instanceID=i-0b6f0c133deed1aac] Successfully loaded platform independent plugin aws:downloadContent Apr 12 18:48:12.343841 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [instanceID=i-0b6f0c133deed1aac] Successfully loaded platform independent plugin aws:runDocument Apr 12 18:48:12.344248 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [instanceID=i-0b6f0c133deed1aac] Successfully loaded platform independent plugin aws:softwareInventory Apr 12 18:48:12.344248 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [instanceID=i-0b6f0c133deed1aac] Successfully loaded platform independent plugin aws:runPowerShellScript Apr 12 18:48:12.344248 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [instanceID=i-0b6f0c133deed1aac] Successfully loaded platform independent plugin aws:updateSsmAgent Apr 12 18:48:12.344248 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [instanceID=i-0b6f0c133deed1aac] Successfully loaded platform dependent plugin aws:runShellScript Apr 12 18:48:12.344248 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO Starting Agent: amazon-ssm-agent - v2.3.1319.0 Apr 12 18:48:12.344248 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO OS: linux, Arch: amd64 Apr 12 18:48:12.354510 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [MessagingDeliveryService] Starting document processing engine... Apr 12 18:48:12.354905 amazon-ssm-agent[1610]: datastore file /var/lib/amazon/ssm/i-0b6f0c133deed1aac/longrunningplugins/datastore/store doesn't exist - no long running plugins to execute Apr 12 18:48:12.438491 coreos-metadata[1612]: Apr 12 18:48:12.414 INFO Putting http://169.254.169.254/latest/api/token: Attempt #1 Apr 12 18:48:12.449520 coreos-metadata[1612]: Apr 12 18:48:12.449 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/public-keys: Attempt #1 Apr 12 18:48:12.450566 coreos-metadata[1612]: Apr 12 18:48:12.450 INFO Fetch successful Apr 12 18:48:12.450812 coreos-metadata[1612]: Apr 12 18:48:12.450 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/public-keys/0/openssh-key: Attempt #1 Apr 12 18:48:12.452392 coreos-metadata[1612]: Apr 12 18:48:12.452 INFO Fetch successful Apr 12 18:48:12.454693 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [MessagingDeliveryService] [EngineProcessor] Starting Apr 12 18:48:12.456105 unknown[1612]: wrote ssh authorized keys file for user: core Apr 12 18:48:12.500370 update-ssh-keys[1787]: Updated "/home/core/.ssh/authorized_keys" Apr 12 18:48:12.503027 systemd[1]: Finished coreos-metadata-sshkeys@core.service. Apr 12 18:48:12.558572 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [MessagingDeliveryService] [EngineProcessor] Initial processing Apr 12 18:48:12.622443 tar[1628]: ./host-device Apr 12 18:48:12.652505 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [MessagingDeliveryService] Starting message polling Apr 12 18:48:12.747600 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [MessagingDeliveryService] Starting send replies to MDS Apr 12 18:48:12.768129 tar[1628]: ./tuning Apr 12 18:48:12.842592 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [OfflineService] Starting document processing engine... Apr 12 18:48:12.864170 tar[1628]: ./vrf Apr 12 18:48:12.917566 tar[1628]: ./sbr Apr 12 18:48:12.937565 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [MessageGatewayService] Starting session document processing engine... Apr 12 18:48:12.973135 tar[1628]: ./tap Apr 12 18:48:13.032933 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [LongRunningPluginsManager] starting long running plugin manager Apr 12 18:48:13.038806 tar[1628]: ./dhcp Apr 12 18:48:13.128488 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [LongRunningPluginsManager] there aren't any long running plugin to execute Apr 12 18:48:13.224144 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [HealthCheck] HealthCheck reporting agent health. Apr 12 18:48:13.242768 tar[1628]: ./static Apr 12 18:48:13.300939 tar[1628]: ./firewall Apr 12 18:48:13.319991 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [instanceID=i-0b6f0c133deed1aac] Starting association polling Apr 12 18:48:13.372011 tar[1628]: ./macvlan Apr 12 18:48:13.416186 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [MessagingDeliveryService] [Association] [EngineProcessor] Starting Apr 12 18:48:13.426007 systemd[1]: Finished prepare-critools.service. Apr 12 18:48:13.439792 tar[1628]: ./dummy Apr 12 18:48:13.497205 tar[1628]: ./bridge Apr 12 18:48:13.512476 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [MessagingDeliveryService] [Association] Launching response handler Apr 12 18:48:13.561104 tar[1628]: ./ipvlan Apr 12 18:48:13.608956 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [MessagingDeliveryService] [Association] [EngineProcessor] Initial processing Apr 12 18:48:13.625433 tar[1628]: ./portmap Apr 12 18:48:13.661208 sshd_keygen[1650]: ssh-keygen: generating new host keys: RSA ECDSA ED25519 Apr 12 18:48:13.687761 tar[1628]: ./host-local Apr 12 18:48:13.705611 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [MessagingDeliveryService] [Association] Initializing association scheduling service Apr 12 18:48:13.707700 systemd[1]: Finished sshd-keygen.service. Apr 12 18:48:13.711132 systemd[1]: Starting issuegen.service... Apr 12 18:48:13.723999 systemd[1]: issuegen.service: Deactivated successfully. Apr 12 18:48:13.724228 systemd[1]: Finished issuegen.service. Apr 12 18:48:13.729599 systemd[1]: Starting systemd-user-sessions.service... Apr 12 18:48:13.744702 systemd[1]: Finished systemd-user-sessions.service. Apr 12 18:48:13.749000 systemd[1]: Started getty@tty1.service. Apr 12 18:48:13.752417 systemd[1]: Started serial-getty@ttyS0.service. Apr 12 18:48:13.753901 systemd[1]: Reached target getty.target. Apr 12 18:48:13.772446 systemd[1]: Finished prepare-cni-plugins.service. Apr 12 18:48:13.774074 systemd[1]: Reached target multi-user.target. Apr 12 18:48:13.777098 systemd[1]: Starting systemd-update-utmp-runlevel.service... Apr 12 18:48:13.788506 systemd[1]: systemd-update-utmp-runlevel.service: Deactivated successfully. Apr 12 18:48:13.788949 systemd[1]: Finished systemd-update-utmp-runlevel.service. Apr 12 18:48:13.790446 systemd[1]: Startup finished in 842ms (kernel) + 10.455s (initrd) + 13.476s (userspace) = 24.774s. Apr 12 18:48:13.813518 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [MessagingDeliveryService] [Association] Association scheduling service initialized Apr 12 18:48:13.856038 locksmithd[1694]: locksmithd starting currentOperation="UPDATE_STATUS_IDLE" strategy="reboot" Apr 12 18:48:13.910688 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [OfflineService] [EngineProcessor] Starting Apr 12 18:48:14.008391 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [OfflineService] [EngineProcessor] Initial processing Apr 12 18:48:14.106796 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [OfflineService] Starting message polling Apr 12 18:48:14.205169 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [OfflineService] Starting send replies to MDS Apr 12 18:48:14.303816 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [MessageGatewayService] [EngineProcessor] Starting Apr 12 18:48:14.403462 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [MessageGatewayService] SSM Agent is trying to setup control channel for Session Manager module. Apr 12 18:48:14.501959 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [MessageGatewayService] Setting up websocket for controlchannel for instance: i-0b6f0c133deed1aac, requestId: dfe96b3f-d0b4-4f7d-9cce-9e3afcf553d9 Apr 12 18:48:14.602118 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [MessageGatewayService] listening reply. Apr 12 18:48:14.700914 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [LongRunningPluginsManager] There are no long running plugins currently getting executed - skipping their healthcheck Apr 12 18:48:14.800392 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [StartupProcessor] Executing startup processor tasks Apr 12 18:48:14.900951 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [StartupProcessor] Write to serial port: Amazon SSM Agent v2.3.1319.0 is running Apr 12 18:48:15.000500 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [StartupProcessor] Write to serial port: OsProductName: Flatcar Container Linux by Kinvolk Apr 12 18:48:15.100557 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [StartupProcessor] Write to serial port: OsVersion: 3510.3.3 Apr 12 18:48:15.200388 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [MessageGatewayService] Opening websocket connection to: wss://ssmmessages.us-west-2.amazonaws.com/v1/control-channel/i-0b6f0c133deed1aac?role=subscribe&stream=input Apr 12 18:48:15.300478 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [MessageGatewayService] Successfully opened websocket connection to: wss://ssmmessages.us-west-2.amazonaws.com/v1/control-channel/i-0b6f0c133deed1aac?role=subscribe&stream=input Apr 12 18:48:15.401853 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [MessageGatewayService] Starting receiving message from control channel Apr 12 18:48:15.502389 amazon-ssm-agent[1610]: 2024-04-12 18:48:12 INFO [MessageGatewayService] [EngineProcessor] Initial processing Apr 12 18:48:20.280059 systemd[1]: Created slice system-sshd.slice. Apr 12 18:48:20.283203 systemd[1]: Started sshd@0-172.31.22.61:22-147.75.109.163:42166.service. Apr 12 18:48:20.517433 sshd[1826]: Accepted publickey for core from 147.75.109.163 port 42166 ssh2: RSA SHA256:+N1xisw2c2FaZUjSYyTG/z1AiN+MoHtibeEcHRhPKVY Apr 12 18:48:20.520171 sshd[1826]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Apr 12 18:48:20.537865 systemd[1]: Created slice user-500.slice. Apr 12 18:48:20.541977 systemd[1]: Starting user-runtime-dir@500.service... Apr 12 18:48:20.554641 systemd-logind[1623]: New session 1 of user core. Apr 12 18:48:20.574309 systemd[1]: Finished user-runtime-dir@500.service. Apr 12 18:48:20.578190 systemd[1]: Starting user@500.service... Apr 12 18:48:20.601153 (systemd)[1829]: pam_unix(systemd-user:session): session opened for user core(uid=500) by (uid=0) Apr 12 18:48:20.701831 systemd[1829]: Queued start job for default target default.target. Apr 12 18:48:20.702537 systemd[1829]: Reached target paths.target. Apr 12 18:48:20.702569 systemd[1829]: Reached target sockets.target. Apr 12 18:48:20.702587 systemd[1829]: Reached target timers.target. Apr 12 18:48:20.702605 systemd[1829]: Reached target basic.target. Apr 12 18:48:20.702665 systemd[1829]: Reached target default.target. Apr 12 18:48:20.702707 systemd[1829]: Startup finished in 90ms. Apr 12 18:48:20.703434 systemd[1]: Started user@500.service. Apr 12 18:48:20.705180 systemd[1]: Started session-1.scope. Apr 12 18:48:20.855465 systemd[1]: Started sshd@1-172.31.22.61:22-147.75.109.163:42174.service. Apr 12 18:48:21.017995 sshd[1838]: Accepted publickey for core from 147.75.109.163 port 42174 ssh2: RSA SHA256:+N1xisw2c2FaZUjSYyTG/z1AiN+MoHtibeEcHRhPKVY Apr 12 18:48:21.019688 sshd[1838]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Apr 12 18:48:21.025213 systemd-logind[1623]: New session 2 of user core. Apr 12 18:48:21.026224 systemd[1]: Started session-2.scope. Apr 12 18:48:21.156936 sshd[1838]: pam_unix(sshd:session): session closed for user core Apr 12 18:48:21.160390 systemd[1]: sshd@1-172.31.22.61:22-147.75.109.163:42174.service: Deactivated successfully. Apr 12 18:48:21.161258 systemd[1]: session-2.scope: Deactivated successfully. Apr 12 18:48:21.161950 systemd-logind[1623]: Session 2 logged out. Waiting for processes to exit. Apr 12 18:48:21.163193 systemd-logind[1623]: Removed session 2. Apr 12 18:48:21.184656 systemd[1]: Started sshd@2-172.31.22.61:22-147.75.109.163:42190.service. Apr 12 18:48:21.357686 sshd[1844]: Accepted publickey for core from 147.75.109.163 port 42190 ssh2: RSA SHA256:+N1xisw2c2FaZUjSYyTG/z1AiN+MoHtibeEcHRhPKVY Apr 12 18:48:21.359725 sshd[1844]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Apr 12 18:48:21.368604 systemd-logind[1623]: New session 3 of user core. Apr 12 18:48:21.370796 systemd[1]: Started session-3.scope. Apr 12 18:48:21.494579 sshd[1844]: pam_unix(sshd:session): session closed for user core Apr 12 18:48:21.500074 systemd[1]: sshd@2-172.31.22.61:22-147.75.109.163:42190.service: Deactivated successfully. Apr 12 18:48:21.501003 systemd[1]: session-3.scope: Deactivated successfully. Apr 12 18:48:21.501786 systemd-logind[1623]: Session 3 logged out. Waiting for processes to exit. Apr 12 18:48:21.502837 systemd-logind[1623]: Removed session 3. Apr 12 18:48:21.521219 systemd[1]: Started sshd@3-172.31.22.61:22-147.75.109.163:42194.service. Apr 12 18:48:21.690563 sshd[1850]: Accepted publickey for core from 147.75.109.163 port 42194 ssh2: RSA SHA256:+N1xisw2c2FaZUjSYyTG/z1AiN+MoHtibeEcHRhPKVY Apr 12 18:48:21.692662 sshd[1850]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Apr 12 18:48:21.701366 systemd[1]: Started session-4.scope. Apr 12 18:48:21.701987 systemd-logind[1623]: New session 4 of user core. Apr 12 18:48:21.830590 sshd[1850]: pam_unix(sshd:session): session closed for user core Apr 12 18:48:21.839658 systemd[1]: sshd@3-172.31.22.61:22-147.75.109.163:42194.service: Deactivated successfully. Apr 12 18:48:21.840644 systemd[1]: session-4.scope: Deactivated successfully. Apr 12 18:48:21.841416 systemd-logind[1623]: Session 4 logged out. Waiting for processes to exit. Apr 12 18:48:21.842912 systemd-logind[1623]: Removed session 4. Apr 12 18:48:21.856468 systemd[1]: Started sshd@4-172.31.22.61:22-147.75.109.163:42204.service. Apr 12 18:48:22.026555 sshd[1856]: Accepted publickey for core from 147.75.109.163 port 42204 ssh2: RSA SHA256:+N1xisw2c2FaZUjSYyTG/z1AiN+MoHtibeEcHRhPKVY Apr 12 18:48:22.028677 sshd[1856]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Apr 12 18:48:22.041165 systemd-logind[1623]: New session 5 of user core. Apr 12 18:48:22.041867 systemd[1]: Started session-5.scope. Apr 12 18:48:22.196486 sudo[1859]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/sbin/setenforce 1 Apr 12 18:48:22.196786 sudo[1859]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Apr 12 18:48:22.207571 dbus-daemon[1613]: Н\xe5\xb7\u0017V: received setenforce notice (enforcing=1309667632) Apr 12 18:48:22.210199 sudo[1859]: pam_unix(sudo:session): session closed for user root Apr 12 18:48:22.234477 sshd[1856]: pam_unix(sshd:session): session closed for user core Apr 12 18:48:22.241413 systemd[1]: sshd@4-172.31.22.61:22-147.75.109.163:42204.service: Deactivated successfully. Apr 12 18:48:22.242536 systemd[1]: session-5.scope: Deactivated successfully. Apr 12 18:48:22.243794 systemd-logind[1623]: Session 5 logged out. Waiting for processes to exit. Apr 12 18:48:22.245088 systemd-logind[1623]: Removed session 5. Apr 12 18:48:22.261401 systemd[1]: Started sshd@5-172.31.22.61:22-147.75.109.163:42218.service. Apr 12 18:48:22.443750 sshd[1863]: Accepted publickey for core from 147.75.109.163 port 42218 ssh2: RSA SHA256:+N1xisw2c2FaZUjSYyTG/z1AiN+MoHtibeEcHRhPKVY Apr 12 18:48:22.445610 sshd[1863]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Apr 12 18:48:22.454307 systemd-logind[1623]: New session 6 of user core. Apr 12 18:48:22.455728 systemd[1]: Started session-6.scope. Apr 12 18:48:22.564081 sudo[1867]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/bin/rm -rf /etc/audit/rules.d/80-selinux.rules /etc/audit/rules.d/99-default.rules Apr 12 18:48:22.564398 sudo[1867]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Apr 12 18:48:22.568515 sudo[1867]: pam_unix(sudo:session): session closed for user root Apr 12 18:48:22.577472 sudo[1866]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/bin/systemctl restart audit-rules Apr 12 18:48:22.578260 sudo[1866]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Apr 12 18:48:22.596015 systemd[1]: Stopping audit-rules.service... Apr 12 18:48:22.596000 audit: CONFIG_CHANGE auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=remove_rule key=(null) list=5 res=1 Apr 12 18:48:22.599381 kernel: kauditd_printk_skb: 179 callbacks suppressed Apr 12 18:48:22.599527 kernel: audit: type=1305 audit(1712947702.596:161): auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=remove_rule key=(null) list=5 res=1 Apr 12 18:48:22.599577 auditctl[1870]: No rules Apr 12 18:48:22.600110 systemd[1]: audit-rules.service: Deactivated successfully. Apr 12 18:48:22.600507 systemd[1]: Stopped audit-rules.service. Apr 12 18:48:22.606073 systemd[1]: Starting audit-rules.service... Apr 12 18:48:22.596000 audit[1870]: SYSCALL arch=c000003e syscall=44 success=yes exit=1056 a0=3 a1=7ffdd85824e0 a2=420 a3=0 items=0 ppid=1 pid=1870 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:22.623353 kernel: audit: type=1300 audit(1712947702.596:161): arch=c000003e syscall=44 success=yes exit=1056 a0=3 a1=7ffdd85824e0 a2=420 a3=0 items=0 ppid=1 pid=1870 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:22.623530 kernel: audit: type=1327 audit(1712947702.596:161): proctitle=2F7362696E2F617564697463746C002D44 Apr 12 18:48:22.596000 audit: PROCTITLE proctitle=2F7362696E2F617564697463746C002D44 Apr 12 18:48:22.630934 kernel: audit: type=1131 audit(1712947702.599:162): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:22.599000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:22.649355 augenrules[1887]: No rules Apr 12 18:48:22.649000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:22.650048 systemd[1]: Finished audit-rules.service. Apr 12 18:48:22.658898 sudo[1866]: pam_unix(sudo:session): session closed for user root Apr 12 18:48:22.659344 kernel: audit: type=1130 audit(1712947702.649:163): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:22.658000 audit[1866]: USER_END pid=1866 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Apr 12 18:48:22.669348 kernel: audit: type=1106 audit(1712947702.658:164): pid=1866 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Apr 12 18:48:22.669498 kernel: audit: type=1104 audit(1712947702.658:165): pid=1866 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Apr 12 18:48:22.658000 audit[1866]: CRED_DISP pid=1866 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Apr 12 18:48:22.686034 sshd[1863]: pam_unix(sshd:session): session closed for user core Apr 12 18:48:22.687000 audit[1863]: USER_END pid=1863 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Apr 12 18:48:22.691490 systemd-logind[1623]: Session 6 logged out. Waiting for processes to exit. Apr 12 18:48:22.692541 systemd[1]: sshd@5-172.31.22.61:22-147.75.109.163:42218.service: Deactivated successfully. Apr 12 18:48:22.693594 systemd[1]: session-6.scope: Deactivated successfully. Apr 12 18:48:22.698219 systemd-logind[1623]: Removed session 6. Apr 12 18:48:22.687000 audit[1863]: CRED_DISP pid=1863 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Apr 12 18:48:22.707425 kernel: audit: type=1106 audit(1712947702.687:166): pid=1863 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Apr 12 18:48:22.707737 kernel: audit: type=1104 audit(1712947702.687:167): pid=1863 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Apr 12 18:48:22.716639 kernel: audit: type=1131 audit(1712947702.691:168): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@5-172.31.22.61:22-147.75.109.163:42218 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:22.691000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@5-172.31.22.61:22-147.75.109.163:42218 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:22.718358 systemd[1]: Started sshd@6-172.31.22.61:22-147.75.109.163:42232.service. Apr 12 18:48:22.718000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@6-172.31.22.61:22-147.75.109.163:42232 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:22.900000 audit[1893]: USER_ACCT pid=1893 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_access,pam_unix,pam_faillock,pam_permit acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Apr 12 18:48:22.901069 sshd[1893]: Accepted publickey for core from 147.75.109.163 port 42232 ssh2: RSA SHA256:+N1xisw2c2FaZUjSYyTG/z1AiN+MoHtibeEcHRhPKVY Apr 12 18:48:22.901000 audit[1893]: CRED_ACQ pid=1893 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Apr 12 18:48:22.901000 audit[1893]: SYSCALL arch=c000003e syscall=1 success=yes exit=3 a0=5 a1=7fffc9efd3d0 a2=3 a3=0 items=0 ppid=1 pid=1893 auid=500 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=7 comm="sshd" exe="/usr/sbin/sshd" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:22.901000 audit: PROCTITLE proctitle=737368643A20636F7265205B707269765D Apr 12 18:48:22.902616 sshd[1893]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Apr 12 18:48:22.909586 systemd[1]: Started session-7.scope. Apr 12 18:48:22.910591 systemd-logind[1623]: New session 7 of user core. Apr 12 18:48:22.916000 audit[1893]: USER_START pid=1893 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Apr 12 18:48:22.919000 audit[1895]: CRED_ACQ pid=1895 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Apr 12 18:48:23.014000 audit[1896]: USER_ACCT pid=1896 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_unix,pam_faillock,pam_permit acct="core" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Apr 12 18:48:23.014000 audit[1896]: CRED_REFR pid=1896 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Apr 12 18:48:23.015901 sudo[1896]: core : PWD=/home/core ; USER=root ; COMMAND=/home/core/install.sh Apr 12 18:48:23.016636 sudo[1896]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Apr 12 18:48:23.023000 audit[1896]: USER_START pid=1896 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Apr 12 18:48:23.677635 systemd[1]: Reloading. Apr 12 18:48:23.834133 /usr/lib/systemd/system-generators/torcx-generator[1925]: time="2024-04-12T18:48:23Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.3 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.3 /var/lib/torcx/store]" Apr 12 18:48:23.834173 /usr/lib/systemd/system-generators/torcx-generator[1925]: time="2024-04-12T18:48:23Z" level=info msg="torcx already run" Apr 12 18:48:23.977912 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Apr 12 18:48:23.977937 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Apr 12 18:48:24.008248 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Apr 12 18:48:24.129000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.129000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.129000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.129000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.129000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.129000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.129000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.129000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.129000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.130000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.130000 audit: BPF prog-id=34 op=LOAD Apr 12 18:48:24.130000 audit: BPF prog-id=25 op=UNLOAD Apr 12 18:48:24.132000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.132000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.132000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.132000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.132000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.132000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.132000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.132000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.132000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.132000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.132000 audit: BPF prog-id=35 op=LOAD Apr 12 18:48:24.132000 audit: BPF prog-id=20 op=UNLOAD Apr 12 18:48:24.133000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.133000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.133000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.133000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.133000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.133000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.133000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.133000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.133000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.133000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.133000 audit: BPF prog-id=36 op=LOAD Apr 12 18:48:24.133000 audit: BPF prog-id=32 op=UNLOAD Apr 12 18:48:24.134000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.134000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.134000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.134000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.134000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.134000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.134000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.134000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.134000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.135000 audit: BPF prog-id=37 op=LOAD Apr 12 18:48:24.135000 audit: BPF prog-id=29 op=UNLOAD Apr 12 18:48:24.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.135000 audit: BPF prog-id=38 op=LOAD Apr 12 18:48:24.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.135000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.135000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.135000 audit: BPF prog-id=39 op=LOAD Apr 12 18:48:24.135000 audit: BPF prog-id=30 op=UNLOAD Apr 12 18:48:24.135000 audit: BPF prog-id=31 op=UNLOAD Apr 12 18:48:24.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.136000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.136000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.137000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.137000 audit: BPF prog-id=40 op=LOAD Apr 12 18:48:24.137000 audit: BPF prog-id=15 op=UNLOAD Apr 12 18:48:24.137000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.137000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.137000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.137000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.137000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.137000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.137000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.137000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.137000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.137000 audit: BPF prog-id=41 op=LOAD Apr 12 18:48:24.137000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.137000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.137000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.137000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.137000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.137000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.137000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.137000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.137000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.137000 audit: BPF prog-id=42 op=LOAD Apr 12 18:48:24.137000 audit: BPF prog-id=16 op=UNLOAD Apr 12 18:48:24.137000 audit: BPF prog-id=17 op=UNLOAD Apr 12 18:48:24.138000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.138000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.138000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.138000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.138000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.138000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.138000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.138000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.138000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.138000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.138000 audit: BPF prog-id=43 op=LOAD Apr 12 18:48:24.138000 audit: BPF prog-id=21 op=UNLOAD Apr 12 18:48:24.138000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.139000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.139000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.139000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.139000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.139000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.139000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.139000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.139000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.139000 audit: BPF prog-id=44 op=LOAD Apr 12 18:48:24.139000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.139000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.139000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.139000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.139000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.139000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.139000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.139000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.139000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.139000 audit: BPF prog-id=45 op=LOAD Apr 12 18:48:24.139000 audit: BPF prog-id=22 op=UNLOAD Apr 12 18:48:24.139000 audit: BPF prog-id=23 op=UNLOAD Apr 12 18:48:24.144000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.144000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.144000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.144000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.144000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.144000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.144000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.144000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.144000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.144000 audit: BPF prog-id=46 op=LOAD Apr 12 18:48:24.144000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.144000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.144000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.144000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.144000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.144000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.144000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.144000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.144000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.144000 audit: BPF prog-id=47 op=LOAD Apr 12 18:48:24.144000 audit: BPF prog-id=18 op=UNLOAD Apr 12 18:48:24.144000 audit: BPF prog-id=19 op=UNLOAD Apr 12 18:48:24.147000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.147000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.147000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.147000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.147000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.147000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.147000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.147000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.147000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.147000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.147000 audit: BPF prog-id=48 op=LOAD Apr 12 18:48:24.147000 audit: BPF prog-id=24 op=UNLOAD Apr 12 18:48:24.151000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.151000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.151000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.151000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.151000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.151000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.151000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.151000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.151000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.156000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.156000 audit: BPF prog-id=49 op=LOAD Apr 12 18:48:24.157000 audit: BPF prog-id=26 op=UNLOAD Apr 12 18:48:24.157000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.157000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.157000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.157000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.157000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.157000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.157000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.157000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.157000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.157000 audit: BPF prog-id=50 op=LOAD Apr 12 18:48:24.157000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.157000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.157000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.157000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.157000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.159000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.159000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.159000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.159000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:24.159000 audit: BPF prog-id=51 op=LOAD Apr 12 18:48:24.159000 audit: BPF prog-id=27 op=UNLOAD Apr 12 18:48:24.159000 audit: BPF prog-id=28 op=UNLOAD Apr 12 18:48:24.186000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:24.186086 systemd[1]: Started kubelet.service. Apr 12 18:48:24.223859 systemd[1]: Starting coreos-metadata.service... Apr 12 18:48:24.373062 kubelet[1977]: E0412 18:48:24.363196 1977 run.go:74] "command failed" err="failed to load kubelet config file, error: failed to load Kubelet config file /var/lib/kubelet/config.yaml, error failed to read kubelet config file \"/var/lib/kubelet/config.yaml\", error: open /var/lib/kubelet/config.yaml: no such file or directory, path: /var/lib/kubelet/config.yaml" Apr 12 18:48:24.376000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=failed' Apr 12 18:48:24.377494 systemd[1]: kubelet.service: Main process exited, code=exited, status=1/FAILURE Apr 12 18:48:24.377728 systemd[1]: kubelet.service: Failed with result 'exit-code'. Apr 12 18:48:24.422605 coreos-metadata[1986]: Apr 12 18:48:24.422 INFO Putting http://169.254.169.254/latest/api/token: Attempt #1 Apr 12 18:48:24.423284 coreos-metadata[1986]: Apr 12 18:48:24.423 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/instance-id: Attempt #1 Apr 12 18:48:24.424017 coreos-metadata[1986]: Apr 12 18:48:24.423 INFO Fetch successful Apr 12 18:48:24.424171 coreos-metadata[1986]: Apr 12 18:48:24.424 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/instance-type: Attempt #1 Apr 12 18:48:24.424608 coreos-metadata[1986]: Apr 12 18:48:24.424 INFO Fetch successful Apr 12 18:48:24.424680 coreos-metadata[1986]: Apr 12 18:48:24.424 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/local-ipv4: Attempt #1 Apr 12 18:48:24.425215 coreos-metadata[1986]: Apr 12 18:48:24.425 INFO Fetch successful Apr 12 18:48:24.425278 coreos-metadata[1986]: Apr 12 18:48:24.425 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/public-ipv4: Attempt #1 Apr 12 18:48:24.426087 coreos-metadata[1986]: Apr 12 18:48:24.426 INFO Fetch successful Apr 12 18:48:24.426289 coreos-metadata[1986]: Apr 12 18:48:24.426 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/placement/availability-zone: Attempt #1 Apr 12 18:48:24.426839 coreos-metadata[1986]: Apr 12 18:48:24.426 INFO Fetch successful Apr 12 18:48:24.426839 coreos-metadata[1986]: Apr 12 18:48:24.426 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/hostname: Attempt #1 Apr 12 18:48:24.427553 coreos-metadata[1986]: Apr 12 18:48:24.427 INFO Fetch successful Apr 12 18:48:24.427629 coreos-metadata[1986]: Apr 12 18:48:24.427 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/public-hostname: Attempt #1 Apr 12 18:48:24.428160 coreos-metadata[1986]: Apr 12 18:48:24.428 INFO Fetch successful Apr 12 18:48:24.428230 coreos-metadata[1986]: Apr 12 18:48:24.428 INFO Fetching http://169.254.169.254/2019-10-01/dynamic/instance-identity/document: Attempt #1 Apr 12 18:48:24.428852 coreos-metadata[1986]: Apr 12 18:48:24.428 INFO Fetch successful Apr 12 18:48:24.440865 systemd[1]: Finished coreos-metadata.service. Apr 12 18:48:24.441000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=coreos-metadata comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:25.562285 systemd[1]: Stopped kubelet.service. Apr 12 18:48:25.561000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:25.562000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:25.595925 systemd[1]: Reloading. Apr 12 18:48:25.769527 /usr/lib/systemd/system-generators/torcx-generator[2042]: time="2024-04-12T18:48:25Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.3 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.3 /var/lib/torcx/store]" Apr 12 18:48:25.769725 /usr/lib/systemd/system-generators/torcx-generator[2042]: time="2024-04-12T18:48:25Z" level=info msg="torcx already run" Apr 12 18:48:25.872280 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Apr 12 18:48:25.872330 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Apr 12 18:48:25.896735 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Apr 12 18:48:25.982000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.982000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.982000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.982000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.982000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.982000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.982000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.982000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.982000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.982000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.982000 audit: BPF prog-id=52 op=LOAD Apr 12 18:48:25.982000 audit: BPF prog-id=34 op=UNLOAD Apr 12 18:48:25.984000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.984000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.984000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.984000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.984000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.984000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.984000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.984000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.984000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.985000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.985000 audit: BPF prog-id=53 op=LOAD Apr 12 18:48:25.985000 audit: BPF prog-id=35 op=UNLOAD Apr 12 18:48:25.985000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.985000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.985000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.985000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.985000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.985000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.985000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.985000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.985000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.986000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.986000 audit: BPF prog-id=54 op=LOAD Apr 12 18:48:25.986000 audit: BPF prog-id=36 op=UNLOAD Apr 12 18:48:25.987000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.987000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.987000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.987000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.987000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.987000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.987000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.987000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.987000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.987000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.987000 audit: BPF prog-id=55 op=LOAD Apr 12 18:48:25.987000 audit: BPF prog-id=37 op=UNLOAD Apr 12 18:48:25.987000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.987000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.987000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.987000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.987000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.987000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.987000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.987000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.987000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.987000 audit: BPF prog-id=56 op=LOAD Apr 12 18:48:25.987000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.987000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.987000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.987000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.987000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.987000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.987000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.987000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.987000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.987000 audit: BPF prog-id=57 op=LOAD Apr 12 18:48:25.987000 audit: BPF prog-id=38 op=UNLOAD Apr 12 18:48:25.987000 audit: BPF prog-id=39 op=UNLOAD Apr 12 18:48:25.989000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.989000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.989000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.989000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.989000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.989000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.989000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.989000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.989000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.989000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.989000 audit: BPF prog-id=58 op=LOAD Apr 12 18:48:25.989000 audit: BPF prog-id=40 op=UNLOAD Apr 12 18:48:25.989000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.989000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.989000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.989000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.989000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.989000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.989000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.989000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.989000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.989000 audit: BPF prog-id=59 op=LOAD Apr 12 18:48:25.989000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.989000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.989000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.989000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.989000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.989000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.989000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.989000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.989000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.989000 audit: BPF prog-id=60 op=LOAD Apr 12 18:48:25.989000 audit: BPF prog-id=41 op=UNLOAD Apr 12 18:48:25.990000 audit: BPF prog-id=42 op=UNLOAD Apr 12 18:48:25.990000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.990000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.990000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.990000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.990000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.990000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.990000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.990000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.990000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.990000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.990000 audit: BPF prog-id=61 op=LOAD Apr 12 18:48:25.990000 audit: BPF prog-id=43 op=UNLOAD Apr 12 18:48:25.991000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.991000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.991000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.991000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.991000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.991000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.991000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.991000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.991000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.991000 audit: BPF prog-id=62 op=LOAD Apr 12 18:48:25.991000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.991000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.991000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.991000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.991000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.991000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.991000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.991000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.991000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.991000 audit: BPF prog-id=63 op=LOAD Apr 12 18:48:25.991000 audit: BPF prog-id=44 op=UNLOAD Apr 12 18:48:25.991000 audit: BPF prog-id=45 op=UNLOAD Apr 12 18:48:25.993000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.993000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.993000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.993000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.993000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.993000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.993000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.993000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.993000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.993000 audit: BPF prog-id=64 op=LOAD Apr 12 18:48:25.993000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.993000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.993000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.993000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.993000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.993000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.993000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.993000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.993000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.993000 audit: BPF prog-id=65 op=LOAD Apr 12 18:48:25.994000 audit: BPF prog-id=46 op=UNLOAD Apr 12 18:48:25.994000 audit: BPF prog-id=47 op=UNLOAD Apr 12 18:48:25.994000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.994000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.994000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.994000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.994000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.995000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.995000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.995000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.995000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.995000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.995000 audit: BPF prog-id=66 op=LOAD Apr 12 18:48:25.995000 audit: BPF prog-id=48 op=UNLOAD Apr 12 18:48:25.998000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.998000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.998000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.998000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.998000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.998000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.998000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.998000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.998000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.998000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.998000 audit: BPF prog-id=67 op=LOAD Apr 12 18:48:25.998000 audit: BPF prog-id=49 op=UNLOAD Apr 12 18:48:25.999000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.999000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.999000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.999000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.999000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.999000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.999000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.999000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.999000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.999000 audit: BPF prog-id=68 op=LOAD Apr 12 18:48:25.999000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.999000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.999000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.999000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.999000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.999000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.999000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.999000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.999000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:25.999000 audit: BPF prog-id=69 op=LOAD Apr 12 18:48:25.999000 audit: BPF prog-id=50 op=UNLOAD Apr 12 18:48:25.999000 audit: BPF prog-id=51 op=UNLOAD Apr 12 18:48:26.026450 systemd[1]: Started kubelet.service. Apr 12 18:48:26.028000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:26.102060 kubelet[2095]: Flag --container-runtime-endpoint has been deprecated, This parameter should be set via the config file specified by the Kubelet's --config flag. See https://kubernetes.io/docs/tasks/administer-cluster/kubelet-config-file/ for more information. Apr 12 18:48:26.102060 kubelet[2095]: Flag --pod-infra-container-image has been deprecated, will be removed in a future release. Image garbage collector will get sandbox image information from CRI. Apr 12 18:48:26.102060 kubelet[2095]: Flag --volume-plugin-dir has been deprecated, This parameter should be set via the config file specified by the Kubelet's --config flag. See https://kubernetes.io/docs/tasks/administer-cluster/kubelet-config-file/ for more information. Apr 12 18:48:26.102613 kubelet[2095]: I0412 18:48:26.102185 2095 server.go:199] "--pod-infra-container-image will not be pruned by the image garbage collector in kubelet and should also be set in the remote runtime" Apr 12 18:48:26.707431 kubelet[2095]: I0412 18:48:26.707371 2095 server.go:415] "Kubelet version" kubeletVersion="v1.27.2" Apr 12 18:48:26.707431 kubelet[2095]: I0412 18:48:26.707437 2095 server.go:417] "Golang settings" GOGC="" GOMAXPROCS="" GOTRACEBACK="" Apr 12 18:48:26.708057 kubelet[2095]: I0412 18:48:26.708037 2095 server.go:837] "Client rotation is on, will bootstrap in background" Apr 12 18:48:26.713284 kubelet[2095]: I0412 18:48:26.713255 2095 dynamic_cafile_content.go:157] "Starting controller" name="client-ca-bundle::/etc/kubernetes/pki/ca.crt" Apr 12 18:48:26.715351 kubelet[2095]: I0412 18:48:26.715324 2095 server.go:662] "--cgroups-per-qos enabled, but --cgroup-root was not specified. defaulting to /" Apr 12 18:48:26.715602 kubelet[2095]: I0412 18:48:26.715581 2095 container_manager_linux.go:266] "Container manager verified user specified cgroup-root exists" cgroupRoot=[] Apr 12 18:48:26.715689 kubelet[2095]: I0412 18:48:26.715671 2095 container_manager_linux.go:271] "Creating Container Manager object based on Node Config" nodeConfig={RuntimeCgroupsName: SystemCgroupsName: KubeletCgroupsName: KubeletOOMScoreAdj:-999 ContainerRuntime: CgroupsPerQOS:true CgroupRoot:/ CgroupDriver:systemd KubeletRootDir:/var/lib/kubelet ProtectKernelDefaults:false NodeAllocatableConfig:{KubeReservedCgroupName: SystemReservedCgroupName: ReservedSystemCPUs: EnforceNodeAllocatable:map[pods:{}] KubeReserved:map[] SystemReserved:map[] HardEvictionThresholds:[{Signal:imagefs.available Operator:LessThan Value:{Quantity: Percentage:0.15} GracePeriod:0s MinReclaim:} {Signal:memory.available Operator:LessThan Value:{Quantity:100Mi Percentage:0} GracePeriod:0s MinReclaim:} {Signal:nodefs.available Operator:LessThan Value:{Quantity: Percentage:0.1} GracePeriod:0s MinReclaim:} {Signal:nodefs.inodesFree Operator:LessThan Value:{Quantity: Percentage:0.05} GracePeriod:0s MinReclaim:}]} QOSReserved:map[] CPUManagerPolicy:none CPUManagerPolicyOptions:map[] TopologyManagerScope:container CPUManagerReconcilePeriod:10s ExperimentalMemoryManagerPolicy:None ExperimentalMemoryManagerReservedMemory:[] PodPidsLimit:-1 EnforceCPULimits:true CPUCFSQuotaPeriod:100ms TopologyManagerPolicy:none ExperimentalTopologyManagerPolicyOptions:map[]} Apr 12 18:48:26.715825 kubelet[2095]: I0412 18:48:26.715700 2095 topology_manager.go:136] "Creating topology manager with policy per scope" topologyPolicyName="none" topologyScopeName="container" Apr 12 18:48:26.715825 kubelet[2095]: I0412 18:48:26.715716 2095 container_manager_linux.go:302] "Creating device plugin manager" Apr 12 18:48:26.715921 kubelet[2095]: I0412 18:48:26.715832 2095 state_mem.go:36] "Initialized new in-memory state store" Apr 12 18:48:26.719763 kubelet[2095]: I0412 18:48:26.719735 2095 kubelet.go:405] "Attempting to sync node with API server" Apr 12 18:48:26.719763 kubelet[2095]: I0412 18:48:26.719763 2095 kubelet.go:298] "Adding static pod path" path="/etc/kubernetes/manifests" Apr 12 18:48:26.719896 kubelet[2095]: I0412 18:48:26.719785 2095 kubelet.go:309] "Adding apiserver pod source" Apr 12 18:48:26.719896 kubelet[2095]: I0412 18:48:26.719802 2095 apiserver.go:42] "Waiting for node sync before watching apiserver pods" Apr 12 18:48:26.720473 kubelet[2095]: E0412 18:48:26.720358 2095 file.go:98] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:26.720573 kubelet[2095]: E0412 18:48:26.720476 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:26.720967 kubelet[2095]: I0412 18:48:26.720953 2095 kuberuntime_manager.go:257] "Container runtime initialized" containerRuntime="containerd" version="1.6.16" apiVersion="v1" Apr 12 18:48:26.721487 kubelet[2095]: W0412 18:48:26.721460 2095 probe.go:268] Flexvolume plugin directory at /opt/libexec/kubernetes/kubelet-plugins/volume/exec/ does not exist. Recreating. Apr 12 18:48:26.721947 kubelet[2095]: I0412 18:48:26.721930 2095 server.go:1168] "Started kubelet" Apr 12 18:48:26.722188 kubelet[2095]: I0412 18:48:26.722174 2095 server.go:162] "Starting to listen" address="0.0.0.0" port=10250 Apr 12 18:48:26.722376 kubelet[2095]: I0412 18:48:26.722361 2095 ratelimit.go:65] "Setting rate limiting for podresources endpoint" qps=100 burstTokens=10 Apr 12 18:48:26.723731 kubelet[2095]: E0412 18:48:26.723696 2095 cri_stats_provider.go:455] "Failed to get the info of the filesystem with mountpoint" err="unable to find data in memory cache" mountpoint="/var/lib/containerd/io.containerd.snapshotter.v1.overlayfs" Apr 12 18:48:26.723731 kubelet[2095]: E0412 18:48:26.723726 2095 kubelet.go:1400] "Image garbage collection failed once. Stats initialization may not have completed yet" err="invalid capacity 0 on image filesystem" Apr 12 18:48:26.724593 kubelet[2095]: I0412 18:48:26.724579 2095 server.go:461] "Adding debug handlers to kubelet server" Apr 12 18:48:26.725000 audit[2095]: AVC avc: denied { mac_admin } for pid=2095 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:26.725000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Apr 12 18:48:26.725000 audit[2095]: SYSCALL arch=c000003e syscall=188 success=no exit=-22 a0=c0008d7050 a1=c0001b6a68 a2=c0008d7020 a3=25 items=0 ppid=1 pid=2095 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:26.725000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Apr 12 18:48:26.725000 audit[2095]: AVC avc: denied { mac_admin } for pid=2095 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:26.725000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Apr 12 18:48:26.725000 audit[2095]: SYSCALL arch=c000003e syscall=188 success=no exit=-22 a0=c00097a3e0 a1=c0001b6a80 a2=c0008d70e0 a3=25 items=0 ppid=1 pid=2095 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:26.725000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Apr 12 18:48:26.726183 kubelet[2095]: I0412 18:48:26.725807 2095 kubelet.go:1355] "Unprivileged containerized plugins might not work, could not set selinux context on plugin registration dir" path="/var/lib/kubelet/plugins_registry" err="setxattr /var/lib/kubelet/plugins_registry: invalid argument" Apr 12 18:48:26.726183 kubelet[2095]: I0412 18:48:26.725863 2095 kubelet.go:1359] "Unprivileged containerized plugins might not work, could not set selinux context on plugins dir" path="/var/lib/kubelet/plugins" err="setxattr /var/lib/kubelet/plugins: invalid argument" Apr 12 18:48:26.726183 kubelet[2095]: I0412 18:48:26.725935 2095 fs_resource_analyzer.go:67] "Starting FS ResourceAnalyzer" Apr 12 18:48:26.732809 kubelet[2095]: E0412 18:48:26.732787 2095 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.22.61\" not found" Apr 12 18:48:26.733121 kubelet[2095]: I0412 18:48:26.733105 2095 volume_manager.go:284] "Starting Kubelet Volume Manager" Apr 12 18:48:26.735029 kubelet[2095]: I0412 18:48:26.734977 2095 desired_state_of_world_populator.go:145] "Desired state populator starts to run" Apr 12 18:48:26.736542 kubelet[2095]: E0412 18:48:26.736407 2095 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.61.17c59cdd19faae3b", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.22.61", UID:"172.31.22.61", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"Starting", Message:"Starting kubelet.", Source:v1.EventSource{Component:"kubelet", Host:"172.31.22.61"}, FirstTimestamp:time.Date(2024, time.April, 12, 18, 48, 26, 721906235, time.Local), LastTimestamp:time.Date(2024, time.April, 12, 18, 48, 26, 721906235, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Apr 12 18:48:26.736762 kubelet[2095]: W0412 18:48:26.736734 2095 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.Node: nodes "172.31.22.61" is forbidden: User "system:anonymous" cannot list resource "nodes" in API group "" at the cluster scope Apr 12 18:48:26.736858 kubelet[2095]: E0412 18:48:26.736770 2095 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.Node: failed to list *v1.Node: nodes "172.31.22.61" is forbidden: User "system:anonymous" cannot list resource "nodes" in API group "" at the cluster scope Apr 12 18:48:26.736858 kubelet[2095]: W0412 18:48:26.736821 2095 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.Service: services is forbidden: User "system:anonymous" cannot list resource "services" in API group "" at the cluster scope Apr 12 18:48:26.736858 kubelet[2095]: E0412 18:48:26.736837 2095 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.Service: failed to list *v1.Service: services is forbidden: User "system:anonymous" cannot list resource "services" in API group "" at the cluster scope Apr 12 18:48:26.737269 kubelet[2095]: W0412 18:48:26.737211 2095 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.CSIDriver: csidrivers.storage.k8s.io is forbidden: User "system:anonymous" cannot list resource "csidrivers" in API group "storage.k8s.io" at the cluster scope Apr 12 18:48:26.737269 kubelet[2095]: E0412 18:48:26.737269 2095 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.CSIDriver: failed to list *v1.CSIDriver: csidrivers.storage.k8s.io is forbidden: User "system:anonymous" cannot list resource "csidrivers" in API group "storage.k8s.io" at the cluster scope Apr 12 18:48:26.739989 kubelet[2095]: E0412 18:48:26.739959 2095 controller.go:146] "Failed to ensure lease exists, will retry" err="leases.coordination.k8s.io \"172.31.22.61\" is forbidden: User \"system:anonymous\" cannot get resource \"leases\" in API group \"coordination.k8s.io\" in the namespace \"kube-node-lease\"" interval="200ms" Apr 12 18:48:26.740084 kubelet[2095]: E0412 18:48:26.740002 2095 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.61.17c59cdd1a164074", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.22.61", UID:"172.31.22.61", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"InvalidDiskCapacity", Message:"invalid capacity 0 on image filesystem", Source:v1.EventSource{Component:"kubelet", Host:"172.31.22.61"}, FirstTimestamp:time.Date(2024, time.April, 12, 18, 48, 26, 723713140, time.Local), LastTimestamp:time.Date(2024, time.April, 12, 18, 48, 26, 723713140, time.Local), Count:1, Type:"Warning", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Apr 12 18:48:26.781963 kubelet[2095]: I0412 18:48:26.780641 2095 cpu_manager.go:214] "Starting CPU manager" policy="none" Apr 12 18:48:26.781963 kubelet[2095]: I0412 18:48:26.780666 2095 cpu_manager.go:215] "Reconciling" reconcilePeriod="10s" Apr 12 18:48:26.781963 kubelet[2095]: I0412 18:48:26.780684 2095 state_mem.go:36] "Initialized new in-memory state store" Apr 12 18:48:26.781963 kubelet[2095]: E0412 18:48:26.781604 2095 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.61.17c59cdd1d68d141", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.22.61", UID:"172.31.22.61", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 172.31.22.61 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"172.31.22.61"}, FirstTimestamp:time.Date(2024, time.April, 12, 18, 48, 26, 779455809, time.Local), LastTimestamp:time.Date(2024, time.April, 12, 18, 48, 26, 779455809, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Apr 12 18:48:26.796806 kubelet[2095]: E0412 18:48:26.785667 2095 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.61.17c59cdd1d68ebf6", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.22.61", UID:"172.31.22.61", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 172.31.22.61 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"172.31.22.61"}, FirstTimestamp:time.Date(2024, time.April, 12, 18, 48, 26, 779462646, time.Local), LastTimestamp:time.Date(2024, time.April, 12, 18, 48, 26, 779462646, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Apr 12 18:48:26.796962 kubelet[2095]: E0412 18:48:26.790897 2095 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.61.17c59cdd1d68fe0c", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.22.61", UID:"172.31.22.61", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 172.31.22.61 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"172.31.22.61"}, FirstTimestamp:time.Date(2024, time.April, 12, 18, 48, 26, 779467276, time.Local), LastTimestamp:time.Date(2024, time.April, 12, 18, 48, 26, 779467276, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Apr 12 18:48:26.796962 kubelet[2095]: I0412 18:48:26.793729 2095 policy_none.go:49] "None policy: Start" Apr 12 18:48:26.796962 kubelet[2095]: I0412 18:48:26.794946 2095 memory_manager.go:169] "Starting memorymanager" policy="None" Apr 12 18:48:26.796962 kubelet[2095]: I0412 18:48:26.794975 2095 state_mem.go:35] "Initializing new in-memory state store" Apr 12 18:48:26.805612 systemd[1]: Created slice kubepods.slice. Apr 12 18:48:26.812092 systemd[1]: Created slice kubepods-burstable.slice. Apr 12 18:48:26.813000 audit[2109]: NETFILTER_CFG table=mangle:2 family=2 entries=2 op=nft_register_chain pid=2109 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:48:26.813000 audit[2109]: SYSCALL arch=c000003e syscall=46 success=yes exit=136 a0=3 a1=7fffdd7f0cd0 a2=0 a3=7fffdd7f0cbc items=0 ppid=2095 pid=2109 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:26.813000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D49505441424C45532D48494E54002D74006D616E676C65 Apr 12 18:48:26.815000 audit[2112]: NETFILTER_CFG table=filter:3 family=2 entries=2 op=nft_register_chain pid=2112 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:48:26.815000 audit[2112]: SYSCALL arch=c000003e syscall=46 success=yes exit=132 a0=3 a1=7ffef340a0e0 a2=0 a3=7ffef340a0cc items=0 ppid=2095 pid=2112 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:26.815000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4649524557414C4C002D740066696C746572 Apr 12 18:48:26.817518 systemd[1]: Created slice kubepods-besteffort.slice. Apr 12 18:48:26.824487 kubelet[2095]: I0412 18:48:26.824454 2095 manager.go:455] "Failed to read data from checkpoint" checkpoint="kubelet_internal_checkpoint" err="checkpoint is not found" Apr 12 18:48:26.823000 audit[2095]: AVC avc: denied { mac_admin } for pid=2095 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:26.823000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Apr 12 18:48:26.823000 audit[2095]: SYSCALL arch=c000003e syscall=188 success=no exit=-22 a0=c000f5c6f0 a1=c0001b7068 a2=c000f5c6c0 a3=25 items=0 ppid=1 pid=2095 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:26.823000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Apr 12 18:48:26.824866 kubelet[2095]: I0412 18:48:26.824548 2095 server.go:88] "Unprivileged containerized plugins might not work. Could not set selinux context on socket dir" path="/var/lib/kubelet/device-plugins/" err="setxattr /var/lib/kubelet/device-plugins/: invalid argument" Apr 12 18:48:26.824866 kubelet[2095]: I0412 18:48:26.824761 2095 plugin_manager.go:118] "Starting Kubelet Plugin Manager" Apr 12 18:48:26.827748 kubelet[2095]: E0412 18:48:26.827127 2095 eviction_manager.go:262] "Eviction manager: failed to get summary stats" err="failed to get node info: node \"172.31.22.61\" not found" Apr 12 18:48:26.834125 kubelet[2095]: E0412 18:48:26.833978 2095 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.61.17c59cdd20395147", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.22.61", UID:"172.31.22.61", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeAllocatableEnforced", Message:"Updated Node Allocatable limit across pods", Source:v1.EventSource{Component:"kubelet", Host:"172.31.22.61"}, FirstTimestamp:time.Date(2024, time.April, 12, 18, 48, 26, 826674503, time.Local), LastTimestamp:time.Date(2024, time.April, 12, 18, 48, 26, 826674503, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Apr 12 18:48:26.836544 kubelet[2095]: I0412 18:48:26.836526 2095 kubelet_node_status.go:70] "Attempting to register node" node="172.31.22.61" Apr 12 18:48:26.841085 kubelet[2095]: E0412 18:48:26.840966 2095 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.61.17c59cdd1d68d141", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.22.61", UID:"172.31.22.61", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 172.31.22.61 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"172.31.22.61"}, FirstTimestamp:time.Date(2024, time.April, 12, 18, 48, 26, 779455809, time.Local), LastTimestamp:time.Date(2024, time.April, 12, 18, 48, 26, 836397171, time.Local), Count:2, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.22.61.17c59cdd1d68d141" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Apr 12 18:48:26.842561 kubelet[2095]: E0412 18:48:26.842541 2095 kubelet_node_status.go:92] "Unable to register node with API server" err="nodes is forbidden: User \"system:anonymous\" cannot create resource \"nodes\" in API group \"\" at the cluster scope" node="172.31.22.61" Apr 12 18:48:26.843206 kubelet[2095]: E0412 18:48:26.843126 2095 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.61.17c59cdd1d68ebf6", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.22.61", UID:"172.31.22.61", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 172.31.22.61 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"172.31.22.61"}, FirstTimestamp:time.Date(2024, time.April, 12, 18, 48, 26, 779462646, time.Local), LastTimestamp:time.Date(2024, time.April, 12, 18, 48, 26, 836476717, time.Local), Count:2, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.22.61.17c59cdd1d68ebf6" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Apr 12 18:48:26.844297 kubelet[2095]: E0412 18:48:26.844175 2095 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.61.17c59cdd1d68fe0c", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.22.61", UID:"172.31.22.61", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 172.31.22.61 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"172.31.22.61"}, FirstTimestamp:time.Date(2024, time.April, 12, 18, 48, 26, 779467276, time.Local), LastTimestamp:time.Date(2024, time.April, 12, 18, 48, 26, 836481396, time.Local), Count:2, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.22.61.17c59cdd1d68fe0c" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Apr 12 18:48:26.825000 audit[2114]: NETFILTER_CFG table=filter:4 family=2 entries=2 op=nft_register_chain pid=2114 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:48:26.825000 audit[2114]: SYSCALL arch=c000003e syscall=46 success=yes exit=312 a0=3 a1=7ffc81705630 a2=0 a3=7ffc8170561c items=0 ppid=2095 pid=2114 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:26.825000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6A004B5542452D4649524557414C4C Apr 12 18:48:26.853000 audit[2121]: NETFILTER_CFG table=filter:5 family=2 entries=2 op=nft_register_chain pid=2121 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:48:26.853000 audit[2121]: SYSCALL arch=c000003e syscall=46 success=yes exit=312 a0=3 a1=7ffc02b46a40 a2=0 a3=7ffc02b46a2c items=0 ppid=2095 pid=2121 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:26.853000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6A004B5542452D4649524557414C4C Apr 12 18:48:26.941722 kubelet[2095]: E0412 18:48:26.941686 2095 controller.go:146] "Failed to ensure lease exists, will retry" err="leases.coordination.k8s.io \"172.31.22.61\" is forbidden: User \"system:anonymous\" cannot get resource \"leases\" in API group \"coordination.k8s.io\" in the namespace \"kube-node-lease\"" interval="400ms" Apr 12 18:48:26.975000 audit[2126]: NETFILTER_CFG table=filter:6 family=2 entries=1 op=nft_register_rule pid=2126 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:48:26.975000 audit[2126]: SYSCALL arch=c000003e syscall=46 success=yes exit=924 a0=3 a1=7ffe7feb7830 a2=0 a3=7ffe7feb781c items=0 ppid=2095 pid=2126 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:26.975000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D41004B5542452D4649524557414C4C002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E7400626C6F636B20696E636F6D696E67206C6F63616C6E657420636F6E6E656374696F6E73002D2D647374003132372E302E302E302F38 Apr 12 18:48:26.981003 kubelet[2095]: I0412 18:48:26.980973 2095 kubelet_network_linux.go:63] "Initialized iptables rules." protocol=IPv4 Apr 12 18:48:26.981000 audit[2127]: NETFILTER_CFG table=mangle:7 family=10 entries=2 op=nft_register_chain pid=2127 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:48:26.981000 audit[2127]: SYSCALL arch=c000003e syscall=46 success=yes exit=136 a0=3 a1=7ffe46a13860 a2=0 a3=7ffe46a1384c items=0 ppid=2095 pid=2127 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:26.981000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D49505441424C45532D48494E54002D74006D616E676C65 Apr 12 18:48:26.983425 kubelet[2095]: I0412 18:48:26.983268 2095 kubelet_network_linux.go:63] "Initialized iptables rules." protocol=IPv6 Apr 12 18:48:26.983425 kubelet[2095]: I0412 18:48:26.983296 2095 status_manager.go:207] "Starting to sync pod status with apiserver" Apr 12 18:48:26.983425 kubelet[2095]: I0412 18:48:26.983346 2095 kubelet.go:2257] "Starting kubelet main sync loop" Apr 12 18:48:26.983425 kubelet[2095]: E0412 18:48:26.983404 2095 kubelet.go:2281] "Skipping pod synchronization" err="PLEG is not healthy: pleg has yet to be successful" Apr 12 18:48:26.983000 audit[2128]: NETFILTER_CFG table=mangle:8 family=2 entries=1 op=nft_register_chain pid=2128 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:48:26.983000 audit[2128]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7fffd65fca70 a2=0 a3=7fffd65fca5c items=0 ppid=2095 pid=2128 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:26.983000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006D616E676C65 Apr 12 18:48:26.984000 audit[2129]: NETFILTER_CFG table=mangle:9 family=10 entries=1 op=nft_register_chain pid=2129 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:48:26.984000 audit[2129]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7fff11affc10 a2=0 a3=7fff11affbfc items=0 ppid=2095 pid=2129 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:26.984000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006D616E676C65 Apr 12 18:48:26.985774 kubelet[2095]: W0412 18:48:26.985742 2095 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.RuntimeClass: runtimeclasses.node.k8s.io is forbidden: User "system:anonymous" cannot list resource "runtimeclasses" in API group "node.k8s.io" at the cluster scope Apr 12 18:48:26.986069 kubelet[2095]: E0412 18:48:26.986004 2095 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.RuntimeClass: failed to list *v1.RuntimeClass: runtimeclasses.node.k8s.io is forbidden: User "system:anonymous" cannot list resource "runtimeclasses" in API group "node.k8s.io" at the cluster scope Apr 12 18:48:26.986000 audit[2131]: NETFILTER_CFG table=nat:10 family=2 entries=2 op=nft_register_chain pid=2131 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:48:26.986000 audit[2131]: SYSCALL arch=c000003e syscall=46 success=yes exit=128 a0=3 a1=7ffe57d15570 a2=0 a3=7ffe57d1555c items=0 ppid=2095 pid=2131 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:26.986000 audit[2130]: NETFILTER_CFG table=nat:11 family=10 entries=2 op=nft_register_chain pid=2130 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:48:26.986000 audit[2130]: SYSCALL arch=c000003e syscall=46 success=yes exit=128 a0=3 a1=7ffc485418b0 a2=0 a3=10e3 items=0 ppid=2095 pid=2130 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:26.986000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006E6174 Apr 12 18:48:26.986000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006E6174 Apr 12 18:48:26.987000 audit[2133]: NETFILTER_CFG table=filter:12 family=2 entries=1 op=nft_register_chain pid=2133 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:48:26.987000 audit[2133]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7ffcc4fef6e0 a2=0 a3=7ffcc4fef6cc items=0 ppid=2095 pid=2133 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:26.988000 audit[2132]: NETFILTER_CFG table=filter:13 family=10 entries=2 op=nft_register_chain pid=2132 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:48:26.987000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D740066696C746572 Apr 12 18:48:26.988000 audit[2132]: SYSCALL arch=c000003e syscall=46 success=yes exit=136 a0=3 a1=7ffe6872f360 a2=0 a3=10e3 items=0 ppid=2095 pid=2132 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:26.988000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D740066696C746572 Apr 12 18:48:27.044833 kubelet[2095]: I0412 18:48:27.044811 2095 kubelet_node_status.go:70] "Attempting to register node" node="172.31.22.61" Apr 12 18:48:27.046277 kubelet[2095]: E0412 18:48:27.046256 2095 kubelet_node_status.go:92] "Unable to register node with API server" err="nodes is forbidden: User \"system:anonymous\" cannot create resource \"nodes\" in API group \"\" at the cluster scope" node="172.31.22.61" Apr 12 18:48:27.046454 kubelet[2095]: E0412 18:48:27.046295 2095 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.61.17c59cdd1d68d141", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.22.61", UID:"172.31.22.61", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 172.31.22.61 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"172.31.22.61"}, FirstTimestamp:time.Date(2024, time.April, 12, 18, 48, 26, 779455809, time.Local), LastTimestamp:time.Date(2024, time.April, 12, 18, 48, 27, 44762788, time.Local), Count:3, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.22.61.17c59cdd1d68d141" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Apr 12 18:48:27.047532 kubelet[2095]: E0412 18:48:27.047457 2095 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.61.17c59cdd1d68ebf6", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.22.61", UID:"172.31.22.61", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 172.31.22.61 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"172.31.22.61"}, FirstTimestamp:time.Date(2024, time.April, 12, 18, 48, 26, 779462646, time.Local), LastTimestamp:time.Date(2024, time.April, 12, 18, 48, 27, 44774607, time.Local), Count:3, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.22.61.17c59cdd1d68ebf6" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Apr 12 18:48:27.048534 kubelet[2095]: E0412 18:48:27.048466 2095 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.61.17c59cdd1d68fe0c", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.22.61", UID:"172.31.22.61", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 172.31.22.61 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"172.31.22.61"}, FirstTimestamp:time.Date(2024, time.April, 12, 18, 48, 26, 779467276, time.Local), LastTimestamp:time.Date(2024, time.April, 12, 18, 48, 27, 44778827, time.Local), Count:3, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.22.61.17c59cdd1d68fe0c" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Apr 12 18:48:27.343791 kubelet[2095]: E0412 18:48:27.343670 2095 controller.go:146] "Failed to ensure lease exists, will retry" err="leases.coordination.k8s.io \"172.31.22.61\" is forbidden: User \"system:anonymous\" cannot get resource \"leases\" in API group \"coordination.k8s.io\" in the namespace \"kube-node-lease\"" interval="800ms" Apr 12 18:48:27.448739 kubelet[2095]: I0412 18:48:27.448695 2095 kubelet_node_status.go:70] "Attempting to register node" node="172.31.22.61" Apr 12 18:48:27.450515 kubelet[2095]: E0412 18:48:27.450491 2095 kubelet_node_status.go:92] "Unable to register node with API server" err="nodes is forbidden: User \"system:anonymous\" cannot create resource \"nodes\" in API group \"\" at the cluster scope" node="172.31.22.61" Apr 12 18:48:27.450691 kubelet[2095]: E0412 18:48:27.450484 2095 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.61.17c59cdd1d68d141", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.22.61", UID:"172.31.22.61", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 172.31.22.61 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"172.31.22.61"}, FirstTimestamp:time.Date(2024, time.April, 12, 18, 48, 26, 779455809, time.Local), LastTimestamp:time.Date(2024, time.April, 12, 18, 48, 27, 448652488, time.Local), Count:4, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.22.61.17c59cdd1d68d141" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Apr 12 18:48:27.451891 kubelet[2095]: E0412 18:48:27.451812 2095 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.61.17c59cdd1d68ebf6", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.22.61", UID:"172.31.22.61", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 172.31.22.61 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"172.31.22.61"}, FirstTimestamp:time.Date(2024, time.April, 12, 18, 48, 26, 779462646, time.Local), LastTimestamp:time.Date(2024, time.April, 12, 18, 48, 27, 448660459, time.Local), Count:4, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.22.61.17c59cdd1d68ebf6" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Apr 12 18:48:27.452764 kubelet[2095]: E0412 18:48:27.452692 2095 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.61.17c59cdd1d68fe0c", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.22.61", UID:"172.31.22.61", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 172.31.22.61 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"172.31.22.61"}, FirstTimestamp:time.Date(2024, time.April, 12, 18, 48, 26, 779467276, time.Local), LastTimestamp:time.Date(2024, time.April, 12, 18, 48, 27, 448664812, time.Local), Count:4, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.22.61.17c59cdd1d68fe0c" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Apr 12 18:48:27.712352 kubelet[2095]: I0412 18:48:27.712288 2095 transport.go:147] "Certificate rotation detected, shutting down client connections to start using new credentials" Apr 12 18:48:27.721460 kubelet[2095]: E0412 18:48:27.721412 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:28.108157 kubelet[2095]: E0412 18:48:28.108029 2095 csi_plugin.go:295] Failed to initialize CSINode: error updating CSINode annotation: timed out waiting for the condition; caused by: nodes "172.31.22.61" not found Apr 12 18:48:28.164851 kubelet[2095]: E0412 18:48:28.164813 2095 nodelease.go:49] "Failed to get node when trying to set owner ref to the node lease" err="nodes \"172.31.22.61\" not found" node="172.31.22.61" Apr 12 18:48:28.201329 amazon-ssm-agent[1610]: 2024-04-12 18:48:28 INFO [MessagingDeliveryService] [Association] No associations on boot. Requerying for associations after 30 seconds. Apr 12 18:48:28.252501 kubelet[2095]: I0412 18:48:28.252464 2095 kubelet_node_status.go:70] "Attempting to register node" node="172.31.22.61" Apr 12 18:48:28.257296 kubelet[2095]: I0412 18:48:28.257264 2095 kubelet_node_status.go:73] "Successfully registered node" node="172.31.22.61" Apr 12 18:48:28.374691 kubelet[2095]: I0412 18:48:28.374468 2095 kuberuntime_manager.go:1460] "Updating runtime config through cri with podcidr" CIDR="192.168.1.0/24" Apr 12 18:48:28.375362 env[1629]: time="2024-04-12T18:48:28.375294530Z" level=info msg="No cni config template is specified, wait for other system components to drop the config." Apr 12 18:48:28.375855 kubelet[2095]: I0412 18:48:28.375831 2095 kubelet_network.go:61] "Updating Pod CIDR" originalPodCIDR="" newPodCIDR="192.168.1.0/24" Apr 12 18:48:28.556423 sudo[1896]: pam_unix(sudo:session): session closed for user root Apr 12 18:48:28.556000 audit[1896]: USER_END pid=1896 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Apr 12 18:48:28.557767 kernel: kauditd_printk_skb: 477 callbacks suppressed Apr 12 18:48:28.557854 kernel: audit: type=1106 audit(1712947708.556:611): pid=1896 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Apr 12 18:48:28.557000 audit[1896]: CRED_DISP pid=1896 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Apr 12 18:48:28.575886 kernel: audit: type=1104 audit(1712947708.557:612): pid=1896 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Apr 12 18:48:28.597652 sshd[1893]: pam_unix(sshd:session): session closed for user core Apr 12 18:48:28.598000 audit[1893]: USER_END pid=1893 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Apr 12 18:48:28.606345 kernel: audit: type=1106 audit(1712947708.598:613): pid=1893 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Apr 12 18:48:28.606635 systemd[1]: sshd@6-172.31.22.61:22-147.75.109.163:42232.service: Deactivated successfully. Apr 12 18:48:28.607595 systemd[1]: session-7.scope: Deactivated successfully. Apr 12 18:48:28.598000 audit[1893]: CRED_DISP pid=1893 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Apr 12 18:48:28.608523 systemd-logind[1623]: Session 7 logged out. Waiting for processes to exit. Apr 12 18:48:28.605000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@6-172.31.22.61:22-147.75.109.163:42232 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:28.615636 systemd-logind[1623]: Removed session 7. Apr 12 18:48:28.618977 kernel: audit: type=1104 audit(1712947708.598:614): pid=1893 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Apr 12 18:48:28.619063 kernel: audit: type=1131 audit(1712947708.605:615): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@6-172.31.22.61:22-147.75.109.163:42232 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:28.721548 kubelet[2095]: E0412 18:48:28.721508 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:28.721742 kubelet[2095]: I0412 18:48:28.721515 2095 apiserver.go:52] "Watching apiserver" Apr 12 18:48:28.734892 kubelet[2095]: I0412 18:48:28.734840 2095 topology_manager.go:212] "Topology Admit Handler" Apr 12 18:48:28.735063 kubelet[2095]: I0412 18:48:28.734944 2095 topology_manager.go:212] "Topology Admit Handler" Apr 12 18:48:28.735063 kubelet[2095]: I0412 18:48:28.734985 2095 topology_manager.go:212] "Topology Admit Handler" Apr 12 18:48:28.735794 kubelet[2095]: I0412 18:48:28.735760 2095 desired_state_of_world_populator.go:153] "Finished populating initial desired state of world" Apr 12 18:48:28.736353 kubelet[2095]: E0412 18:48:28.736336 2095 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-7zlkf" podUID=2a04af6d-d9f0-41d0-896d-41bdc4c7d554 Apr 12 18:48:28.743075 systemd[1]: Created slice kubepods-besteffort-pod57f22a9d_1ff9_4710_9bcf_46afd3b39033.slice. Apr 12 18:48:28.747249 kubelet[2095]: I0412 18:48:28.747216 2095 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"socket-dir\" (UniqueName: \"kubernetes.io/host-path/2a04af6d-d9f0-41d0-896d-41bdc4c7d554-socket-dir\") pod \"csi-node-driver-7zlkf\" (UID: \"2a04af6d-d9f0-41d0-896d-41bdc4c7d554\") " pod="calico-system/csi-node-driver-7zlkf" Apr 12 18:48:28.747403 kubelet[2095]: I0412 18:48:28.747264 2095 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"var-lib-calico\" (UniqueName: \"kubernetes.io/host-path/9b55e399-3100-4d20-a2ca-de79aea6287f-var-lib-calico\") pod \"calico-node-t9xjp\" (UID: \"9b55e399-3100-4d20-a2ca-de79aea6287f\") " pod="calico-system/calico-node-t9xjp" Apr 12 18:48:28.747403 kubelet[2095]: I0412 18:48:28.747297 2095 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"flexvol-driver-host\" (UniqueName: \"kubernetes.io/host-path/9b55e399-3100-4d20-a2ca-de79aea6287f-flexvol-driver-host\") pod \"calico-node-t9xjp\" (UID: \"9b55e399-3100-4d20-a2ca-de79aea6287f\") " pod="calico-system/calico-node-t9xjp" Apr 12 18:48:28.747403 kubelet[2095]: I0412 18:48:28.747346 2095 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"policysync\" (UniqueName: \"kubernetes.io/host-path/9b55e399-3100-4d20-a2ca-de79aea6287f-policysync\") pod \"calico-node-t9xjp\" (UID: \"9b55e399-3100-4d20-a2ca-de79aea6287f\") " pod="calico-system/calico-node-t9xjp" Apr 12 18:48:28.747403 kubelet[2095]: I0412 18:48:28.747376 2095 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"var-run-calico\" (UniqueName: \"kubernetes.io/host-path/9b55e399-3100-4d20-a2ca-de79aea6287f-var-run-calico\") pod \"calico-node-t9xjp\" (UID: \"9b55e399-3100-4d20-a2ca-de79aea6287f\") " pod="calico-system/calico-node-t9xjp" Apr 12 18:48:28.747403 kubelet[2095]: I0412 18:48:28.747402 2095 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"registration-dir\" (UniqueName: \"kubernetes.io/host-path/2a04af6d-d9f0-41d0-896d-41bdc4c7d554-registration-dir\") pod \"csi-node-driver-7zlkf\" (UID: \"2a04af6d-d9f0-41d0-896d-41bdc4c7d554\") " pod="calico-system/csi-node-driver-7zlkf" Apr 12 18:48:28.747731 kubelet[2095]: I0412 18:48:28.747430 2095 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"xtables-lock\" (UniqueName: \"kubernetes.io/host-path/57f22a9d-1ff9-4710-9bcf-46afd3b39033-xtables-lock\") pod \"kube-proxy-px9kg\" (UID: \"57f22a9d-1ff9-4710-9bcf-46afd3b39033\") " pod="kube-system/kube-proxy-px9kg" Apr 12 18:48:28.747731 kubelet[2095]: I0412 18:48:28.747521 2095 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"lib-modules\" (UniqueName: \"kubernetes.io/host-path/57f22a9d-1ff9-4710-9bcf-46afd3b39033-lib-modules\") pod \"kube-proxy-px9kg\" (UID: \"57f22a9d-1ff9-4710-9bcf-46afd3b39033\") " pod="kube-system/kube-proxy-px9kg" Apr 12 18:48:28.747731 kubelet[2095]: I0412 18:48:28.747567 2095 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"tigera-ca-bundle\" (UniqueName: \"kubernetes.io/configmap/9b55e399-3100-4d20-a2ca-de79aea6287f-tigera-ca-bundle\") pod \"calico-node-t9xjp\" (UID: \"9b55e399-3100-4d20-a2ca-de79aea6287f\") " pod="calico-system/calico-node-t9xjp" Apr 12 18:48:28.747731 kubelet[2095]: I0412 18:48:28.747594 2095 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-net-dir\" (UniqueName: \"kubernetes.io/host-path/9b55e399-3100-4d20-a2ca-de79aea6287f-cni-net-dir\") pod \"calico-node-t9xjp\" (UID: \"9b55e399-3100-4d20-a2ca-de79aea6287f\") " pod="calico-system/calico-node-t9xjp" Apr 12 18:48:28.747731 kubelet[2095]: I0412 18:48:28.747629 2095 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-mgbjz\" (UniqueName: \"kubernetes.io/projected/9b55e399-3100-4d20-a2ca-de79aea6287f-kube-api-access-mgbjz\") pod \"calico-node-t9xjp\" (UID: \"9b55e399-3100-4d20-a2ca-de79aea6287f\") " pod="calico-system/calico-node-t9xjp" Apr 12 18:48:28.747938 kubelet[2095]: I0412 18:48:28.747662 2095 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"varrun\" (UniqueName: \"kubernetes.io/host-path/2a04af6d-d9f0-41d0-896d-41bdc4c7d554-varrun\") pod \"csi-node-driver-7zlkf\" (UID: \"2a04af6d-d9f0-41d0-896d-41bdc4c7d554\") " pod="calico-system/csi-node-driver-7zlkf" Apr 12 18:48:28.747938 kubelet[2095]: I0412 18:48:28.747697 2095 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-proxy\" (UniqueName: \"kubernetes.io/configmap/57f22a9d-1ff9-4710-9bcf-46afd3b39033-kube-proxy\") pod \"kube-proxy-px9kg\" (UID: \"57f22a9d-1ff9-4710-9bcf-46afd3b39033\") " pod="kube-system/kube-proxy-px9kg" Apr 12 18:48:28.747938 kubelet[2095]: I0412 18:48:28.747736 2095 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"xtables-lock\" (UniqueName: \"kubernetes.io/host-path/9b55e399-3100-4d20-a2ca-de79aea6287f-xtables-lock\") pod \"calico-node-t9xjp\" (UID: \"9b55e399-3100-4d20-a2ca-de79aea6287f\") " pod="calico-system/calico-node-t9xjp" Apr 12 18:48:28.747938 kubelet[2095]: I0412 18:48:28.747768 2095 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"lib-modules\" (UniqueName: \"kubernetes.io/host-path/9b55e399-3100-4d20-a2ca-de79aea6287f-lib-modules\") pod \"calico-node-t9xjp\" (UID: \"9b55e399-3100-4d20-a2ca-de79aea6287f\") " pod="calico-system/calico-node-t9xjp" Apr 12 18:48:28.747938 kubelet[2095]: I0412 18:48:28.747797 2095 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"node-certs\" (UniqueName: \"kubernetes.io/secret/9b55e399-3100-4d20-a2ca-de79aea6287f-node-certs\") pod \"calico-node-t9xjp\" (UID: \"9b55e399-3100-4d20-a2ca-de79aea6287f\") " pod="calico-system/calico-node-t9xjp" Apr 12 18:48:28.748284 kubelet[2095]: I0412 18:48:28.747838 2095 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-bin-dir\" (UniqueName: \"kubernetes.io/host-path/9b55e399-3100-4d20-a2ca-de79aea6287f-cni-bin-dir\") pod \"calico-node-t9xjp\" (UID: \"9b55e399-3100-4d20-a2ca-de79aea6287f\") " pod="calico-system/calico-node-t9xjp" Apr 12 18:48:28.748284 kubelet[2095]: I0412 18:48:28.747871 2095 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-log-dir\" (UniqueName: \"kubernetes.io/host-path/9b55e399-3100-4d20-a2ca-de79aea6287f-cni-log-dir\") pod \"calico-node-t9xjp\" (UID: \"9b55e399-3100-4d20-a2ca-de79aea6287f\") " pod="calico-system/calico-node-t9xjp" Apr 12 18:48:28.748284 kubelet[2095]: I0412 18:48:28.747904 2095 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kubelet-dir\" (UniqueName: \"kubernetes.io/host-path/2a04af6d-d9f0-41d0-896d-41bdc4c7d554-kubelet-dir\") pod \"csi-node-driver-7zlkf\" (UID: \"2a04af6d-d9f0-41d0-896d-41bdc4c7d554\") " pod="calico-system/csi-node-driver-7zlkf" Apr 12 18:48:28.748284 kubelet[2095]: I0412 18:48:28.747935 2095 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-8m8zt\" (UniqueName: \"kubernetes.io/projected/2a04af6d-d9f0-41d0-896d-41bdc4c7d554-kube-api-access-8m8zt\") pod \"csi-node-driver-7zlkf\" (UID: \"2a04af6d-d9f0-41d0-896d-41bdc4c7d554\") " pod="calico-system/csi-node-driver-7zlkf" Apr 12 18:48:28.748284 kubelet[2095]: I0412 18:48:28.747966 2095 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-6bcnm\" (UniqueName: \"kubernetes.io/projected/57f22a9d-1ff9-4710-9bcf-46afd3b39033-kube-api-access-6bcnm\") pod \"kube-proxy-px9kg\" (UID: \"57f22a9d-1ff9-4710-9bcf-46afd3b39033\") " pod="kube-system/kube-proxy-px9kg" Apr 12 18:48:28.748284 kubelet[2095]: I0412 18:48:28.747980 2095 reconciler.go:41] "Reconciler: start to sync state" Apr 12 18:48:28.753778 systemd[1]: Created slice kubepods-besteffort-pod9b55e399_3100_4d20_a2ca_de79aea6287f.slice. Apr 12 18:48:28.850936 kubelet[2095]: E0412 18:48:28.850907 2095 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Apr 12 18:48:28.851141 kubelet[2095]: W0412 18:48:28.851123 2095 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Apr 12 18:48:28.851379 kubelet[2095]: E0412 18:48:28.851365 2095 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Apr 12 18:48:28.851709 kubelet[2095]: E0412 18:48:28.851695 2095 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Apr 12 18:48:28.851830 kubelet[2095]: W0412 18:48:28.851815 2095 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Apr 12 18:48:28.851917 kubelet[2095]: E0412 18:48:28.851907 2095 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Apr 12 18:48:28.852198 kubelet[2095]: E0412 18:48:28.852187 2095 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Apr 12 18:48:28.852280 kubelet[2095]: W0412 18:48:28.852271 2095 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Apr 12 18:48:28.852376 kubelet[2095]: E0412 18:48:28.852367 2095 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Apr 12 18:48:28.852663 kubelet[2095]: E0412 18:48:28.852652 2095 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Apr 12 18:48:28.852831 kubelet[2095]: W0412 18:48:28.852817 2095 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Apr 12 18:48:28.852911 kubelet[2095]: E0412 18:48:28.852902 2095 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Apr 12 18:48:28.853191 kubelet[2095]: E0412 18:48:28.853179 2095 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Apr 12 18:48:28.853289 kubelet[2095]: W0412 18:48:28.853263 2095 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Apr 12 18:48:28.853404 kubelet[2095]: E0412 18:48:28.853394 2095 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Apr 12 18:48:28.859346 kubelet[2095]: E0412 18:48:28.855507 2095 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Apr 12 18:48:28.859346 kubelet[2095]: W0412 18:48:28.855522 2095 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Apr 12 18:48:28.859346 kubelet[2095]: E0412 18:48:28.855547 2095 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Apr 12 18:48:28.859346 kubelet[2095]: E0412 18:48:28.855730 2095 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Apr 12 18:48:28.859346 kubelet[2095]: W0412 18:48:28.855738 2095 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Apr 12 18:48:28.859346 kubelet[2095]: E0412 18:48:28.855752 2095 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Apr 12 18:48:28.859346 kubelet[2095]: E0412 18:48:28.856050 2095 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Apr 12 18:48:28.859346 kubelet[2095]: W0412 18:48:28.856059 2095 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Apr 12 18:48:28.859346 kubelet[2095]: E0412 18:48:28.856074 2095 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Apr 12 18:48:28.859346 kubelet[2095]: E0412 18:48:28.856246 2095 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Apr 12 18:48:28.860019 kubelet[2095]: W0412 18:48:28.856254 2095 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Apr 12 18:48:28.860019 kubelet[2095]: E0412 18:48:28.856269 2095 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Apr 12 18:48:28.860019 kubelet[2095]: E0412 18:48:28.856468 2095 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Apr 12 18:48:28.860019 kubelet[2095]: W0412 18:48:28.856477 2095 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Apr 12 18:48:28.860019 kubelet[2095]: E0412 18:48:28.856493 2095 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Apr 12 18:48:28.860019 kubelet[2095]: E0412 18:48:28.856666 2095 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Apr 12 18:48:28.860019 kubelet[2095]: W0412 18:48:28.856675 2095 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Apr 12 18:48:28.860019 kubelet[2095]: E0412 18:48:28.856688 2095 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Apr 12 18:48:28.860019 kubelet[2095]: E0412 18:48:28.856863 2095 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Apr 12 18:48:28.860019 kubelet[2095]: W0412 18:48:28.856872 2095 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Apr 12 18:48:28.860442 kubelet[2095]: E0412 18:48:28.856885 2095 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Apr 12 18:48:28.860442 kubelet[2095]: E0412 18:48:28.857113 2095 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Apr 12 18:48:28.860442 kubelet[2095]: W0412 18:48:28.857123 2095 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Apr 12 18:48:28.860442 kubelet[2095]: E0412 18:48:28.857136 2095 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Apr 12 18:48:28.860442 kubelet[2095]: E0412 18:48:28.857327 2095 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Apr 12 18:48:28.860442 kubelet[2095]: W0412 18:48:28.857335 2095 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Apr 12 18:48:28.860442 kubelet[2095]: E0412 18:48:28.857350 2095 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Apr 12 18:48:28.860442 kubelet[2095]: E0412 18:48:28.857528 2095 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Apr 12 18:48:28.860442 kubelet[2095]: W0412 18:48:28.857536 2095 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Apr 12 18:48:28.860442 kubelet[2095]: E0412 18:48:28.857551 2095 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Apr 12 18:48:28.861026 kubelet[2095]: E0412 18:48:28.857711 2095 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Apr 12 18:48:28.861026 kubelet[2095]: W0412 18:48:28.857721 2095 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Apr 12 18:48:28.861026 kubelet[2095]: E0412 18:48:28.857735 2095 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Apr 12 18:48:28.861026 kubelet[2095]: E0412 18:48:28.858126 2095 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Apr 12 18:48:28.861026 kubelet[2095]: W0412 18:48:28.858139 2095 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Apr 12 18:48:28.861026 kubelet[2095]: E0412 18:48:28.858161 2095 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Apr 12 18:48:28.861026 kubelet[2095]: E0412 18:48:28.858449 2095 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Apr 12 18:48:28.861026 kubelet[2095]: W0412 18:48:28.858460 2095 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Apr 12 18:48:28.861026 kubelet[2095]: E0412 18:48:28.858477 2095 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Apr 12 18:48:28.861026 kubelet[2095]: E0412 18:48:28.858663 2095 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Apr 12 18:48:28.862737 kubelet[2095]: W0412 18:48:28.858675 2095 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Apr 12 18:48:28.862737 kubelet[2095]: E0412 18:48:28.858689 2095 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Apr 12 18:48:28.862737 kubelet[2095]: E0412 18:48:28.858859 2095 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Apr 12 18:48:28.862737 kubelet[2095]: W0412 18:48:28.858867 2095 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Apr 12 18:48:28.862737 kubelet[2095]: E0412 18:48:28.858881 2095 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Apr 12 18:48:28.862737 kubelet[2095]: E0412 18:48:28.859151 2095 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Apr 12 18:48:28.862737 kubelet[2095]: W0412 18:48:28.859162 2095 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Apr 12 18:48:28.862737 kubelet[2095]: E0412 18:48:28.859177 2095 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Apr 12 18:48:28.916889 kubelet[2095]: E0412 18:48:28.916861 2095 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Apr 12 18:48:28.921676 kubelet[2095]: W0412 18:48:28.921637 2095 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Apr 12 18:48:28.921902 kubelet[2095]: E0412 18:48:28.921887 2095 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Apr 12 18:48:28.922416 kubelet[2095]: E0412 18:48:28.922395 2095 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Apr 12 18:48:28.922552 kubelet[2095]: W0412 18:48:28.922523 2095 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Apr 12 18:48:28.922649 kubelet[2095]: E0412 18:48:28.922638 2095 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Apr 12 18:48:28.950803 kubelet[2095]: E0412 18:48:28.950765 2095 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Apr 12 18:48:28.950803 kubelet[2095]: W0412 18:48:28.950802 2095 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Apr 12 18:48:28.951012 kubelet[2095]: E0412 18:48:28.950830 2095 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Apr 12 18:48:28.951454 kubelet[2095]: E0412 18:48:28.951431 2095 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Apr 12 18:48:28.951454 kubelet[2095]: W0412 18:48:28.951449 2095 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Apr 12 18:48:28.951596 kubelet[2095]: E0412 18:48:28.951472 2095 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Apr 12 18:48:29.052942 env[1629]: time="2024-04-12T18:48:29.052806138Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:kube-proxy-px9kg,Uid:57f22a9d-1ff9-4710-9bcf-46afd3b39033,Namespace:kube-system,Attempt:0,}" Apr 12 18:48:29.057676 env[1629]: time="2024-04-12T18:48:29.057619505Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-node-t9xjp,Uid:9b55e399-3100-4d20-a2ca-de79aea6287f,Namespace:calico-system,Attempt:0,}" Apr 12 18:48:29.676696 env[1629]: time="2024-04-12T18:48:29.676635242Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:48:29.678246 env[1629]: time="2024-04-12T18:48:29.678204022Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:48:29.684894 env[1629]: time="2024-04-12T18:48:29.684827341Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:6270bb605e12e581514ada5fd5b3216f727db55dc87d5889c790e4c760683fee,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:48:29.685913 env[1629]: time="2024-04-12T18:48:29.685872510Z" level=info msg="ImageUpdate event &ImageUpdate{Name:sha256:6270bb605e12e581514ada5fd5b3216f727db55dc87d5889c790e4c760683fee,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:48:29.687995 env[1629]: time="2024-04-12T18:48:29.687951325Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:48:29.689971 env[1629]: time="2024-04-12T18:48:29.689930473Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:48:29.690847 env[1629]: time="2024-04-12T18:48:29.690815155Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/pause@sha256:3d380ca8864549e74af4b29c10f9cb0956236dfb01c40ca076fb6c37253234db,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:48:29.694284 env[1629]: time="2024-04-12T18:48:29.694243957Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause@sha256:3d380ca8864549e74af4b29c10f9cb0956236dfb01c40ca076fb6c37253234db,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:48:29.721861 kubelet[2095]: E0412 18:48:29.721819 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:29.747393 env[1629]: time="2024-04-12T18:48:29.747266195Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Apr 12 18:48:29.747635 env[1629]: time="2024-04-12T18:48:29.747596870Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Apr 12 18:48:29.748275 env[1629]: time="2024-04-12T18:48:29.748237628Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Apr 12 18:48:29.748695 env[1629]: time="2024-04-12T18:48:29.748653380Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/f599a30ad8a2cecf0e023fb38cdd66e17d3b95db20652c074bd55e6f2ef8ab5e pid=2173 runtime=io.containerd.runc.v2 Apr 12 18:48:29.753562 env[1629]: time="2024-04-12T18:48:29.753457355Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Apr 12 18:48:29.753704 env[1629]: time="2024-04-12T18:48:29.753587282Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Apr 12 18:48:29.753704 env[1629]: time="2024-04-12T18:48:29.753620235Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Apr 12 18:48:29.753963 env[1629]: time="2024-04-12T18:48:29.753913149Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/721837308e738b3b29666ec88b0afb76c085311407cadf5b5bffbd88ccfe9be6 pid=2187 runtime=io.containerd.runc.v2 Apr 12 18:48:29.768591 systemd[1]: Started cri-containerd-f599a30ad8a2cecf0e023fb38cdd66e17d3b95db20652c074bd55e6f2ef8ab5e.scope. Apr 12 18:48:29.796732 systemd[1]: Started cri-containerd-721837308e738b3b29666ec88b0afb76c085311407cadf5b5bffbd88ccfe9be6.scope. Apr 12 18:48:29.814048 kernel: audit: type=1400 audit(1712947709.802:616): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.814172 kernel: audit: type=1400 audit(1712947709.802:617): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.802000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.819630 kernel: audit: type=1400 audit(1712947709.802:618): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.802000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.802000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.802000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.802000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.836380 kernel: audit: type=1400 audit(1712947709.802:619): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.836529 kernel: audit: type=1400 audit(1712947709.802:620): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.802000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.802000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.802000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.802000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.818000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.818000 audit: BPF prog-id=70 op=LOAD Apr 12 18:48:29.819000 audit[2196]: AVC avc: denied { bpf } for pid=2196 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.819000 audit[2196]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c0001c5c48 a2=10 a3=1c items=0 ppid=2173 pid=2196 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:29.819000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6635393961333061643861326365636630653032336662333863646436 Apr 12 18:48:29.819000 audit[2196]: AVC avc: denied { perfmon } for pid=2196 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.819000 audit[2196]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001c56b0 a2=3c a3=c items=0 ppid=2173 pid=2196 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:29.819000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6635393961333061643861326365636630653032336662333863646436 Apr 12 18:48:29.819000 audit[2196]: AVC avc: denied { bpf } for pid=2196 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.819000 audit[2196]: AVC avc: denied { bpf } for pid=2196 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.819000 audit[2196]: AVC avc: denied { bpf } for pid=2196 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.819000 audit[2196]: AVC avc: denied { perfmon } for pid=2196 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.819000 audit[2196]: AVC avc: denied { perfmon } for pid=2196 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.819000 audit[2196]: AVC avc: denied { perfmon } for pid=2196 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.819000 audit[2196]: AVC avc: denied { perfmon } for pid=2196 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.819000 audit[2196]: AVC avc: denied { perfmon } for pid=2196 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.819000 audit[2196]: AVC avc: denied { bpf } for pid=2196 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.819000 audit[2196]: AVC avc: denied { bpf } for pid=2196 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.819000 audit: BPF prog-id=71 op=LOAD Apr 12 18:48:29.819000 audit[2196]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001c59d8 a2=78 a3=c000024c80 items=0 ppid=2173 pid=2196 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:29.819000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6635393961333061643861326365636630653032336662333863646436 Apr 12 18:48:29.819000 audit[2196]: AVC avc: denied { bpf } for pid=2196 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.819000 audit[2196]: AVC avc: denied { bpf } for pid=2196 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.819000 audit[2196]: AVC avc: denied { perfmon } for pid=2196 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.819000 audit[2196]: AVC avc: denied { perfmon } for pid=2196 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.819000 audit[2196]: AVC avc: denied { perfmon } for pid=2196 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.819000 audit[2196]: AVC avc: denied { perfmon } for pid=2196 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.819000 audit[2196]: AVC avc: denied { perfmon } for pid=2196 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.819000 audit[2196]: AVC avc: denied { bpf } for pid=2196 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.819000 audit[2196]: AVC avc: denied { bpf } for pid=2196 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.819000 audit: BPF prog-id=72 op=LOAD Apr 12 18:48:29.819000 audit[2196]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c0001c5770 a2=78 a3=c000024cc8 items=0 ppid=2173 pid=2196 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:29.819000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6635393961333061643861326365636630653032336662333863646436 Apr 12 18:48:29.820000 audit: BPF prog-id=72 op=UNLOAD Apr 12 18:48:29.820000 audit: BPF prog-id=71 op=UNLOAD Apr 12 18:48:29.820000 audit[2196]: AVC avc: denied { bpf } for pid=2196 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.820000 audit[2196]: AVC avc: denied { bpf } for pid=2196 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.820000 audit[2196]: AVC avc: denied { bpf } for pid=2196 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.820000 audit[2196]: AVC avc: denied { perfmon } for pid=2196 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.820000 audit[2196]: AVC avc: denied { perfmon } for pid=2196 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.820000 audit[2196]: AVC avc: denied { perfmon } for pid=2196 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.820000 audit[2196]: AVC avc: denied { perfmon } for pid=2196 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.820000 audit[2196]: AVC avc: denied { perfmon } for pid=2196 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.820000 audit[2196]: AVC avc: denied { bpf } for pid=2196 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.820000 audit[2196]: AVC avc: denied { bpf } for pid=2196 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.820000 audit: BPF prog-id=73 op=LOAD Apr 12 18:48:29.820000 audit[2196]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001c5c30 a2=78 a3=c0000250d8 items=0 ppid=2173 pid=2196 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:29.820000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6635393961333061643861326365636630653032336662333863646436 Apr 12 18:48:29.840000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.840000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.840000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.840000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.840000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.840000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.840000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.840000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.840000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.841000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.841000 audit: BPF prog-id=74 op=LOAD Apr 12 18:48:29.842000 audit[2212]: AVC avc: denied { bpf } for pid=2212 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.842000 audit[2212]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c000197c48 a2=10 a3=1c items=0 ppid=2187 pid=2212 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:29.842000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3732313833373330386537333862336232393636366563383862306166 Apr 12 18:48:29.842000 audit[2212]: AVC avc: denied { perfmon } for pid=2212 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.842000 audit[2212]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001976b0 a2=3c a3=c items=0 ppid=2187 pid=2212 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:29.842000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3732313833373330386537333862336232393636366563383862306166 Apr 12 18:48:29.842000 audit[2212]: AVC avc: denied { bpf } for pid=2212 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.842000 audit[2212]: AVC avc: denied { bpf } for pid=2212 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.842000 audit[2212]: AVC avc: denied { bpf } for pid=2212 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.842000 audit[2212]: AVC avc: denied { perfmon } for pid=2212 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.842000 audit[2212]: AVC avc: denied { perfmon } for pid=2212 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.842000 audit[2212]: AVC avc: denied { perfmon } for pid=2212 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.842000 audit[2212]: AVC avc: denied { perfmon } for pid=2212 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.842000 audit[2212]: AVC avc: denied { perfmon } for pid=2212 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.842000 audit[2212]: AVC avc: denied { bpf } for pid=2212 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.842000 audit[2212]: AVC avc: denied { bpf } for pid=2212 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.842000 audit: BPF prog-id=75 op=LOAD Apr 12 18:48:29.842000 audit[2212]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001979d8 a2=78 a3=c0002d6260 items=0 ppid=2187 pid=2212 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:29.842000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3732313833373330386537333862336232393636366563383862306166 Apr 12 18:48:29.842000 audit[2212]: AVC avc: denied { bpf } for pid=2212 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.842000 audit[2212]: AVC avc: denied { bpf } for pid=2212 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.842000 audit[2212]: AVC avc: denied { perfmon } for pid=2212 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.842000 audit[2212]: AVC avc: denied { perfmon } for pid=2212 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.842000 audit[2212]: AVC avc: denied { perfmon } for pid=2212 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.842000 audit[2212]: AVC avc: denied { perfmon } for pid=2212 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.842000 audit[2212]: AVC avc: denied { perfmon } for pid=2212 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.842000 audit[2212]: AVC avc: denied { bpf } for pid=2212 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.842000 audit[2212]: AVC avc: denied { bpf } for pid=2212 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.842000 audit: BPF prog-id=76 op=LOAD Apr 12 18:48:29.842000 audit[2212]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c000197770 a2=78 a3=c0002d62a8 items=0 ppid=2187 pid=2212 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:29.842000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3732313833373330386537333862336232393636366563383862306166 Apr 12 18:48:29.842000 audit: BPF prog-id=76 op=UNLOAD Apr 12 18:48:29.842000 audit: BPF prog-id=75 op=UNLOAD Apr 12 18:48:29.842000 audit[2212]: AVC avc: denied { bpf } for pid=2212 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.842000 audit[2212]: AVC avc: denied { bpf } for pid=2212 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.842000 audit[2212]: AVC avc: denied { bpf } for pid=2212 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.842000 audit[2212]: AVC avc: denied { perfmon } for pid=2212 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.842000 audit[2212]: AVC avc: denied { perfmon } for pid=2212 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.842000 audit[2212]: AVC avc: denied { perfmon } for pid=2212 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.842000 audit[2212]: AVC avc: denied { perfmon } for pid=2212 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.842000 audit[2212]: AVC avc: denied { perfmon } for pid=2212 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.842000 audit[2212]: AVC avc: denied { bpf } for pid=2212 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.842000 audit[2212]: AVC avc: denied { bpf } for pid=2212 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:29.842000 audit: BPF prog-id=77 op=LOAD Apr 12 18:48:29.842000 audit[2212]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c000197c30 a2=78 a3=c0002d66b8 items=0 ppid=2187 pid=2212 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:29.842000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3732313833373330386537333862336232393636366563383862306166 Apr 12 18:48:29.863692 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1597677164.mount: Deactivated successfully. Apr 12 18:48:29.882612 env[1629]: time="2024-04-12T18:48:29.882555162Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-node-t9xjp,Uid:9b55e399-3100-4d20-a2ca-de79aea6287f,Namespace:calico-system,Attempt:0,} returns sandbox id \"721837308e738b3b29666ec88b0afb76c085311407cadf5b5bffbd88ccfe9be6\"" Apr 12 18:48:29.886011 env[1629]: time="2024-04-12T18:48:29.885025160Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:kube-proxy-px9kg,Uid:57f22a9d-1ff9-4710-9bcf-46afd3b39033,Namespace:kube-system,Attempt:0,} returns sandbox id \"f599a30ad8a2cecf0e023fb38cdd66e17d3b95db20652c074bd55e6f2ef8ab5e\"" Apr 12 18:48:29.886559 env[1629]: time="2024-04-12T18:48:29.886529975Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.3\"" Apr 12 18:48:29.988872 kubelet[2095]: E0412 18:48:29.983992 2095 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-7zlkf" podUID=2a04af6d-d9f0-41d0-896d-41bdc4c7d554 Apr 12 18:48:30.722432 kubelet[2095]: E0412 18:48:30.722355 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:31.000035 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount286719678.mount: Deactivated successfully. Apr 12 18:48:31.723663 kubelet[2095]: E0412 18:48:31.723547 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:31.949956 env[1629]: time="2024-04-12T18:48:31.949904532Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.3,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:48:31.954178 env[1629]: time="2024-04-12T18:48:31.954115266Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:ab5b4f1ca28931c15f9831ae3bfa04c21600da454ce8bbe57872b747c86e221b,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:48:31.957546 env[1629]: time="2024-04-12T18:48:31.957505618Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.3,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:48:31.966163 env[1629]: time="2024-04-12T18:48:31.966113101Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol@sha256:256c6fee1c0cd345ce1c83a28132e3134a9f271704d41d214436bf7ec48ba4b8,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:48:31.967562 env[1629]: time="2024-04-12T18:48:31.967517384Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.3\" returns image reference \"sha256:ab5b4f1ca28931c15f9831ae3bfa04c21600da454ce8bbe57872b747c86e221b\"" Apr 12 18:48:31.968891 env[1629]: time="2024-04-12T18:48:31.968861123Z" level=info msg="PullImage \"registry.k8s.io/kube-proxy:v1.27.12\"" Apr 12 18:48:31.972586 env[1629]: time="2024-04-12T18:48:31.972548255Z" level=info msg="CreateContainer within sandbox \"721837308e738b3b29666ec88b0afb76c085311407cadf5b5bffbd88ccfe9be6\" for container &ContainerMetadata{Name:flexvol-driver,Attempt:0,}" Apr 12 18:48:31.988154 kubelet[2095]: E0412 18:48:31.987410 2095 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-7zlkf" podUID=2a04af6d-d9f0-41d0-896d-41bdc4c7d554 Apr 12 18:48:31.990572 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3159755276.mount: Deactivated successfully. Apr 12 18:48:32.003917 env[1629]: time="2024-04-12T18:48:32.003861390Z" level=info msg="CreateContainer within sandbox \"721837308e738b3b29666ec88b0afb76c085311407cadf5b5bffbd88ccfe9be6\" for &ContainerMetadata{Name:flexvol-driver,Attempt:0,} returns container id \"a2956b1c527d60e05aa7e49246a2568a0d6d778e582996b6d7e45ad2548f7a7e\"" Apr 12 18:48:32.004806 env[1629]: time="2024-04-12T18:48:32.004717590Z" level=info msg="StartContainer for \"a2956b1c527d60e05aa7e49246a2568a0d6d778e582996b6d7e45ad2548f7a7e\"" Apr 12 18:48:32.045122 systemd[1]: Started cri-containerd-a2956b1c527d60e05aa7e49246a2568a0d6d778e582996b6d7e45ad2548f7a7e.scope. Apr 12 18:48:32.069000 audit[2255]: AVC avc: denied { perfmon } for pid=2255 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:32.069000 audit[2255]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c0001456b0 a2=3c a3=7f8110794a88 items=0 ppid=2187 pid=2255 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:32.069000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6132393536623163353237643630653035616137653439323436613235 Apr 12 18:48:32.069000 audit[2255]: AVC avc: denied { bpf } for pid=2255 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:32.069000 audit[2255]: AVC avc: denied { bpf } for pid=2255 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:32.069000 audit[2255]: AVC avc: denied { bpf } for pid=2255 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:32.069000 audit[2255]: AVC avc: denied { perfmon } for pid=2255 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:32.069000 audit[2255]: AVC avc: denied { perfmon } for pid=2255 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:32.069000 audit[2255]: AVC avc: denied { perfmon } for pid=2255 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:32.069000 audit[2255]: AVC avc: denied { perfmon } for pid=2255 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:32.069000 audit[2255]: AVC avc: denied { perfmon } for pid=2255 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:32.069000 audit[2255]: AVC avc: denied { bpf } for pid=2255 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:32.069000 audit[2255]: AVC avc: denied { bpf } for pid=2255 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:32.069000 audit: BPF prog-id=78 op=LOAD Apr 12 18:48:32.069000 audit[2255]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c0001459d8 a2=78 a3=c000389f68 items=0 ppid=2187 pid=2255 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:32.069000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6132393536623163353237643630653035616137653439323436613235 Apr 12 18:48:32.069000 audit[2255]: AVC avc: denied { bpf } for pid=2255 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:32.069000 audit[2255]: AVC avc: denied { bpf } for pid=2255 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:32.069000 audit[2255]: AVC avc: denied { perfmon } for pid=2255 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:32.069000 audit[2255]: AVC avc: denied { perfmon } for pid=2255 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:32.069000 audit[2255]: AVC avc: denied { perfmon } for pid=2255 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:32.069000 audit[2255]: AVC avc: denied { perfmon } for pid=2255 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:32.069000 audit[2255]: AVC avc: denied { perfmon } for pid=2255 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:32.069000 audit[2255]: AVC avc: denied { bpf } for pid=2255 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:32.069000 audit[2255]: AVC avc: denied { bpf } for pid=2255 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:32.069000 audit: BPF prog-id=79 op=LOAD Apr 12 18:48:32.069000 audit[2255]: SYSCALL arch=c000003e syscall=321 success=yes exit=17 a0=5 a1=c000145770 a2=78 a3=c000389fb8 items=0 ppid=2187 pid=2255 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:32.069000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6132393536623163353237643630653035616137653439323436613235 Apr 12 18:48:32.069000 audit: BPF prog-id=79 op=UNLOAD Apr 12 18:48:32.069000 audit: BPF prog-id=78 op=UNLOAD Apr 12 18:48:32.069000 audit[2255]: AVC avc: denied { bpf } for pid=2255 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:32.069000 audit[2255]: AVC avc: denied { bpf } for pid=2255 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:32.069000 audit[2255]: AVC avc: denied { bpf } for pid=2255 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:32.069000 audit[2255]: AVC avc: denied { perfmon } for pid=2255 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:32.069000 audit[2255]: AVC avc: denied { perfmon } for pid=2255 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:32.069000 audit[2255]: AVC avc: denied { perfmon } for pid=2255 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:32.069000 audit[2255]: AVC avc: denied { perfmon } for pid=2255 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:32.069000 audit[2255]: AVC avc: denied { perfmon } for pid=2255 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:32.069000 audit[2255]: AVC avc: denied { bpf } for pid=2255 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:32.069000 audit[2255]: AVC avc: denied { bpf } for pid=2255 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:32.069000 audit: BPF prog-id=80 op=LOAD Apr 12 18:48:32.069000 audit[2255]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c000145c30 a2=78 a3=c0003e6048 items=0 ppid=2187 pid=2255 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:32.069000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6132393536623163353237643630653035616137653439323436613235 Apr 12 18:48:32.100859 env[1629]: time="2024-04-12T18:48:32.100800538Z" level=info msg="StartContainer for \"a2956b1c527d60e05aa7e49246a2568a0d6d778e582996b6d7e45ad2548f7a7e\" returns successfully" Apr 12 18:48:32.115995 systemd[1]: cri-containerd-a2956b1c527d60e05aa7e49246a2568a0d6d778e582996b6d7e45ad2548f7a7e.scope: Deactivated successfully. Apr 12 18:48:32.119000 audit: BPF prog-id=80 op=UNLOAD Apr 12 18:48:32.145414 systemd[1]: run-containerd-io.containerd.runtime.v2.task-k8s.io-a2956b1c527d60e05aa7e49246a2568a0d6d778e582996b6d7e45ad2548f7a7e-rootfs.mount: Deactivated successfully. Apr 12 18:48:32.278371 env[1629]: time="2024-04-12T18:48:32.276600554Z" level=info msg="shim disconnected" id=a2956b1c527d60e05aa7e49246a2568a0d6d778e582996b6d7e45ad2548f7a7e Apr 12 18:48:32.278371 env[1629]: time="2024-04-12T18:48:32.276659178Z" level=warning msg="cleaning up after shim disconnected" id=a2956b1c527d60e05aa7e49246a2568a0d6d778e582996b6d7e45ad2548f7a7e namespace=k8s.io Apr 12 18:48:32.278371 env[1629]: time="2024-04-12T18:48:32.276671371Z" level=info msg="cleaning up dead shim" Apr 12 18:48:32.294029 env[1629]: time="2024-04-12T18:48:32.293980622Z" level=warning msg="cleanup warnings time=\"2024-04-12T18:48:32Z\" level=info msg=\"starting signal loop\" namespace=k8s.io pid=2294 runtime=io.containerd.runc.v2\n" Apr 12 18:48:32.724664 kubelet[2095]: E0412 18:48:32.724609 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:33.497242 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1719320143.mount: Deactivated successfully. Apr 12 18:48:33.725623 kubelet[2095]: E0412 18:48:33.725583 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:33.984597 kubelet[2095]: E0412 18:48:33.984188 2095 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-7zlkf" podUID=2a04af6d-d9f0-41d0-896d-41bdc4c7d554 Apr 12 18:48:34.253876 env[1629]: time="2024-04-12T18:48:34.253358513Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/kube-proxy:v1.27.12,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:48:34.257903 env[1629]: time="2024-04-12T18:48:34.257823576Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:2b5590cbba38a0f4f32cbe39a2d3a1a1348612e7550f8b68af937ba5b6e9ba3d,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:48:34.260020 env[1629]: time="2024-04-12T18:48:34.259984306Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/kube-proxy:v1.27.12,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:48:34.262370 env[1629]: time="2024-04-12T18:48:34.262333429Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/kube-proxy@sha256:b0539f35b586abc54ca7660f9bb8a539d010b9e07d20e9e3d529cf0ca35d4ddf,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:48:34.262889 env[1629]: time="2024-04-12T18:48:34.262854271Z" level=info msg="PullImage \"registry.k8s.io/kube-proxy:v1.27.12\" returns image reference \"sha256:2b5590cbba38a0f4f32cbe39a2d3a1a1348612e7550f8b68af937ba5b6e9ba3d\"" Apr 12 18:48:34.264226 env[1629]: time="2024-04-12T18:48:34.264192394Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/cni:v3.27.3\"" Apr 12 18:48:34.265789 env[1629]: time="2024-04-12T18:48:34.265751879Z" level=info msg="CreateContainer within sandbox \"f599a30ad8a2cecf0e023fb38cdd66e17d3b95db20652c074bd55e6f2ef8ab5e\" for container &ContainerMetadata{Name:kube-proxy,Attempt:0,}" Apr 12 18:48:34.288028 env[1629]: time="2024-04-12T18:48:34.287956917Z" level=info msg="CreateContainer within sandbox \"f599a30ad8a2cecf0e023fb38cdd66e17d3b95db20652c074bd55e6f2ef8ab5e\" for &ContainerMetadata{Name:kube-proxy,Attempt:0,} returns container id \"e51dc1af8ec26a1ce3c2d6654839df5d9358c54e6bfd4d77d75e018e3998da8a\"" Apr 12 18:48:34.290586 env[1629]: time="2024-04-12T18:48:34.290545503Z" level=info msg="StartContainer for \"e51dc1af8ec26a1ce3c2d6654839df5d9358c54e6bfd4d77d75e018e3998da8a\"" Apr 12 18:48:34.330509 systemd[1]: Started cri-containerd-e51dc1af8ec26a1ce3c2d6654839df5d9358c54e6bfd4d77d75e018e3998da8a.scope. Apr 12 18:48:34.370917 kernel: kauditd_printk_skb: 153 callbacks suppressed Apr 12 18:48:34.371135 kernel: audit: type=1400 audit(1712947714.354:659): avc: denied { perfmon } for pid=2319 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.371195 kernel: audit: type=1300 audit(1712947714.354:659): arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c0001476b0 a2=3c a3=7f490546cc38 items=0 ppid=2173 pid=2319 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.354000 audit[2319]: AVC avc: denied { perfmon } for pid=2319 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.354000 audit[2319]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c0001476b0 a2=3c a3=7f490546cc38 items=0 ppid=2173 pid=2319 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.354000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6535316463316166386563323661316365336332643636353438333964 Apr 12 18:48:34.378691 kernel: audit: type=1327 audit(1712947714.354:659): proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6535316463316166386563323661316365336332643636353438333964 Apr 12 18:48:34.362000 audit[2319]: AVC avc: denied { bpf } for pid=2319 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.385324 kernel: audit: type=1400 audit(1712947714.362:660): avc: denied { bpf } for pid=2319 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.362000 audit[2319]: AVC avc: denied { bpf } for pid=2319 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.396959 kernel: audit: type=1400 audit(1712947714.362:660): avc: denied { bpf } for pid=2319 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.397088 kernel: audit: type=1400 audit(1712947714.362:660): avc: denied { bpf } for pid=2319 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.362000 audit[2319]: AVC avc: denied { bpf } for pid=2319 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.362000 audit[2319]: AVC avc: denied { perfmon } for pid=2319 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.408996 kernel: audit: type=1400 audit(1712947714.362:660): avc: denied { perfmon } for pid=2319 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.414615 kernel: audit: type=1400 audit(1712947714.362:660): avc: denied { perfmon } for pid=2319 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.414696 kernel: audit: type=1400 audit(1712947714.362:660): avc: denied { perfmon } for pid=2319 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.362000 audit[2319]: AVC avc: denied { perfmon } for pid=2319 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.362000 audit[2319]: AVC avc: denied { perfmon } for pid=2319 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.414955 env[1629]: time="2024-04-12T18:48:34.411162196Z" level=info msg="StartContainer for \"e51dc1af8ec26a1ce3c2d6654839df5d9358c54e6bfd4d77d75e018e3998da8a\" returns successfully" Apr 12 18:48:34.362000 audit[2319]: AVC avc: denied { perfmon } for pid=2319 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.424324 kernel: audit: type=1400 audit(1712947714.362:660): avc: denied { perfmon } for pid=2319 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.362000 audit[2319]: AVC avc: denied { perfmon } for pid=2319 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.362000 audit[2319]: AVC avc: denied { bpf } for pid=2319 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.362000 audit[2319]: AVC avc: denied { bpf } for pid=2319 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.362000 audit: BPF prog-id=81 op=LOAD Apr 12 18:48:34.362000 audit[2319]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c0001479d8 a2=78 a3=c000386568 items=0 ppid=2173 pid=2319 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.362000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6535316463316166386563323661316365336332643636353438333964 Apr 12 18:48:34.362000 audit[2319]: AVC avc: denied { bpf } for pid=2319 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.362000 audit[2319]: AVC avc: denied { bpf } for pid=2319 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.362000 audit[2319]: AVC avc: denied { perfmon } for pid=2319 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.362000 audit[2319]: AVC avc: denied { perfmon } for pid=2319 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.362000 audit[2319]: AVC avc: denied { perfmon } for pid=2319 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.362000 audit[2319]: AVC avc: denied { perfmon } for pid=2319 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.362000 audit[2319]: AVC avc: denied { perfmon } for pid=2319 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.362000 audit[2319]: AVC avc: denied { bpf } for pid=2319 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.362000 audit[2319]: AVC avc: denied { bpf } for pid=2319 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.362000 audit: BPF prog-id=82 op=LOAD Apr 12 18:48:34.362000 audit[2319]: SYSCALL arch=c000003e syscall=321 success=yes exit=17 a0=5 a1=c000147770 a2=78 a3=c0003865b8 items=0 ppid=2173 pid=2319 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.362000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6535316463316166386563323661316365336332643636353438333964 Apr 12 18:48:34.362000 audit: BPF prog-id=82 op=UNLOAD Apr 12 18:48:34.362000 audit: BPF prog-id=81 op=UNLOAD Apr 12 18:48:34.362000 audit[2319]: AVC avc: denied { bpf } for pid=2319 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.362000 audit[2319]: AVC avc: denied { bpf } for pid=2319 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.362000 audit[2319]: AVC avc: denied { bpf } for pid=2319 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.362000 audit[2319]: AVC avc: denied { perfmon } for pid=2319 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.362000 audit[2319]: AVC avc: denied { perfmon } for pid=2319 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.362000 audit[2319]: AVC avc: denied { perfmon } for pid=2319 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.362000 audit[2319]: AVC avc: denied { perfmon } for pid=2319 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.362000 audit[2319]: AVC avc: denied { perfmon } for pid=2319 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.362000 audit[2319]: AVC avc: denied { bpf } for pid=2319 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.362000 audit[2319]: AVC avc: denied { bpf } for pid=2319 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:34.362000 audit: BPF prog-id=83 op=LOAD Apr 12 18:48:34.362000 audit[2319]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c000147c30 a2=78 a3=c000386648 items=0 ppid=2173 pid=2319 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.362000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6535316463316166386563323661316365336332643636353438333964 Apr 12 18:48:34.482000 audit[2369]: NETFILTER_CFG table=mangle:14 family=2 entries=1 op=nft_register_chain pid=2369 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:48:34.482000 audit[2369]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7ffe5c8f3e20 a2=0 a3=7ffe5c8f3e0c items=0 ppid=2332 pid=2369 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.482000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006D616E676C65 Apr 12 18:48:34.485000 audit[2370]: NETFILTER_CFG table=nat:15 family=2 entries=1 op=nft_register_chain pid=2370 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:48:34.485000 audit[2370]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7fffe339ed90 a2=0 a3=7fffe339ed7c items=0 ppid=2332 pid=2370 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.485000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006E6174 Apr 12 18:48:34.486000 audit[2371]: NETFILTER_CFG table=mangle:16 family=10 entries=1 op=nft_register_chain pid=2371 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:48:34.486000 audit[2371]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7ffdfd32de80 a2=0 a3=7ffdfd32de6c items=0 ppid=2332 pid=2371 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.486000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006D616E676C65 Apr 12 18:48:34.487000 audit[2372]: NETFILTER_CFG table=filter:17 family=2 entries=1 op=nft_register_chain pid=2372 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:48:34.487000 audit[2372]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7ffca8ce3560 a2=0 a3=3aca6043d6e7c3bc items=0 ppid=2332 pid=2372 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.487000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D740066696C746572 Apr 12 18:48:34.489000 audit[2373]: NETFILTER_CFG table=nat:18 family=10 entries=1 op=nft_register_chain pid=2373 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:48:34.489000 audit[2373]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7ffe52d1a2e0 a2=0 a3=7ffe52d1a2cc items=0 ppid=2332 pid=2373 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.489000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006E6174 Apr 12 18:48:34.490000 audit[2374]: NETFILTER_CFG table=filter:19 family=10 entries=1 op=nft_register_chain pid=2374 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:48:34.490000 audit[2374]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7ffc1c43bca0 a2=0 a3=7ffc1c43bc8c items=0 ppid=2332 pid=2374 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.490000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D740066696C746572 Apr 12 18:48:34.497196 systemd[1]: run-containerd-runc-k8s.io-e51dc1af8ec26a1ce3c2d6654839df5d9358c54e6bfd4d77d75e018e3998da8a-runc.sWouqu.mount: Deactivated successfully. Apr 12 18:48:34.586000 audit[2375]: NETFILTER_CFG table=filter:20 family=2 entries=1 op=nft_register_chain pid=2375 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:48:34.586000 audit[2375]: SYSCALL arch=c000003e syscall=46 success=yes exit=108 a0=3 a1=7ffd8c673410 a2=0 a3=7ffd8c6733fc items=0 ppid=2332 pid=2375 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.586000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D45585445524E414C2D5345525649434553002D740066696C746572 Apr 12 18:48:34.591000 audit[2377]: NETFILTER_CFG table=filter:21 family=2 entries=1 op=nft_register_rule pid=2377 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:48:34.591000 audit[2377]: SYSCALL arch=c000003e syscall=46 success=yes exit=752 a0=3 a1=7fff583ee060 a2=0 a3=7fff583ee04c items=0 ppid=2332 pid=2377 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.591000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C652073657276696365 Apr 12 18:48:34.597000 audit[2380]: NETFILTER_CFG table=filter:22 family=2 entries=2 op=nft_register_chain pid=2380 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:48:34.597000 audit[2380]: SYSCALL arch=c000003e syscall=46 success=yes exit=836 a0=3 a1=7ffd4ce20070 a2=0 a3=7ffd4ce2005c items=0 ppid=2332 pid=2380 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.597000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C65207365727669 Apr 12 18:48:34.599000 audit[2381]: NETFILTER_CFG table=filter:23 family=2 entries=1 op=nft_register_chain pid=2381 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:48:34.599000 audit[2381]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7ffd732f1c70 a2=0 a3=7ffd732f1c5c items=0 ppid=2332 pid=2381 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.599000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4E4F4445504F525453002D740066696C746572 Apr 12 18:48:34.606000 audit[2383]: NETFILTER_CFG table=filter:24 family=2 entries=1 op=nft_register_rule pid=2383 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:48:34.606000 audit[2383]: SYSCALL arch=c000003e syscall=46 success=yes exit=528 a0=3 a1=7ffefc479cd0 a2=0 a3=7ffefc479cbc items=0 ppid=2332 pid=2383 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.606000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206865616C746820636865636B207365727669636520706F727473002D6A004B5542452D4E4F4445504F525453 Apr 12 18:48:34.623000 audit[2384]: NETFILTER_CFG table=filter:25 family=2 entries=1 op=nft_register_chain pid=2384 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:48:34.623000 audit[2384]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7ffc477201d0 a2=0 a3=7ffc477201bc items=0 ppid=2332 pid=2384 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.623000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D740066696C746572 Apr 12 18:48:34.644000 audit[2386]: NETFILTER_CFG table=filter:26 family=2 entries=1 op=nft_register_rule pid=2386 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:48:34.644000 audit[2386]: SYSCALL arch=c000003e syscall=46 success=yes exit=744 a0=3 a1=7ffe0f636b20 a2=0 a3=7ffe0f636b0c items=0 ppid=2332 pid=2386 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.644000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D Apr 12 18:48:34.656000 audit[2389]: NETFILTER_CFG table=filter:27 family=2 entries=1 op=nft_register_rule pid=2389 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:48:34.656000 audit[2389]: SYSCALL arch=c000003e syscall=46 success=yes exit=744 a0=3 a1=7ffe1ebe3860 a2=0 a3=7ffe1ebe384c items=0 ppid=2332 pid=2389 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.656000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D53 Apr 12 18:48:34.659000 audit[2390]: NETFILTER_CFG table=filter:28 family=2 entries=1 op=nft_register_chain pid=2390 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:48:34.659000 audit[2390]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7ffddfdf7890 a2=0 a3=7ffddfdf787c items=0 ppid=2332 pid=2390 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.659000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D464F5257415244002D740066696C746572 Apr 12 18:48:34.668000 audit[2392]: NETFILTER_CFG table=filter:29 family=2 entries=1 op=nft_register_rule pid=2392 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:48:34.668000 audit[2392]: SYSCALL arch=c000003e syscall=46 success=yes exit=528 a0=3 a1=7ffe3dc18e90 a2=0 a3=7ffe3dc18e7c items=0 ppid=2332 pid=2392 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.668000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320666F7277617264696E672072756C6573002D6A004B5542452D464F5257415244 Apr 12 18:48:34.674000 audit[2393]: NETFILTER_CFG table=filter:30 family=2 entries=1 op=nft_register_chain pid=2393 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:48:34.674000 audit[2393]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7ffcd6716a30 a2=0 a3=7ffcd6716a1c items=0 ppid=2332 pid=2393 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.674000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D4649524557414C4C002D740066696C746572 Apr 12 18:48:34.679000 audit[2395]: NETFILTER_CFG table=filter:31 family=2 entries=1 op=nft_register_rule pid=2395 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:48:34.679000 audit[2395]: SYSCALL arch=c000003e syscall=46 success=yes exit=748 a0=3 a1=7fffae083070 a2=0 a3=7fffae08305c items=0 ppid=2332 pid=2395 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.679000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Apr 12 18:48:34.687000 audit[2398]: NETFILTER_CFG table=filter:32 family=2 entries=1 op=nft_register_rule pid=2398 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:48:34.687000 audit[2398]: SYSCALL arch=c000003e syscall=46 success=yes exit=748 a0=3 a1=7fffa2bc7c70 a2=0 a3=7fffa2bc7c5c items=0 ppid=2332 pid=2398 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.687000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Apr 12 18:48:34.692000 audit[2401]: NETFILTER_CFG table=filter:33 family=2 entries=1 op=nft_register_rule pid=2401 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:48:34.692000 audit[2401]: SYSCALL arch=c000003e syscall=46 success=yes exit=748 a0=3 a1=7fffb3f79150 a2=0 a3=7fffb3f7913c items=0 ppid=2332 pid=2401 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.692000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D Apr 12 18:48:34.694000 audit[2402]: NETFILTER_CFG table=nat:34 family=2 entries=1 op=nft_register_chain pid=2402 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:48:34.694000 audit[2402]: SYSCALL arch=c000003e syscall=46 success=yes exit=96 a0=3 a1=7ffde60ef7a0 a2=0 a3=7ffde60ef78c items=0 ppid=2332 pid=2402 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.694000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D74006E6174 Apr 12 18:48:34.726234 kubelet[2095]: E0412 18:48:34.726169 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:34.699000 audit[2404]: NETFILTER_CFG table=nat:35 family=2 entries=2 op=nft_register_chain pid=2404 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:48:34.699000 audit[2404]: SYSCALL arch=c000003e syscall=46 success=yes exit=600 a0=3 a1=7ffc194e0110 a2=0 a3=7ffc194e00fc items=0 ppid=2332 pid=2404 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.699000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Apr 12 18:48:34.764000 audit[2409]: NETFILTER_CFG table=nat:36 family=2 entries=2 op=nft_register_chain pid=2409 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:48:34.764000 audit[2409]: SYSCALL arch=c000003e syscall=46 success=yes exit=608 a0=3 a1=7ffd29d91a20 a2=0 a3=7ffd29d91a0c items=0 ppid=2332 pid=2409 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.764000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900505245524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Apr 12 18:48:34.775000 audit[2414]: NETFILTER_CFG table=nat:37 family=2 entries=1 op=nft_register_chain pid=2414 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:48:34.775000 audit[2414]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7fffa80b3a60 a2=0 a3=7fffa80b3a4c items=0 ppid=2332 pid=2414 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.775000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D504F5354524F5554494E47002D74006E6174 Apr 12 18:48:34.779000 audit[2416]: NETFILTER_CFG table=nat:38 family=2 entries=2 op=nft_register_chain pid=2416 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:48:34.779000 audit[2416]: SYSCALL arch=c000003e syscall=46 success=yes exit=612 a0=3 a1=7ffc1b3ac820 a2=0 a3=7ffc1b3ac80c items=0 ppid=2332 pid=2416 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.779000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900504F5354524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320706F7374726F7574696E672072756C6573002D6A004B5542452D504F5354524F5554494E47 Apr 12 18:48:34.798000 audit[2418]: NETFILTER_CFG table=filter:39 family=2 entries=5 op=nft_register_rule pid=2418 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:48:34.798000 audit[2418]: SYSCALL arch=c000003e syscall=46 success=yes exit=2932 a0=3 a1=7ffcb36bf490 a2=0 a3=7ffcb36bf47c items=0 ppid=2332 pid=2418 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.798000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:48:34.847000 audit[2418]: NETFILTER_CFG table=nat:40 family=2 entries=54 op=nft_register_chain pid=2418 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:48:34.847000 audit[2418]: SYSCALL arch=c000003e syscall=46 success=yes exit=25476 a0=3 a1=7ffcb36bf490 a2=0 a3=7ffcb36bf47c items=0 ppid=2332 pid=2418 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.847000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:48:34.879000 audit[2426]: NETFILTER_CFG table=filter:41 family=10 entries=1 op=nft_register_chain pid=2426 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:48:34.879000 audit[2426]: SYSCALL arch=c000003e syscall=46 success=yes exit=108 a0=3 a1=7fff4f5d23f0 a2=0 a3=7fff4f5d23dc items=0 ppid=2332 pid=2426 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.879000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D45585445524E414C2D5345525649434553002D740066696C746572 Apr 12 18:48:34.899000 audit[2428]: NETFILTER_CFG table=filter:42 family=10 entries=2 op=nft_register_chain pid=2428 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:48:34.899000 audit[2428]: SYSCALL arch=c000003e syscall=46 success=yes exit=836 a0=3 a1=7ffe125c9540 a2=0 a3=7ffe125c952c items=0 ppid=2332 pid=2428 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.899000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C6520736572766963 Apr 12 18:48:34.909000 audit[2431]: NETFILTER_CFG table=filter:43 family=10 entries=2 op=nft_register_chain pid=2431 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:48:34.909000 audit[2431]: SYSCALL arch=c000003e syscall=46 success=yes exit=836 a0=3 a1=7ffd02fff8a0 a2=0 a3=7ffd02fff88c items=0 ppid=2332 pid=2431 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.909000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C652073657276 Apr 12 18:48:34.911000 audit[2432]: NETFILTER_CFG table=filter:44 family=10 entries=1 op=nft_register_chain pid=2432 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:48:34.911000 audit[2432]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7ffd56d3ca30 a2=0 a3=7ffd56d3ca1c items=0 ppid=2332 pid=2432 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.911000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4E4F4445504F525453002D740066696C746572 Apr 12 18:48:34.916000 audit[2434]: NETFILTER_CFG table=filter:45 family=10 entries=1 op=nft_register_rule pid=2434 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:48:34.916000 audit[2434]: SYSCALL arch=c000003e syscall=46 success=yes exit=528 a0=3 a1=7ffc865ebf20 a2=0 a3=7ffc865ebf0c items=0 ppid=2332 pid=2434 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.916000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206865616C746820636865636B207365727669636520706F727473002D6A004B5542452D4E4F4445504F525453 Apr 12 18:48:34.918000 audit[2435]: NETFILTER_CFG table=filter:46 family=10 entries=1 op=nft_register_chain pid=2435 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:48:34.918000 audit[2435]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7fffb741ba00 a2=0 a3=7fffb741b9ec items=0 ppid=2332 pid=2435 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.918000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D740066696C746572 Apr 12 18:48:34.922000 audit[2437]: NETFILTER_CFG table=filter:47 family=10 entries=1 op=nft_register_rule pid=2437 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:48:34.922000 audit[2437]: SYSCALL arch=c000003e syscall=46 success=yes exit=744 a0=3 a1=7ffe5811f3a0 a2=0 a3=7ffe5811f38c items=0 ppid=2332 pid=2437 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.922000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B554245 Apr 12 18:48:34.927000 audit[2440]: NETFILTER_CFG table=filter:48 family=10 entries=2 op=nft_register_chain pid=2440 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:48:34.927000 audit[2440]: SYSCALL arch=c000003e syscall=46 success=yes exit=828 a0=3 a1=7ffe77c83780 a2=0 a3=7ffe77c8376c items=0 ppid=2332 pid=2440 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.927000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D Apr 12 18:48:34.930000 audit[2441]: NETFILTER_CFG table=filter:49 family=10 entries=1 op=nft_register_chain pid=2441 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:48:34.930000 audit[2441]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7ffc3997e630 a2=0 a3=7ffc3997e61c items=0 ppid=2332 pid=2441 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.930000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D464F5257415244002D740066696C746572 Apr 12 18:48:34.934000 audit[2443]: NETFILTER_CFG table=filter:50 family=10 entries=1 op=nft_register_rule pid=2443 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:48:34.934000 audit[2443]: SYSCALL arch=c000003e syscall=46 success=yes exit=528 a0=3 a1=7ffde2fb23f0 a2=0 a3=7ffde2fb23dc items=0 ppid=2332 pid=2443 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.934000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320666F7277617264696E672072756C6573002D6A004B5542452D464F5257415244 Apr 12 18:48:34.937000 audit[2444]: NETFILTER_CFG table=filter:51 family=10 entries=1 op=nft_register_chain pid=2444 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:48:34.937000 audit[2444]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7fff36cf26a0 a2=0 a3=7fff36cf268c items=0 ppid=2332 pid=2444 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.937000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D4649524557414C4C002D740066696C746572 Apr 12 18:48:34.943000 audit[2446]: NETFILTER_CFG table=filter:52 family=10 entries=1 op=nft_register_rule pid=2446 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:48:34.943000 audit[2446]: SYSCALL arch=c000003e syscall=46 success=yes exit=748 a0=3 a1=7ffe318a5530 a2=0 a3=7ffe318a551c items=0 ppid=2332 pid=2446 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.943000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Apr 12 18:48:34.951000 audit[2449]: NETFILTER_CFG table=filter:53 family=10 entries=1 op=nft_register_rule pid=2449 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:48:34.951000 audit[2449]: SYSCALL arch=c000003e syscall=46 success=yes exit=748 a0=3 a1=7ffdfff286d0 a2=0 a3=7ffdfff286bc items=0 ppid=2332 pid=2449 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.951000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D Apr 12 18:48:34.981000 audit[2452]: NETFILTER_CFG table=filter:54 family=10 entries=1 op=nft_register_rule pid=2452 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:48:34.981000 audit[2452]: SYSCALL arch=c000003e syscall=46 success=yes exit=748 a0=3 a1=7ffc20b75e60 a2=0 a3=7ffc20b75e4c items=0 ppid=2332 pid=2452 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.981000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C Apr 12 18:48:34.984000 audit[2453]: NETFILTER_CFG table=nat:55 family=10 entries=1 op=nft_register_chain pid=2453 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:48:34.984000 audit[2453]: SYSCALL arch=c000003e syscall=46 success=yes exit=96 a0=3 a1=7ffdc6d9d900 a2=0 a3=7ffdc6d9d8ec items=0 ppid=2332 pid=2453 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.984000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D74006E6174 Apr 12 18:48:34.990000 audit[2455]: NETFILTER_CFG table=nat:56 family=10 entries=2 op=nft_register_chain pid=2455 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:48:34.990000 audit[2455]: SYSCALL arch=c000003e syscall=46 success=yes exit=600 a0=3 a1=7ffd02254c70 a2=0 a3=7ffd02254c5c items=0 ppid=2332 pid=2455 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.990000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Apr 12 18:48:34.995000 audit[2458]: NETFILTER_CFG table=nat:57 family=10 entries=2 op=nft_register_chain pid=2458 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:48:34.995000 audit[2458]: SYSCALL arch=c000003e syscall=46 success=yes exit=608 a0=3 a1=7ffd82bfdc80 a2=0 a3=7ffd82bfdc6c items=0 ppid=2332 pid=2458 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.995000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900505245524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Apr 12 18:48:34.997000 audit[2459]: NETFILTER_CFG table=filter:58 family=10 entries=1 op=nft_register_chain pid=2459 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:48:34.997000 audit[2459]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7fff1a7a3f90 a2=0 a3=7fff1a7a3f7c items=0 ppid=2332 pid=2459 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:34.997000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4649524557414C4C002D740066696C746572 Apr 12 18:48:35.001000 audit[2461]: NETFILTER_CFG table=filter:59 family=10 entries=1 op=nft_register_rule pid=2461 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:48:35.001000 audit[2461]: SYSCALL arch=c000003e syscall=46 success=yes exit=228 a0=3 a1=7fff3152c6a0 a2=0 a3=7fff3152c68c items=0 ppid=2332 pid=2461 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:35.001000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6A004B5542452D4649524557414C4C Apr 12 18:48:35.007000 audit[2464]: NETFILTER_CFG table=filter:60 family=10 entries=1 op=nft_register_rule pid=2464 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:48:35.007000 audit[2464]: SYSCALL arch=c000003e syscall=46 success=yes exit=228 a0=3 a1=7ffd3c8990d0 a2=0 a3=7ffd3c8990bc items=0 ppid=2332 pid=2464 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:35.007000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6A004B5542452D4649524557414C4C Apr 12 18:48:35.009000 audit[2465]: NETFILTER_CFG table=nat:61 family=10 entries=1 op=nft_register_chain pid=2465 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:48:35.009000 audit[2465]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7ffcd54b1550 a2=0 a3=7ffcd54b153c items=0 ppid=2332 pid=2465 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:35.009000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D504F5354524F5554494E47002D74006E6174 Apr 12 18:48:35.014000 audit[2467]: NETFILTER_CFG table=nat:62 family=10 entries=2 op=nft_register_chain pid=2467 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:48:35.014000 audit[2467]: SYSCALL arch=c000003e syscall=46 success=yes exit=612 a0=3 a1=7ffd2af62ca0 a2=0 a3=7ffd2af62c8c items=0 ppid=2332 pid=2467 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:35.014000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900504F5354524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320706F7374726F7574696E672072756C6573002D6A004B5542452D504F5354524F5554494E47 Apr 12 18:48:35.018000 audit[2469]: NETFILTER_CFG table=filter:63 family=10 entries=3 op=nft_register_rule pid=2469 subj=system_u:system_r:kernel_t:s0 comm="ip6tables-resto" Apr 12 18:48:35.018000 audit[2469]: SYSCALL arch=c000003e syscall=46 success=yes exit=2004 a0=3 a1=7fffa64350a0 a2=0 a3=7fffa643508c items=0 ppid=2332 pid=2469 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables-resto" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:35.018000 audit: PROCTITLE proctitle=6970367461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:48:35.019000 audit[2469]: NETFILTER_CFG table=nat:64 family=10 entries=7 op=nft_register_chain pid=2469 subj=system_u:system_r:kernel_t:s0 comm="ip6tables-resto" Apr 12 18:48:35.019000 audit[2469]: SYSCALL arch=c000003e syscall=46 success=yes exit=2056 a0=3 a1=7fffa64350a0 a2=0 a3=7fffa643508c items=0 ppid=2332 pid=2469 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables-resto" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:35.019000 audit: PROCTITLE proctitle=6970367461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:48:35.043109 kubelet[2095]: I0412 18:48:35.043065 2095 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="kube-system/kube-proxy-px9kg" podStartSLOduration=2.666741139 podCreationTimestamp="2024-04-12 18:48:28 +0000 UTC" firstStartedPulling="2024-04-12 18:48:29.887150889 +0000 UTC m=+3.852247929" lastFinishedPulling="2024-04-12 18:48:34.263426677 +0000 UTC m=+8.228523721" observedRunningTime="2024-04-12 18:48:35.042180308 +0000 UTC m=+9.007277351" watchObservedRunningTime="2024-04-12 18:48:35.043016931 +0000 UTC m=+9.008113973" Apr 12 18:48:35.417980 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1066179831.mount: Deactivated successfully. Apr 12 18:48:35.726835 kubelet[2095]: E0412 18:48:35.726714 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:35.984177 kubelet[2095]: E0412 18:48:35.984064 2095 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-7zlkf" podUID=2a04af6d-d9f0-41d0-896d-41bdc4c7d554 Apr 12 18:48:36.727496 kubelet[2095]: E0412 18:48:36.727447 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:37.727940 kubelet[2095]: E0412 18:48:37.727897 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:37.988046 kubelet[2095]: E0412 18:48:37.987569 2095 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-7zlkf" podUID=2a04af6d-d9f0-41d0-896d-41bdc4c7d554 Apr 12 18:48:38.728438 kubelet[2095]: E0412 18:48:38.728367 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:39.730083 kubelet[2095]: E0412 18:48:39.730040 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:39.983928 kubelet[2095]: E0412 18:48:39.983592 2095 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-7zlkf" podUID=2a04af6d-d9f0-41d0-896d-41bdc4c7d554 Apr 12 18:48:40.289271 env[1629]: time="2024-04-12T18:48:40.288513634Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/cni:v3.27.3,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:48:40.292589 env[1629]: time="2024-04-12T18:48:40.292551092Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:6527a355814010ee83110dd5165fae88f7d9de75775b78565824d51f8da54897,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:48:40.295146 env[1629]: time="2024-04-12T18:48:40.295109496Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/cni:v3.27.3,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:48:40.297401 env[1629]: time="2024-04-12T18:48:40.297368519Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/cni@sha256:21ccc42ae417f1082c03737e9da5fbfbd4a21732babfcef4cd34240eacf26b41,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:48:40.298135 env[1629]: time="2024-04-12T18:48:40.298095269Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/cni:v3.27.3\" returns image reference \"sha256:6527a355814010ee83110dd5165fae88f7d9de75775b78565824d51f8da54897\"" Apr 12 18:48:40.300528 env[1629]: time="2024-04-12T18:48:40.300495141Z" level=info msg="CreateContainer within sandbox \"721837308e738b3b29666ec88b0afb76c085311407cadf5b5bffbd88ccfe9be6\" for container &ContainerMetadata{Name:install-cni,Attempt:0,}" Apr 12 18:48:40.324885 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3699413756.mount: Deactivated successfully. Apr 12 18:48:40.329126 env[1629]: time="2024-04-12T18:48:40.329071576Z" level=info msg="CreateContainer within sandbox \"721837308e738b3b29666ec88b0afb76c085311407cadf5b5bffbd88ccfe9be6\" for &ContainerMetadata{Name:install-cni,Attempt:0,} returns container id \"15488893541f4927b8fb581d8130ac64ebc068f8fde65f0a64ae6f85e956f6d5\"" Apr 12 18:48:40.330195 env[1629]: time="2024-04-12T18:48:40.330157766Z" level=info msg="StartContainer for \"15488893541f4927b8fb581d8130ac64ebc068f8fde65f0a64ae6f85e956f6d5\"" Apr 12 18:48:40.378521 systemd[1]: Started cri-containerd-15488893541f4927b8fb581d8130ac64ebc068f8fde65f0a64ae6f85e956f6d5.scope. Apr 12 18:48:40.401000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.404204 kernel: kauditd_printk_skb: 186 callbacks suppressed Apr 12 18:48:40.404322 kernel: audit: type=1400 audit(1712947720.401:716): avc: denied { perfmon } for pid=2478 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.401000 audit[2478]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c0001976b0 a2=3c a3=7fee482d0448 items=0 ppid=2187 pid=2478 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:40.415726 kernel: audit: type=1300 audit(1712947720.401:716): arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c0001976b0 a2=3c a3=7fee482d0448 items=0 ppid=2187 pid=2478 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:40.401000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3135343838383933353431663439323762386662353831643831333061 Apr 12 18:48:40.421928 kernel: audit: type=1327 audit(1712947720.401:716): proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3135343838383933353431663439323762386662353831643831333061 Apr 12 18:48:40.422062 kernel: audit: type=1400 audit(1712947720.401:717): avc: denied { bpf } for pid=2478 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.401000 audit[2478]: AVC avc: denied { bpf } for pid=2478 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.401000 audit[2478]: AVC avc: denied { bpf } for pid=2478 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.430728 kernel: audit: type=1400 audit(1712947720.401:717): avc: denied { bpf } for pid=2478 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.430861 kernel: audit: type=1400 audit(1712947720.401:717): avc: denied { bpf } for pid=2478 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.401000 audit[2478]: AVC avc: denied { bpf } for pid=2478 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.401000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.448118 kernel: audit: type=1400 audit(1712947720.401:717): avc: denied { perfmon } for pid=2478 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.448265 kernel: audit: type=1400 audit(1712947720.401:717): avc: denied { perfmon } for pid=2478 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.401000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.401000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.459442 kernel: audit: type=1400 audit(1712947720.401:717): avc: denied { perfmon } for pid=2478 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.401000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.401000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.468510 kernel: audit: type=1400 audit(1712947720.401:717): avc: denied { perfmon } for pid=2478 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.401000 audit[2478]: AVC avc: denied { bpf } for pid=2478 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.401000 audit[2478]: AVC avc: denied { bpf } for pid=2478 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.401000 audit: BPF prog-id=84 op=LOAD Apr 12 18:48:40.401000 audit[2478]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c0001979d8 a2=78 a3=c00029a208 items=0 ppid=2187 pid=2478 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:40.401000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3135343838383933353431663439323762386662353831643831333061 Apr 12 18:48:40.408000 audit[2478]: AVC avc: denied { bpf } for pid=2478 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.408000 audit[2478]: AVC avc: denied { bpf } for pid=2478 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.408000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.408000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.408000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.408000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.408000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.408000 audit[2478]: AVC avc: denied { bpf } for pid=2478 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.408000 audit[2478]: AVC avc: denied { bpf } for pid=2478 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.408000 audit: BPF prog-id=85 op=LOAD Apr 12 18:48:40.408000 audit[2478]: SYSCALL arch=c000003e syscall=321 success=yes exit=17 a0=5 a1=c000197770 a2=78 a3=c00029a258 items=0 ppid=2187 pid=2478 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:40.408000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3135343838383933353431663439323762386662353831643831333061 Apr 12 18:48:40.424000 audit: BPF prog-id=85 op=UNLOAD Apr 12 18:48:40.425000 audit: BPF prog-id=84 op=UNLOAD Apr 12 18:48:40.425000 audit[2478]: AVC avc: denied { bpf } for pid=2478 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.425000 audit[2478]: AVC avc: denied { bpf } for pid=2478 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.425000 audit[2478]: AVC avc: denied { bpf } for pid=2478 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.425000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.425000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.425000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.425000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.425000 audit[2478]: AVC avc: denied { perfmon } for pid=2478 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.425000 audit[2478]: AVC avc: denied { bpf } for pid=2478 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.425000 audit[2478]: AVC avc: denied { bpf } for pid=2478 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:40.425000 audit: BPF prog-id=86 op=LOAD Apr 12 18:48:40.425000 audit[2478]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c000197c30 a2=78 a3=c00029a2e8 items=0 ppid=2187 pid=2478 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:40.425000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3135343838383933353431663439323762386662353831643831333061 Apr 12 18:48:40.502369 env[1629]: time="2024-04-12T18:48:40.502279833Z" level=info msg="StartContainer for \"15488893541f4927b8fb581d8130ac64ebc068f8fde65f0a64ae6f85e956f6d5\" returns successfully" Apr 12 18:48:40.731181 kubelet[2095]: E0412 18:48:40.731129 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:41.318129 systemd[1]: run-containerd-runc-k8s.io-15488893541f4927b8fb581d8130ac64ebc068f8fde65f0a64ae6f85e956f6d5-runc.30sFGh.mount: Deactivated successfully. Apr 12 18:48:41.731769 kubelet[2095]: E0412 18:48:41.731717 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:41.987415 kubelet[2095]: E0412 18:48:41.986160 2095 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-7zlkf" podUID=2a04af6d-d9f0-41d0-896d-41bdc4c7d554 Apr 12 18:48:42.068009 env[1629]: time="2024-04-12T18:48:42.067933925Z" level=error msg="failed to reload cni configuration after receiving fs change event(\"/etc/cni/net.d/calico-kubeconfig\": WRITE)" error="cni config load failed: no network config found in /etc/cni/net.d: cni plugin not initialized: failed to load cni config" Apr 12 18:48:42.074702 systemd[1]: cri-containerd-15488893541f4927b8fb581d8130ac64ebc068f8fde65f0a64ae6f85e956f6d5.scope: Deactivated successfully. Apr 12 18:48:42.083000 audit: BPF prog-id=86 op=UNLOAD Apr 12 18:48:42.131789 systemd[1]: run-containerd-io.containerd.runtime.v2.task-k8s.io-15488893541f4927b8fb581d8130ac64ebc068f8fde65f0a64ae6f85e956f6d5-rootfs.mount: Deactivated successfully. Apr 12 18:48:42.137649 kubelet[2095]: I0412 18:48:42.137610 2095 kubelet_node_status.go:493] "Fast updating node status as it just became ready" Apr 12 18:48:42.224000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-hostnamed comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:48:42.225002 systemd[1]: systemd-hostnamed.service: Deactivated successfully. Apr 12 18:48:42.245000 audit: BPF prog-id=57 op=UNLOAD Apr 12 18:48:42.245000 audit: BPF prog-id=56 op=UNLOAD Apr 12 18:48:42.245000 audit: BPF prog-id=55 op=UNLOAD Apr 12 18:48:42.732213 kubelet[2095]: E0412 18:48:42.732172 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:43.169483 env[1629]: time="2024-04-12T18:48:43.169372601Z" level=info msg="shim disconnected" id=15488893541f4927b8fb581d8130ac64ebc068f8fde65f0a64ae6f85e956f6d5 Apr 12 18:48:43.170158 env[1629]: time="2024-04-12T18:48:43.170021094Z" level=warning msg="cleaning up after shim disconnected" id=15488893541f4927b8fb581d8130ac64ebc068f8fde65f0a64ae6f85e956f6d5 namespace=k8s.io Apr 12 18:48:43.170158 env[1629]: time="2024-04-12T18:48:43.170045908Z" level=info msg="cleaning up dead shim" Apr 12 18:48:43.189987 env[1629]: time="2024-04-12T18:48:43.189930941Z" level=warning msg="cleanup warnings time=\"2024-04-12T18:48:43Z\" level=info msg=\"starting signal loop\" namespace=k8s.io pid=2520 runtime=io.containerd.runc.v2\n" Apr 12 18:48:43.732663 kubelet[2095]: E0412 18:48:43.732469 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:43.990503 systemd[1]: Created slice kubepods-besteffort-pod2a04af6d_d9f0_41d0_896d_41bdc4c7d554.slice. Apr 12 18:48:43.994737 env[1629]: time="2024-04-12T18:48:43.994690489Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-7zlkf,Uid:2a04af6d-d9f0-41d0-896d-41bdc4c7d554,Namespace:calico-system,Attempt:0,}" Apr 12 18:48:44.049504 env[1629]: time="2024-04-12T18:48:44.049456185Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node:v3.27.3\"" Apr 12 18:48:44.121517 env[1629]: time="2024-04-12T18:48:44.121369989Z" level=error msg="Failed to destroy network for sandbox \"c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98\"" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Apr 12 18:48:44.127012 env[1629]: time="2024-04-12T18:48:44.126025422Z" level=error msg="encountered an error cleaning up failed sandbox \"c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98\", marking sandbox state as SANDBOX_UNKNOWN" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Apr 12 18:48:44.127012 env[1629]: time="2024-04-12T18:48:44.126226280Z" level=error msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-7zlkf,Uid:2a04af6d-d9f0-41d0-896d-41bdc4c7d554,Namespace:calico-system,Attempt:0,} failed, error" error="failed to setup network for sandbox \"c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Apr 12 18:48:44.127163 kubelet[2095]: E0412 18:48:44.126558 2095 remote_runtime.go:176] "RunPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Apr 12 18:48:44.127163 kubelet[2095]: E0412 18:48:44.126619 2095 kuberuntime_sandbox.go:72] "Failed to create sandbox for pod" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="calico-system/csi-node-driver-7zlkf" Apr 12 18:48:44.127163 kubelet[2095]: E0412 18:48:44.126654 2095 kuberuntime_manager.go:1122] "CreatePodSandbox for pod failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="calico-system/csi-node-driver-7zlkf" Apr 12 18:48:44.125141 systemd[1]: run-containerd-io.containerd.grpc.v1.cri-sandboxes-c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98-shm.mount: Deactivated successfully. Apr 12 18:48:44.127550 kubelet[2095]: E0412 18:48:44.126729 2095 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"CreatePodSandbox\" for \"csi-node-driver-7zlkf_calico-system(2a04af6d-d9f0-41d0-896d-41bdc4c7d554)\" with CreatePodSandboxError: \"Failed to create sandbox for pod \\\"csi-node-driver-7zlkf_calico-system(2a04af6d-d9f0-41d0-896d-41bdc4c7d554)\\\": rpc error: code = Unknown desc = failed to setup network for sandbox \\\"c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98\\\": plugin type=\\\"calico\\\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="calico-system/csi-node-driver-7zlkf" podUID=2a04af6d-d9f0-41d0-896d-41bdc4c7d554 Apr 12 18:48:44.732967 kubelet[2095]: E0412 18:48:44.732907 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:45.052973 kubelet[2095]: I0412 18:48:45.052853 2095 pod_container_deletor.go:80] "Container not found in pod's containers" containerID="c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" Apr 12 18:48:45.054156 env[1629]: time="2024-04-12T18:48:45.054029400Z" level=info msg="StopPodSandbox for \"c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98\"" Apr 12 18:48:45.097330 env[1629]: time="2024-04-12T18:48:45.097262396Z" level=error msg="StopPodSandbox for \"c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98\" failed" error="failed to destroy network for sandbox \"c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Apr 12 18:48:45.097879 kubelet[2095]: E0412 18:48:45.097850 2095 remote_runtime.go:205] "StopPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to destroy network for sandbox \"c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" podSandboxID="c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" Apr 12 18:48:45.098012 kubelet[2095]: E0412 18:48:45.097918 2095 kuberuntime_manager.go:1312] "Failed to stop sandbox" podSandboxID={Type:containerd ID:c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98} Apr 12 18:48:45.098012 kubelet[2095]: E0412 18:48:45.097965 2095 kuberuntime_manager.go:1038] "killPodWithSyncResult failed" err="failed to \"KillPodSandbox\" for \"2a04af6d-d9f0-41d0-896d-41bdc4c7d554\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" Apr 12 18:48:45.098012 kubelet[2095]: E0412 18:48:45.098005 2095 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"KillPodSandbox\" for \"2a04af6d-d9f0-41d0-896d-41bdc4c7d554\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="calico-system/csi-node-driver-7zlkf" podUID=2a04af6d-d9f0-41d0-896d-41bdc4c7d554 Apr 12 18:48:45.733565 kubelet[2095]: E0412 18:48:45.733488 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:46.720438 kubelet[2095]: E0412 18:48:46.720383 2095 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:46.734612 kubelet[2095]: E0412 18:48:46.734550 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:47.735671 kubelet[2095]: E0412 18:48:47.735587 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:48.211092 kubelet[2095]: I0412 18:48:48.210008 2095 topology_manager.go:212] "Topology Admit Handler" Apr 12 18:48:48.216792 kubelet[2095]: I0412 18:48:48.216757 2095 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-wvcnj\" (UniqueName: \"kubernetes.io/projected/68df65ce-55e1-494e-843e-9a0c46a7b5e2-kube-api-access-wvcnj\") pod \"nginx-deployment-845c78c8b9-hb6z8\" (UID: \"68df65ce-55e1-494e-843e-9a0c46a7b5e2\") " pod="default/nginx-deployment-845c78c8b9-hb6z8" Apr 12 18:48:48.219630 systemd[1]: Created slice kubepods-besteffort-pod68df65ce_55e1_494e_843e_9a0c46a7b5e2.slice. Apr 12 18:48:48.527293 env[1629]: time="2024-04-12T18:48:48.526732479Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-845c78c8b9-hb6z8,Uid:68df65ce-55e1-494e-843e-9a0c46a7b5e2,Namespace:default,Attempt:0,}" Apr 12 18:48:48.716703 env[1629]: time="2024-04-12T18:48:48.716638968Z" level=error msg="Failed to destroy network for sandbox \"2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8\"" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Apr 12 18:48:48.719029 systemd[1]: run-containerd-io.containerd.grpc.v1.cri-sandboxes-2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8-shm.mount: Deactivated successfully. Apr 12 18:48:48.720540 env[1629]: time="2024-04-12T18:48:48.720463261Z" level=error msg="encountered an error cleaning up failed sandbox \"2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8\", marking sandbox state as SANDBOX_UNKNOWN" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Apr 12 18:48:48.720745 env[1629]: time="2024-04-12T18:48:48.720567185Z" level=error msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-845c78c8b9-hb6z8,Uid:68df65ce-55e1-494e-843e-9a0c46a7b5e2,Namespace:default,Attempt:0,} failed, error" error="failed to setup network for sandbox \"2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Apr 12 18:48:48.721097 kubelet[2095]: E0412 18:48:48.720888 2095 remote_runtime.go:176] "RunPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Apr 12 18:48:48.721191 kubelet[2095]: E0412 18:48:48.721136 2095 kuberuntime_sandbox.go:72] "Failed to create sandbox for pod" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="default/nginx-deployment-845c78c8b9-hb6z8" Apr 12 18:48:48.721191 kubelet[2095]: E0412 18:48:48.721170 2095 kuberuntime_manager.go:1122] "CreatePodSandbox for pod failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="default/nginx-deployment-845c78c8b9-hb6z8" Apr 12 18:48:48.721286 kubelet[2095]: E0412 18:48:48.721231 2095 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"CreatePodSandbox\" for \"nginx-deployment-845c78c8b9-hb6z8_default(68df65ce-55e1-494e-843e-9a0c46a7b5e2)\" with CreatePodSandboxError: \"Failed to create sandbox for pod \\\"nginx-deployment-845c78c8b9-hb6z8_default(68df65ce-55e1-494e-843e-9a0c46a7b5e2)\\\": rpc error: code = Unknown desc = failed to setup network for sandbox \\\"2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8\\\": plugin type=\\\"calico\\\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="default/nginx-deployment-845c78c8b9-hb6z8" podUID=68df65ce-55e1-494e-843e-9a0c46a7b5e2 Apr 12 18:48:48.736103 kubelet[2095]: E0412 18:48:48.736066 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:49.064422 kubelet[2095]: I0412 18:48:49.063558 2095 pod_container_deletor.go:80] "Container not found in pod's containers" containerID="2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" Apr 12 18:48:49.064993 env[1629]: time="2024-04-12T18:48:49.064954898Z" level=info msg="StopPodSandbox for \"2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8\"" Apr 12 18:48:49.185962 env[1629]: time="2024-04-12T18:48:49.185830070Z" level=error msg="StopPodSandbox for \"2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8\" failed" error="failed to destroy network for sandbox \"2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Apr 12 18:48:49.186683 kubelet[2095]: E0412 18:48:49.186435 2095 remote_runtime.go:205] "StopPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to destroy network for sandbox \"2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" podSandboxID="2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" Apr 12 18:48:49.186683 kubelet[2095]: E0412 18:48:49.186515 2095 kuberuntime_manager.go:1312] "Failed to stop sandbox" podSandboxID={Type:containerd ID:2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8} Apr 12 18:48:49.186683 kubelet[2095]: E0412 18:48:49.186599 2095 kuberuntime_manager.go:1038] "killPodWithSyncResult failed" err="failed to \"KillPodSandbox\" for \"68df65ce-55e1-494e-843e-9a0c46a7b5e2\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" Apr 12 18:48:49.186683 kubelet[2095]: E0412 18:48:49.186656 2095 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"KillPodSandbox\" for \"68df65ce-55e1-494e-843e-9a0c46a7b5e2\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="default/nginx-deployment-845c78c8b9-hb6z8" podUID=68df65ce-55e1-494e-843e-9a0c46a7b5e2 Apr 12 18:48:49.737041 kubelet[2095]: E0412 18:48:49.736989 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:50.737678 kubelet[2095]: E0412 18:48:50.737586 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:51.738608 kubelet[2095]: E0412 18:48:51.738459 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:52.331561 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3139945728.mount: Deactivated successfully. Apr 12 18:48:52.593566 env[1629]: time="2024-04-12T18:48:52.593407469Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node:v3.27.3,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:48:52.597362 env[1629]: time="2024-04-12T18:48:52.597297000Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:5c6ffd2b2a1d03e9506d4669a91587cd464de04cb141392742fbf4dff2fbd931,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:48:52.602654 env[1629]: time="2024-04-12T18:48:52.602600271Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/node:v3.27.3,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:48:52.605039 env[1629]: time="2024-04-12T18:48:52.605000258Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node@sha256:0dec3ede02137c9bc7a49b50006739ddb7c20fc2b8fa12d2bd8234c680e8df34,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:48:52.605788 env[1629]: time="2024-04-12T18:48:52.605754198Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node:v3.27.3\" returns image reference \"sha256:5c6ffd2b2a1d03e9506d4669a91587cd464de04cb141392742fbf4dff2fbd931\"" Apr 12 18:48:52.628189 env[1629]: time="2024-04-12T18:48:52.628142178Z" level=info msg="CreateContainer within sandbox \"721837308e738b3b29666ec88b0afb76c085311407cadf5b5bffbd88ccfe9be6\" for container &ContainerMetadata{Name:calico-node,Attempt:0,}" Apr 12 18:48:52.653039 env[1629]: time="2024-04-12T18:48:52.652983972Z" level=info msg="CreateContainer within sandbox \"721837308e738b3b29666ec88b0afb76c085311407cadf5b5bffbd88ccfe9be6\" for &ContainerMetadata{Name:calico-node,Attempt:0,} returns container id \"3ef7f0377276055c7b8c9df1bc52fc6ed35592336fd451beaa39c5dbe7a2883d\"" Apr 12 18:48:52.653995 env[1629]: time="2024-04-12T18:48:52.653956569Z" level=info msg="StartContainer for \"3ef7f0377276055c7b8c9df1bc52fc6ed35592336fd451beaa39c5dbe7a2883d\"" Apr 12 18:48:52.680155 systemd[1]: Started cri-containerd-3ef7f0377276055c7b8c9df1bc52fc6ed35592336fd451beaa39c5dbe7a2883d.scope. Apr 12 18:48:52.725000 audit[2649]: AVC avc: denied { perfmon } for pid=2649 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.727855 kernel: kauditd_printk_skb: 38 callbacks suppressed Apr 12 18:48:52.727945 kernel: audit: type=1400 audit(1712947732.725:727): avc: denied { perfmon } for pid=2649 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.725000 audit[2649]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c0001976b0 a2=3c a3=7f100295baa8 items=0 ppid=2187 pid=2649 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:52.741542 kubelet[2095]: E0412 18:48:52.741507 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:52.749070 kernel: audit: type=1300 audit(1712947732.725:727): arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c0001976b0 a2=3c a3=7f100295baa8 items=0 ppid=2187 pid=2649 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:52.749212 kernel: audit: type=1327 audit(1712947732.725:727): proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3365663766303337373237363035356337623863396466316263353266 Apr 12 18:48:52.749256 kernel: audit: type=1400 audit(1712947732.725:728): avc: denied { bpf } for pid=2649 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.725000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3365663766303337373237363035356337623863396466316263353266 Apr 12 18:48:52.725000 audit[2649]: AVC avc: denied { bpf } for pid=2649 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.725000 audit[2649]: AVC avc: denied { bpf } for pid=2649 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.725000 audit[2649]: AVC avc: denied { bpf } for pid=2649 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.770339 kernel: audit: type=1400 audit(1712947732.725:728): avc: denied { bpf } for pid=2649 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.770435 kernel: audit: type=1400 audit(1712947732.725:728): avc: denied { bpf } for pid=2649 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.725000 audit[2649]: AVC avc: denied { perfmon } for pid=2649 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.776804 kernel: audit: type=1400 audit(1712947732.725:728): avc: denied { perfmon } for pid=2649 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.725000 audit[2649]: AVC avc: denied { perfmon } for pid=2649 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.783536 kernel: audit: type=1400 audit(1712947732.725:728): avc: denied { perfmon } for pid=2649 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.725000 audit[2649]: AVC avc: denied { perfmon } for pid=2649 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.792489 kernel: audit: type=1400 audit(1712947732.725:728): avc: denied { perfmon } for pid=2649 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.829029 kernel: audit: type=1400 audit(1712947732.725:728): avc: denied { perfmon } for pid=2649 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.725000 audit[2649]: AVC avc: denied { perfmon } for pid=2649 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.725000 audit[2649]: AVC avc: denied { perfmon } for pid=2649 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.725000 audit[2649]: AVC avc: denied { bpf } for pid=2649 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.725000 audit[2649]: AVC avc: denied { bpf } for pid=2649 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.725000 audit: BPF prog-id=87 op=LOAD Apr 12 18:48:52.725000 audit[2649]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c0001979d8 a2=78 a3=c0000d7ba8 items=0 ppid=2187 pid=2649 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:52.725000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3365663766303337373237363035356337623863396466316263353266 Apr 12 18:48:52.731000 audit[2649]: AVC avc: denied { bpf } for pid=2649 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.731000 audit[2649]: AVC avc: denied { bpf } for pid=2649 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.731000 audit[2649]: AVC avc: denied { perfmon } for pid=2649 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.731000 audit[2649]: AVC avc: denied { perfmon } for pid=2649 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.731000 audit[2649]: AVC avc: denied { perfmon } for pid=2649 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.731000 audit[2649]: AVC avc: denied { perfmon } for pid=2649 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.731000 audit[2649]: AVC avc: denied { perfmon } for pid=2649 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.731000 audit[2649]: AVC avc: denied { bpf } for pid=2649 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.731000 audit[2649]: AVC avc: denied { bpf } for pid=2649 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.731000 audit: BPF prog-id=88 op=LOAD Apr 12 18:48:52.731000 audit[2649]: SYSCALL arch=c000003e syscall=321 success=yes exit=17 a0=5 a1=c000197770 a2=78 a3=c0000d7bf8 items=0 ppid=2187 pid=2649 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:52.731000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3365663766303337373237363035356337623863396466316263353266 Apr 12 18:48:52.731000 audit: BPF prog-id=88 op=UNLOAD Apr 12 18:48:52.731000 audit: BPF prog-id=87 op=UNLOAD Apr 12 18:48:52.731000 audit[2649]: AVC avc: denied { bpf } for pid=2649 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.731000 audit[2649]: AVC avc: denied { bpf } for pid=2649 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.731000 audit[2649]: AVC avc: denied { bpf } for pid=2649 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.731000 audit[2649]: AVC avc: denied { perfmon } for pid=2649 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.731000 audit[2649]: AVC avc: denied { perfmon } for pid=2649 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.731000 audit[2649]: AVC avc: denied { perfmon } for pid=2649 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.731000 audit[2649]: AVC avc: denied { perfmon } for pid=2649 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.731000 audit[2649]: AVC avc: denied { perfmon } for pid=2649 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.731000 audit[2649]: AVC avc: denied { bpf } for pid=2649 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.731000 audit[2649]: AVC avc: denied { bpf } for pid=2649 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:52.731000 audit: BPF prog-id=89 op=LOAD Apr 12 18:48:52.731000 audit[2649]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c000197c30 a2=78 a3=c0000d7c88 items=0 ppid=2187 pid=2649 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:52.731000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3365663766303337373237363035356337623863396466316263353266 Apr 12 18:48:52.836853 env[1629]: time="2024-04-12T18:48:52.836808878Z" level=info msg="StartContainer for \"3ef7f0377276055c7b8c9df1bc52fc6ed35592336fd451beaa39c5dbe7a2883d\" returns successfully" Apr 12 18:48:52.912697 kernel: wireguard: WireGuard 1.0.0 loaded. See www.wireguard.com for information. Apr 12 18:48:52.912889 kernel: wireguard: Copyright (C) 2015-2019 Jason A. Donenfeld . All Rights Reserved. Apr 12 18:48:53.122005 kubelet[2095]: I0412 18:48:53.121462 2095 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="calico-system/calico-node-t9xjp" podStartSLOduration=2.400794664 podCreationTimestamp="2024-04-12 18:48:28 +0000 UTC" firstStartedPulling="2024-04-12 18:48:29.885518749 +0000 UTC m=+3.850615780" lastFinishedPulling="2024-04-12 18:48:52.606137259 +0000 UTC m=+26.571234301" observedRunningTime="2024-04-12 18:48:53.121054626 +0000 UTC m=+27.086151675" watchObservedRunningTime="2024-04-12 18:48:53.121413185 +0000 UTC m=+27.086510232" Apr 12 18:48:53.751215 kubelet[2095]: E0412 18:48:53.751160 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:54.367000 audit[2795]: AVC avc: denied { write } for pid=2795 comm="tee" name="fd" dev="proc" ino=19333 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Apr 12 18:48:54.367000 audit[2795]: SYSCALL arch=c000003e syscall=257 success=yes exit=3 a0=ffffff9c a1=7fffca06b986 a2=241 a3=1b6 items=1 ppid=2763 pid=2795 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:54.367000 audit: CWD cwd="/etc/service/enabled/felix/log" Apr 12 18:48:54.367000 audit: PATH item=0 name="/dev/fd/63" inode=19327 dev=00:0c mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:54.370000 audit[2790]: AVC avc: denied { write } for pid=2790 comm="tee" name="fd" dev="proc" ino=19878 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Apr 12 18:48:54.367000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Apr 12 18:48:54.374000 audit[2791]: AVC avc: denied { write } for pid=2791 comm="tee" name="fd" dev="proc" ino=19881 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Apr 12 18:48:54.374000 audit[2791]: SYSCALL arch=c000003e syscall=257 success=yes exit=3 a0=ffffff9c a1=7ffc0add3976 a2=241 a3=1b6 items=1 ppid=2756 pid=2791 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:54.374000 audit: CWD cwd="/etc/service/enabled/allocate-tunnel-addrs/log" Apr 12 18:48:54.374000 audit: PATH item=0 name="/dev/fd/63" inode=19323 dev=00:0c mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:54.374000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Apr 12 18:48:54.377000 audit[2793]: AVC avc: denied { write } for pid=2793 comm="tee" name="fd" dev="proc" ino=19885 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Apr 12 18:48:54.382000 audit[2805]: AVC avc: denied { write } for pid=2805 comm="tee" name="fd" dev="proc" ino=19888 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Apr 12 18:48:54.370000 audit[2790]: SYSCALL arch=c000003e syscall=257 success=yes exit=3 a0=ffffff9c a1=7fff8fdcf988 a2=241 a3=1b6 items=1 ppid=2762 pid=2790 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:54.370000 audit: CWD cwd="/etc/service/enabled/cni/log" Apr 12 18:48:54.370000 audit: PATH item=0 name="/dev/fd/63" inode=19324 dev=00:0c mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:54.370000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Apr 12 18:48:54.377000 audit[2793]: SYSCALL arch=c000003e syscall=257 success=yes exit=3 a0=ffffff9c a1=7ffc75582986 a2=241 a3=1b6 items=1 ppid=2760 pid=2793 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:54.377000 audit: CWD cwd="/etc/service/enabled/bird6/log" Apr 12 18:48:54.377000 audit: PATH item=0 name="/dev/fd/63" inode=19872 dev=00:0c mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:54.377000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Apr 12 18:48:54.382000 audit[2805]: SYSCALL arch=c000003e syscall=257 success=yes exit=3 a0=ffffff9c a1=7fff80f6a986 a2=241 a3=1b6 items=1 ppid=2767 pid=2805 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:54.382000 audit: CWD cwd="/etc/service/enabled/confd/log" Apr 12 18:48:54.382000 audit: PATH item=0 name="/dev/fd/63" inode=19875 dev=00:0c mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:54.382000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Apr 12 18:48:54.389000 audit[2802]: AVC avc: denied { write } for pid=2802 comm="tee" name="fd" dev="proc" ino=19346 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Apr 12 18:48:54.389000 audit[2802]: SYSCALL arch=c000003e syscall=257 success=yes exit=3 a0=ffffff9c a1=7ffcaf1f9987 a2=241 a3=1b6 items=1 ppid=2769 pid=2802 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:54.389000 audit: CWD cwd="/etc/service/enabled/bird/log" Apr 12 18:48:54.389000 audit: PATH item=0 name="/dev/fd/63" inode=19328 dev=00:0c mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:54.389000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Apr 12 18:48:54.398000 audit[2815]: AVC avc: denied { write } for pid=2815 comm="tee" name="fd" dev="proc" ino=19350 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Apr 12 18:48:54.398000 audit[2815]: SYSCALL arch=c000003e syscall=257 success=yes exit=3 a0=ffffff9c a1=7ffd11364977 a2=241 a3=1b6 items=1 ppid=2757 pid=2815 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:54.398000 audit: CWD cwd="/etc/service/enabled/node-status-reporter/log" Apr 12 18:48:54.398000 audit: PATH item=0 name="/dev/fd/63" inode=19340 dev=00:0c mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:48:54.398000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Apr 12 18:48:54.751743 kubelet[2095]: E0412 18:48:54.751563 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:54.783340 kernel: Initializing XFRM netlink socket Apr 12 18:48:54.986000 audit[2891]: AVC avc: denied { bpf } for pid=2891 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.986000 audit[2891]: AVC avc: denied { bpf } for pid=2891 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.986000 audit[2891]: AVC avc: denied { perfmon } for pid=2891 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.986000 audit[2891]: AVC avc: denied { perfmon } for pid=2891 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.986000 audit[2891]: AVC avc: denied { perfmon } for pid=2891 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.986000 audit[2891]: AVC avc: denied { perfmon } for pid=2891 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.986000 audit[2891]: AVC avc: denied { perfmon } for pid=2891 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.986000 audit[2891]: AVC avc: denied { bpf } for pid=2891 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.986000 audit[2891]: AVC avc: denied { bpf } for pid=2891 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.986000 audit: BPF prog-id=90 op=LOAD Apr 12 18:48:54.986000 audit[2891]: SYSCALL arch=c000003e syscall=321 success=yes exit=4 a0=5 a1=7fffe17888a0 a2=70 a3=7f2b7b3b9000 items=0 ppid=2768 pid=2891 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:54.986000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Apr 12 18:48:54.986000 audit: BPF prog-id=90 op=UNLOAD Apr 12 18:48:54.986000 audit[2891]: AVC avc: denied { bpf } for pid=2891 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.986000 audit[2891]: AVC avc: denied { bpf } for pid=2891 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.986000 audit[2891]: AVC avc: denied { perfmon } for pid=2891 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.986000 audit[2891]: AVC avc: denied { perfmon } for pid=2891 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.986000 audit[2891]: AVC avc: denied { perfmon } for pid=2891 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.986000 audit[2891]: AVC avc: denied { perfmon } for pid=2891 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.986000 audit[2891]: AVC avc: denied { perfmon } for pid=2891 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.986000 audit[2891]: AVC avc: denied { bpf } for pid=2891 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.986000 audit[2891]: AVC avc: denied { bpf } for pid=2891 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.986000 audit: BPF prog-id=91 op=LOAD Apr 12 18:48:54.986000 audit[2891]: SYSCALL arch=c000003e syscall=321 success=yes exit=4 a0=5 a1=7fffe17888a0 a2=70 a3=6f items=0 ppid=2768 pid=2891 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:54.986000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Apr 12 18:48:54.987000 audit: BPF prog-id=91 op=UNLOAD Apr 12 18:48:54.987000 audit[2891]: AVC avc: denied { perfmon } for pid=2891 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.987000 audit[2891]: SYSCALL arch=c000003e syscall=321 success=yes exit=4 a0=0 a1=7fffe1788850 a2=70 a3=7fffe17888a0 items=0 ppid=2768 pid=2891 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:54.987000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Apr 12 18:48:54.987000 audit[2891]: AVC avc: denied { bpf } for pid=2891 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.987000 audit[2891]: AVC avc: denied { bpf } for pid=2891 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.987000 audit[2891]: AVC avc: denied { perfmon } for pid=2891 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.987000 audit[2891]: AVC avc: denied { perfmon } for pid=2891 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.987000 audit[2891]: AVC avc: denied { perfmon } for pid=2891 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.987000 audit[2891]: AVC avc: denied { perfmon } for pid=2891 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.987000 audit[2891]: AVC avc: denied { perfmon } for pid=2891 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.987000 audit[2891]: AVC avc: denied { bpf } for pid=2891 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.987000 audit[2891]: AVC avc: denied { bpf } for pid=2891 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.987000 audit: BPF prog-id=92 op=LOAD Apr 12 18:48:54.987000 audit[2891]: SYSCALL arch=c000003e syscall=321 success=yes exit=5 a0=5 a1=7fffe1788830 a2=70 a3=7fffe17888a0 items=0 ppid=2768 pid=2891 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:54.987000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Apr 12 18:48:54.987000 audit: BPF prog-id=92 op=UNLOAD Apr 12 18:48:54.987000 audit[2891]: AVC avc: denied { bpf } for pid=2891 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.987000 audit[2891]: SYSCALL arch=c000003e syscall=321 success=yes exit=4 a0=12 a1=7fffe1788910 a2=70 a3=0 items=0 ppid=2768 pid=2891 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:54.987000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Apr 12 18:48:54.987000 audit[2891]: AVC avc: denied { bpf } for pid=2891 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.987000 audit[2891]: SYSCALL arch=c000003e syscall=321 success=yes exit=4 a0=12 a1=7fffe1788900 a2=70 a3=0 items=0 ppid=2768 pid=2891 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:54.987000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Apr 12 18:48:54.987000 audit[2891]: AVC avc: denied { bpf } for pid=2891 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.987000 audit[2891]: SYSCALL arch=c000003e syscall=321 success=yes exit=4 a0=12 a1=7fffe1788870 a2=70 a3=0 items=0 ppid=2768 pid=2891 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:54.987000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Apr 12 18:48:54.988000 audit[2891]: AVC avc: denied { bpf } for pid=2891 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.988000 audit[2891]: SYSCALL arch=c000003e syscall=321 success=no exit=-22 a0=0 a1=7fffe1788940 a2=70 a3=1877f60 items=0 ppid=2768 pid=2891 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:54.988000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Apr 12 18:48:54.987100 (udev-worker)[2683]: Network interface NamePolicy= disabled on kernel command line. Apr 12 18:48:54.987510 (udev-worker)[2682]: Network interface NamePolicy= disabled on kernel command line. Apr 12 18:48:54.993000 audit[2891]: AVC avc: denied { bpf } for pid=2891 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.993000 audit[2891]: SYSCALL arch=c000003e syscall=321 success=yes exit=5 a0=0 a1=7fffe1788940 a2=70 a3=1874880 items=0 ppid=2768 pid=2891 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:54.993000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Apr 12 18:48:54.993000 audit[2891]: AVC avc: denied { bpf } for pid=2891 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.993000 audit[2891]: AVC avc: denied { bpf } for pid=2891 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.993000 audit[2891]: AVC avc: denied { bpf } for pid=2891 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.993000 audit[2891]: AVC avc: denied { perfmon } for pid=2891 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.993000 audit[2891]: AVC avc: denied { perfmon } for pid=2891 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.993000 audit[2891]: AVC avc: denied { perfmon } for pid=2891 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.993000 audit[2891]: AVC avc: denied { perfmon } for pid=2891 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.993000 audit[2891]: AVC avc: denied { perfmon } for pid=2891 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.993000 audit[2891]: AVC avc: denied { bpf } for pid=2891 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.993000 audit[2891]: AVC avc: denied { bpf } for pid=2891 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.993000 audit: BPF prog-id=93 op=LOAD Apr 12 18:48:54.993000 audit[2891]: SYSCALL arch=c000003e syscall=321 success=yes exit=6 a0=5 a1=7fffe1788860 a2=70 a3=0 items=0 ppid=2768 pid=2891 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:54.993000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Apr 12 18:48:54.998000 audit[2895]: AVC avc: denied { bpf } for pid=2895 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.998000 audit[2895]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=7ffda2363520 a2=70 a3=fff80800 items=0 ppid=2768 pid=2895 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:54.998000 audit: PROCTITLE proctitle=627066746F6F6C002D2D6A736F6E002D2D7072657474790070726F670073686F770070696E6E6564002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41 Apr 12 18:48:54.998000 audit[2895]: AVC avc: denied { bpf } for pid=2895 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:54.998000 audit[2895]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=7ffda23633f0 a2=70 a3=3 items=0 ppid=2768 pid=2895 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:54.998000 audit: PROCTITLE proctitle=627066746F6F6C002D2D6A736F6E002D2D7072657474790070726F670073686F770070696E6E6564002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41 Apr 12 18:48:55.017000 audit: BPF prog-id=93 op=UNLOAD Apr 12 18:48:55.142000 audit[2918]: NETFILTER_CFG table=mangle:65 family=2 entries=16 op=nft_register_chain pid=2918 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Apr 12 18:48:55.142000 audit[2918]: SYSCALL arch=c000003e syscall=46 success=yes exit=6868 a0=3 a1=7ffd09159510 a2=0 a3=7ffd091594fc items=0 ppid=2768 pid=2918 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:55.142000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Apr 12 18:48:55.152000 audit[2917]: NETFILTER_CFG table=nat:66 family=2 entries=15 op=nft_register_chain pid=2917 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Apr 12 18:48:55.152000 audit[2917]: SYSCALL arch=c000003e syscall=46 success=yes exit=5084 a0=3 a1=7ffd98e29700 a2=0 a3=7ffd98e296ec items=0 ppid=2768 pid=2917 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:55.152000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Apr 12 18:48:55.160000 audit[2916]: NETFILTER_CFG table=raw:67 family=2 entries=19 op=nft_register_chain pid=2916 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Apr 12 18:48:55.160000 audit[2916]: SYSCALL arch=c000003e syscall=46 success=yes exit=6992 a0=3 a1=7ffd3833dcc0 a2=0 a3=7ffd3833dcac items=0 ppid=2768 pid=2916 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:55.160000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Apr 12 18:48:55.168000 audit[2922]: NETFILTER_CFG table=filter:68 family=2 entries=39 op=nft_register_chain pid=2922 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Apr 12 18:48:55.168000 audit[2922]: SYSCALL arch=c000003e syscall=46 success=yes exit=18968 a0=3 a1=7fff1afc46b0 a2=0 a3=7fff1afc469c items=0 ppid=2768 pid=2922 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:55.168000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Apr 12 18:48:55.751890 kubelet[2095]: E0412 18:48:55.751844 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:55.809984 systemd-networkd[1453]: vxlan.calico: Link UP Apr 12 18:48:55.809993 systemd-networkd[1453]: vxlan.calico: Gained carrier Apr 12 18:48:55.812358 (udev-worker)[2899]: Network interface NamePolicy= disabled on kernel command line. Apr 12 18:48:56.752710 kubelet[2095]: E0412 18:48:56.752670 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:57.021256 update_engine[1624]: I0412 18:48:57.021121 1624 update_attempter.cc:509] Updating boot flags... Apr 12 18:48:57.081483 systemd-networkd[1453]: vxlan.calico: Gained IPv6LL Apr 12 18:48:57.753004 kubelet[2095]: E0412 18:48:57.752953 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:58.220827 amazon-ssm-agent[1610]: 2024-04-12 18:48:58 INFO [MessagingDeliveryService] [Association] Schedule manager refreshed with 0 associations, 0 new associations associated Apr 12 18:48:58.753973 kubelet[2095]: E0412 18:48:58.753920 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:58.988585 env[1629]: time="2024-04-12T18:48:58.985524763Z" level=info msg="StopPodSandbox for \"c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98\"" Apr 12 18:48:59.228464 env[1629]: 2024-04-12 18:48:59.162 [INFO][3038] k8s.go 585: Cleaning up netns ContainerID="c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" Apr 12 18:48:59.228464 env[1629]: 2024-04-12 18:48:59.162 [INFO][3038] dataplane_linux.go 530: Deleting workload's device in netns. ContainerID="c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" iface="eth0" netns="/var/run/netns/cni-cebea7d5-45c9-0941-41c9-e046a5ba556d" Apr 12 18:48:59.228464 env[1629]: 2024-04-12 18:48:59.163 [INFO][3038] dataplane_linux.go 541: Entered netns, deleting veth. ContainerID="c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" iface="eth0" netns="/var/run/netns/cni-cebea7d5-45c9-0941-41c9-e046a5ba556d" Apr 12 18:48:59.228464 env[1629]: 2024-04-12 18:48:59.164 [INFO][3038] dataplane_linux.go 568: Workload's veth was already gone. Nothing to do. ContainerID="c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" iface="eth0" netns="/var/run/netns/cni-cebea7d5-45c9-0941-41c9-e046a5ba556d" Apr 12 18:48:59.228464 env[1629]: 2024-04-12 18:48:59.164 [INFO][3038] k8s.go 592: Releasing IP address(es) ContainerID="c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" Apr 12 18:48:59.228464 env[1629]: 2024-04-12 18:48:59.164 [INFO][3038] utils.go 188: Calico CNI releasing IP address ContainerID="c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" Apr 12 18:48:59.228464 env[1629]: 2024-04-12 18:48:59.204 [INFO][3044] ipam_plugin.go 415: Releasing address using handleID ContainerID="c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" HandleID="k8s-pod-network.c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" Workload="172.31.22.61-k8s-csi--node--driver--7zlkf-eth0" Apr 12 18:48:59.228464 env[1629]: 2024-04-12 18:48:59.204 [INFO][3044] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Apr 12 18:48:59.228464 env[1629]: 2024-04-12 18:48:59.204 [INFO][3044] ipam_plugin.go 371: Acquired host-wide IPAM lock. Apr 12 18:48:59.228464 env[1629]: 2024-04-12 18:48:59.214 [WARNING][3044] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" HandleID="k8s-pod-network.c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" Workload="172.31.22.61-k8s-csi--node--driver--7zlkf-eth0" Apr 12 18:48:59.228464 env[1629]: 2024-04-12 18:48:59.214 [INFO][3044] ipam_plugin.go 443: Releasing address using workloadID ContainerID="c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" HandleID="k8s-pod-network.c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" Workload="172.31.22.61-k8s-csi--node--driver--7zlkf-eth0" Apr 12 18:48:59.228464 env[1629]: 2024-04-12 18:48:59.222 [INFO][3044] ipam_plugin.go 377: Released host-wide IPAM lock. Apr 12 18:48:59.228464 env[1629]: 2024-04-12 18:48:59.225 [INFO][3038] k8s.go 598: Teardown processing complete. ContainerID="c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" Apr 12 18:48:59.235018 env[1629]: time="2024-04-12T18:48:59.228762142Z" level=info msg="TearDown network for sandbox \"c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98\" successfully" Apr 12 18:48:59.235018 env[1629]: time="2024-04-12T18:48:59.228806266Z" level=info msg="StopPodSandbox for \"c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98\" returns successfully" Apr 12 18:48:59.235018 env[1629]: time="2024-04-12T18:48:59.230538387Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-7zlkf,Uid:2a04af6d-d9f0-41d0-896d-41bdc4c7d554,Namespace:calico-system,Attempt:1,}" Apr 12 18:48:59.231673 systemd[1]: run-netns-cni\x2dcebea7d5\x2d45c9\x2d0941\x2d41c9\x2de046a5ba556d.mount: Deactivated successfully. Apr 12 18:48:59.545889 systemd-networkd[1453]: cali7deb738e3aa: Link UP Apr 12 18:48:59.554384 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Apr 12 18:48:59.554905 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali7deb738e3aa: link becomes ready Apr 12 18:48:59.554181 systemd-networkd[1453]: cali7deb738e3aa: Gained carrier Apr 12 18:48:59.584334 env[1629]: 2024-04-12 18:48:59.387 [INFO][3050] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.22.61-k8s-csi--node--driver--7zlkf-eth0 csi-node-driver- calico-system 2a04af6d-d9f0-41d0-896d-41bdc4c7d554 928 0 2024-04-12 18:48:28 +0000 UTC map[app.kubernetes.io/name:csi-node-driver controller-revision-hash:54c68f759 k8s-app:csi-node-driver name:csi-node-driver pod-template-generation:1 projectcalico.org/namespace:calico-system projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 172.31.22.61 csi-node-driver-7zlkf eth0 default [] [] [kns.calico-system ksa.calico-system.default] cali7deb738e3aa [] []}} ContainerID="751b4cfeca00955eeb5306fc04c463374e7da28a9b44844466ae13869949442a" Namespace="calico-system" Pod="csi-node-driver-7zlkf" WorkloadEndpoint="172.31.22.61-k8s-csi--node--driver--7zlkf-" Apr 12 18:48:59.584334 env[1629]: 2024-04-12 18:48:59.387 [INFO][3050] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="751b4cfeca00955eeb5306fc04c463374e7da28a9b44844466ae13869949442a" Namespace="calico-system" Pod="csi-node-driver-7zlkf" WorkloadEndpoint="172.31.22.61-k8s-csi--node--driver--7zlkf-eth0" Apr 12 18:48:59.584334 env[1629]: 2024-04-12 18:48:59.443 [INFO][3061] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="751b4cfeca00955eeb5306fc04c463374e7da28a9b44844466ae13869949442a" HandleID="k8s-pod-network.751b4cfeca00955eeb5306fc04c463374e7da28a9b44844466ae13869949442a" Workload="172.31.22.61-k8s-csi--node--driver--7zlkf-eth0" Apr 12 18:48:59.584334 env[1629]: 2024-04-12 18:48:59.463 [INFO][3061] ipam_plugin.go 268: Auto assigning IP ContainerID="751b4cfeca00955eeb5306fc04c463374e7da28a9b44844466ae13869949442a" HandleID="k8s-pod-network.751b4cfeca00955eeb5306fc04c463374e7da28a9b44844466ae13869949442a" Workload="172.31.22.61-k8s-csi--node--driver--7zlkf-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0xc0002b00b0), Attrs:map[string]string{"namespace":"calico-system", "node":"172.31.22.61", "pod":"csi-node-driver-7zlkf", "timestamp":"2024-04-12 18:48:59.443957754 +0000 UTC"}, Hostname:"172.31.22.61", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Apr 12 18:48:59.584334 env[1629]: 2024-04-12 18:48:59.463 [INFO][3061] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Apr 12 18:48:59.584334 env[1629]: 2024-04-12 18:48:59.463 [INFO][3061] ipam_plugin.go 371: Acquired host-wide IPAM lock. Apr 12 18:48:59.584334 env[1629]: 2024-04-12 18:48:59.463 [INFO][3061] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.22.61' Apr 12 18:48:59.584334 env[1629]: 2024-04-12 18:48:59.466 [INFO][3061] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.751b4cfeca00955eeb5306fc04c463374e7da28a9b44844466ae13869949442a" host="172.31.22.61" Apr 12 18:48:59.584334 env[1629]: 2024-04-12 18:48:59.475 [INFO][3061] ipam.go 372: Looking up existing affinities for host host="172.31.22.61" Apr 12 18:48:59.584334 env[1629]: 2024-04-12 18:48:59.482 [INFO][3061] ipam.go 489: Trying affinity for 192.168.81.64/26 host="172.31.22.61" Apr 12 18:48:59.584334 env[1629]: 2024-04-12 18:48:59.485 [INFO][3061] ipam.go 155: Attempting to load block cidr=192.168.81.64/26 host="172.31.22.61" Apr 12 18:48:59.584334 env[1629]: 2024-04-12 18:48:59.490 [INFO][3061] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.81.64/26 host="172.31.22.61" Apr 12 18:48:59.584334 env[1629]: 2024-04-12 18:48:59.490 [INFO][3061] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.81.64/26 handle="k8s-pod-network.751b4cfeca00955eeb5306fc04c463374e7da28a9b44844466ae13869949442a" host="172.31.22.61" Apr 12 18:48:59.584334 env[1629]: 2024-04-12 18:48:59.492 [INFO][3061] ipam.go 1682: Creating new handle: k8s-pod-network.751b4cfeca00955eeb5306fc04c463374e7da28a9b44844466ae13869949442a Apr 12 18:48:59.584334 env[1629]: 2024-04-12 18:48:59.503 [INFO][3061] ipam.go 1203: Writing block in order to claim IPs block=192.168.81.64/26 handle="k8s-pod-network.751b4cfeca00955eeb5306fc04c463374e7da28a9b44844466ae13869949442a" host="172.31.22.61" Apr 12 18:48:59.584334 env[1629]: 2024-04-12 18:48:59.537 [INFO][3061] ipam.go 1216: Successfully claimed IPs: [192.168.81.65/26] block=192.168.81.64/26 handle="k8s-pod-network.751b4cfeca00955eeb5306fc04c463374e7da28a9b44844466ae13869949442a" host="172.31.22.61" Apr 12 18:48:59.584334 env[1629]: 2024-04-12 18:48:59.537 [INFO][3061] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.81.65/26] handle="k8s-pod-network.751b4cfeca00955eeb5306fc04c463374e7da28a9b44844466ae13869949442a" host="172.31.22.61" Apr 12 18:48:59.584334 env[1629]: 2024-04-12 18:48:59.538 [INFO][3061] ipam_plugin.go 377: Released host-wide IPAM lock. Apr 12 18:48:59.584334 env[1629]: 2024-04-12 18:48:59.538 [INFO][3061] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.81.65/26] IPv6=[] ContainerID="751b4cfeca00955eeb5306fc04c463374e7da28a9b44844466ae13869949442a" HandleID="k8s-pod-network.751b4cfeca00955eeb5306fc04c463374e7da28a9b44844466ae13869949442a" Workload="172.31.22.61-k8s-csi--node--driver--7zlkf-eth0" Apr 12 18:48:59.591506 env[1629]: 2024-04-12 18:48:59.541 [INFO][3050] k8s.go 385: Populated endpoint ContainerID="751b4cfeca00955eeb5306fc04c463374e7da28a9b44844466ae13869949442a" Namespace="calico-system" Pod="csi-node-driver-7zlkf" WorkloadEndpoint="172.31.22.61-k8s-csi--node--driver--7zlkf-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.61-k8s-csi--node--driver--7zlkf-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"2a04af6d-d9f0-41d0-896d-41bdc4c7d554", ResourceVersion:"928", Generation:0, CreationTimestamp:time.Date(2024, time.April, 12, 18, 48, 28, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"54c68f759", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.61", ContainerID:"", Pod:"csi-node-driver-7zlkf", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.81.65/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"cali7deb738e3aa", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Apr 12 18:48:59.591506 env[1629]: 2024-04-12 18:48:59.542 [INFO][3050] k8s.go 386: Calico CNI using IPs: [192.168.81.65/32] ContainerID="751b4cfeca00955eeb5306fc04c463374e7da28a9b44844466ae13869949442a" Namespace="calico-system" Pod="csi-node-driver-7zlkf" WorkloadEndpoint="172.31.22.61-k8s-csi--node--driver--7zlkf-eth0" Apr 12 18:48:59.591506 env[1629]: 2024-04-12 18:48:59.542 [INFO][3050] dataplane_linux.go 68: Setting the host side veth name to cali7deb738e3aa ContainerID="751b4cfeca00955eeb5306fc04c463374e7da28a9b44844466ae13869949442a" Namespace="calico-system" Pod="csi-node-driver-7zlkf" WorkloadEndpoint="172.31.22.61-k8s-csi--node--driver--7zlkf-eth0" Apr 12 18:48:59.591506 env[1629]: 2024-04-12 18:48:59.556 [INFO][3050] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="751b4cfeca00955eeb5306fc04c463374e7da28a9b44844466ae13869949442a" Namespace="calico-system" Pod="csi-node-driver-7zlkf" WorkloadEndpoint="172.31.22.61-k8s-csi--node--driver--7zlkf-eth0" Apr 12 18:48:59.591506 env[1629]: 2024-04-12 18:48:59.557 [INFO][3050] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="751b4cfeca00955eeb5306fc04c463374e7da28a9b44844466ae13869949442a" Namespace="calico-system" Pod="csi-node-driver-7zlkf" WorkloadEndpoint="172.31.22.61-k8s-csi--node--driver--7zlkf-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.61-k8s-csi--node--driver--7zlkf-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"2a04af6d-d9f0-41d0-896d-41bdc4c7d554", ResourceVersion:"928", Generation:0, CreationTimestamp:time.Date(2024, time.April, 12, 18, 48, 28, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"54c68f759", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.61", ContainerID:"751b4cfeca00955eeb5306fc04c463374e7da28a9b44844466ae13869949442a", Pod:"csi-node-driver-7zlkf", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.81.65/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"cali7deb738e3aa", MAC:"3e:1c:4b:42:4b:de", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Apr 12 18:48:59.591506 env[1629]: 2024-04-12 18:48:59.581 [INFO][3050] k8s.go 498: Wrote updated endpoint to datastore ContainerID="751b4cfeca00955eeb5306fc04c463374e7da28a9b44844466ae13869949442a" Namespace="calico-system" Pod="csi-node-driver-7zlkf" WorkloadEndpoint="172.31.22.61-k8s-csi--node--driver--7zlkf-eth0" Apr 12 18:48:59.628298 env[1629]: time="2024-04-12T18:48:59.627969127Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Apr 12 18:48:59.628298 env[1629]: time="2024-04-12T18:48:59.628025164Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Apr 12 18:48:59.628298 env[1629]: time="2024-04-12T18:48:59.628041633Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Apr 12 18:48:59.629059 env[1629]: time="2024-04-12T18:48:59.628957089Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/751b4cfeca00955eeb5306fc04c463374e7da28a9b44844466ae13869949442a pid=3088 runtime=io.containerd.runc.v2 Apr 12 18:48:59.660157 systemd[1]: Started cri-containerd-751b4cfeca00955eeb5306fc04c463374e7da28a9b44844466ae13869949442a.scope. Apr 12 18:48:59.670517 systemd[1]: run-containerd-runc-k8s.io-751b4cfeca00955eeb5306fc04c463374e7da28a9b44844466ae13869949442a-runc.46upra.mount: Deactivated successfully. Apr 12 18:48:59.679000 audit[3107]: NETFILTER_CFG table=filter:69 family=2 entries=36 op=nft_register_chain pid=3107 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Apr 12 18:48:59.687080 kernel: kauditd_printk_skb: 157 callbacks suppressed Apr 12 18:48:59.687245 kernel: audit: type=1325 audit(1712947739.679:760): table=filter:69 family=2 entries=36 op=nft_register_chain pid=3107 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Apr 12 18:48:59.679000 audit[3107]: SYSCALL arch=c000003e syscall=46 success=yes exit=20404 a0=3 a1=7ffe78a2e500 a2=0 a3=7ffe78a2e4ec items=0 ppid=2768 pid=3107 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:59.679000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Apr 12 18:48:59.704440 kernel: audit: type=1300 audit(1712947739.679:760): arch=c000003e syscall=46 success=yes exit=20404 a0=3 a1=7ffe78a2e500 a2=0 a3=7ffe78a2e4ec items=0 ppid=2768 pid=3107 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:59.704569 kernel: audit: type=1327 audit(1712947739.679:760): proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Apr 12 18:48:59.704000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.716511 kernel: audit: type=1400 audit(1712947739.704:761): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.716963 kernel: audit: type=1400 audit(1712947739.704:762): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.704000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.722081 kernel: audit: type=1400 audit(1712947739.704:763): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.704000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.704000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.704000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.735547 kernel: audit: type=1400 audit(1712947739.704:764): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.735683 kernel: audit: type=1400 audit(1712947739.704:765): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.749633 kernel: audit: type=1400 audit(1712947739.704:766): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.704000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.754604 kubelet[2095]: E0412 18:48:59.754535 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:48:59.704000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.766415 kernel: audit: type=1400 audit(1712947739.704:767): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.704000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.704000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.710000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.710000 audit: BPF prog-id=94 op=LOAD Apr 12 18:48:59.711000 audit[3097]: AVC avc: denied { bpf } for pid=3097 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.711000 audit[3097]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c000145c48 a2=10 a3=1c items=0 ppid=3088 pid=3097 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:59.711000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3735316234636665636130303935356565623533303666633034633436 Apr 12 18:48:59.711000 audit[3097]: AVC avc: denied { perfmon } for pid=3097 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.711000 audit[3097]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001456b0 a2=3c a3=c items=0 ppid=3088 pid=3097 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:59.711000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3735316234636665636130303935356565623533303666633034633436 Apr 12 18:48:59.711000 audit[3097]: AVC avc: denied { bpf } for pid=3097 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.711000 audit[3097]: AVC avc: denied { bpf } for pid=3097 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.711000 audit[3097]: AVC avc: denied { bpf } for pid=3097 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.711000 audit[3097]: AVC avc: denied { perfmon } for pid=3097 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.711000 audit[3097]: AVC avc: denied { perfmon } for pid=3097 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.711000 audit[3097]: AVC avc: denied { perfmon } for pid=3097 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.711000 audit[3097]: AVC avc: denied { perfmon } for pid=3097 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.711000 audit[3097]: AVC avc: denied { perfmon } for pid=3097 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.711000 audit[3097]: AVC avc: denied { bpf } for pid=3097 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.711000 audit[3097]: AVC avc: denied { bpf } for pid=3097 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.711000 audit: BPF prog-id=95 op=LOAD Apr 12 18:48:59.711000 audit[3097]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001459d8 a2=78 a3=c0002a9d10 items=0 ppid=3088 pid=3097 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:59.711000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3735316234636665636130303935356565623533303666633034633436 Apr 12 18:48:59.716000 audit[3097]: AVC avc: denied { bpf } for pid=3097 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.716000 audit[3097]: AVC avc: denied { bpf } for pid=3097 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.716000 audit[3097]: AVC avc: denied { perfmon } for pid=3097 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.716000 audit[3097]: AVC avc: denied { perfmon } for pid=3097 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.716000 audit[3097]: AVC avc: denied { perfmon } for pid=3097 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.716000 audit[3097]: AVC avc: denied { perfmon } for pid=3097 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.716000 audit[3097]: AVC avc: denied { perfmon } for pid=3097 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.716000 audit[3097]: AVC avc: denied { bpf } for pid=3097 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.716000 audit[3097]: AVC avc: denied { bpf } for pid=3097 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.716000 audit: BPF prog-id=96 op=LOAD Apr 12 18:48:59.716000 audit[3097]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c000145770 a2=78 a3=c0002a9d58 items=0 ppid=3088 pid=3097 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:59.716000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3735316234636665636130303935356565623533303666633034633436 Apr 12 18:48:59.716000 audit: BPF prog-id=96 op=UNLOAD Apr 12 18:48:59.716000 audit: BPF prog-id=95 op=UNLOAD Apr 12 18:48:59.716000 audit[3097]: AVC avc: denied { bpf } for pid=3097 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.716000 audit[3097]: AVC avc: denied { bpf } for pid=3097 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.716000 audit[3097]: AVC avc: denied { bpf } for pid=3097 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.716000 audit[3097]: AVC avc: denied { perfmon } for pid=3097 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.716000 audit[3097]: AVC avc: denied { perfmon } for pid=3097 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.716000 audit[3097]: AVC avc: denied { perfmon } for pid=3097 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.716000 audit[3097]: AVC avc: denied { perfmon } for pid=3097 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.716000 audit[3097]: AVC avc: denied { perfmon } for pid=3097 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.716000 audit[3097]: AVC avc: denied { bpf } for pid=3097 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.716000 audit[3097]: AVC avc: denied { bpf } for pid=3097 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:48:59.716000 audit: BPF prog-id=97 op=LOAD Apr 12 18:48:59.716000 audit[3097]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c000145c30 a2=78 a3=c000300168 items=0 ppid=3088 pid=3097 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:48:59.716000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3735316234636665636130303935356565623533303666633034633436 Apr 12 18:48:59.775614 env[1629]: time="2024-04-12T18:48:59.774556474Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-7zlkf,Uid:2a04af6d-d9f0-41d0-896d-41bdc4c7d554,Namespace:calico-system,Attempt:1,} returns sandbox id \"751b4cfeca00955eeb5306fc04c463374e7da28a9b44844466ae13869949442a\"" Apr 12 18:48:59.776805 env[1629]: time="2024-04-12T18:48:59.776754552Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/csi:v3.27.3\"" Apr 12 18:49:00.754697 kubelet[2095]: E0412 18:49:00.754646 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:00.958671 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2384351638.mount: Deactivated successfully. Apr 12 18:49:01.096605 systemd-networkd[1453]: cali7deb738e3aa: Gained IPv6LL Apr 12 18:49:01.755661 kubelet[2095]: E0412 18:49:01.755592 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:01.826659 env[1629]: time="2024-04-12T18:49:01.826599978Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/csi:v3.27.3,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:49:01.833382 env[1629]: time="2024-04-12T18:49:01.833335132Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:f457bd778a36f01fbbc41cd8b9ac45cf5e7e3a09e4d619cfa819328acd45ea0b,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:49:01.847064 env[1629]: time="2024-04-12T18:49:01.846147548Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/csi:v3.27.3,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:49:01.853186 env[1629]: time="2024-04-12T18:49:01.853134583Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/csi@sha256:e6e9be3e67df7388eae74d419fff785fdb35b0c3456e3d27a0251c7bdb55f0fd,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:49:01.856251 env[1629]: time="2024-04-12T18:49:01.856183765Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/csi:v3.27.3\" returns image reference \"sha256:f457bd778a36f01fbbc41cd8b9ac45cf5e7e3a09e4d619cfa819328acd45ea0b\"" Apr 12 18:49:01.878170 env[1629]: time="2024-04-12T18:49:01.878117211Z" level=info msg="CreateContainer within sandbox \"751b4cfeca00955eeb5306fc04c463374e7da28a9b44844466ae13869949442a\" for container &ContainerMetadata{Name:calico-csi,Attempt:0,}" Apr 12 18:49:01.922395 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2166599563.mount: Deactivated successfully. Apr 12 18:49:01.932812 env[1629]: time="2024-04-12T18:49:01.932755913Z" level=info msg="CreateContainer within sandbox \"751b4cfeca00955eeb5306fc04c463374e7da28a9b44844466ae13869949442a\" for &ContainerMetadata{Name:calico-csi,Attempt:0,} returns container id \"1e507f8cb27c51c8755d0540bd3fe395a8deb7330e8e5ddc8df23acea233c727\"" Apr 12 18:49:01.933941 env[1629]: time="2024-04-12T18:49:01.933813048Z" level=info msg="StartContainer for \"1e507f8cb27c51c8755d0540bd3fe395a8deb7330e8e5ddc8df23acea233c727\"" Apr 12 18:49:02.006283 systemd[1]: Started cri-containerd-1e507f8cb27c51c8755d0540bd3fe395a8deb7330e8e5ddc8df23acea233c727.scope. Apr 12 18:49:02.031000 audit[3136]: AVC avc: denied { perfmon } for pid=3136 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:02.031000 audit[3136]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c0001976b0 a2=3c a3=7f9e8d21e598 items=0 ppid=3088 pid=3136 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:02.031000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3165353037663863623237633531633837353564303534306264336665 Apr 12 18:49:02.031000 audit[3136]: AVC avc: denied { bpf } for pid=3136 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:02.031000 audit[3136]: AVC avc: denied { bpf } for pid=3136 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:02.031000 audit[3136]: AVC avc: denied { bpf } for pid=3136 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:02.031000 audit[3136]: AVC avc: denied { perfmon } for pid=3136 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:02.031000 audit[3136]: AVC avc: denied { perfmon } for pid=3136 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:02.031000 audit[3136]: AVC avc: denied { perfmon } for pid=3136 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:02.031000 audit[3136]: AVC avc: denied { perfmon } for pid=3136 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:02.031000 audit[3136]: AVC avc: denied { perfmon } for pid=3136 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:02.031000 audit[3136]: AVC avc: denied { bpf } for pid=3136 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:02.031000 audit[3136]: AVC avc: denied { bpf } for pid=3136 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:02.031000 audit: BPF prog-id=98 op=LOAD Apr 12 18:49:02.031000 audit[3136]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c0001979d8 a2=78 a3=c0000f5ea8 items=0 ppid=3088 pid=3136 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:02.031000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3165353037663863623237633531633837353564303534306264336665 Apr 12 18:49:02.031000 audit[3136]: AVC avc: denied { bpf } for pid=3136 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:02.031000 audit[3136]: AVC avc: denied { bpf } for pid=3136 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:02.031000 audit[3136]: AVC avc: denied { perfmon } for pid=3136 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:02.031000 audit[3136]: AVC avc: denied { perfmon } for pid=3136 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:02.031000 audit[3136]: AVC avc: denied { perfmon } for pid=3136 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:02.031000 audit[3136]: AVC avc: denied { perfmon } for pid=3136 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:02.031000 audit[3136]: AVC avc: denied { perfmon } for pid=3136 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:02.031000 audit[3136]: AVC avc: denied { bpf } for pid=3136 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:02.031000 audit[3136]: AVC avc: denied { bpf } for pid=3136 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:02.031000 audit: BPF prog-id=99 op=LOAD Apr 12 18:49:02.031000 audit[3136]: SYSCALL arch=c000003e syscall=321 success=yes exit=17 a0=5 a1=c000197770 a2=78 a3=c0000f5ef8 items=0 ppid=3088 pid=3136 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:02.031000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3165353037663863623237633531633837353564303534306264336665 Apr 12 18:49:02.031000 audit: BPF prog-id=99 op=UNLOAD Apr 12 18:49:02.031000 audit: BPF prog-id=98 op=UNLOAD Apr 12 18:49:02.031000 audit[3136]: AVC avc: denied { bpf } for pid=3136 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:02.031000 audit[3136]: AVC avc: denied { bpf } for pid=3136 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:02.031000 audit[3136]: AVC avc: denied { bpf } for pid=3136 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:02.031000 audit[3136]: AVC avc: denied { perfmon } for pid=3136 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:02.031000 audit[3136]: AVC avc: denied { perfmon } for pid=3136 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:02.031000 audit[3136]: AVC avc: denied { perfmon } for pid=3136 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:02.031000 audit[3136]: AVC avc: denied { perfmon } for pid=3136 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:02.031000 audit[3136]: AVC avc: denied { perfmon } for pid=3136 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:02.031000 audit[3136]: AVC avc: denied { bpf } for pid=3136 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:02.031000 audit[3136]: AVC avc: denied { bpf } for pid=3136 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:02.031000 audit: BPF prog-id=100 op=LOAD Apr 12 18:49:02.031000 audit[3136]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c000197c30 a2=78 a3=c0000f5f88 items=0 ppid=3088 pid=3136 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:02.031000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3165353037663863623237633531633837353564303534306264336665 Apr 12 18:49:02.061059 env[1629]: time="2024-04-12T18:49:02.060999050Z" level=info msg="StartContainer for \"1e507f8cb27c51c8755d0540bd3fe395a8deb7330e8e5ddc8df23acea233c727\" returns successfully" Apr 12 18:49:02.075344 env[1629]: time="2024-04-12T18:49:02.075298015Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node-driver-registrar:v3.27.3\"" Apr 12 18:49:02.756977 kubelet[2095]: E0412 18:49:02.756918 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:02.986581 env[1629]: time="2024-04-12T18:49:02.986538242Z" level=info msg="StopPodSandbox for \"2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8\"" Apr 12 18:49:03.188033 env[1629]: 2024-04-12 18:49:03.097 [INFO][3177] k8s.go 585: Cleaning up netns ContainerID="2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" Apr 12 18:49:03.188033 env[1629]: 2024-04-12 18:49:03.101 [INFO][3177] dataplane_linux.go 530: Deleting workload's device in netns. ContainerID="2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" iface="eth0" netns="/var/run/netns/cni-f8017492-2c5e-d949-e589-73c6e8cd9306" Apr 12 18:49:03.188033 env[1629]: 2024-04-12 18:49:03.102 [INFO][3177] dataplane_linux.go 541: Entered netns, deleting veth. ContainerID="2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" iface="eth0" netns="/var/run/netns/cni-f8017492-2c5e-d949-e589-73c6e8cd9306" Apr 12 18:49:03.188033 env[1629]: 2024-04-12 18:49:03.104 [INFO][3177] dataplane_linux.go 568: Workload's veth was already gone. Nothing to do. ContainerID="2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" iface="eth0" netns="/var/run/netns/cni-f8017492-2c5e-d949-e589-73c6e8cd9306" Apr 12 18:49:03.188033 env[1629]: 2024-04-12 18:49:03.104 [INFO][3177] k8s.go 592: Releasing IP address(es) ContainerID="2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" Apr 12 18:49:03.188033 env[1629]: 2024-04-12 18:49:03.104 [INFO][3177] utils.go 188: Calico CNI releasing IP address ContainerID="2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" Apr 12 18:49:03.188033 env[1629]: 2024-04-12 18:49:03.159 [INFO][3183] ipam_plugin.go 415: Releasing address using handleID ContainerID="2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" HandleID="k8s-pod-network.2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" Workload="172.31.22.61-k8s-nginx--deployment--845c78c8b9--hb6z8-eth0" Apr 12 18:49:03.188033 env[1629]: 2024-04-12 18:49:03.159 [INFO][3183] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Apr 12 18:49:03.188033 env[1629]: 2024-04-12 18:49:03.159 [INFO][3183] ipam_plugin.go 371: Acquired host-wide IPAM lock. Apr 12 18:49:03.188033 env[1629]: 2024-04-12 18:49:03.178 [WARNING][3183] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" HandleID="k8s-pod-network.2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" Workload="172.31.22.61-k8s-nginx--deployment--845c78c8b9--hb6z8-eth0" Apr 12 18:49:03.188033 env[1629]: 2024-04-12 18:49:03.178 [INFO][3183] ipam_plugin.go 443: Releasing address using workloadID ContainerID="2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" HandleID="k8s-pod-network.2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" Workload="172.31.22.61-k8s-nginx--deployment--845c78c8b9--hb6z8-eth0" Apr 12 18:49:03.188033 env[1629]: 2024-04-12 18:49:03.185 [INFO][3183] ipam_plugin.go 377: Released host-wide IPAM lock. Apr 12 18:49:03.188033 env[1629]: 2024-04-12 18:49:03.186 [INFO][3177] k8s.go 598: Teardown processing complete. ContainerID="2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" Apr 12 18:49:03.192142 env[1629]: time="2024-04-12T18:49:03.188186131Z" level=info msg="TearDown network for sandbox \"2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8\" successfully" Apr 12 18:49:03.192142 env[1629]: time="2024-04-12T18:49:03.188222490Z" level=info msg="StopPodSandbox for \"2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8\" returns successfully" Apr 12 18:49:03.192142 env[1629]: time="2024-04-12T18:49:03.189225299Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-845c78c8b9-hb6z8,Uid:68df65ce-55e1-494e-843e-9a0c46a7b5e2,Namespace:default,Attempt:1,}" Apr 12 18:49:03.190256 systemd[1]: run-netns-cni\x2df8017492\x2d2c5e\x2dd949\x2de589\x2d73c6e8cd9306.mount: Deactivated successfully. Apr 12 18:49:03.442272 (udev-worker)[3208]: Network interface NamePolicy= disabled on kernel command line. Apr 12 18:49:03.449799 systemd-networkd[1453]: cali551e67570a7: Link UP Apr 12 18:49:03.454610 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Apr 12 18:49:03.454720 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali551e67570a7: link becomes ready Apr 12 18:49:03.457705 systemd-networkd[1453]: cali551e67570a7: Gained carrier Apr 12 18:49:03.476650 env[1629]: 2024-04-12 18:49:03.269 [INFO][3190] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.22.61-k8s-nginx--deployment--845c78c8b9--hb6z8-eth0 nginx-deployment-845c78c8b9- default 68df65ce-55e1-494e-843e-9a0c46a7b5e2 947 0 2024-04-12 18:48:48 +0000 UTC map[app:nginx pod-template-hash:845c78c8b9 projectcalico.org/namespace:default projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 172.31.22.61 nginx-deployment-845c78c8b9-hb6z8 eth0 default [] [] [kns.default ksa.default.default] cali551e67570a7 [] []}} ContainerID="5cb264d54e5b81b393ef962e02fc9a0699726c141e2e5f4a244e7be24d7f8444" Namespace="default" Pod="nginx-deployment-845c78c8b9-hb6z8" WorkloadEndpoint="172.31.22.61-k8s-nginx--deployment--845c78c8b9--hb6z8-" Apr 12 18:49:03.476650 env[1629]: 2024-04-12 18:49:03.269 [INFO][3190] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="5cb264d54e5b81b393ef962e02fc9a0699726c141e2e5f4a244e7be24d7f8444" Namespace="default" Pod="nginx-deployment-845c78c8b9-hb6z8" WorkloadEndpoint="172.31.22.61-k8s-nginx--deployment--845c78c8b9--hb6z8-eth0" Apr 12 18:49:03.476650 env[1629]: 2024-04-12 18:49:03.325 [INFO][3202] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="5cb264d54e5b81b393ef962e02fc9a0699726c141e2e5f4a244e7be24d7f8444" HandleID="k8s-pod-network.5cb264d54e5b81b393ef962e02fc9a0699726c141e2e5f4a244e7be24d7f8444" Workload="172.31.22.61-k8s-nginx--deployment--845c78c8b9--hb6z8-eth0" Apr 12 18:49:03.476650 env[1629]: 2024-04-12 18:49:03.344 [INFO][3202] ipam_plugin.go 268: Auto assigning IP ContainerID="5cb264d54e5b81b393ef962e02fc9a0699726c141e2e5f4a244e7be24d7f8444" HandleID="k8s-pod-network.5cb264d54e5b81b393ef962e02fc9a0699726c141e2e5f4a244e7be24d7f8444" Workload="172.31.22.61-k8s-nginx--deployment--845c78c8b9--hb6z8-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0xc0002ed000), Attrs:map[string]string{"namespace":"default", "node":"172.31.22.61", "pod":"nginx-deployment-845c78c8b9-hb6z8", "timestamp":"2024-04-12 18:49:03.325947821 +0000 UTC"}, Hostname:"172.31.22.61", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Apr 12 18:49:03.476650 env[1629]: 2024-04-12 18:49:03.344 [INFO][3202] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Apr 12 18:49:03.476650 env[1629]: 2024-04-12 18:49:03.344 [INFO][3202] ipam_plugin.go 371: Acquired host-wide IPAM lock. Apr 12 18:49:03.476650 env[1629]: 2024-04-12 18:49:03.344 [INFO][3202] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.22.61' Apr 12 18:49:03.476650 env[1629]: 2024-04-12 18:49:03.348 [INFO][3202] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.5cb264d54e5b81b393ef962e02fc9a0699726c141e2e5f4a244e7be24d7f8444" host="172.31.22.61" Apr 12 18:49:03.476650 env[1629]: 2024-04-12 18:49:03.368 [INFO][3202] ipam.go 372: Looking up existing affinities for host host="172.31.22.61" Apr 12 18:49:03.476650 env[1629]: 2024-04-12 18:49:03.387 [INFO][3202] ipam.go 489: Trying affinity for 192.168.81.64/26 host="172.31.22.61" Apr 12 18:49:03.476650 env[1629]: 2024-04-12 18:49:03.405 [INFO][3202] ipam.go 155: Attempting to load block cidr=192.168.81.64/26 host="172.31.22.61" Apr 12 18:49:03.476650 env[1629]: 2024-04-12 18:49:03.408 [INFO][3202] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.81.64/26 host="172.31.22.61" Apr 12 18:49:03.476650 env[1629]: 2024-04-12 18:49:03.409 [INFO][3202] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.81.64/26 handle="k8s-pod-network.5cb264d54e5b81b393ef962e02fc9a0699726c141e2e5f4a244e7be24d7f8444" host="172.31.22.61" Apr 12 18:49:03.476650 env[1629]: 2024-04-12 18:49:03.413 [INFO][3202] ipam.go 1682: Creating new handle: k8s-pod-network.5cb264d54e5b81b393ef962e02fc9a0699726c141e2e5f4a244e7be24d7f8444 Apr 12 18:49:03.476650 env[1629]: 2024-04-12 18:49:03.425 [INFO][3202] ipam.go 1203: Writing block in order to claim IPs block=192.168.81.64/26 handle="k8s-pod-network.5cb264d54e5b81b393ef962e02fc9a0699726c141e2e5f4a244e7be24d7f8444" host="172.31.22.61" Apr 12 18:49:03.476650 env[1629]: 2024-04-12 18:49:03.432 [INFO][3202] ipam.go 1216: Successfully claimed IPs: [192.168.81.66/26] block=192.168.81.64/26 handle="k8s-pod-network.5cb264d54e5b81b393ef962e02fc9a0699726c141e2e5f4a244e7be24d7f8444" host="172.31.22.61" Apr 12 18:49:03.476650 env[1629]: 2024-04-12 18:49:03.433 [INFO][3202] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.81.66/26] handle="k8s-pod-network.5cb264d54e5b81b393ef962e02fc9a0699726c141e2e5f4a244e7be24d7f8444" host="172.31.22.61" Apr 12 18:49:03.476650 env[1629]: 2024-04-12 18:49:03.433 [INFO][3202] ipam_plugin.go 377: Released host-wide IPAM lock. Apr 12 18:49:03.476650 env[1629]: 2024-04-12 18:49:03.433 [INFO][3202] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.81.66/26] IPv6=[] ContainerID="5cb264d54e5b81b393ef962e02fc9a0699726c141e2e5f4a244e7be24d7f8444" HandleID="k8s-pod-network.5cb264d54e5b81b393ef962e02fc9a0699726c141e2e5f4a244e7be24d7f8444" Workload="172.31.22.61-k8s-nginx--deployment--845c78c8b9--hb6z8-eth0" Apr 12 18:49:03.478014 env[1629]: 2024-04-12 18:49:03.435 [INFO][3190] k8s.go 385: Populated endpoint ContainerID="5cb264d54e5b81b393ef962e02fc9a0699726c141e2e5f4a244e7be24d7f8444" Namespace="default" Pod="nginx-deployment-845c78c8b9-hb6z8" WorkloadEndpoint="172.31.22.61-k8s-nginx--deployment--845c78c8b9--hb6z8-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.61-k8s-nginx--deployment--845c78c8b9--hb6z8-eth0", GenerateName:"nginx-deployment-845c78c8b9-", Namespace:"default", SelfLink:"", UID:"68df65ce-55e1-494e-843e-9a0c46a7b5e2", ResourceVersion:"947", Generation:0, CreationTimestamp:time.Date(2024, time.April, 12, 18, 48, 48, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"845c78c8b9", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.61", ContainerID:"", Pod:"nginx-deployment-845c78c8b9-hb6z8", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.81.66/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali551e67570a7", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Apr 12 18:49:03.478014 env[1629]: 2024-04-12 18:49:03.435 [INFO][3190] k8s.go 386: Calico CNI using IPs: [192.168.81.66/32] ContainerID="5cb264d54e5b81b393ef962e02fc9a0699726c141e2e5f4a244e7be24d7f8444" Namespace="default" Pod="nginx-deployment-845c78c8b9-hb6z8" WorkloadEndpoint="172.31.22.61-k8s-nginx--deployment--845c78c8b9--hb6z8-eth0" Apr 12 18:49:03.478014 env[1629]: 2024-04-12 18:49:03.435 [INFO][3190] dataplane_linux.go 68: Setting the host side veth name to cali551e67570a7 ContainerID="5cb264d54e5b81b393ef962e02fc9a0699726c141e2e5f4a244e7be24d7f8444" Namespace="default" Pod="nginx-deployment-845c78c8b9-hb6z8" WorkloadEndpoint="172.31.22.61-k8s-nginx--deployment--845c78c8b9--hb6z8-eth0" Apr 12 18:49:03.478014 env[1629]: 2024-04-12 18:49:03.462 [INFO][3190] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="5cb264d54e5b81b393ef962e02fc9a0699726c141e2e5f4a244e7be24d7f8444" Namespace="default" Pod="nginx-deployment-845c78c8b9-hb6z8" WorkloadEndpoint="172.31.22.61-k8s-nginx--deployment--845c78c8b9--hb6z8-eth0" Apr 12 18:49:03.478014 env[1629]: 2024-04-12 18:49:03.463 [INFO][3190] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="5cb264d54e5b81b393ef962e02fc9a0699726c141e2e5f4a244e7be24d7f8444" Namespace="default" Pod="nginx-deployment-845c78c8b9-hb6z8" WorkloadEndpoint="172.31.22.61-k8s-nginx--deployment--845c78c8b9--hb6z8-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.61-k8s-nginx--deployment--845c78c8b9--hb6z8-eth0", GenerateName:"nginx-deployment-845c78c8b9-", Namespace:"default", SelfLink:"", UID:"68df65ce-55e1-494e-843e-9a0c46a7b5e2", ResourceVersion:"947", Generation:0, CreationTimestamp:time.Date(2024, time.April, 12, 18, 48, 48, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"845c78c8b9", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.61", ContainerID:"5cb264d54e5b81b393ef962e02fc9a0699726c141e2e5f4a244e7be24d7f8444", Pod:"nginx-deployment-845c78c8b9-hb6z8", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.81.66/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali551e67570a7", MAC:"c6:33:1f:f4:aa:a7", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Apr 12 18:49:03.478014 env[1629]: 2024-04-12 18:49:03.474 [INFO][3190] k8s.go 498: Wrote updated endpoint to datastore ContainerID="5cb264d54e5b81b393ef962e02fc9a0699726c141e2e5f4a244e7be24d7f8444" Namespace="default" Pod="nginx-deployment-845c78c8b9-hb6z8" WorkloadEndpoint="172.31.22.61-k8s-nginx--deployment--845c78c8b9--hb6z8-eth0" Apr 12 18:49:03.502000 audit[3226]: NETFILTER_CFG table=filter:70 family=2 entries=40 op=nft_register_chain pid=3226 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Apr 12 18:49:03.502000 audit[3226]: SYSCALL arch=c000003e syscall=46 success=yes exit=21560 a0=3 a1=7ffebf3f8ef0 a2=0 a3=7ffebf3f8edc items=0 ppid=2768 pid=3226 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:03.502000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Apr 12 18:49:03.534814 env[1629]: time="2024-04-12T18:49:03.534257393Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Apr 12 18:49:03.535042 env[1629]: time="2024-04-12T18:49:03.535012349Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Apr 12 18:49:03.535144 env[1629]: time="2024-04-12T18:49:03.535123035Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Apr 12 18:49:03.535429 env[1629]: time="2024-04-12T18:49:03.535395531Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/5cb264d54e5b81b393ef962e02fc9a0699726c141e2e5f4a244e7be24d7f8444 pid=3234 runtime=io.containerd.runc.v2 Apr 12 18:49:03.613270 systemd[1]: Started cri-containerd-5cb264d54e5b81b393ef962e02fc9a0699726c141e2e5f4a244e7be24d7f8444.scope. Apr 12 18:49:03.643000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.643000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.644000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.644000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.644000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.644000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.644000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.644000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.644000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.644000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.644000 audit: BPF prog-id=101 op=LOAD Apr 12 18:49:03.645000 audit[3245]: AVC avc: denied { bpf } for pid=3245 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.645000 audit[3245]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c000197c48 a2=10 a3=1c items=0 ppid=3234 pid=3245 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:03.645000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3563623236346435346535623831623339336566393632653032666339 Apr 12 18:49:03.646000 audit[3245]: AVC avc: denied { perfmon } for pid=3245 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.646000 audit[3245]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001976b0 a2=3c a3=c items=0 ppid=3234 pid=3245 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:03.646000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3563623236346435346535623831623339336566393632653032666339 Apr 12 18:49:03.646000 audit[3245]: AVC avc: denied { bpf } for pid=3245 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.646000 audit[3245]: AVC avc: denied { bpf } for pid=3245 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.646000 audit[3245]: AVC avc: denied { bpf } for pid=3245 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.646000 audit[3245]: AVC avc: denied { perfmon } for pid=3245 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.646000 audit[3245]: AVC avc: denied { perfmon } for pid=3245 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.646000 audit[3245]: AVC avc: denied { perfmon } for pid=3245 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.646000 audit[3245]: AVC avc: denied { perfmon } for pid=3245 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.646000 audit[3245]: AVC avc: denied { perfmon } for pid=3245 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.646000 audit[3245]: AVC avc: denied { bpf } for pid=3245 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.646000 audit[3245]: AVC avc: denied { bpf } for pid=3245 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.646000 audit: BPF prog-id=102 op=LOAD Apr 12 18:49:03.646000 audit[3245]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001979d8 a2=78 a3=c0000a1ba0 items=0 ppid=3234 pid=3245 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:03.646000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3563623236346435346535623831623339336566393632653032666339 Apr 12 18:49:03.647000 audit[3245]: AVC avc: denied { bpf } for pid=3245 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.647000 audit[3245]: AVC avc: denied { bpf } for pid=3245 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.647000 audit[3245]: AVC avc: denied { perfmon } for pid=3245 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.647000 audit[3245]: AVC avc: denied { perfmon } for pid=3245 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.647000 audit[3245]: AVC avc: denied { perfmon } for pid=3245 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.647000 audit[3245]: AVC avc: denied { perfmon } for pid=3245 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.647000 audit[3245]: AVC avc: denied { perfmon } for pid=3245 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.647000 audit[3245]: AVC avc: denied { bpf } for pid=3245 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.647000 audit[3245]: AVC avc: denied { bpf } for pid=3245 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.647000 audit: BPF prog-id=103 op=LOAD Apr 12 18:49:03.647000 audit[3245]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c000197770 a2=78 a3=c0000a1be8 items=0 ppid=3234 pid=3245 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:03.647000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3563623236346435346535623831623339336566393632653032666339 Apr 12 18:49:03.649000 audit: BPF prog-id=103 op=UNLOAD Apr 12 18:49:03.649000 audit: BPF prog-id=102 op=UNLOAD Apr 12 18:49:03.649000 audit[3245]: AVC avc: denied { bpf } for pid=3245 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.649000 audit[3245]: AVC avc: denied { bpf } for pid=3245 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.649000 audit[3245]: AVC avc: denied { bpf } for pid=3245 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.649000 audit[3245]: AVC avc: denied { perfmon } for pid=3245 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.649000 audit[3245]: AVC avc: denied { perfmon } for pid=3245 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.649000 audit[3245]: AVC avc: denied { perfmon } for pid=3245 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.649000 audit[3245]: AVC avc: denied { perfmon } for pid=3245 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.649000 audit[3245]: AVC avc: denied { perfmon } for pid=3245 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.649000 audit[3245]: AVC avc: denied { bpf } for pid=3245 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.649000 audit[3245]: AVC avc: denied { bpf } for pid=3245 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:03.649000 audit: BPF prog-id=104 op=LOAD Apr 12 18:49:03.649000 audit[3245]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c000197c30 a2=78 a3=c0000a1ff8 items=0 ppid=3234 pid=3245 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:03.649000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3563623236346435346535623831623339336566393632653032666339 Apr 12 18:49:03.704409 env[1629]: time="2024-04-12T18:49:03.704252667Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-845c78c8b9-hb6z8,Uid:68df65ce-55e1-494e-843e-9a0c46a7b5e2,Namespace:default,Attempt:1,} returns sandbox id \"5cb264d54e5b81b393ef962e02fc9a0699726c141e2e5f4a244e7be24d7f8444\"" Apr 12 18:49:03.757674 kubelet[2095]: E0412 18:49:03.757635 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:03.947464 env[1629]: time="2024-04-12T18:49:03.947181344Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node-driver-registrar:v3.27.3,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:49:03.951644 env[1629]: time="2024-04-12T18:49:03.951568722Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:7ac3827a6231c88089a78b3c48feee265627f54838c750d32163d73364a5aae1,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:49:03.954185 env[1629]: time="2024-04-12T18:49:03.954143714Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/node-driver-registrar:v3.27.3,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:49:03.957825 env[1629]: time="2024-04-12T18:49:03.957641627Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node-driver-registrar@sha256:f3c7cf1e4b85038d77b3568a1103d3c5174b07bd4435b22a8891b167ef28a50a,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:49:03.959527 env[1629]: time="2024-04-12T18:49:03.959484511Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node-driver-registrar:v3.27.3\" returns image reference \"sha256:7ac3827a6231c88089a78b3c48feee265627f54838c750d32163d73364a5aae1\"" Apr 12 18:49:03.963654 env[1629]: time="2024-04-12T18:49:03.962617873Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\"" Apr 12 18:49:03.969400 env[1629]: time="2024-04-12T18:49:03.969355197Z" level=info msg="CreateContainer within sandbox \"751b4cfeca00955eeb5306fc04c463374e7da28a9b44844466ae13869949442a\" for container &ContainerMetadata{Name:csi-node-driver-registrar,Attempt:0,}" Apr 12 18:49:03.998196 env[1629]: time="2024-04-12T18:49:03.998140699Z" level=info msg="CreateContainer within sandbox \"751b4cfeca00955eeb5306fc04c463374e7da28a9b44844466ae13869949442a\" for &ContainerMetadata{Name:csi-node-driver-registrar,Attempt:0,} returns container id \"c17954c3427f5ee11dcec38243f91a9ff29159894ed3339a940ee8f83e4a8ad9\"" Apr 12 18:49:03.998992 env[1629]: time="2024-04-12T18:49:03.998963987Z" level=info msg="StartContainer for \"c17954c3427f5ee11dcec38243f91a9ff29159894ed3339a940ee8f83e4a8ad9\"" Apr 12 18:49:04.022750 systemd[1]: Started cri-containerd-c17954c3427f5ee11dcec38243f91a9ff29159894ed3339a940ee8f83e4a8ad9.scope. Apr 12 18:49:04.045000 audit[3279]: AVC avc: denied { perfmon } for pid=3279 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:04.045000 audit[3279]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c0001bd6b0 a2=3c a3=7f19101d5598 items=0 ppid=3088 pid=3279 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:04.045000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6331373935346333343237663565653131646365633338323433663931 Apr 12 18:49:04.045000 audit[3279]: AVC avc: denied { bpf } for pid=3279 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:04.045000 audit[3279]: AVC avc: denied { bpf } for pid=3279 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:04.045000 audit[3279]: AVC avc: denied { bpf } for pid=3279 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:04.045000 audit[3279]: AVC avc: denied { perfmon } for pid=3279 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:04.045000 audit[3279]: AVC avc: denied { perfmon } for pid=3279 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:04.045000 audit[3279]: AVC avc: denied { perfmon } for pid=3279 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:04.045000 audit[3279]: AVC avc: denied { perfmon } for pid=3279 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:04.045000 audit[3279]: AVC avc: denied { perfmon } for pid=3279 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:04.045000 audit[3279]: AVC avc: denied { bpf } for pid=3279 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:04.045000 audit[3279]: AVC avc: denied { bpf } for pid=3279 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:04.045000 audit: BPF prog-id=105 op=LOAD Apr 12 18:49:04.045000 audit[3279]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c0001bd9d8 a2=78 a3=c00038ea38 items=0 ppid=3088 pid=3279 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:04.045000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6331373935346333343237663565653131646365633338323433663931 Apr 12 18:49:04.045000 audit[3279]: AVC avc: denied { bpf } for pid=3279 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:04.045000 audit[3279]: AVC avc: denied { bpf } for pid=3279 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:04.045000 audit[3279]: AVC avc: denied { perfmon } for pid=3279 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:04.045000 audit[3279]: AVC avc: denied { perfmon } for pid=3279 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:04.045000 audit[3279]: AVC avc: denied { perfmon } for pid=3279 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:04.045000 audit[3279]: AVC avc: denied { perfmon } for pid=3279 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:04.045000 audit[3279]: AVC avc: denied { perfmon } for pid=3279 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:04.045000 audit[3279]: AVC avc: denied { bpf } for pid=3279 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:04.045000 audit[3279]: AVC avc: denied { bpf } for pid=3279 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:04.045000 audit: BPF prog-id=106 op=LOAD Apr 12 18:49:04.045000 audit[3279]: SYSCALL arch=c000003e syscall=321 success=yes exit=17 a0=5 a1=c0001bd770 a2=78 a3=c00038ea88 items=0 ppid=3088 pid=3279 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:04.045000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6331373935346333343237663565653131646365633338323433663931 Apr 12 18:49:04.045000 audit: BPF prog-id=106 op=UNLOAD Apr 12 18:49:04.045000 audit: BPF prog-id=105 op=UNLOAD Apr 12 18:49:04.045000 audit[3279]: AVC avc: denied { bpf } for pid=3279 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:04.045000 audit[3279]: AVC avc: denied { bpf } for pid=3279 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:04.045000 audit[3279]: AVC avc: denied { bpf } for pid=3279 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:04.045000 audit[3279]: AVC avc: denied { perfmon } for pid=3279 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:04.045000 audit[3279]: AVC avc: denied { perfmon } for pid=3279 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:04.045000 audit[3279]: AVC avc: denied { perfmon } for pid=3279 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:04.045000 audit[3279]: AVC avc: denied { perfmon } for pid=3279 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:04.045000 audit[3279]: AVC avc: denied { perfmon } for pid=3279 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:04.045000 audit[3279]: AVC avc: denied { bpf } for pid=3279 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:04.045000 audit[3279]: AVC avc: denied { bpf } for pid=3279 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:04.045000 audit: BPF prog-id=107 op=LOAD Apr 12 18:49:04.045000 audit[3279]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c0001bdc30 a2=78 a3=c00038eb18 items=0 ppid=3088 pid=3279 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:04.045000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6331373935346333343237663565653131646365633338323433663931 Apr 12 18:49:04.068777 env[1629]: time="2024-04-12T18:49:04.068700272Z" level=info msg="StartContainer for \"c17954c3427f5ee11dcec38243f91a9ff29159894ed3339a940ee8f83e4a8ad9\" returns successfully" Apr 12 18:49:04.145214 kubelet[2095]: I0412 18:49:04.145170 2095 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="calico-system/csi-node-driver-7zlkf" podStartSLOduration=31.960029167 podCreationTimestamp="2024-04-12 18:48:28 +0000 UTC" firstStartedPulling="2024-04-12 18:48:59.77644307 +0000 UTC m=+33.741540109" lastFinishedPulling="2024-04-12 18:49:03.961540517 +0000 UTC m=+37.926637554" observedRunningTime="2024-04-12 18:49:04.145031603 +0000 UTC m=+38.110128655" watchObservedRunningTime="2024-04-12 18:49:04.145126612 +0000 UTC m=+38.110223664" Apr 12 18:49:04.193952 systemd[1]: run-containerd-runc-k8s.io-5cb264d54e5b81b393ef962e02fc9a0699726c141e2e5f4a244e7be24d7f8444-runc.YNJn0V.mount: Deactivated successfully. Apr 12 18:49:04.550507 systemd-networkd[1453]: cali551e67570a7: Gained IPv6LL Apr 12 18:49:04.758627 kubelet[2095]: E0412 18:49:04.758551 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:04.864963 kubelet[2095]: I0412 18:49:04.863745 2095 csi_plugin.go:99] kubernetes.io/csi: Trying to validate a new CSI Driver with name: csi.tigera.io endpoint: /var/lib/kubelet/plugins/csi.tigera.io/csi.sock versions: 1.0.0 Apr 12 18:49:04.864963 kubelet[2095]: I0412 18:49:04.864661 2095 csi_plugin.go:112] kubernetes.io/csi: Register new plugin with name: csi.tigera.io at endpoint: /var/lib/kubelet/plugins/csi.tigera.io/csi.sock Apr 12 18:49:05.759386 kubelet[2095]: E0412 18:49:05.759337 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:06.719980 kubelet[2095]: E0412 18:49:06.719941 2095 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:06.760324 kubelet[2095]: E0412 18:49:06.760232 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:07.760731 kubelet[2095]: E0412 18:49:07.760664 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:08.055389 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1121360839.mount: Deactivated successfully. Apr 12 18:49:08.761394 kubelet[2095]: E0412 18:49:08.761353 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:09.375712 env[1629]: time="2024-04-12T18:49:09.375658301Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:49:09.379155 env[1629]: time="2024-04-12T18:49:09.379021140Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:7f0fd59e009436c3043ced784dce0efbc915d6479724090257ed5c8d7f7ece83,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:49:09.398688 env[1629]: time="2024-04-12T18:49:09.398639147Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:49:09.408613 env[1629]: time="2024-04-12T18:49:09.408562379Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/nginx@sha256:c55d27e57a0d92ca01e7aba1a1812f9c8cc73708ce69fb58d4a42b6416a95f38,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:49:09.410451 env[1629]: time="2024-04-12T18:49:09.410347068Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\" returns image reference \"sha256:7f0fd59e009436c3043ced784dce0efbc915d6479724090257ed5c8d7f7ece83\"" Apr 12 18:49:09.420172 env[1629]: time="2024-04-12T18:49:09.420128537Z" level=info msg="CreateContainer within sandbox \"5cb264d54e5b81b393ef962e02fc9a0699726c141e2e5f4a244e7be24d7f8444\" for container &ContainerMetadata{Name:nginx,Attempt:0,}" Apr 12 18:49:09.459419 env[1629]: time="2024-04-12T18:49:09.459366235Z" level=info msg="CreateContainer within sandbox \"5cb264d54e5b81b393ef962e02fc9a0699726c141e2e5f4a244e7be24d7f8444\" for &ContainerMetadata{Name:nginx,Attempt:0,} returns container id \"742dc15fb7436ecf8f71bab9cf83a561a058cb8876793f1831ff5b8f593b00c2\"" Apr 12 18:49:09.461159 env[1629]: time="2024-04-12T18:49:09.461109824Z" level=info msg="StartContainer for \"742dc15fb7436ecf8f71bab9cf83a561a058cb8876793f1831ff5b8f593b00c2\"" Apr 12 18:49:09.512674 systemd[1]: Started cri-containerd-742dc15fb7436ecf8f71bab9cf83a561a058cb8876793f1831ff5b8f593b00c2.scope. Apr 12 18:49:09.528000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.532163 kernel: kauditd_printk_skb: 196 callbacks suppressed Apr 12 18:49:09.532245 kernel: audit: type=1400 audit(1712947749.528:810): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.541244 kernel: audit: type=1400 audit(1712947749.528:811): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.528000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.528000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.528000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.552132 kernel: audit: type=1400 audit(1712947749.528:812): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.552225 kernel: audit: type=1400 audit(1712947749.528:813): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.558148 kernel: audit: type=1400 audit(1712947749.528:814): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.528000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.528000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.528000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.569267 kernel: audit: type=1400 audit(1712947749.528:815): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.569436 kernel: audit: type=1400 audit(1712947749.528:816): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.569508 kernel: audit: type=1400 audit(1712947749.528:817): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.528000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.528000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.578832 kernel: audit: type=1400 audit(1712947749.528:818): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.578980 kernel: audit: type=1400 audit(1712947749.528:819): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.528000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.528000 audit: BPF prog-id=108 op=LOAD Apr 12 18:49:09.532000 audit[3335]: AVC avc: denied { bpf } for pid=3335 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.532000 audit[3335]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c000197c48 a2=10 a3=1c items=0 ppid=3234 pid=3335 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:09.532000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3734326463313566623734333665636638663731626162396366383361 Apr 12 18:49:09.532000 audit[3335]: AVC avc: denied { perfmon } for pid=3335 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.532000 audit[3335]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001976b0 a2=3c a3=8 items=0 ppid=3234 pid=3335 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:09.532000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3734326463313566623734333665636638663731626162396366383361 Apr 12 18:49:09.532000 audit[3335]: AVC avc: denied { bpf } for pid=3335 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.532000 audit[3335]: AVC avc: denied { bpf } for pid=3335 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.532000 audit[3335]: AVC avc: denied { bpf } for pid=3335 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.532000 audit[3335]: AVC avc: denied { perfmon } for pid=3335 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.532000 audit[3335]: AVC avc: denied { perfmon } for pid=3335 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.532000 audit[3335]: AVC avc: denied { perfmon } for pid=3335 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.532000 audit[3335]: AVC avc: denied { perfmon } for pid=3335 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.532000 audit[3335]: AVC avc: denied { perfmon } for pid=3335 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.532000 audit[3335]: AVC avc: denied { bpf } for pid=3335 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.532000 audit[3335]: AVC avc: denied { bpf } for pid=3335 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.532000 audit: BPF prog-id=109 op=LOAD Apr 12 18:49:09.532000 audit[3335]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001979d8 a2=78 a3=c0000a0540 items=0 ppid=3234 pid=3335 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:09.532000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3734326463313566623734333665636638663731626162396366383361 Apr 12 18:49:09.540000 audit[3335]: AVC avc: denied { bpf } for pid=3335 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.540000 audit[3335]: AVC avc: denied { bpf } for pid=3335 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.540000 audit[3335]: AVC avc: denied { perfmon } for pid=3335 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.540000 audit[3335]: AVC avc: denied { perfmon } for pid=3335 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.540000 audit[3335]: AVC avc: denied { perfmon } for pid=3335 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.540000 audit[3335]: AVC avc: denied { perfmon } for pid=3335 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.540000 audit[3335]: AVC avc: denied { perfmon } for pid=3335 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.540000 audit[3335]: AVC avc: denied { bpf } for pid=3335 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.540000 audit[3335]: AVC avc: denied { bpf } for pid=3335 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.540000 audit: BPF prog-id=110 op=LOAD Apr 12 18:49:09.540000 audit[3335]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c000197770 a2=78 a3=c0000a0588 items=0 ppid=3234 pid=3335 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:09.540000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3734326463313566623734333665636638663731626162396366383361 Apr 12 18:49:09.540000 audit: BPF prog-id=110 op=UNLOAD Apr 12 18:49:09.540000 audit: BPF prog-id=109 op=UNLOAD Apr 12 18:49:09.541000 audit[3335]: AVC avc: denied { bpf } for pid=3335 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.541000 audit[3335]: AVC avc: denied { bpf } for pid=3335 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.541000 audit[3335]: AVC avc: denied { bpf } for pid=3335 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.541000 audit[3335]: AVC avc: denied { perfmon } for pid=3335 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.541000 audit[3335]: AVC avc: denied { perfmon } for pid=3335 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.541000 audit[3335]: AVC avc: denied { perfmon } for pid=3335 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.541000 audit[3335]: AVC avc: denied { perfmon } for pid=3335 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.541000 audit[3335]: AVC avc: denied { perfmon } for pid=3335 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.541000 audit[3335]: AVC avc: denied { bpf } for pid=3335 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.541000 audit[3335]: AVC avc: denied { bpf } for pid=3335 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:09.541000 audit: BPF prog-id=111 op=LOAD Apr 12 18:49:09.541000 audit[3335]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c000197c30 a2=78 a3=c0000a0998 items=0 ppid=3234 pid=3335 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:09.541000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3734326463313566623734333665636638663731626162396366383361 Apr 12 18:49:09.608845 env[1629]: time="2024-04-12T18:49:09.608782926Z" level=info msg="StartContainer for \"742dc15fb7436ecf8f71bab9cf83a561a058cb8876793f1831ff5b8f593b00c2\" returns successfully" Apr 12 18:49:09.762520 kubelet[2095]: E0412 18:49:09.762479 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:10.177783 kubelet[2095]: I0412 18:49:10.177747 2095 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="default/nginx-deployment-845c78c8b9-hb6z8" podStartSLOduration=16.472171727 podCreationTimestamp="2024-04-12 18:48:48 +0000 UTC" firstStartedPulling="2024-04-12 18:49:03.708356415 +0000 UTC m=+37.673453453" lastFinishedPulling="2024-04-12 18:49:09.41368103 +0000 UTC m=+43.378778074" observedRunningTime="2024-04-12 18:49:10.177437577 +0000 UTC m=+44.142534627" watchObservedRunningTime="2024-04-12 18:49:10.177496348 +0000 UTC m=+44.142593398" Apr 12 18:49:10.451045 systemd[1]: run-containerd-runc-k8s.io-742dc15fb7436ecf8f71bab9cf83a561a058cb8876793f1831ff5b8f593b00c2-runc.ovSFVB.mount: Deactivated successfully. Apr 12 18:49:10.763284 kubelet[2095]: E0412 18:49:10.763168 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:11.763553 kubelet[2095]: E0412 18:49:11.763500 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:12.763940 kubelet[2095]: E0412 18:49:12.763895 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:13.670000 audit[3386]: NETFILTER_CFG table=filter:71 family=2 entries=20 op=nft_register_rule pid=3386 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:49:13.670000 audit[3386]: SYSCALL arch=c000003e syscall=46 success=yes exit=11860 a0=3 a1=7ffdf2f59970 a2=0 a3=7ffdf2f5995c items=0 ppid=2332 pid=3386 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:13.670000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:49:13.674000 audit[3386]: NETFILTER_CFG table=nat:72 family=2 entries=20 op=nft_register_rule pid=3386 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:49:13.674000 audit[3386]: SYSCALL arch=c000003e syscall=46 success=yes exit=5772 a0=3 a1=7ffdf2f59970 a2=0 a3=0 items=0 ppid=2332 pid=3386 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:13.674000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:49:13.691000 audit[3390]: NETFILTER_CFG table=filter:73 family=2 entries=32 op=nft_register_rule pid=3390 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:49:13.691000 audit[3390]: SYSCALL arch=c000003e syscall=46 success=yes exit=11860 a0=3 a1=7fffbb43f390 a2=0 a3=7fffbb43f37c items=0 ppid=2332 pid=3390 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:13.691000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:49:13.693000 audit[3390]: NETFILTER_CFG table=nat:74 family=2 entries=20 op=nft_register_rule pid=3390 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:49:13.693000 audit[3390]: SYSCALL arch=c000003e syscall=46 success=yes exit=5772 a0=3 a1=7fffbb43f390 a2=0 a3=0 items=0 ppid=2332 pid=3390 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:13.693000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:49:13.764961 kubelet[2095]: E0412 18:49:13.764912 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:13.792085 kubelet[2095]: I0412 18:49:13.792052 2095 topology_manager.go:212] "Topology Admit Handler" Apr 12 18:49:13.800472 systemd[1]: Created slice kubepods-besteffort-pode09aa0c4_d418_41cc_bedc_9aa3fd7e02f8.slice. Apr 12 18:49:13.931663 kubelet[2095]: I0412 18:49:13.931456 2095 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"data\" (UniqueName: \"kubernetes.io/empty-dir/e09aa0c4-d418-41cc-bedc-9aa3fd7e02f8-data\") pod \"nfs-server-provisioner-0\" (UID: \"e09aa0c4-d418-41cc-bedc-9aa3fd7e02f8\") " pod="default/nfs-server-provisioner-0" Apr 12 18:49:13.931663 kubelet[2095]: I0412 18:49:13.931523 2095 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-psfdn\" (UniqueName: \"kubernetes.io/projected/e09aa0c4-d418-41cc-bedc-9aa3fd7e02f8-kube-api-access-psfdn\") pod \"nfs-server-provisioner-0\" (UID: \"e09aa0c4-d418-41cc-bedc-9aa3fd7e02f8\") " pod="default/nfs-server-provisioner-0" Apr 12 18:49:14.106362 env[1629]: time="2024-04-12T18:49:14.106272842Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nfs-server-provisioner-0,Uid:e09aa0c4-d418-41cc-bedc-9aa3fd7e02f8,Namespace:default,Attempt:0,}" Apr 12 18:49:14.379539 (udev-worker)[3388]: Network interface NamePolicy= disabled on kernel command line. Apr 12 18:49:14.380255 systemd-networkd[1453]: cali60e51b789ff: Link UP Apr 12 18:49:14.384352 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Apr 12 18:49:14.384712 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali60e51b789ff: link becomes ready Apr 12 18:49:14.384562 systemd-networkd[1453]: cali60e51b789ff: Gained carrier Apr 12 18:49:14.421449 env[1629]: 2024-04-12 18:49:14.226 [INFO][3392] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.22.61-k8s-nfs--server--provisioner--0-eth0 nfs-server-provisioner- default e09aa0c4-d418-41cc-bedc-9aa3fd7e02f8 1004 0 2024-04-12 18:49:13 +0000 UTC map[app:nfs-server-provisioner chart:nfs-server-provisioner-1.8.0 controller-revision-hash:nfs-server-provisioner-d5cbb7f57 heritage:Helm projectcalico.org/namespace:default projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:nfs-server-provisioner release:nfs-server-provisioner statefulset.kubernetes.io/pod-name:nfs-server-provisioner-0] map[] [] [] []} {k8s 172.31.22.61 nfs-server-provisioner-0 eth0 nfs-server-provisioner [] [] [kns.default ksa.default.nfs-server-provisioner] cali60e51b789ff [{nfs TCP 2049 0 } {nfs-udp UDP 2049 0 } {nlockmgr TCP 32803 0 } {nlockmgr-udp UDP 32803 0 } {mountd TCP 20048 0 } {mountd-udp UDP 20048 0 } {rquotad TCP 875 0 } {rquotad-udp UDP 875 0 } {rpcbind TCP 111 0 } {rpcbind-udp UDP 111 0 } {statd TCP 662 0 } {statd-udp UDP 662 0 }] []}} ContainerID="faae01f2572df55db1928a385f24210e9d605780e4378712f58637ba329c5e35" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.22.61-k8s-nfs--server--provisioner--0-" Apr 12 18:49:14.421449 env[1629]: 2024-04-12 18:49:14.226 [INFO][3392] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="faae01f2572df55db1928a385f24210e9d605780e4378712f58637ba329c5e35" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.22.61-k8s-nfs--server--provisioner--0-eth0" Apr 12 18:49:14.421449 env[1629]: 2024-04-12 18:49:14.284 [INFO][3405] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="faae01f2572df55db1928a385f24210e9d605780e4378712f58637ba329c5e35" HandleID="k8s-pod-network.faae01f2572df55db1928a385f24210e9d605780e4378712f58637ba329c5e35" Workload="172.31.22.61-k8s-nfs--server--provisioner--0-eth0" Apr 12 18:49:14.421449 env[1629]: 2024-04-12 18:49:14.319 [INFO][3405] ipam_plugin.go 268: Auto assigning IP ContainerID="faae01f2572df55db1928a385f24210e9d605780e4378712f58637ba329c5e35" HandleID="k8s-pod-network.faae01f2572df55db1928a385f24210e9d605780e4378712f58637ba329c5e35" Workload="172.31.22.61-k8s-nfs--server--provisioner--0-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0xc00032c050), Attrs:map[string]string{"namespace":"default", "node":"172.31.22.61", "pod":"nfs-server-provisioner-0", "timestamp":"2024-04-12 18:49:14.2845777 +0000 UTC"}, Hostname:"172.31.22.61", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Apr 12 18:49:14.421449 env[1629]: 2024-04-12 18:49:14.319 [INFO][3405] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Apr 12 18:49:14.421449 env[1629]: 2024-04-12 18:49:14.319 [INFO][3405] ipam_plugin.go 371: Acquired host-wide IPAM lock. Apr 12 18:49:14.421449 env[1629]: 2024-04-12 18:49:14.319 [INFO][3405] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.22.61' Apr 12 18:49:14.421449 env[1629]: 2024-04-12 18:49:14.324 [INFO][3405] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.faae01f2572df55db1928a385f24210e9d605780e4378712f58637ba329c5e35" host="172.31.22.61" Apr 12 18:49:14.421449 env[1629]: 2024-04-12 18:49:14.331 [INFO][3405] ipam.go 372: Looking up existing affinities for host host="172.31.22.61" Apr 12 18:49:14.421449 env[1629]: 2024-04-12 18:49:14.350 [INFO][3405] ipam.go 489: Trying affinity for 192.168.81.64/26 host="172.31.22.61" Apr 12 18:49:14.421449 env[1629]: 2024-04-12 18:49:14.353 [INFO][3405] ipam.go 155: Attempting to load block cidr=192.168.81.64/26 host="172.31.22.61" Apr 12 18:49:14.421449 env[1629]: 2024-04-12 18:49:14.357 [INFO][3405] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.81.64/26 host="172.31.22.61" Apr 12 18:49:14.421449 env[1629]: 2024-04-12 18:49:14.357 [INFO][3405] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.81.64/26 handle="k8s-pod-network.faae01f2572df55db1928a385f24210e9d605780e4378712f58637ba329c5e35" host="172.31.22.61" Apr 12 18:49:14.421449 env[1629]: 2024-04-12 18:49:14.360 [INFO][3405] ipam.go 1682: Creating new handle: k8s-pod-network.faae01f2572df55db1928a385f24210e9d605780e4378712f58637ba329c5e35 Apr 12 18:49:14.421449 env[1629]: 2024-04-12 18:49:14.366 [INFO][3405] ipam.go 1203: Writing block in order to claim IPs block=192.168.81.64/26 handle="k8s-pod-network.faae01f2572df55db1928a385f24210e9d605780e4378712f58637ba329c5e35" host="172.31.22.61" Apr 12 18:49:14.421449 env[1629]: 2024-04-12 18:49:14.375 [INFO][3405] ipam.go 1216: Successfully claimed IPs: [192.168.81.67/26] block=192.168.81.64/26 handle="k8s-pod-network.faae01f2572df55db1928a385f24210e9d605780e4378712f58637ba329c5e35" host="172.31.22.61" Apr 12 18:49:14.421449 env[1629]: 2024-04-12 18:49:14.375 [INFO][3405] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.81.67/26] handle="k8s-pod-network.faae01f2572df55db1928a385f24210e9d605780e4378712f58637ba329c5e35" host="172.31.22.61" Apr 12 18:49:14.421449 env[1629]: 2024-04-12 18:49:14.375 [INFO][3405] ipam_plugin.go 377: Released host-wide IPAM lock. Apr 12 18:49:14.421449 env[1629]: 2024-04-12 18:49:14.375 [INFO][3405] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.81.67/26] IPv6=[] ContainerID="faae01f2572df55db1928a385f24210e9d605780e4378712f58637ba329c5e35" HandleID="k8s-pod-network.faae01f2572df55db1928a385f24210e9d605780e4378712f58637ba329c5e35" Workload="172.31.22.61-k8s-nfs--server--provisioner--0-eth0" Apr 12 18:49:14.425392 env[1629]: 2024-04-12 18:49:14.376 [INFO][3392] k8s.go 385: Populated endpoint ContainerID="faae01f2572df55db1928a385f24210e9d605780e4378712f58637ba329c5e35" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.22.61-k8s-nfs--server--provisioner--0-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.61-k8s-nfs--server--provisioner--0-eth0", GenerateName:"nfs-server-provisioner-", Namespace:"default", SelfLink:"", UID:"e09aa0c4-d418-41cc-bedc-9aa3fd7e02f8", ResourceVersion:"1004", Generation:0, CreationTimestamp:time.Date(2024, time.April, 12, 18, 49, 13, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nfs-server-provisioner", "chart":"nfs-server-provisioner-1.8.0", "controller-revision-hash":"nfs-server-provisioner-d5cbb7f57", "heritage":"Helm", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"nfs-server-provisioner", "release":"nfs-server-provisioner", "statefulset.kubernetes.io/pod-name":"nfs-server-provisioner-0"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.61", ContainerID:"", Pod:"nfs-server-provisioner-0", Endpoint:"eth0", ServiceAccountName:"nfs-server-provisioner", IPNetworks:[]string{"192.168.81.67/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.nfs-server-provisioner"}, InterfaceName:"cali60e51b789ff", MAC:"", Ports:[]v3.WorkloadEndpointPort{v3.WorkloadEndpointPort{Name:"nfs", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nfs-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x296, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x296, HostPort:0x0, HostIP:""}}, AllowSpoofedSourcePrefixes:[]string(nil)}} Apr 12 18:49:14.425392 env[1629]: 2024-04-12 18:49:14.376 [INFO][3392] k8s.go 386: Calico CNI using IPs: [192.168.81.67/32] ContainerID="faae01f2572df55db1928a385f24210e9d605780e4378712f58637ba329c5e35" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.22.61-k8s-nfs--server--provisioner--0-eth0" Apr 12 18:49:14.425392 env[1629]: 2024-04-12 18:49:14.376 [INFO][3392] dataplane_linux.go 68: Setting the host side veth name to cali60e51b789ff ContainerID="faae01f2572df55db1928a385f24210e9d605780e4378712f58637ba329c5e35" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.22.61-k8s-nfs--server--provisioner--0-eth0" Apr 12 18:49:14.425392 env[1629]: 2024-04-12 18:49:14.385 [INFO][3392] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="faae01f2572df55db1928a385f24210e9d605780e4378712f58637ba329c5e35" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.22.61-k8s-nfs--server--provisioner--0-eth0" Apr 12 18:49:14.425695 env[1629]: 2024-04-12 18:49:14.386 [INFO][3392] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="faae01f2572df55db1928a385f24210e9d605780e4378712f58637ba329c5e35" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.22.61-k8s-nfs--server--provisioner--0-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.61-k8s-nfs--server--provisioner--0-eth0", GenerateName:"nfs-server-provisioner-", Namespace:"default", SelfLink:"", UID:"e09aa0c4-d418-41cc-bedc-9aa3fd7e02f8", ResourceVersion:"1004", Generation:0, CreationTimestamp:time.Date(2024, time.April, 12, 18, 49, 13, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nfs-server-provisioner", "chart":"nfs-server-provisioner-1.8.0", "controller-revision-hash":"nfs-server-provisioner-d5cbb7f57", "heritage":"Helm", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"nfs-server-provisioner", "release":"nfs-server-provisioner", "statefulset.kubernetes.io/pod-name":"nfs-server-provisioner-0"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.61", ContainerID:"faae01f2572df55db1928a385f24210e9d605780e4378712f58637ba329c5e35", Pod:"nfs-server-provisioner-0", Endpoint:"eth0", ServiceAccountName:"nfs-server-provisioner", IPNetworks:[]string{"192.168.81.67/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.nfs-server-provisioner"}, InterfaceName:"cali60e51b789ff", MAC:"82:90:b2:5b:a0:09", Ports:[]v3.WorkloadEndpointPort{v3.WorkloadEndpointPort{Name:"nfs", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nfs-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x296, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x296, HostPort:0x0, HostIP:""}}, AllowSpoofedSourcePrefixes:[]string(nil)}} Apr 12 18:49:14.425695 env[1629]: 2024-04-12 18:49:14.404 [INFO][3392] k8s.go 498: Wrote updated endpoint to datastore ContainerID="faae01f2572df55db1928a385f24210e9d605780e4378712f58637ba329c5e35" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.22.61-k8s-nfs--server--provisioner--0-eth0" Apr 12 18:49:14.473342 env[1629]: time="2024-04-12T18:49:14.471595676Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Apr 12 18:49:14.473342 env[1629]: time="2024-04-12T18:49:14.472101033Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Apr 12 18:49:14.473342 env[1629]: time="2024-04-12T18:49:14.472146492Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Apr 12 18:49:14.473342 env[1629]: time="2024-04-12T18:49:14.472332311Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/faae01f2572df55db1928a385f24210e9d605780e4378712f58637ba329c5e35 pid=3430 runtime=io.containerd.runc.v2 Apr 12 18:49:14.512000 audit[3449]: NETFILTER_CFG table=filter:75 family=2 entries=38 op=nft_register_chain pid=3449 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Apr 12 18:49:14.512000 audit[3449]: SYSCALL arch=c000003e syscall=46 success=yes exit=19820 a0=3 a1=7ffe9b84cec0 a2=0 a3=7ffe9b84ceac items=0 ppid=2768 pid=3449 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:14.512000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Apr 12 18:49:14.525948 systemd[1]: Started cri-containerd-faae01f2572df55db1928a385f24210e9d605780e4378712f58637ba329c5e35.scope. Apr 12 18:49:14.565832 kernel: kauditd_printk_skb: 62 callbacks suppressed Apr 12 18:49:14.565992 kernel: audit: type=1400 audit(1712947754.550:833): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.566040 kernel: audit: type=1400 audit(1712947754.550:834): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.550000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.550000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.550000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.550000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.579040 kernel: audit: type=1400 audit(1712947754.550:835): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.579347 kernel: audit: type=1400 audit(1712947754.550:836): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.579397 kernel: audit: type=1400 audit(1712947754.550:837): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.550000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.550000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.591768 kernel: audit: type=1400 audit(1712947754.550:838): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.592101 kernel: audit: type=1400 audit(1712947754.550:839): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.550000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.550000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.607197 kernel: audit: type=1400 audit(1712947754.550:840): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.607550 kernel: audit: type=1400 audit(1712947754.550:841): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.550000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.620258 kernel: audit: type=1400 audit(1712947754.565:842): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.565000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.565000 audit: BPF prog-id=112 op=LOAD Apr 12 18:49:14.566000 audit[3441]: AVC avc: denied { bpf } for pid=3441 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.566000 audit[3441]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c000145c48 a2=10 a3=1c items=0 ppid=3430 pid=3441 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:14.566000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6661616530316632353732646635356462313932386133383566323432 Apr 12 18:49:14.566000 audit[3441]: AVC avc: denied { perfmon } for pid=3441 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.566000 audit[3441]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001456b0 a2=3c a3=c items=0 ppid=3430 pid=3441 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:14.566000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6661616530316632353732646635356462313932386133383566323432 Apr 12 18:49:14.566000 audit[3441]: AVC avc: denied { bpf } for pid=3441 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.566000 audit[3441]: AVC avc: denied { bpf } for pid=3441 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.566000 audit[3441]: AVC avc: denied { bpf } for pid=3441 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.566000 audit[3441]: AVC avc: denied { perfmon } for pid=3441 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.566000 audit[3441]: AVC avc: denied { perfmon } for pid=3441 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.566000 audit[3441]: AVC avc: denied { perfmon } for pid=3441 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.566000 audit[3441]: AVC avc: denied { perfmon } for pid=3441 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.566000 audit[3441]: AVC avc: denied { perfmon } for pid=3441 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.566000 audit[3441]: AVC avc: denied { bpf } for pid=3441 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.566000 audit[3441]: AVC avc: denied { bpf } for pid=3441 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.566000 audit: BPF prog-id=113 op=LOAD Apr 12 18:49:14.566000 audit[3441]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001459d8 a2=78 a3=c00032e1f0 items=0 ppid=3430 pid=3441 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:14.566000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6661616530316632353732646635356462313932386133383566323432 Apr 12 18:49:14.566000 audit[3441]: AVC avc: denied { bpf } for pid=3441 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.566000 audit[3441]: AVC avc: denied { bpf } for pid=3441 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.566000 audit[3441]: AVC avc: denied { perfmon } for pid=3441 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.566000 audit[3441]: AVC avc: denied { perfmon } for pid=3441 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.566000 audit[3441]: AVC avc: denied { perfmon } for pid=3441 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.566000 audit[3441]: AVC avc: denied { perfmon } for pid=3441 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.566000 audit[3441]: AVC avc: denied { perfmon } for pid=3441 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.566000 audit[3441]: AVC avc: denied { bpf } for pid=3441 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.566000 audit[3441]: AVC avc: denied { bpf } for pid=3441 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.566000 audit: BPF prog-id=114 op=LOAD Apr 12 18:49:14.566000 audit[3441]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c000145770 a2=78 a3=c00032e238 items=0 ppid=3430 pid=3441 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:14.566000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6661616530316632353732646635356462313932386133383566323432 Apr 12 18:49:14.566000 audit: BPF prog-id=114 op=UNLOAD Apr 12 18:49:14.566000 audit: BPF prog-id=113 op=UNLOAD Apr 12 18:49:14.566000 audit[3441]: AVC avc: denied { bpf } for pid=3441 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.566000 audit[3441]: AVC avc: denied { bpf } for pid=3441 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.566000 audit[3441]: AVC avc: denied { bpf } for pid=3441 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.566000 audit[3441]: AVC avc: denied { perfmon } for pid=3441 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.566000 audit[3441]: AVC avc: denied { perfmon } for pid=3441 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.566000 audit[3441]: AVC avc: denied { perfmon } for pid=3441 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.566000 audit[3441]: AVC avc: denied { perfmon } for pid=3441 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.566000 audit[3441]: AVC avc: denied { perfmon } for pid=3441 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.566000 audit[3441]: AVC avc: denied { bpf } for pid=3441 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.566000 audit[3441]: AVC avc: denied { bpf } for pid=3441 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:14.566000 audit: BPF prog-id=115 op=LOAD Apr 12 18:49:14.566000 audit[3441]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c000145c30 a2=78 a3=c00032e648 items=0 ppid=3430 pid=3441 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:14.566000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6661616530316632353732646635356462313932386133383566323432 Apr 12 18:49:14.660421 env[1629]: time="2024-04-12T18:49:14.660364286Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nfs-server-provisioner-0,Uid:e09aa0c4-d418-41cc-bedc-9aa3fd7e02f8,Namespace:default,Attempt:0,} returns sandbox id \"faae01f2572df55db1928a385f24210e9d605780e4378712f58637ba329c5e35\"" Apr 12 18:49:14.663290 env[1629]: time="2024-04-12T18:49:14.663194896Z" level=info msg="PullImage \"registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8\"" Apr 12 18:49:14.765406 kubelet[2095]: E0412 18:49:14.765316 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:15.765831 kubelet[2095]: E0412 18:49:15.765781 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:16.303582 systemd-networkd[1453]: cali60e51b789ff: Gained IPv6LL Apr 12 18:49:16.766464 kubelet[2095]: E0412 18:49:16.766391 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:17.766562 kubelet[2095]: E0412 18:49:17.766520 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:17.995894 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2167315026.mount: Deactivated successfully. Apr 12 18:49:18.767267 kubelet[2095]: E0412 18:49:18.767228 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:19.767952 kubelet[2095]: E0412 18:49:19.767853 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:20.164000 audit[3503]: NETFILTER_CFG table=filter:76 family=2 entries=33 op=nft_register_rule pid=3503 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:49:20.171753 kernel: kauditd_printk_skb: 47 callbacks suppressed Apr 12 18:49:20.171850 kernel: audit: type=1325 audit(1712947760.164:851): table=filter:76 family=2 entries=33 op=nft_register_rule pid=3503 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:49:20.171935 kernel: audit: type=1300 audit(1712947760.164:851): arch=c000003e syscall=46 success=yes exit=12604 a0=3 a1=7ffc949a3500 a2=0 a3=7ffc949a34ec items=0 ppid=2332 pid=3503 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:20.164000 audit[3503]: SYSCALL arch=c000003e syscall=46 success=yes exit=12604 a0=3 a1=7ffc949a3500 a2=0 a3=7ffc949a34ec items=0 ppid=2332 pid=3503 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:20.164000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:49:20.183825 kernel: audit: type=1327 audit(1712947760.164:851): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:49:20.165000 audit[3503]: NETFILTER_CFG table=nat:77 family=2 entries=20 op=nft_register_rule pid=3503 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:49:20.188548 kubelet[2095]: I0412 18:49:20.184610 2095 topology_manager.go:212] "Topology Admit Handler" Apr 12 18:49:20.189319 kernel: audit: type=1325 audit(1712947760.165:852): table=nat:77 family=2 entries=20 op=nft_register_rule pid=3503 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:49:20.165000 audit[3503]: SYSCALL arch=c000003e syscall=46 success=yes exit=5772 a0=3 a1=7ffc949a3500 a2=0 a3=0 items=0 ppid=2332 pid=3503 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:20.191376 systemd[1]: Created slice kubepods-besteffort-poddda75339_07c4_483f_8b96_00e4048e3ed8.slice. Apr 12 18:49:20.165000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:49:20.202231 kernel: audit: type=1300 audit(1712947760.165:852): arch=c000003e syscall=46 success=yes exit=5772 a0=3 a1=7ffc949a3500 a2=0 a3=0 items=0 ppid=2332 pid=3503 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:20.202331 kernel: audit: type=1327 audit(1712947760.165:852): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:49:20.183000 audit[3505]: NETFILTER_CFG table=filter:78 family=2 entries=34 op=nft_register_rule pid=3505 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:49:20.183000 audit[3505]: SYSCALL arch=c000003e syscall=46 success=yes exit=12604 a0=3 a1=7ffeb682d910 a2=0 a3=7ffeb682d8fc items=0 ppid=2332 pid=3505 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:20.213097 kernel: audit: type=1325 audit(1712947760.183:853): table=filter:78 family=2 entries=34 op=nft_register_rule pid=3505 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:49:20.213226 kernel: audit: type=1300 audit(1712947760.183:853): arch=c000003e syscall=46 success=yes exit=12604 a0=3 a1=7ffeb682d910 a2=0 a3=7ffeb682d8fc items=0 ppid=2332 pid=3505 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:20.213286 kernel: audit: type=1327 audit(1712947760.183:853): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:49:20.183000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:49:20.189000 audit[3505]: NETFILTER_CFG table=nat:79 family=2 entries=20 op=nft_register_rule pid=3505 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:49:20.219814 kernel: audit: type=1325 audit(1712947760.189:854): table=nat:79 family=2 entries=20 op=nft_register_rule pid=3505 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:49:20.189000 audit[3505]: SYSCALL arch=c000003e syscall=46 success=yes exit=5772 a0=3 a1=7ffeb682d910 a2=0 a3=0 items=0 ppid=2332 pid=3505 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:20.189000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:49:20.293400 kubelet[2095]: I0412 18:49:20.293292 2095 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"calico-apiserver-certs\" (UniqueName: \"kubernetes.io/secret/dda75339-07c4-483f-8b96-00e4048e3ed8-calico-apiserver-certs\") pod \"calico-apiserver-8678599fcc-s55mt\" (UID: \"dda75339-07c4-483f-8b96-00e4048e3ed8\") " pod="calico-apiserver/calico-apiserver-8678599fcc-s55mt" Apr 12 18:49:20.293581 kubelet[2095]: I0412 18:49:20.293440 2095 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-49nzg\" (UniqueName: \"kubernetes.io/projected/dda75339-07c4-483f-8b96-00e4048e3ed8-kube-api-access-49nzg\") pod \"calico-apiserver-8678599fcc-s55mt\" (UID: \"dda75339-07c4-483f-8b96-00e4048e3ed8\") " pod="calico-apiserver/calico-apiserver-8678599fcc-s55mt" Apr 12 18:49:20.395055 kubelet[2095]: E0412 18:49:20.394789 2095 secret.go:194] Couldn't get secret calico-apiserver/calico-apiserver-certs: secret "calico-apiserver-certs" not found Apr 12 18:49:20.395055 kubelet[2095]: E0412 18:49:20.394887 2095 nestedpendingoperations.go:348] Operation for "{volumeName:kubernetes.io/secret/dda75339-07c4-483f-8b96-00e4048e3ed8-calico-apiserver-certs podName:dda75339-07c4-483f-8b96-00e4048e3ed8 nodeName:}" failed. No retries permitted until 2024-04-12 18:49:20.89485888 +0000 UTC m=+54.859955923 (durationBeforeRetry 500ms). Error: MountVolume.SetUp failed for volume "calico-apiserver-certs" (UniqueName: "kubernetes.io/secret/dda75339-07c4-483f-8b96-00e4048e3ed8-calico-apiserver-certs") pod "calico-apiserver-8678599fcc-s55mt" (UID: "dda75339-07c4-483f-8b96-00e4048e3ed8") : secret "calico-apiserver-certs" not found Apr 12 18:49:20.769153 kubelet[2095]: E0412 18:49:20.768992 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:20.824400 env[1629]: time="2024-04-12T18:49:20.824350217Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:49:20.827953 env[1629]: time="2024-04-12T18:49:20.827904819Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:fd0b16f70b66b72bcb2f91d556fa33eba02729c44ffc5f2c16130e7f9fbed3c4,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:49:20.830638 env[1629]: time="2024-04-12T18:49:20.830593073Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:49:20.833083 env[1629]: time="2024-04-12T18:49:20.833037441Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/sig-storage/nfs-provisioner@sha256:c825f3d5e28bde099bd7a3daace28772d412c9157ad47fa752a9ad0baafc118d,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:49:20.833915 env[1629]: time="2024-04-12T18:49:20.833873120Z" level=info msg="PullImage \"registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8\" returns image reference \"sha256:fd0b16f70b66b72bcb2f91d556fa33eba02729c44ffc5f2c16130e7f9fbed3c4\"" Apr 12 18:49:20.842877 env[1629]: time="2024-04-12T18:49:20.842828563Z" level=info msg="CreateContainer within sandbox \"faae01f2572df55db1928a385f24210e9d605780e4378712f58637ba329c5e35\" for container &ContainerMetadata{Name:nfs-server-provisioner,Attempt:0,}" Apr 12 18:49:20.871980 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2819010681.mount: Deactivated successfully. Apr 12 18:49:20.882736 env[1629]: time="2024-04-12T18:49:20.882684087Z" level=info msg="CreateContainer within sandbox \"faae01f2572df55db1928a385f24210e9d605780e4378712f58637ba329c5e35\" for &ContainerMetadata{Name:nfs-server-provisioner,Attempt:0,} returns container id \"4571172d474f8742f34610923c173d116e2a0af7932fa3789b228888bf194bf1\"" Apr 12 18:49:20.883946 env[1629]: time="2024-04-12T18:49:20.883807538Z" level=info msg="StartContainer for \"4571172d474f8742f34610923c173d116e2a0af7932fa3789b228888bf194bf1\"" Apr 12 18:49:20.915345 systemd[1]: Started cri-containerd-4571172d474f8742f34610923c173d116e2a0af7932fa3789b228888bf194bf1.scope. Apr 12 18:49:20.943000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.943000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.943000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.943000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.943000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.943000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.943000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.943000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.943000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.943000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.943000 audit: BPF prog-id=116 op=LOAD Apr 12 18:49:20.944000 audit[3514]: AVC avc: denied { bpf } for pid=3514 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.944000 audit[3514]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c0001bdc48 a2=10 a3=1c items=0 ppid=3430 pid=3514 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:20.944000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3435373131373264343734663837343266333436313039323363313733 Apr 12 18:49:20.944000 audit[3514]: AVC avc: denied { perfmon } for pid=3514 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.944000 audit[3514]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001bd6b0 a2=3c a3=8 items=0 ppid=3430 pid=3514 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:20.944000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3435373131373264343734663837343266333436313039323363313733 Apr 12 18:49:20.944000 audit[3514]: AVC avc: denied { bpf } for pid=3514 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.944000 audit[3514]: AVC avc: denied { bpf } for pid=3514 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.944000 audit[3514]: AVC avc: denied { bpf } for pid=3514 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.944000 audit[3514]: AVC avc: denied { perfmon } for pid=3514 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.944000 audit[3514]: AVC avc: denied { perfmon } for pid=3514 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.944000 audit[3514]: AVC avc: denied { perfmon } for pid=3514 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.944000 audit[3514]: AVC avc: denied { perfmon } for pid=3514 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.944000 audit[3514]: AVC avc: denied { perfmon } for pid=3514 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.944000 audit[3514]: AVC avc: denied { bpf } for pid=3514 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.944000 audit[3514]: AVC avc: denied { bpf } for pid=3514 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.944000 audit: BPF prog-id=117 op=LOAD Apr 12 18:49:20.944000 audit[3514]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001bd9d8 a2=78 a3=c0000253b0 items=0 ppid=3430 pid=3514 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:20.944000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3435373131373264343734663837343266333436313039323363313733 Apr 12 18:49:20.944000 audit[3514]: AVC avc: denied { bpf } for pid=3514 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.944000 audit[3514]: AVC avc: denied { bpf } for pid=3514 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.944000 audit[3514]: AVC avc: denied { perfmon } for pid=3514 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.944000 audit[3514]: AVC avc: denied { perfmon } for pid=3514 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.944000 audit[3514]: AVC avc: denied { perfmon } for pid=3514 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.944000 audit[3514]: AVC avc: denied { perfmon } for pid=3514 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.944000 audit[3514]: AVC avc: denied { perfmon } for pid=3514 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.944000 audit[3514]: AVC avc: denied { bpf } for pid=3514 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.944000 audit[3514]: AVC avc: denied { bpf } for pid=3514 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.944000 audit: BPF prog-id=118 op=LOAD Apr 12 18:49:20.944000 audit[3514]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c0001bd770 a2=78 a3=c0000253f8 items=0 ppid=3430 pid=3514 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:20.944000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3435373131373264343734663837343266333436313039323363313733 Apr 12 18:49:20.944000 audit: BPF prog-id=118 op=UNLOAD Apr 12 18:49:20.944000 audit: BPF prog-id=117 op=UNLOAD Apr 12 18:49:20.944000 audit[3514]: AVC avc: denied { bpf } for pid=3514 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.944000 audit[3514]: AVC avc: denied { bpf } for pid=3514 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.944000 audit[3514]: AVC avc: denied { bpf } for pid=3514 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.944000 audit[3514]: AVC avc: denied { perfmon } for pid=3514 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.944000 audit[3514]: AVC avc: denied { perfmon } for pid=3514 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.944000 audit[3514]: AVC avc: denied { perfmon } for pid=3514 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.944000 audit[3514]: AVC avc: denied { perfmon } for pid=3514 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.944000 audit[3514]: AVC avc: denied { perfmon } for pid=3514 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.944000 audit[3514]: AVC avc: denied { bpf } for pid=3514 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.944000 audit[3514]: AVC avc: denied { bpf } for pid=3514 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:20.944000 audit: BPF prog-id=119 op=LOAD Apr 12 18:49:20.944000 audit[3514]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001bdc30 a2=78 a3=c000025808 items=0 ppid=3430 pid=3514 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:20.944000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3435373131373264343734663837343266333436313039323363313733 Apr 12 18:49:20.981506 env[1629]: time="2024-04-12T18:49:20.981264544Z" level=info msg="StartContainer for \"4571172d474f8742f34610923c173d116e2a0af7932fa3789b228888bf194bf1\" returns successfully" Apr 12 18:49:21.047000 audit[3544]: AVC avc: denied { search } for pid=3544 comm="rpcbind" name="crypto" dev="proc" ino=22309 scontext=system_u:system_r:svirt_lxc_net_t:s0:c0,c100 tcontext=system_u:object_r:sysctl_crypto_t:s0 tclass=dir permissive=0 Apr 12 18:49:21.047000 audit[3544]: SYSCALL arch=c000003e syscall=257 success=no exit=-13 a0=ffffff9c a1=7f58430c30c0 a2=0 a3=0 items=0 ppid=3527 pid=3544 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="rpcbind" exe="/usr/bin/rpcbind" subj=system_u:system_r:svirt_lxc_net_t:s0:c0,c100 key=(null) Apr 12 18:49:21.047000 audit: PROCTITLE proctitle=2F7573722F7362696E2F72706362696E64002D77 Apr 12 18:49:21.097835 env[1629]: time="2024-04-12T18:49:21.097783848Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-apiserver-8678599fcc-s55mt,Uid:dda75339-07c4-483f-8b96-00e4048e3ed8,Namespace:calico-apiserver,Attempt:0,}" Apr 12 18:49:21.141000 audit[3549]: AVC avc: denied { search } for pid=3549 comm="dbus-daemon" name="crypto" dev="proc" ino=22309 scontext=system_u:system_r:svirt_lxc_net_t:s0:c0,c100 tcontext=system_u:object_r:sysctl_crypto_t:s0 tclass=dir permissive=0 Apr 12 18:49:21.141000 audit[3549]: SYSCALL arch=c000003e syscall=257 success=no exit=-13 a0=ffffff9c a1=7f584c0330c0 a2=0 a3=0 items=0 ppid=3527 pid=3549 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="dbus-daemon" exe="/usr/bin/dbus-daemon" subj=system_u:system_r:svirt_lxc_net_t:s0:c0,c100 key=(null) Apr 12 18:49:21.141000 audit: PROCTITLE proctitle=646275732D6461656D6F6E002D2D73797374656D002D2D6E6F70696466696C65 Apr 12 18:49:21.150000 audit[3550]: AVC avc: denied { watch } for pid=3550 comm="dbus-daemon" path="/usr/share/dbus-1/system.d" dev="overlay" ino=538037 scontext=system_u:system_r:svirt_lxc_net_t:s0:c0,c100 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c0,c100 tclass=dir permissive=0 Apr 12 18:49:21.150000 audit[3550]: SYSCALL arch=c000003e syscall=254 success=no exit=-13 a0=6 a1=556bf95300b0 a2=2c8 a3=7ffd0bd9b5dc items=0 ppid=3527 pid=3550 auid=4294967295 uid=81 gid=81 euid=81 suid=81 fsuid=81 egid=81 sgid=81 fsgid=81 tty=(none) ses=4294967295 comm="dbus-daemon" exe="/usr/bin/dbus-daemon" subj=system_u:system_r:svirt_lxc_net_t:s0:c0,c100 key=(null) Apr 12 18:49:21.150000 audit: PROCTITLE proctitle=646275732D6461656D6F6E002D2D73797374656D002D2D6E6F70696466696C65 Apr 12 18:49:21.170000 audit[3551]: AVC avc: denied { read } for pid=3551 comm="ganesha.nfsd" name="overcommit_memory" dev="proc" ino=23418 scontext=system_u:system_r:svirt_lxc_net_t:s0:c0,c100 tcontext=system_u:object_r:sysctl_vm_overcommit_t:s0 tclass=file permissive=0 Apr 12 18:49:21.170000 audit[3551]: SYSCALL arch=c000003e syscall=2 success=no exit=-13 a0=7f51769eb320 a1=80000 a2=d a3=7fff91d6b970 items=0 ppid=3527 pid=3551 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ganesha.nfsd" exe="/usr/local/bin/ganesha.nfsd" subj=system_u:system_r:svirt_lxc_net_t:s0:c0,c100 key=(null) Apr 12 18:49:21.170000 audit: PROCTITLE proctitle=67616E657368612E6E667364002D46002D4C002F6578706F72742F67616E657368612E6C6F67002D70002F7661722F72756E2F67616E657368612E706964002D66002F6578706F72742F7666732E636F6E66 Apr 12 18:49:21.172000 audit[3551]: AVC avc: denied { search } for pid=3551 comm="ganesha.nfsd" name="crypto" dev="proc" ino=22309 scontext=system_u:system_r:svirt_lxc_net_t:s0:c0,c100 tcontext=system_u:object_r:sysctl_crypto_t:s0 tclass=dir permissive=0 Apr 12 18:49:21.172000 audit[3551]: SYSCALL arch=c000003e syscall=257 success=no exit=-13 a0=ffffff9c a1=7f5175f3f0c0 a2=0 a3=0 items=0 ppid=3527 pid=3551 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ganesha.nfsd" exe="/usr/local/bin/ganesha.nfsd" subj=system_u:system_r:svirt_lxc_net_t:s0:c0,c100 key=(null) Apr 12 18:49:21.172000 audit: PROCTITLE proctitle=67616E657368612E6E667364002D46002D4C002F6578706F72742F67616E657368612E6C6F67002D70002F7661722F72756E2F67616E657368612E706964002D66002F6578706F72742F7666732E636F6E66 Apr 12 18:49:21.278000 audit[3556]: NETFILTER_CFG table=filter:80 family=2 entries=22 op=nft_register_rule pid=3556 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:49:21.278000 audit[3556]: SYSCALL arch=c000003e syscall=46 success=yes exit=3676 a0=3 a1=7ffd9246c680 a2=0 a3=7ffd9246c66c items=0 ppid=2332 pid=3556 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:21.278000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:49:21.283000 audit[3556]: NETFILTER_CFG table=nat:81 family=2 entries=104 op=nft_register_chain pid=3556 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:49:21.283000 audit[3556]: SYSCALL arch=c000003e syscall=46 success=yes exit=48684 a0=3 a1=7ffd9246c680 a2=0 a3=7ffd9246c66c items=0 ppid=2332 pid=3556 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:21.283000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:49:21.577874 systemd-networkd[1453]: calic4773e16998: Link UP Apr 12 18:49:21.583437 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Apr 12 18:49:21.583559 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): calic4773e16998: link becomes ready Apr 12 18:49:21.583166 systemd-networkd[1453]: calic4773e16998: Gained carrier Apr 12 18:49:21.583270 (udev-worker)[3576]: Network interface NamePolicy= disabled on kernel command line. Apr 12 18:49:21.606673 kubelet[2095]: I0412 18:49:21.606638 2095 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="default/nfs-server-provisioner-0" podStartSLOduration=2.43494496 podCreationTimestamp="2024-04-12 18:49:13 +0000 UTC" firstStartedPulling="2024-04-12 18:49:14.662666852 +0000 UTC m=+48.627763882" lastFinishedPulling="2024-04-12 18:49:20.834284343 +0000 UTC m=+54.799381396" observedRunningTime="2024-04-12 18:49:21.223890621 +0000 UTC m=+55.188987668" watchObservedRunningTime="2024-04-12 18:49:21.606562474 +0000 UTC m=+55.571659523" Apr 12 18:49:21.609354 env[1629]: 2024-04-12 18:49:21.382 [INFO][3559] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.22.61-k8s-calico--apiserver--8678599fcc--s55mt-eth0 calico-apiserver-8678599fcc- calico-apiserver dda75339-07c4-483f-8b96-00e4048e3ed8 1070 0 2024-04-12 18:49:20 +0000 UTC map[apiserver:true app.kubernetes.io/name:calico-apiserver k8s-app:calico-apiserver pod-template-hash:8678599fcc projectcalico.org/namespace:calico-apiserver projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:calico-apiserver] map[] [] [] []} {k8s 172.31.22.61 calico-apiserver-8678599fcc-s55mt eth0 calico-apiserver [] [] [kns.calico-apiserver ksa.calico-apiserver.calico-apiserver] calic4773e16998 [] []}} ContainerID="0cfa7e261cc2bce0dae2a6a4ce929ac506cb21a10c91ca77315fc6c09196c6a7" Namespace="calico-apiserver" Pod="calico-apiserver-8678599fcc-s55mt" WorkloadEndpoint="172.31.22.61-k8s-calico--apiserver--8678599fcc--s55mt-" Apr 12 18:49:21.609354 env[1629]: 2024-04-12 18:49:21.383 [INFO][3559] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="0cfa7e261cc2bce0dae2a6a4ce929ac506cb21a10c91ca77315fc6c09196c6a7" Namespace="calico-apiserver" Pod="calico-apiserver-8678599fcc-s55mt" WorkloadEndpoint="172.31.22.61-k8s-calico--apiserver--8678599fcc--s55mt-eth0" Apr 12 18:49:21.609354 env[1629]: 2024-04-12 18:49:21.463 [INFO][3569] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="0cfa7e261cc2bce0dae2a6a4ce929ac506cb21a10c91ca77315fc6c09196c6a7" HandleID="k8s-pod-network.0cfa7e261cc2bce0dae2a6a4ce929ac506cb21a10c91ca77315fc6c09196c6a7" Workload="172.31.22.61-k8s-calico--apiserver--8678599fcc--s55mt-eth0" Apr 12 18:49:21.609354 env[1629]: 2024-04-12 18:49:21.482 [INFO][3569] ipam_plugin.go 268: Auto assigning IP ContainerID="0cfa7e261cc2bce0dae2a6a4ce929ac506cb21a10c91ca77315fc6c09196c6a7" HandleID="k8s-pod-network.0cfa7e261cc2bce0dae2a6a4ce929ac506cb21a10c91ca77315fc6c09196c6a7" Workload="172.31.22.61-k8s-calico--apiserver--8678599fcc--s55mt-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0xc000281830), Attrs:map[string]string{"namespace":"calico-apiserver", "node":"172.31.22.61", "pod":"calico-apiserver-8678599fcc-s55mt", "timestamp":"2024-04-12 18:49:21.463878819 +0000 UTC"}, Hostname:"172.31.22.61", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Apr 12 18:49:21.609354 env[1629]: 2024-04-12 18:49:21.482 [INFO][3569] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Apr 12 18:49:21.609354 env[1629]: 2024-04-12 18:49:21.483 [INFO][3569] ipam_plugin.go 371: Acquired host-wide IPAM lock. Apr 12 18:49:21.609354 env[1629]: 2024-04-12 18:49:21.484 [INFO][3569] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.22.61' Apr 12 18:49:21.609354 env[1629]: 2024-04-12 18:49:21.494 [INFO][3569] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.0cfa7e261cc2bce0dae2a6a4ce929ac506cb21a10c91ca77315fc6c09196c6a7" host="172.31.22.61" Apr 12 18:49:21.609354 env[1629]: 2024-04-12 18:49:21.520 [INFO][3569] ipam.go 372: Looking up existing affinities for host host="172.31.22.61" Apr 12 18:49:21.609354 env[1629]: 2024-04-12 18:49:21.530 [INFO][3569] ipam.go 489: Trying affinity for 192.168.81.64/26 host="172.31.22.61" Apr 12 18:49:21.609354 env[1629]: 2024-04-12 18:49:21.535 [INFO][3569] ipam.go 155: Attempting to load block cidr=192.168.81.64/26 host="172.31.22.61" Apr 12 18:49:21.609354 env[1629]: 2024-04-12 18:49:21.542 [INFO][3569] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.81.64/26 host="172.31.22.61" Apr 12 18:49:21.609354 env[1629]: 2024-04-12 18:49:21.542 [INFO][3569] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.81.64/26 handle="k8s-pod-network.0cfa7e261cc2bce0dae2a6a4ce929ac506cb21a10c91ca77315fc6c09196c6a7" host="172.31.22.61" Apr 12 18:49:21.609354 env[1629]: 2024-04-12 18:49:21.546 [INFO][3569] ipam.go 1682: Creating new handle: k8s-pod-network.0cfa7e261cc2bce0dae2a6a4ce929ac506cb21a10c91ca77315fc6c09196c6a7 Apr 12 18:49:21.609354 env[1629]: 2024-04-12 18:49:21.554 [INFO][3569] ipam.go 1203: Writing block in order to claim IPs block=192.168.81.64/26 handle="k8s-pod-network.0cfa7e261cc2bce0dae2a6a4ce929ac506cb21a10c91ca77315fc6c09196c6a7" host="172.31.22.61" Apr 12 18:49:21.609354 env[1629]: 2024-04-12 18:49:21.569 [INFO][3569] ipam.go 1216: Successfully claimed IPs: [192.168.81.68/26] block=192.168.81.64/26 handle="k8s-pod-network.0cfa7e261cc2bce0dae2a6a4ce929ac506cb21a10c91ca77315fc6c09196c6a7" host="172.31.22.61" Apr 12 18:49:21.609354 env[1629]: 2024-04-12 18:49:21.569 [INFO][3569] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.81.68/26] handle="k8s-pod-network.0cfa7e261cc2bce0dae2a6a4ce929ac506cb21a10c91ca77315fc6c09196c6a7" host="172.31.22.61" Apr 12 18:49:21.609354 env[1629]: 2024-04-12 18:49:21.569 [INFO][3569] ipam_plugin.go 377: Released host-wide IPAM lock. Apr 12 18:49:21.609354 env[1629]: 2024-04-12 18:49:21.569 [INFO][3569] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.81.68/26] IPv6=[] ContainerID="0cfa7e261cc2bce0dae2a6a4ce929ac506cb21a10c91ca77315fc6c09196c6a7" HandleID="k8s-pod-network.0cfa7e261cc2bce0dae2a6a4ce929ac506cb21a10c91ca77315fc6c09196c6a7" Workload="172.31.22.61-k8s-calico--apiserver--8678599fcc--s55mt-eth0" Apr 12 18:49:21.610232 env[1629]: 2024-04-12 18:49:21.571 [INFO][3559] k8s.go 385: Populated endpoint ContainerID="0cfa7e261cc2bce0dae2a6a4ce929ac506cb21a10c91ca77315fc6c09196c6a7" Namespace="calico-apiserver" Pod="calico-apiserver-8678599fcc-s55mt" WorkloadEndpoint="172.31.22.61-k8s-calico--apiserver--8678599fcc--s55mt-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.61-k8s-calico--apiserver--8678599fcc--s55mt-eth0", GenerateName:"calico-apiserver-8678599fcc-", Namespace:"calico-apiserver", SelfLink:"", UID:"dda75339-07c4-483f-8b96-00e4048e3ed8", ResourceVersion:"1070", Generation:0, CreationTimestamp:time.Date(2024, time.April, 12, 18, 49, 20, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"apiserver":"true", "app.kubernetes.io/name":"calico-apiserver", "k8s-app":"calico-apiserver", "pod-template-hash":"8678599fcc", "projectcalico.org/namespace":"calico-apiserver", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"calico-apiserver"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.61", ContainerID:"", Pod:"calico-apiserver-8678599fcc-s55mt", Endpoint:"eth0", ServiceAccountName:"calico-apiserver", IPNetworks:[]string{"192.168.81.68/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-apiserver", "ksa.calico-apiserver.calico-apiserver"}, InterfaceName:"calic4773e16998", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Apr 12 18:49:21.610232 env[1629]: 2024-04-12 18:49:21.571 [INFO][3559] k8s.go 386: Calico CNI using IPs: [192.168.81.68/32] ContainerID="0cfa7e261cc2bce0dae2a6a4ce929ac506cb21a10c91ca77315fc6c09196c6a7" Namespace="calico-apiserver" Pod="calico-apiserver-8678599fcc-s55mt" WorkloadEndpoint="172.31.22.61-k8s-calico--apiserver--8678599fcc--s55mt-eth0" Apr 12 18:49:21.610232 env[1629]: 2024-04-12 18:49:21.571 [INFO][3559] dataplane_linux.go 68: Setting the host side veth name to calic4773e16998 ContainerID="0cfa7e261cc2bce0dae2a6a4ce929ac506cb21a10c91ca77315fc6c09196c6a7" Namespace="calico-apiserver" Pod="calico-apiserver-8678599fcc-s55mt" WorkloadEndpoint="172.31.22.61-k8s-calico--apiserver--8678599fcc--s55mt-eth0" Apr 12 18:49:21.610232 env[1629]: 2024-04-12 18:49:21.584 [INFO][3559] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="0cfa7e261cc2bce0dae2a6a4ce929ac506cb21a10c91ca77315fc6c09196c6a7" Namespace="calico-apiserver" Pod="calico-apiserver-8678599fcc-s55mt" WorkloadEndpoint="172.31.22.61-k8s-calico--apiserver--8678599fcc--s55mt-eth0" Apr 12 18:49:21.610232 env[1629]: 2024-04-12 18:49:21.585 [INFO][3559] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="0cfa7e261cc2bce0dae2a6a4ce929ac506cb21a10c91ca77315fc6c09196c6a7" Namespace="calico-apiserver" Pod="calico-apiserver-8678599fcc-s55mt" WorkloadEndpoint="172.31.22.61-k8s-calico--apiserver--8678599fcc--s55mt-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.61-k8s-calico--apiserver--8678599fcc--s55mt-eth0", GenerateName:"calico-apiserver-8678599fcc-", Namespace:"calico-apiserver", SelfLink:"", UID:"dda75339-07c4-483f-8b96-00e4048e3ed8", ResourceVersion:"1070", Generation:0, CreationTimestamp:time.Date(2024, time.April, 12, 18, 49, 20, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"apiserver":"true", "app.kubernetes.io/name":"calico-apiserver", "k8s-app":"calico-apiserver", "pod-template-hash":"8678599fcc", "projectcalico.org/namespace":"calico-apiserver", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"calico-apiserver"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.61", ContainerID:"0cfa7e261cc2bce0dae2a6a4ce929ac506cb21a10c91ca77315fc6c09196c6a7", Pod:"calico-apiserver-8678599fcc-s55mt", Endpoint:"eth0", ServiceAccountName:"calico-apiserver", IPNetworks:[]string{"192.168.81.68/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-apiserver", "ksa.calico-apiserver.calico-apiserver"}, InterfaceName:"calic4773e16998", MAC:"52:18:1f:1d:b9:e0", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Apr 12 18:49:21.610232 env[1629]: 2024-04-12 18:49:21.607 [INFO][3559] k8s.go 498: Wrote updated endpoint to datastore ContainerID="0cfa7e261cc2bce0dae2a6a4ce929ac506cb21a10c91ca77315fc6c09196c6a7" Namespace="calico-apiserver" Pod="calico-apiserver-8678599fcc-s55mt" WorkloadEndpoint="172.31.22.61-k8s-calico--apiserver--8678599fcc--s55mt-eth0" Apr 12 18:49:21.647739 env[1629]: time="2024-04-12T18:49:21.634209338Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Apr 12 18:49:21.647739 env[1629]: time="2024-04-12T18:49:21.634261152Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Apr 12 18:49:21.647739 env[1629]: time="2024-04-12T18:49:21.634277579Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Apr 12 18:49:21.647739 env[1629]: time="2024-04-12T18:49:21.634580732Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/0cfa7e261cc2bce0dae2a6a4ce929ac506cb21a10c91ca77315fc6c09196c6a7 pid=3599 runtime=io.containerd.runc.v2 Apr 12 18:49:21.687000 audit[3620]: NETFILTER_CFG table=filter:82 family=2 entries=55 op=nft_register_chain pid=3620 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Apr 12 18:49:21.687000 audit[3620]: SYSCALL arch=c000003e syscall=46 success=yes exit=28952 a0=3 a1=7fffc59180e0 a2=0 a3=7fffc59180cc items=0 ppid=2768 pid=3620 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:21.687000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Apr 12 18:49:21.684021 systemd[1]: run-containerd-runc-k8s.io-0cfa7e261cc2bce0dae2a6a4ce929ac506cb21a10c91ca77315fc6c09196c6a7-runc.hNnzsM.mount: Deactivated successfully. Apr 12 18:49:21.699517 systemd[1]: Started cri-containerd-0cfa7e261cc2bce0dae2a6a4ce929ac506cb21a10c91ca77315fc6c09196c6a7.scope. Apr 12 18:49:21.719000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.719000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.719000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.719000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.719000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.719000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.719000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.719000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.719000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.720000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.720000 audit: BPF prog-id=120 op=LOAD Apr 12 18:49:21.721000 audit[3607]: AVC avc: denied { bpf } for pid=3607 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.721000 audit[3607]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c000197c48 a2=10 a3=1c items=0 ppid=3599 pid=3607 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:21.721000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3063666137653236316363326263653064616532613661346365393239 Apr 12 18:49:21.721000 audit[3607]: AVC avc: denied { perfmon } for pid=3607 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.721000 audit[3607]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001976b0 a2=3c a3=c items=0 ppid=3599 pid=3607 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:21.721000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3063666137653236316363326263653064616532613661346365393239 Apr 12 18:49:21.721000 audit[3607]: AVC avc: denied { bpf } for pid=3607 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.721000 audit[3607]: AVC avc: denied { bpf } for pid=3607 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.721000 audit[3607]: AVC avc: denied { bpf } for pid=3607 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.721000 audit[3607]: AVC avc: denied { perfmon } for pid=3607 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.721000 audit[3607]: AVC avc: denied { perfmon } for pid=3607 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.721000 audit[3607]: AVC avc: denied { perfmon } for pid=3607 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.721000 audit[3607]: AVC avc: denied { perfmon } for pid=3607 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.721000 audit[3607]: AVC avc: denied { perfmon } for pid=3607 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.721000 audit[3607]: AVC avc: denied { bpf } for pid=3607 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.721000 audit[3607]: AVC avc: denied { bpf } for pid=3607 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.721000 audit: BPF prog-id=121 op=LOAD Apr 12 18:49:21.721000 audit[3607]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001979d8 a2=78 a3=c0003ee2f0 items=0 ppid=3599 pid=3607 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:21.721000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3063666137653236316363326263653064616532613661346365393239 Apr 12 18:49:21.721000 audit[3607]: AVC avc: denied { bpf } for pid=3607 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.721000 audit[3607]: AVC avc: denied { bpf } for pid=3607 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.721000 audit[3607]: AVC avc: denied { perfmon } for pid=3607 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.721000 audit[3607]: AVC avc: denied { perfmon } for pid=3607 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.721000 audit[3607]: AVC avc: denied { perfmon } for pid=3607 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.721000 audit[3607]: AVC avc: denied { perfmon } for pid=3607 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.721000 audit[3607]: AVC avc: denied { perfmon } for pid=3607 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.721000 audit[3607]: AVC avc: denied { bpf } for pid=3607 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.721000 audit[3607]: AVC avc: denied { bpf } for pid=3607 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.721000 audit: BPF prog-id=122 op=LOAD Apr 12 18:49:21.721000 audit[3607]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c000197770 a2=78 a3=c0003ee338 items=0 ppid=3599 pid=3607 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:21.721000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3063666137653236316363326263653064616532613661346365393239 Apr 12 18:49:21.721000 audit: BPF prog-id=122 op=UNLOAD Apr 12 18:49:21.721000 audit: BPF prog-id=121 op=UNLOAD Apr 12 18:49:21.721000 audit[3607]: AVC avc: denied { bpf } for pid=3607 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.721000 audit[3607]: AVC avc: denied { bpf } for pid=3607 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.721000 audit[3607]: AVC avc: denied { bpf } for pid=3607 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.721000 audit[3607]: AVC avc: denied { perfmon } for pid=3607 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.721000 audit[3607]: AVC avc: denied { perfmon } for pid=3607 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.721000 audit[3607]: AVC avc: denied { perfmon } for pid=3607 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.721000 audit[3607]: AVC avc: denied { perfmon } for pid=3607 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.721000 audit[3607]: AVC avc: denied { perfmon } for pid=3607 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.721000 audit[3607]: AVC avc: denied { bpf } for pid=3607 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.721000 audit[3607]: AVC avc: denied { bpf } for pid=3607 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:21.721000 audit: BPF prog-id=123 op=LOAD Apr 12 18:49:21.721000 audit[3607]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c000197c30 a2=78 a3=c0003ee748 items=0 ppid=3599 pid=3607 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:21.721000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3063666137653236316363326263653064616532613661346365393239 Apr 12 18:49:21.775672 kubelet[2095]: E0412 18:49:21.771877 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:21.776104 env[1629]: time="2024-04-12T18:49:21.775916562Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-apiserver-8678599fcc-s55mt,Uid:dda75339-07c4-483f-8b96-00e4048e3ed8,Namespace:calico-apiserver,Attempt:0,} returns sandbox id \"0cfa7e261cc2bce0dae2a6a4ce929ac506cb21a10c91ca77315fc6c09196c6a7\"" Apr 12 18:49:21.781157 env[1629]: time="2024-04-12T18:49:21.781124931Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/apiserver:v3.27.3\"" Apr 12 18:49:22.772710 kubelet[2095]: E0412 18:49:22.772641 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:22.921644 systemd-networkd[1453]: calic4773e16998: Gained IPv6LL Apr 12 18:49:23.072381 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2397762375.mount: Deactivated successfully. Apr 12 18:49:23.773270 kubelet[2095]: E0412 18:49:23.773229 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:24.776228 kubelet[2095]: E0412 18:49:24.776162 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:25.154986 env[1629]: time="2024-04-12T18:49:25.154932996Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/apiserver:v3.27.3,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:49:25.158094 env[1629]: time="2024-04-12T18:49:25.158051705Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:b1053ac6a81e8635acaa253516add87a758796b61fa4e29b767a8bd31e4b3eb2,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:49:25.162153 env[1629]: time="2024-04-12T18:49:25.162113960Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/apiserver:v3.27.3,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:49:25.165960 env[1629]: time="2024-04-12T18:49:25.165919388Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/apiserver@sha256:62b75df90aa008b11fee8f555f22bfc00d3dc6af5053185c293ee3467342f32a,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:49:25.166744 env[1629]: time="2024-04-12T18:49:25.166678303Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/apiserver:v3.27.3\" returns image reference \"sha256:b1053ac6a81e8635acaa253516add87a758796b61fa4e29b767a8bd31e4b3eb2\"" Apr 12 18:49:25.169900 env[1629]: time="2024-04-12T18:49:25.169853401Z" level=info msg="CreateContainer within sandbox \"0cfa7e261cc2bce0dae2a6a4ce929ac506cb21a10c91ca77315fc6c09196c6a7\" for container &ContainerMetadata{Name:calico-apiserver,Attempt:0,}" Apr 12 18:49:25.215702 env[1629]: time="2024-04-12T18:49:25.215512313Z" level=info msg="CreateContainer within sandbox \"0cfa7e261cc2bce0dae2a6a4ce929ac506cb21a10c91ca77315fc6c09196c6a7\" for &ContainerMetadata{Name:calico-apiserver,Attempt:0,} returns container id \"f6e62979874b651ca72637b43517da0256c74396395a9b5cfc791e6fb7310f08\"" Apr 12 18:49:25.216801 env[1629]: time="2024-04-12T18:49:25.216749319Z" level=info msg="StartContainer for \"f6e62979874b651ca72637b43517da0256c74396395a9b5cfc791e6fb7310f08\"" Apr 12 18:49:25.278887 systemd[1]: Started cri-containerd-f6e62979874b651ca72637b43517da0256c74396395a9b5cfc791e6fb7310f08.scope. Apr 12 18:49:25.300000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.303188 kernel: kauditd_printk_skb: 140 callbacks suppressed Apr 12 18:49:25.303353 kernel: audit: type=1400 audit(1712947765.300:899): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.316099 kernel: audit: type=1400 audit(1712947765.300:900): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.300000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.300000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.300000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.327034 kernel: audit: type=1400 audit(1712947765.300:901): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.333126 kernel: audit: type=1400 audit(1712947765.300:902): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.333166 kernel: audit: type=1400 audit(1712947765.300:903): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.333197 kernel: audit: type=1400 audit(1712947765.300:904): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.300000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.337618 kernel: audit: type=1400 audit(1712947765.300:905): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.300000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.300000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.300000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.350379 kernel: audit: type=1400 audit(1712947765.300:906): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.350520 kernel: audit: type=1400 audit(1712947765.300:907): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.300000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.353526 kernel: audit: type=1400 audit(1712947765.300:908): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.300000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.300000 audit: BPF prog-id=124 op=LOAD Apr 12 18:49:25.302000 audit[3646]: AVC avc: denied { bpf } for pid=3646 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.302000 audit[3646]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c00019fc48 a2=10 a3=1c items=0 ppid=3599 pid=3646 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:25.302000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6636653632393739383734623635316361373236333762343335313764 Apr 12 18:49:25.302000 audit[3646]: AVC avc: denied { perfmon } for pid=3646 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.302000 audit[3646]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c00019f6b0 a2=3c a3=8 items=0 ppid=3599 pid=3646 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:25.302000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6636653632393739383734623635316361373236333762343335313764 Apr 12 18:49:25.302000 audit[3646]: AVC avc: denied { bpf } for pid=3646 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.302000 audit[3646]: AVC avc: denied { bpf } for pid=3646 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.302000 audit[3646]: AVC avc: denied { bpf } for pid=3646 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.302000 audit[3646]: AVC avc: denied { perfmon } for pid=3646 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.302000 audit[3646]: AVC avc: denied { perfmon } for pid=3646 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.302000 audit[3646]: AVC avc: denied { perfmon } for pid=3646 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.302000 audit[3646]: AVC avc: denied { perfmon } for pid=3646 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.302000 audit[3646]: AVC avc: denied { perfmon } for pid=3646 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.302000 audit[3646]: AVC avc: denied { bpf } for pid=3646 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.302000 audit[3646]: AVC avc: denied { bpf } for pid=3646 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.302000 audit: BPF prog-id=125 op=LOAD Apr 12 18:49:25.302000 audit[3646]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c00019f9d8 a2=78 a3=c000388c70 items=0 ppid=3599 pid=3646 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:25.302000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6636653632393739383734623635316361373236333762343335313764 Apr 12 18:49:25.314000 audit[3646]: AVC avc: denied { bpf } for pid=3646 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.314000 audit[3646]: AVC avc: denied { bpf } for pid=3646 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.314000 audit[3646]: AVC avc: denied { perfmon } for pid=3646 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.314000 audit[3646]: AVC avc: denied { perfmon } for pid=3646 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.314000 audit[3646]: AVC avc: denied { perfmon } for pid=3646 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.314000 audit[3646]: AVC avc: denied { perfmon } for pid=3646 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.314000 audit[3646]: AVC avc: denied { perfmon } for pid=3646 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.314000 audit[3646]: AVC avc: denied { bpf } for pid=3646 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.314000 audit[3646]: AVC avc: denied { bpf } for pid=3646 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.314000 audit: BPF prog-id=126 op=LOAD Apr 12 18:49:25.314000 audit[3646]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c00019f770 a2=78 a3=c000388cb8 items=0 ppid=3599 pid=3646 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:25.314000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6636653632393739383734623635316361373236333762343335313764 Apr 12 18:49:25.314000 audit: BPF prog-id=126 op=UNLOAD Apr 12 18:49:25.315000 audit: BPF prog-id=125 op=UNLOAD Apr 12 18:49:25.315000 audit[3646]: AVC avc: denied { bpf } for pid=3646 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.315000 audit[3646]: AVC avc: denied { bpf } for pid=3646 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.315000 audit[3646]: AVC avc: denied { bpf } for pid=3646 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.315000 audit[3646]: AVC avc: denied { perfmon } for pid=3646 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.315000 audit[3646]: AVC avc: denied { perfmon } for pid=3646 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.315000 audit[3646]: AVC avc: denied { perfmon } for pid=3646 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.315000 audit[3646]: AVC avc: denied { perfmon } for pid=3646 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.315000 audit[3646]: AVC avc: denied { perfmon } for pid=3646 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.315000 audit[3646]: AVC avc: denied { bpf } for pid=3646 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.315000 audit[3646]: AVC avc: denied { bpf } for pid=3646 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:25.315000 audit: BPF prog-id=127 op=LOAD Apr 12 18:49:25.315000 audit[3646]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c00019fc30 a2=78 a3=c0003890c8 items=0 ppid=3599 pid=3646 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:25.315000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6636653632393739383734623635316361373236333762343335313764 Apr 12 18:49:25.390039 env[1629]: time="2024-04-12T18:49:25.389988556Z" level=info msg="StartContainer for \"f6e62979874b651ca72637b43517da0256c74396395a9b5cfc791e6fb7310f08\" returns successfully" Apr 12 18:49:25.776675 kubelet[2095]: E0412 18:49:25.776483 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:25.875000 audit[3678]: NETFILTER_CFG table=filter:83 family=2 entries=10 op=nft_register_rule pid=3678 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:49:25.875000 audit[3678]: SYSCALL arch=c000003e syscall=46 success=yes exit=3676 a0=3 a1=7ffcb0f75900 a2=0 a3=7ffcb0f758ec items=0 ppid=2332 pid=3678 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:25.875000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:49:25.877000 audit[3678]: NETFILTER_CFG table=nat:84 family=2 entries=44 op=nft_register_rule pid=3678 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:49:25.877000 audit[3678]: SYSCALL arch=c000003e syscall=46 success=yes exit=14988 a0=3 a1=7ffcb0f75900 a2=0 a3=7ffcb0f758ec items=0 ppid=2332 pid=3678 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:25.877000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:49:26.051000 audit[3656]: AVC avc: denied { watch } for pid=3656 comm="apiserver" path="/calico-apiserver-certs/..2024_04_12_18_49_20.2180055999/tls.crt" dev="tmpfs" ino=4 scontext=system_u:system_r:svirt_lxc_net_t:s0:c478,c526 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c478,c526 tclass=file permissive=0 Apr 12 18:49:26.051000 audit[3656]: SYSCALL arch=c000003e syscall=254 success=no exit=-13 a0=8 a1=c000db6f20 a2=fc6 a3=0 items=0 ppid=3599 pid=3656 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="apiserver" exe="/code/apiserver" subj=system_u:system_r:svirt_lxc_net_t:s0:c478,c526 key=(null) Apr 12 18:49:26.051000 audit: PROCTITLE proctitle=2F636F64652F617069736572766572002D2D7365637572652D706F72743D35343433002D2D746C732D707269766174652D6B65792D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C732E6B6579002D2D746C732D636572742D66696C653D2F63616C69636F2D6170697365727665722D63657274 Apr 12 18:49:26.341000 audit[3681]: NETFILTER_CFG table=filter:85 family=2 entries=10 op=nft_register_rule pid=3681 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:49:26.341000 audit[3681]: SYSCALL arch=c000003e syscall=46 success=yes exit=3676 a0=3 a1=7ffd02108780 a2=0 a3=7ffd0210876c items=0 ppid=2332 pid=3681 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:26.341000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:49:26.342000 audit[3681]: NETFILTER_CFG table=nat:86 family=2 entries=44 op=nft_register_rule pid=3681 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:49:26.342000 audit[3681]: SYSCALL arch=c000003e syscall=46 success=yes exit=14988 a0=3 a1=7ffd02108780 a2=0 a3=7ffd0210876c items=0 ppid=2332 pid=3681 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:26.342000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:49:26.720741 kubelet[2095]: E0412 18:49:26.720689 2095 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:26.734281 env[1629]: time="2024-04-12T18:49:26.734236183Z" level=info msg="StopPodSandbox for \"c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98\"" Apr 12 18:49:26.779338 kubelet[2095]: E0412 18:49:26.779237 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:26.884096 env[1629]: 2024-04-12 18:49:26.833 [WARNING][3698] k8s.go 549: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.61-k8s-csi--node--driver--7zlkf-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"2a04af6d-d9f0-41d0-896d-41bdc4c7d554", ResourceVersion:"958", Generation:0, CreationTimestamp:time.Date(2024, time.April, 12, 18, 48, 28, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"54c68f759", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.61", ContainerID:"751b4cfeca00955eeb5306fc04c463374e7da28a9b44844466ae13869949442a", Pod:"csi-node-driver-7zlkf", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.81.65/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"cali7deb738e3aa", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Apr 12 18:49:26.884096 env[1629]: 2024-04-12 18:49:26.833 [INFO][3698] k8s.go 585: Cleaning up netns ContainerID="c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" Apr 12 18:49:26.884096 env[1629]: 2024-04-12 18:49:26.834 [INFO][3698] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" iface="eth0" netns="" Apr 12 18:49:26.884096 env[1629]: 2024-04-12 18:49:26.834 [INFO][3698] k8s.go 592: Releasing IP address(es) ContainerID="c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" Apr 12 18:49:26.884096 env[1629]: 2024-04-12 18:49:26.834 [INFO][3698] utils.go 188: Calico CNI releasing IP address ContainerID="c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" Apr 12 18:49:26.884096 env[1629]: 2024-04-12 18:49:26.869 [INFO][3709] ipam_plugin.go 415: Releasing address using handleID ContainerID="c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" HandleID="k8s-pod-network.c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" Workload="172.31.22.61-k8s-csi--node--driver--7zlkf-eth0" Apr 12 18:49:26.884096 env[1629]: 2024-04-12 18:49:26.869 [INFO][3709] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Apr 12 18:49:26.884096 env[1629]: 2024-04-12 18:49:26.869 [INFO][3709] ipam_plugin.go 371: Acquired host-wide IPAM lock. Apr 12 18:49:26.884096 env[1629]: 2024-04-12 18:49:26.878 [WARNING][3709] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" HandleID="k8s-pod-network.c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" Workload="172.31.22.61-k8s-csi--node--driver--7zlkf-eth0" Apr 12 18:49:26.884096 env[1629]: 2024-04-12 18:49:26.878 [INFO][3709] ipam_plugin.go 443: Releasing address using workloadID ContainerID="c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" HandleID="k8s-pod-network.c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" Workload="172.31.22.61-k8s-csi--node--driver--7zlkf-eth0" Apr 12 18:49:26.884096 env[1629]: 2024-04-12 18:49:26.881 [INFO][3709] ipam_plugin.go 377: Released host-wide IPAM lock. Apr 12 18:49:26.884096 env[1629]: 2024-04-12 18:49:26.882 [INFO][3698] k8s.go 598: Teardown processing complete. ContainerID="c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" Apr 12 18:49:26.884779 env[1629]: time="2024-04-12T18:49:26.884090606Z" level=info msg="TearDown network for sandbox \"c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98\" successfully" Apr 12 18:49:26.884779 env[1629]: time="2024-04-12T18:49:26.884129865Z" level=info msg="StopPodSandbox for \"c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98\" returns successfully" Apr 12 18:49:26.885608 env[1629]: time="2024-04-12T18:49:26.885568702Z" level=info msg="RemovePodSandbox for \"c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98\"" Apr 12 18:49:26.885717 env[1629]: time="2024-04-12T18:49:26.885610649Z" level=info msg="Forcibly stopping sandbox \"c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98\"" Apr 12 18:49:27.025796 env[1629]: 2024-04-12 18:49:26.938 [WARNING][3728] k8s.go 549: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.61-k8s-csi--node--driver--7zlkf-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"2a04af6d-d9f0-41d0-896d-41bdc4c7d554", ResourceVersion:"958", Generation:0, CreationTimestamp:time.Date(2024, time.April, 12, 18, 48, 28, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"54c68f759", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.61", ContainerID:"751b4cfeca00955eeb5306fc04c463374e7da28a9b44844466ae13869949442a", Pod:"csi-node-driver-7zlkf", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.81.65/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"cali7deb738e3aa", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Apr 12 18:49:27.025796 env[1629]: 2024-04-12 18:49:26.939 [INFO][3728] k8s.go 585: Cleaning up netns ContainerID="c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" Apr 12 18:49:27.025796 env[1629]: 2024-04-12 18:49:26.939 [INFO][3728] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" iface="eth0" netns="" Apr 12 18:49:27.025796 env[1629]: 2024-04-12 18:49:26.939 [INFO][3728] k8s.go 592: Releasing IP address(es) ContainerID="c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" Apr 12 18:49:27.025796 env[1629]: 2024-04-12 18:49:26.939 [INFO][3728] utils.go 188: Calico CNI releasing IP address ContainerID="c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" Apr 12 18:49:27.025796 env[1629]: 2024-04-12 18:49:26.998 [INFO][3735] ipam_plugin.go 415: Releasing address using handleID ContainerID="c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" HandleID="k8s-pod-network.c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" Workload="172.31.22.61-k8s-csi--node--driver--7zlkf-eth0" Apr 12 18:49:27.025796 env[1629]: 2024-04-12 18:49:26.998 [INFO][3735] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Apr 12 18:49:27.025796 env[1629]: 2024-04-12 18:49:26.998 [INFO][3735] ipam_plugin.go 371: Acquired host-wide IPAM lock. Apr 12 18:49:27.025796 env[1629]: 2024-04-12 18:49:27.012 [WARNING][3735] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" HandleID="k8s-pod-network.c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" Workload="172.31.22.61-k8s-csi--node--driver--7zlkf-eth0" Apr 12 18:49:27.025796 env[1629]: 2024-04-12 18:49:27.012 [INFO][3735] ipam_plugin.go 443: Releasing address using workloadID ContainerID="c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" HandleID="k8s-pod-network.c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" Workload="172.31.22.61-k8s-csi--node--driver--7zlkf-eth0" Apr 12 18:49:27.025796 env[1629]: 2024-04-12 18:49:27.014 [INFO][3735] ipam_plugin.go 377: Released host-wide IPAM lock. Apr 12 18:49:27.025796 env[1629]: 2024-04-12 18:49:27.020 [INFO][3728] k8s.go 598: Teardown processing complete. ContainerID="c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98" Apr 12 18:49:27.025796 env[1629]: time="2024-04-12T18:49:27.025341274Z" level=info msg="TearDown network for sandbox \"c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98\" successfully" Apr 12 18:49:27.033517 env[1629]: time="2024-04-12T18:49:27.033462867Z" level=info msg="RemovePodSandbox \"c96a23ed1b35c8aa14f3a2715dd79aaefcfc5e0eb004fc6f9a4a9ad6acae4e98\" returns successfully" Apr 12 18:49:27.034564 env[1629]: time="2024-04-12T18:49:27.034524722Z" level=info msg="StopPodSandbox for \"2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8\"" Apr 12 18:49:27.210428 env[1629]: 2024-04-12 18:49:27.136 [WARNING][3758] k8s.go 549: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.61-k8s-nginx--deployment--845c78c8b9--hb6z8-eth0", GenerateName:"nginx-deployment-845c78c8b9-", Namespace:"default", SelfLink:"", UID:"68df65ce-55e1-494e-843e-9a0c46a7b5e2", ResourceVersion:"977", Generation:0, CreationTimestamp:time.Date(2024, time.April, 12, 18, 48, 48, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"845c78c8b9", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.61", ContainerID:"5cb264d54e5b81b393ef962e02fc9a0699726c141e2e5f4a244e7be24d7f8444", Pod:"nginx-deployment-845c78c8b9-hb6z8", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.81.66/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali551e67570a7", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Apr 12 18:49:27.210428 env[1629]: 2024-04-12 18:49:27.137 [INFO][3758] k8s.go 585: Cleaning up netns ContainerID="2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" Apr 12 18:49:27.210428 env[1629]: 2024-04-12 18:49:27.137 [INFO][3758] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" iface="eth0" netns="" Apr 12 18:49:27.210428 env[1629]: 2024-04-12 18:49:27.137 [INFO][3758] k8s.go 592: Releasing IP address(es) ContainerID="2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" Apr 12 18:49:27.210428 env[1629]: 2024-04-12 18:49:27.137 [INFO][3758] utils.go 188: Calico CNI releasing IP address ContainerID="2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" Apr 12 18:49:27.210428 env[1629]: 2024-04-12 18:49:27.195 [INFO][3764] ipam_plugin.go 415: Releasing address using handleID ContainerID="2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" HandleID="k8s-pod-network.2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" Workload="172.31.22.61-k8s-nginx--deployment--845c78c8b9--hb6z8-eth0" Apr 12 18:49:27.210428 env[1629]: 2024-04-12 18:49:27.196 [INFO][3764] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Apr 12 18:49:27.210428 env[1629]: 2024-04-12 18:49:27.196 [INFO][3764] ipam_plugin.go 371: Acquired host-wide IPAM lock. Apr 12 18:49:27.210428 env[1629]: 2024-04-12 18:49:27.205 [WARNING][3764] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" HandleID="k8s-pod-network.2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" Workload="172.31.22.61-k8s-nginx--deployment--845c78c8b9--hb6z8-eth0" Apr 12 18:49:27.210428 env[1629]: 2024-04-12 18:49:27.205 [INFO][3764] ipam_plugin.go 443: Releasing address using workloadID ContainerID="2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" HandleID="k8s-pod-network.2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" Workload="172.31.22.61-k8s-nginx--deployment--845c78c8b9--hb6z8-eth0" Apr 12 18:49:27.210428 env[1629]: 2024-04-12 18:49:27.208 [INFO][3764] ipam_plugin.go 377: Released host-wide IPAM lock. Apr 12 18:49:27.210428 env[1629]: 2024-04-12 18:49:27.209 [INFO][3758] k8s.go 598: Teardown processing complete. ContainerID="2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" Apr 12 18:49:27.211293 env[1629]: time="2024-04-12T18:49:27.210460445Z" level=info msg="TearDown network for sandbox \"2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8\" successfully" Apr 12 18:49:27.211293 env[1629]: time="2024-04-12T18:49:27.210499482Z" level=info msg="StopPodSandbox for \"2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8\" returns successfully" Apr 12 18:49:27.211293 env[1629]: time="2024-04-12T18:49:27.211075403Z" level=info msg="RemovePodSandbox for \"2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8\"" Apr 12 18:49:27.211293 env[1629]: time="2024-04-12T18:49:27.211112469Z" level=info msg="Forcibly stopping sandbox \"2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8\"" Apr 12 18:49:27.328821 env[1629]: 2024-04-12 18:49:27.284 [WARNING][3784] k8s.go 549: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.61-k8s-nginx--deployment--845c78c8b9--hb6z8-eth0", GenerateName:"nginx-deployment-845c78c8b9-", Namespace:"default", SelfLink:"", UID:"68df65ce-55e1-494e-843e-9a0c46a7b5e2", ResourceVersion:"977", Generation:0, CreationTimestamp:time.Date(2024, time.April, 12, 18, 48, 48, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"845c78c8b9", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.61", ContainerID:"5cb264d54e5b81b393ef962e02fc9a0699726c141e2e5f4a244e7be24d7f8444", Pod:"nginx-deployment-845c78c8b9-hb6z8", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.81.66/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali551e67570a7", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Apr 12 18:49:27.328821 env[1629]: 2024-04-12 18:49:27.285 [INFO][3784] k8s.go 585: Cleaning up netns ContainerID="2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" Apr 12 18:49:27.328821 env[1629]: 2024-04-12 18:49:27.285 [INFO][3784] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" iface="eth0" netns="" Apr 12 18:49:27.328821 env[1629]: 2024-04-12 18:49:27.285 [INFO][3784] k8s.go 592: Releasing IP address(es) ContainerID="2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" Apr 12 18:49:27.328821 env[1629]: 2024-04-12 18:49:27.285 [INFO][3784] utils.go 188: Calico CNI releasing IP address ContainerID="2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" Apr 12 18:49:27.328821 env[1629]: 2024-04-12 18:49:27.315 [INFO][3790] ipam_plugin.go 415: Releasing address using handleID ContainerID="2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" HandleID="k8s-pod-network.2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" Workload="172.31.22.61-k8s-nginx--deployment--845c78c8b9--hb6z8-eth0" Apr 12 18:49:27.328821 env[1629]: 2024-04-12 18:49:27.315 [INFO][3790] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Apr 12 18:49:27.328821 env[1629]: 2024-04-12 18:49:27.316 [INFO][3790] ipam_plugin.go 371: Acquired host-wide IPAM lock. Apr 12 18:49:27.328821 env[1629]: 2024-04-12 18:49:27.323 [WARNING][3790] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" HandleID="k8s-pod-network.2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" Workload="172.31.22.61-k8s-nginx--deployment--845c78c8b9--hb6z8-eth0" Apr 12 18:49:27.328821 env[1629]: 2024-04-12 18:49:27.324 [INFO][3790] ipam_plugin.go 443: Releasing address using workloadID ContainerID="2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" HandleID="k8s-pod-network.2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" Workload="172.31.22.61-k8s-nginx--deployment--845c78c8b9--hb6z8-eth0" Apr 12 18:49:27.328821 env[1629]: 2024-04-12 18:49:27.326 [INFO][3790] ipam_plugin.go 377: Released host-wide IPAM lock. Apr 12 18:49:27.328821 env[1629]: 2024-04-12 18:49:27.327 [INFO][3784] k8s.go 598: Teardown processing complete. ContainerID="2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8" Apr 12 18:49:27.328821 env[1629]: time="2024-04-12T18:49:27.328676958Z" level=info msg="TearDown network for sandbox \"2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8\" successfully" Apr 12 18:49:27.334439 env[1629]: time="2024-04-12T18:49:27.334387071Z" level=info msg="RemovePodSandbox \"2f16a47a22a15fec92a8bce74a6557160c2cd76d256365a7e0aca9f421144bd8\" returns successfully" Apr 12 18:49:27.780570 kubelet[2095]: E0412 18:49:27.780520 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:28.781566 kubelet[2095]: E0412 18:49:28.781511 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:29.782236 kubelet[2095]: E0412 18:49:29.782165 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:30.782444 kubelet[2095]: E0412 18:49:30.782388 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:31.782624 kubelet[2095]: E0412 18:49:31.782576 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:32.783326 kubelet[2095]: E0412 18:49:32.783280 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:33.783916 kubelet[2095]: E0412 18:49:33.783862 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:34.784899 kubelet[2095]: E0412 18:49:34.784846 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:35.785623 kubelet[2095]: E0412 18:49:35.785577 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:36.786799 kubelet[2095]: E0412 18:49:36.786743 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:37.787589 kubelet[2095]: E0412 18:49:37.787477 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:38.787804 kubelet[2095]: E0412 18:49:38.787761 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:39.788859 kubelet[2095]: E0412 18:49:39.788728 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:40.789815 kubelet[2095]: E0412 18:49:40.789764 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:41.790652 kubelet[2095]: E0412 18:49:41.790543 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:42.791017 kubelet[2095]: E0412 18:49:42.790965 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:43.791660 kubelet[2095]: E0412 18:49:43.791597 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:44.792089 kubelet[2095]: E0412 18:49:44.792047 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:45.719946 kubelet[2095]: I0412 18:49:45.719903 2095 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="calico-apiserver/calico-apiserver-8678599fcc-s55mt" podStartSLOduration=22.331926017 podCreationTimestamp="2024-04-12 18:49:20 +0000 UTC" firstStartedPulling="2024-04-12 18:49:21.779078433 +0000 UTC m=+55.744175460" lastFinishedPulling="2024-04-12 18:49:25.167016715 +0000 UTC m=+59.132113748" observedRunningTime="2024-04-12 18:49:26.299881585 +0000 UTC m=+60.264978633" watchObservedRunningTime="2024-04-12 18:49:45.719864305 +0000 UTC m=+79.684961353" Apr 12 18:49:45.720274 kubelet[2095]: I0412 18:49:45.720251 2095 topology_manager.go:212] "Topology Admit Handler" Apr 12 18:49:45.727437 systemd[1]: Created slice kubepods-besteffort-pod884c48c8_aac4_4da4_bbf8_a9903479ca81.slice. Apr 12 18:49:45.792938 kubelet[2095]: E0412 18:49:45.792897 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:45.897843 kubelet[2095]: I0412 18:49:45.897805 2095 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-j545d\" (UniqueName: \"kubernetes.io/projected/884c48c8-aac4-4da4-bbf8-a9903479ca81-kube-api-access-j545d\") pod \"test-pod-1\" (UID: \"884c48c8-aac4-4da4-bbf8-a9903479ca81\") " pod="default/test-pod-1" Apr 12 18:49:45.897843 kubelet[2095]: I0412 18:49:45.897865 2095 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"pvc-f7ab568d-c064-43cb-bd70-d4f8f7e853be\" (UniqueName: \"kubernetes.io/nfs/884c48c8-aac4-4da4-bbf8-a9903479ca81-pvc-f7ab568d-c064-43cb-bd70-d4f8f7e853be\") pod \"test-pod-1\" (UID: \"884c48c8-aac4-4da4-bbf8-a9903479ca81\") " pod="default/test-pod-1" Apr 12 18:49:46.059237 kernel: Failed to create system directory netfs Apr 12 18:49:46.059459 kernel: kauditd_printk_skb: 62 callbacks suppressed Apr 12 18:49:46.059533 kernel: audit: type=1400 audit(1712947786.046:922): avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.059570 kernel: Failed to create system directory netfs Apr 12 18:49:46.059602 kernel: audit: type=1400 audit(1712947786.046:922): avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.059631 kernel: Failed to create system directory netfs Apr 12 18:49:46.046000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.046000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.066130 kernel: audit: type=1400 audit(1712947786.046:922): avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.066592 kernel: Failed to create system directory netfs Apr 12 18:49:46.046000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.082181 kernel: audit: type=1400 audit(1712947786.046:922): avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.046000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.046000 audit[3831]: SYSCALL arch=c000003e syscall=175 success=yes exit=0 a0=56102da8a5e0 a1=153bc a2=56102c9652b0 a3=5 items=0 ppid=198 pid=3831 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:46.094435 kernel: audit: type=1300 audit(1712947786.046:922): arch=c000003e syscall=175 success=yes exit=0 a0=56102da8a5e0 a1=153bc a2=56102c9652b0 a3=5 items=0 ppid=198 pid=3831 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:46.046000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Apr 12 18:49:46.101367 kernel: audit: type=1327 audit(1712947786.046:922): proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Apr 12 18:49:46.111127 kernel: Failed to create system directory fscache Apr 12 18:49:46.111287 kernel: audit: type=1400 audit(1712947786.099:923): avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.111334 kernel: Failed to create system directory fscache Apr 12 18:49:46.099000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.119801 kernel: audit: type=1400 audit(1712947786.099:923): avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.119937 kernel: Failed to create system directory fscache Apr 12 18:49:46.099000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.128037 kernel: audit: type=1400 audit(1712947786.099:923): avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.128206 kernel: Failed to create system directory fscache Apr 12 18:49:46.099000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.137544 kernel: audit: type=1400 audit(1712947786.099:923): avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.137669 kernel: Failed to create system directory fscache Apr 12 18:49:46.099000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.099000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.099000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.141498 kernel: Failed to create system directory fscache Apr 12 18:49:46.141565 kernel: Failed to create system directory fscache Apr 12 18:49:46.099000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.099000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.145859 kernel: Failed to create system directory fscache Apr 12 18:49:46.145928 kernel: Failed to create system directory fscache Apr 12 18:49:46.099000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.099000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.151463 kernel: Failed to create system directory fscache Apr 12 18:49:46.099000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.152714 kernel: Failed to create system directory fscache Apr 12 18:49:46.152785 kernel: Failed to create system directory fscache Apr 12 18:49:46.099000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.099000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.155336 kernel: Failed to create system directory fscache Apr 12 18:49:46.155381 kernel: Failed to create system directory fscache Apr 12 18:49:46.099000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.099000 audit[3831]: SYSCALL arch=c000003e syscall=175 success=yes exit=0 a0=56102dc9f9c0 a1=4c0fc a2=56102c9652b0 a3=5 items=0 ppid=198 pid=3831 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:46.099000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Apr 12 18:49:46.159325 kernel: FS-Cache: Loaded Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.222333 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.222544 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.222572 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.225142 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.225235 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.227873 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.227928 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.230764 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.230823 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.235037 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.235244 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.239548 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.239670 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.243000 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.243094 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.246076 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.246134 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.251270 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.251449 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.255719 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.255896 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.258378 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.258569 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.261156 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.261282 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.265688 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.265783 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.270553 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.270665 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.274712 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.274953 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.278780 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.278903 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.282297 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.282450 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.285406 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.285467 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.288817 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.291667 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.291767 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.294832 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.294910 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.299372 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.299480 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.301363 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.303832 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.303931 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.306641 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.306744 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.310728 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.310885 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.316467 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.316749 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.316825 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.319326 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.319415 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.322965 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.323049 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.326107 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.326205 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.328795 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.328909 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.332096 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.332186 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.334608 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.334667 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.337620 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.337706 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.345937 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.346047 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.349147 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.349225 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.354777 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.354870 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.357745 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.357837 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.360625 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.360690 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.363330 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.363394 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.365815 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.365892 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.370431 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.370507 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.374248 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.374326 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.377935 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.378094 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.380550 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.380629 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.383420 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.383538 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.386131 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.386182 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.389631 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.389723 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.392225 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.392287 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.394702 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.394904 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.397664 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.397715 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.401923 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.402054 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.403197 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.405813 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.405884 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.408339 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.408408 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.411456 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.411530 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.414191 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.414258 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.417103 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.417215 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.419978 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.420091 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.428517 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.428741 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.433634 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.433729 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.441928 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.442334 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.448258 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.448395 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.449546 kernel: Failed to create system directory sunrpc Apr 12 18:49:46.199000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.461597 kernel: RPC: Registered named UNIX socket transport module. Apr 12 18:49:46.461742 kernel: RPC: Registered udp transport module. Apr 12 18:49:46.461837 kernel: RPC: Registered tcp transport module. Apr 12 18:49:46.462709 kernel: RPC: Registered tcp NFSv4.1 backchannel transport module. Apr 12 18:49:46.199000 audit[3831]: SYSCALL arch=c000003e syscall=175 success=yes exit=0 a0=56102dcebad0 a1=1a7e9c a2=56102c9652b0 a3=5 items=6 ppid=198 pid=3831 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:46.199000 audit: CWD cwd="/" Apr 12 18:49:46.199000 audit: PATH item=0 name=(null) inode=1 dev=00:07 mode=040700 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:49:46.199000 audit: PATH item=1 name=(null) inode=24152 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:49:46.199000 audit: PATH item=2 name=(null) inode=24152 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:49:46.199000 audit: PATH item=3 name=(null) inode=24153 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:49:46.199000 audit: PATH item=4 name=(null) inode=24152 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:49:46.199000 audit: PATH item=5 name=(null) inode=24154 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:49:46.199000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.549160 kernel: Failed to create system directory nfs Apr 12 18:49:46.549290 kernel: Failed to create system directory nfs Apr 12 18:49:46.549344 kernel: Failed to create system directory nfs Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.550321 kernel: Failed to create system directory nfs Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.552328 kernel: Failed to create system directory nfs Apr 12 18:49:46.552367 kernel: Failed to create system directory nfs Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.553438 kernel: Failed to create system directory nfs Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.555682 kernel: Failed to create system directory nfs Apr 12 18:49:46.555730 kernel: Failed to create system directory nfs Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.557752 kernel: Failed to create system directory nfs Apr 12 18:49:46.557824 kernel: Failed to create system directory nfs Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.559853 kernel: Failed to create system directory nfs Apr 12 18:49:46.559897 kernel: Failed to create system directory nfs Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.562085 kernel: Failed to create system directory nfs Apr 12 18:49:46.562143 kernel: Failed to create system directory nfs Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.564341 kernel: Failed to create system directory nfs Apr 12 18:49:46.564413 kernel: Failed to create system directory nfs Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.566421 kernel: Failed to create system directory nfs Apr 12 18:49:46.566466 kernel: Failed to create system directory nfs Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.574690 kernel: Failed to create system directory nfs Apr 12 18:49:46.574838 kernel: Failed to create system directory nfs Apr 12 18:49:46.574933 kernel: Failed to create system directory nfs Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.577704 kernel: Failed to create system directory nfs Apr 12 18:49:46.577830 kernel: Failed to create system directory nfs Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.580246 kernel: Failed to create system directory nfs Apr 12 18:49:46.580297 kernel: Failed to create system directory nfs Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.582627 kernel: Failed to create system directory nfs Apr 12 18:49:46.582723 kernel: Failed to create system directory nfs Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.584975 kernel: Failed to create system directory nfs Apr 12 18:49:46.585027 kernel: Failed to create system directory nfs Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.587247 kernel: Failed to create system directory nfs Apr 12 18:49:46.587316 kernel: Failed to create system directory nfs Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.589378 kernel: Failed to create system directory nfs Apr 12 18:49:46.589424 kernel: Failed to create system directory nfs Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.591557 kernel: Failed to create system directory nfs Apr 12 18:49:46.591747 kernel: Failed to create system directory nfs Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.593842 kernel: Failed to create system directory nfs Apr 12 18:49:46.593910 kernel: Failed to create system directory nfs Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.596628 kernel: Failed to create system directory nfs Apr 12 18:49:46.596688 kernel: Failed to create system directory nfs Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.598761 kernel: Failed to create system directory nfs Apr 12 18:49:46.598806 kernel: Failed to create system directory nfs Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.600849 kernel: Failed to create system directory nfs Apr 12 18:49:46.600916 kernel: Failed to create system directory nfs Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.603147 kernel: Failed to create system directory nfs Apr 12 18:49:46.603202 kernel: Failed to create system directory nfs Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.605240 kernel: Failed to create system directory nfs Apr 12 18:49:46.605292 kernel: Failed to create system directory nfs Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.608540 kernel: Failed to create system directory nfs Apr 12 18:49:46.608592 kernel: Failed to create system directory nfs Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.610680 kernel: Failed to create system directory nfs Apr 12 18:49:46.610730 kernel: Failed to create system directory nfs Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.611783 kernel: Failed to create system directory nfs Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.614066 kernel: Failed to create system directory nfs Apr 12 18:49:46.614117 kernel: Failed to create system directory nfs Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.616901 kernel: Failed to create system directory nfs Apr 12 18:49:46.616948 kernel: Failed to create system directory nfs Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.619124 kernel: Failed to create system directory nfs Apr 12 18:49:46.619179 kernel: Failed to create system directory nfs Apr 12 18:49:46.531000 audit[3831]: AVC avc: denied { confidentiality } for pid=3831 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.531000 audit[3831]: SYSCALL arch=c000003e syscall=175 success=yes exit=0 a0=56102df0c670 a1=16d85c a2=56102c9652b0 a3=5 items=0 ppid=198 pid=3831 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:46.641633 kernel: FS-Cache: Netfs 'nfs' registered for caching Apr 12 18:49:46.531000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.696341 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.696517 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.696554 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.698683 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.698723 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.700754 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.700792 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.703489 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.703558 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.705799 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.705863 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.707016 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.709206 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.709253 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.711459 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.711533 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.712479 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.713710 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.716015 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.716069 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.718357 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.718405 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.719413 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.721720 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.721849 kubelet[2095]: E0412 18:49:46.721575 2095 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:46.722798 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.723867 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.725198 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.728410 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.729668 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.730788 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.731983 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.733016 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.734052 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.735486 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.736574 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.737682 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.738950 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.740029 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.741069 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.742126 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.743615 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.744660 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.745885 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.747494 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.748702 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.749894 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.751117 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.752206 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.753386 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.755693 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.755739 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.758145 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.758397 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.759475 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.761739 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.761859 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.764153 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.764201 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.766379 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.766423 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.768681 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.768872 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.770878 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.770917 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.773814 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.773859 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.776055 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.776098 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.778498 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.778570 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.780739 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.780779 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.783110 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.783159 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.793199 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.793438 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.793577 kubelet[2095]: E0412 18:49:46.793130 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:46.798004 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.806857 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.808419 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.825290 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.825437 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.843715 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.843870 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.843901 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.843925 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.843949 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.845273 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.845345 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.846333 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.848427 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.852025 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.852105 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.852439 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:46.853863 kernel: Failed to create system directory nfs4 Apr 12 18:49:46.675000 audit[3836]: AVC avc: denied { confidentiality } for pid=3836 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:47.025353 kernel: NFS: Registering the id_resolver key type Apr 12 18:49:47.028731 kernel: Key type id_resolver registered Apr 12 18:49:47.028842 kernel: Key type id_legacy registered Apr 12 18:49:46.675000 audit[3836]: SYSCALL arch=c000003e syscall=175 success=yes exit=0 a0=7f73de95c010 a1=208ac4 a2=55b6d92142b0 a3=5 items=0 ppid=198 pid=3836 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:46.675000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D006E66737634 Apr 12 18:49:47.056000 audit[3837]: AVC avc: denied { confidentiality } for pid=3837 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:47.056000 audit[3837]: AVC avc: denied { confidentiality } for pid=3837 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:47.062934 kernel: Failed to create system directory rpcgss Apr 12 18:49:47.063008 kernel: Failed to create system directory rpcgss Apr 12 18:49:47.063036 kernel: Failed to create system directory rpcgss Apr 12 18:49:47.056000 audit[3837]: AVC avc: denied { confidentiality } for pid=3837 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:47.056000 audit[3837]: AVC avc: denied { confidentiality } for pid=3837 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:47.065148 kernel: Failed to create system directory rpcgss Apr 12 18:49:47.065225 kernel: Failed to create system directory rpcgss Apr 12 18:49:47.056000 audit[3837]: AVC avc: denied { confidentiality } for pid=3837 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:47.056000 audit[3837]: AVC avc: denied { confidentiality } for pid=3837 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:47.067891 kernel: Failed to create system directory rpcgss Apr 12 18:49:47.068282 kernel: Failed to create system directory rpcgss Apr 12 18:49:47.056000 audit[3837]: AVC avc: denied { confidentiality } for pid=3837 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:47.056000 audit[3837]: AVC avc: denied { confidentiality } for pid=3837 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:47.070928 kernel: Failed to create system directory rpcgss Apr 12 18:49:47.071012 kernel: Failed to create system directory rpcgss Apr 12 18:49:47.056000 audit[3837]: AVC avc: denied { confidentiality } for pid=3837 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:47.056000 audit[3837]: AVC avc: denied { confidentiality } for pid=3837 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:47.073271 kernel: Failed to create system directory rpcgss Apr 12 18:49:47.073339 kernel: Failed to create system directory rpcgss Apr 12 18:49:47.056000 audit[3837]: AVC avc: denied { confidentiality } for pid=3837 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:47.056000 audit[3837]: AVC avc: denied { confidentiality } for pid=3837 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:47.075569 kernel: Failed to create system directory rpcgss Apr 12 18:49:47.075630 kernel: Failed to create system directory rpcgss Apr 12 18:49:47.077297 kernel: Failed to create system directory rpcgss Apr 12 18:49:47.056000 audit[3837]: AVC avc: denied { confidentiality } for pid=3837 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:47.056000 audit[3837]: AVC avc: denied { confidentiality } for pid=3837 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:47.056000 audit[3837]: AVC avc: denied { confidentiality } for pid=3837 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:47.079594 kernel: Failed to create system directory rpcgss Apr 12 18:49:47.079658 kernel: Failed to create system directory rpcgss Apr 12 18:49:47.056000 audit[3837]: AVC avc: denied { confidentiality } for pid=3837 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:47.056000 audit[3837]: AVC avc: denied { confidentiality } for pid=3837 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:47.082681 kernel: Failed to create system directory rpcgss Apr 12 18:49:47.082752 kernel: Failed to create system directory rpcgss Apr 12 18:49:47.056000 audit[3837]: AVC avc: denied { confidentiality } for pid=3837 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:47.056000 audit[3837]: AVC avc: denied { confidentiality } for pid=3837 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:47.085271 kernel: Failed to create system directory rpcgss Apr 12 18:49:47.085343 kernel: Failed to create system directory rpcgss Apr 12 18:49:47.056000 audit[3837]: AVC avc: denied { confidentiality } for pid=3837 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:47.056000 audit[3837]: AVC avc: denied { confidentiality } for pid=3837 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:47.096671 kernel: Failed to create system directory rpcgss Apr 12 18:49:47.096755 kernel: Failed to create system directory rpcgss Apr 12 18:49:47.056000 audit[3837]: AVC avc: denied { confidentiality } for pid=3837 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:47.056000 audit[3837]: AVC avc: denied { confidentiality } for pid=3837 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:47.104121 kernel: Failed to create system directory rpcgss Apr 12 18:49:47.104263 kernel: Failed to create system directory rpcgss Apr 12 18:49:47.056000 audit[3837]: AVC avc: denied { confidentiality } for pid=3837 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:47.056000 audit[3837]: AVC avc: denied { confidentiality } for pid=3837 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:47.111085 kernel: Failed to create system directory rpcgss Apr 12 18:49:47.111202 kernel: Failed to create system directory rpcgss Apr 12 18:49:47.056000 audit[3837]: AVC avc: denied { confidentiality } for pid=3837 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:49:47.056000 audit[3837]: SYSCALL arch=c000003e syscall=175 success=yes exit=0 a0=7f175036d010 a1=70c3c a2=55d89cf262b0 a3=5 items=0 ppid=198 pid=3837 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:47.056000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D007270632D617574682D36 Apr 12 18:49:47.148884 nfsidmap[3844]: nss_getpwnam: name 'root@nfs-server-provisioner.default.svc.cluster.local' does not map into domain 'us-west-2.compute.internal' Apr 12 18:49:47.153394 nfsidmap[3845]: nss_name_to_gid: name 'root@nfs-server-provisioner.default.svc.cluster.local' does not map into domain 'us-west-2.compute.internal' Apr 12 18:49:47.164000 audit[1]: AVC avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2866 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Apr 12 18:49:47.164000 audit[1]: AVC avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2866 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Apr 12 18:49:47.164000 audit[1]: AVC avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2866 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Apr 12 18:49:47.164000 audit[1829]: AVC avc: denied { watch_reads } for pid=1829 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2866 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Apr 12 18:49:47.164000 audit[1829]: SYSCALL arch=c000003e syscall=254 success=no exit=-13 a0=e a1=5614227b2870 a2=10 a3=8d5ab95bb51abf12 items=0 ppid=1 pid=1829 auid=4294967295 uid=500 gid=500 euid=500 suid=500 fsuid=500 egid=500 sgid=500 fsgid=500 tty=(none) ses=4294967295 comm="systemd" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:47.164000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D64002D2D75736572 Apr 12 18:49:47.164000 audit[1829]: AVC avc: denied { watch_reads } for pid=1829 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2866 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Apr 12 18:49:47.164000 audit[1829]: SYSCALL arch=c000003e syscall=254 success=no exit=-13 a0=e a1=5614227b2870 a2=10 a3=8d5ab95bb51abf12 items=0 ppid=1 pid=1829 auid=4294967295 uid=500 gid=500 euid=500 suid=500 fsuid=500 egid=500 sgid=500 fsgid=500 tty=(none) ses=4294967295 comm="systemd" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:47.164000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D64002D2D75736572 Apr 12 18:49:47.164000 audit[1829]: AVC avc: denied { watch_reads } for pid=1829 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2866 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Apr 12 18:49:47.164000 audit[1829]: SYSCALL arch=c000003e syscall=254 success=no exit=-13 a0=e a1=5614227b2870 a2=10 a3=8d5ab95bb51abf12 items=0 ppid=1 pid=1829 auid=4294967295 uid=500 gid=500 euid=500 suid=500 fsuid=500 egid=500 sgid=500 fsgid=500 tty=(none) ses=4294967295 comm="systemd" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:47.164000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D64002D2D75736572 Apr 12 18:49:47.231955 env[1629]: time="2024-04-12T18:49:47.231904307Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:test-pod-1,Uid:884c48c8-aac4-4da4-bbf8-a9903479ca81,Namespace:default,Attempt:0,}" Apr 12 18:49:47.489710 (udev-worker)[3838]: Network interface NamePolicy= disabled on kernel command line. Apr 12 18:49:47.489865 systemd-networkd[1453]: cali5ec59c6bf6e: Link UP Apr 12 18:49:47.496719 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Apr 12 18:49:47.496824 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali5ec59c6bf6e: link becomes ready Apr 12 18:49:47.495858 systemd-networkd[1453]: cali5ec59c6bf6e: Gained carrier Apr 12 18:49:47.535949 env[1629]: 2024-04-12 18:49:47.342 [INFO][3846] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.22.61-k8s-test--pod--1-eth0 default 884c48c8-aac4-4da4-bbf8-a9903479ca81 1174 0 2024-04-12 18:49:14 +0000 UTC map[projectcalico.org/namespace:default projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 172.31.22.61 test-pod-1 eth0 default [] [] [kns.default ksa.default.default] cali5ec59c6bf6e [] []}} ContainerID="0a02f9fbcd7e54fd096e915fa56bc11f2ff485fbf2d8bff7b28fbe8f0c7abc71" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.22.61-k8s-test--pod--1-" Apr 12 18:49:47.535949 env[1629]: 2024-04-12 18:49:47.343 [INFO][3846] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="0a02f9fbcd7e54fd096e915fa56bc11f2ff485fbf2d8bff7b28fbe8f0c7abc71" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.22.61-k8s-test--pod--1-eth0" Apr 12 18:49:47.535949 env[1629]: 2024-04-12 18:49:47.435 [INFO][3858] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="0a02f9fbcd7e54fd096e915fa56bc11f2ff485fbf2d8bff7b28fbe8f0c7abc71" HandleID="k8s-pod-network.0a02f9fbcd7e54fd096e915fa56bc11f2ff485fbf2d8bff7b28fbe8f0c7abc71" Workload="172.31.22.61-k8s-test--pod--1-eth0" Apr 12 18:49:47.535949 env[1629]: 2024-04-12 18:49:47.449 [INFO][3858] ipam_plugin.go 268: Auto assigning IP ContainerID="0a02f9fbcd7e54fd096e915fa56bc11f2ff485fbf2d8bff7b28fbe8f0c7abc71" HandleID="k8s-pod-network.0a02f9fbcd7e54fd096e915fa56bc11f2ff485fbf2d8bff7b28fbe8f0c7abc71" Workload="172.31.22.61-k8s-test--pod--1-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0xc000281f00), Attrs:map[string]string{"namespace":"default", "node":"172.31.22.61", "pod":"test-pod-1", "timestamp":"2024-04-12 18:49:47.435232046 +0000 UTC"}, Hostname:"172.31.22.61", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Apr 12 18:49:47.535949 env[1629]: 2024-04-12 18:49:47.450 [INFO][3858] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Apr 12 18:49:47.535949 env[1629]: 2024-04-12 18:49:47.450 [INFO][3858] ipam_plugin.go 371: Acquired host-wide IPAM lock. Apr 12 18:49:47.535949 env[1629]: 2024-04-12 18:49:47.450 [INFO][3858] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.22.61' Apr 12 18:49:47.535949 env[1629]: 2024-04-12 18:49:47.452 [INFO][3858] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.0a02f9fbcd7e54fd096e915fa56bc11f2ff485fbf2d8bff7b28fbe8f0c7abc71" host="172.31.22.61" Apr 12 18:49:47.535949 env[1629]: 2024-04-12 18:49:47.458 [INFO][3858] ipam.go 372: Looking up existing affinities for host host="172.31.22.61" Apr 12 18:49:47.535949 env[1629]: 2024-04-12 18:49:47.464 [INFO][3858] ipam.go 489: Trying affinity for 192.168.81.64/26 host="172.31.22.61" Apr 12 18:49:47.535949 env[1629]: 2024-04-12 18:49:47.466 [INFO][3858] ipam.go 155: Attempting to load block cidr=192.168.81.64/26 host="172.31.22.61" Apr 12 18:49:47.535949 env[1629]: 2024-04-12 18:49:47.470 [INFO][3858] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.81.64/26 host="172.31.22.61" Apr 12 18:49:47.535949 env[1629]: 2024-04-12 18:49:47.470 [INFO][3858] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.81.64/26 handle="k8s-pod-network.0a02f9fbcd7e54fd096e915fa56bc11f2ff485fbf2d8bff7b28fbe8f0c7abc71" host="172.31.22.61" Apr 12 18:49:47.535949 env[1629]: 2024-04-12 18:49:47.472 [INFO][3858] ipam.go 1682: Creating new handle: k8s-pod-network.0a02f9fbcd7e54fd096e915fa56bc11f2ff485fbf2d8bff7b28fbe8f0c7abc71 Apr 12 18:49:47.535949 env[1629]: 2024-04-12 18:49:47.477 [INFO][3858] ipam.go 1203: Writing block in order to claim IPs block=192.168.81.64/26 handle="k8s-pod-network.0a02f9fbcd7e54fd096e915fa56bc11f2ff485fbf2d8bff7b28fbe8f0c7abc71" host="172.31.22.61" Apr 12 18:49:47.535949 env[1629]: 2024-04-12 18:49:47.484 [INFO][3858] ipam.go 1216: Successfully claimed IPs: [192.168.81.69/26] block=192.168.81.64/26 handle="k8s-pod-network.0a02f9fbcd7e54fd096e915fa56bc11f2ff485fbf2d8bff7b28fbe8f0c7abc71" host="172.31.22.61" Apr 12 18:49:47.535949 env[1629]: 2024-04-12 18:49:47.484 [INFO][3858] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.81.69/26] handle="k8s-pod-network.0a02f9fbcd7e54fd096e915fa56bc11f2ff485fbf2d8bff7b28fbe8f0c7abc71" host="172.31.22.61" Apr 12 18:49:47.535949 env[1629]: 2024-04-12 18:49:47.484 [INFO][3858] ipam_plugin.go 377: Released host-wide IPAM lock. Apr 12 18:49:47.535949 env[1629]: 2024-04-12 18:49:47.484 [INFO][3858] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.81.69/26] IPv6=[] ContainerID="0a02f9fbcd7e54fd096e915fa56bc11f2ff485fbf2d8bff7b28fbe8f0c7abc71" HandleID="k8s-pod-network.0a02f9fbcd7e54fd096e915fa56bc11f2ff485fbf2d8bff7b28fbe8f0c7abc71" Workload="172.31.22.61-k8s-test--pod--1-eth0" Apr 12 18:49:47.535949 env[1629]: 2024-04-12 18:49:47.486 [INFO][3846] k8s.go 385: Populated endpoint ContainerID="0a02f9fbcd7e54fd096e915fa56bc11f2ff485fbf2d8bff7b28fbe8f0c7abc71" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.22.61-k8s-test--pod--1-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.61-k8s-test--pod--1-eth0", GenerateName:"", Namespace:"default", SelfLink:"", UID:"884c48c8-aac4-4da4-bbf8-a9903479ca81", ResourceVersion:"1174", Generation:0, CreationTimestamp:time.Date(2024, time.April, 12, 18, 49, 14, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.61", ContainerID:"", Pod:"test-pod-1", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.81.69/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali5ec59c6bf6e", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Apr 12 18:49:47.535949 env[1629]: 2024-04-12 18:49:47.486 [INFO][3846] k8s.go 386: Calico CNI using IPs: [192.168.81.69/32] ContainerID="0a02f9fbcd7e54fd096e915fa56bc11f2ff485fbf2d8bff7b28fbe8f0c7abc71" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.22.61-k8s-test--pod--1-eth0" Apr 12 18:49:47.537987 env[1629]: 2024-04-12 18:49:47.486 [INFO][3846] dataplane_linux.go 68: Setting the host side veth name to cali5ec59c6bf6e ContainerID="0a02f9fbcd7e54fd096e915fa56bc11f2ff485fbf2d8bff7b28fbe8f0c7abc71" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.22.61-k8s-test--pod--1-eth0" Apr 12 18:49:47.537987 env[1629]: 2024-04-12 18:49:47.497 [INFO][3846] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="0a02f9fbcd7e54fd096e915fa56bc11f2ff485fbf2d8bff7b28fbe8f0c7abc71" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.22.61-k8s-test--pod--1-eth0" Apr 12 18:49:47.537987 env[1629]: 2024-04-12 18:49:47.497 [INFO][3846] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="0a02f9fbcd7e54fd096e915fa56bc11f2ff485fbf2d8bff7b28fbe8f0c7abc71" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.22.61-k8s-test--pod--1-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.61-k8s-test--pod--1-eth0", GenerateName:"", Namespace:"default", SelfLink:"", UID:"884c48c8-aac4-4da4-bbf8-a9903479ca81", ResourceVersion:"1174", Generation:0, CreationTimestamp:time.Date(2024, time.April, 12, 18, 49, 14, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.61", ContainerID:"0a02f9fbcd7e54fd096e915fa56bc11f2ff485fbf2d8bff7b28fbe8f0c7abc71", Pod:"test-pod-1", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.81.69/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali5ec59c6bf6e", MAC:"f2:fe:ed:8b:d6:64", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Apr 12 18:49:47.537987 env[1629]: 2024-04-12 18:49:47.529 [INFO][3846] k8s.go 498: Wrote updated endpoint to datastore ContainerID="0a02f9fbcd7e54fd096e915fa56bc11f2ff485fbf2d8bff7b28fbe8f0c7abc71" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.22.61-k8s-test--pod--1-eth0" Apr 12 18:49:47.558372 env[1629]: time="2024-04-12T18:49:47.558169680Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Apr 12 18:49:47.558372 env[1629]: time="2024-04-12T18:49:47.558295965Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Apr 12 18:49:47.558372 env[1629]: time="2024-04-12T18:49:47.558333737Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Apr 12 18:49:47.559692 env[1629]: time="2024-04-12T18:49:47.559349344Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/0a02f9fbcd7e54fd096e915fa56bc11f2ff485fbf2d8bff7b28fbe8f0c7abc71 pid=3886 runtime=io.containerd.runc.v2 Apr 12 18:49:47.558000 audit[3885]: NETFILTER_CFG table=filter:87 family=2 entries=48 op=nft_register_chain pid=3885 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Apr 12 18:49:47.558000 audit[3885]: SYSCALL arch=c000003e syscall=46 success=yes exit=23440 a0=3 a1=7ffc19201d70 a2=0 a3=7ffc19201d5c items=0 ppid=2768 pid=3885 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:47.558000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Apr 12 18:49:47.585451 systemd[1]: Started cri-containerd-0a02f9fbcd7e54fd096e915fa56bc11f2ff485fbf2d8bff7b28fbe8f0c7abc71.scope. Apr 12 18:49:47.641000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.641000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.641000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.641000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.641000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.641000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.641000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.641000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.641000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.642000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.642000 audit: BPF prog-id=128 op=LOAD Apr 12 18:49:47.643000 audit[3894]: AVC avc: denied { bpf } for pid=3894 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.643000 audit[3894]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c00014dc48 a2=10 a3=1c items=0 ppid=3886 pid=3894 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:47.643000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3061303266396662636437653534666430393665393135666135366263 Apr 12 18:49:47.643000 audit[3894]: AVC avc: denied { perfmon } for pid=3894 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.643000 audit[3894]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c00014d6b0 a2=3c a3=c items=0 ppid=3886 pid=3894 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:47.643000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3061303266396662636437653534666430393665393135666135366263 Apr 12 18:49:47.645000 audit[3894]: AVC avc: denied { bpf } for pid=3894 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.645000 audit[3894]: AVC avc: denied { bpf } for pid=3894 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.645000 audit[3894]: AVC avc: denied { bpf } for pid=3894 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.645000 audit[3894]: AVC avc: denied { perfmon } for pid=3894 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.645000 audit[3894]: AVC avc: denied { perfmon } for pid=3894 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.645000 audit[3894]: AVC avc: denied { perfmon } for pid=3894 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.645000 audit[3894]: AVC avc: denied { perfmon } for pid=3894 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.645000 audit[3894]: AVC avc: denied { perfmon } for pid=3894 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.645000 audit[3894]: AVC avc: denied { bpf } for pid=3894 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.645000 audit[3894]: AVC avc: denied { bpf } for pid=3894 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.645000 audit: BPF prog-id=129 op=LOAD Apr 12 18:49:47.645000 audit[3894]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c00014d9d8 a2=78 a3=c0001ccd80 items=0 ppid=3886 pid=3894 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:47.645000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3061303266396662636437653534666430393665393135666135366263 Apr 12 18:49:47.646000 audit[3894]: AVC avc: denied { bpf } for pid=3894 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.646000 audit[3894]: AVC avc: denied { bpf } for pid=3894 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.646000 audit[3894]: AVC avc: denied { perfmon } for pid=3894 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.646000 audit[3894]: AVC avc: denied { perfmon } for pid=3894 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.646000 audit[3894]: AVC avc: denied { perfmon } for pid=3894 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.646000 audit[3894]: AVC avc: denied { perfmon } for pid=3894 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.646000 audit[3894]: AVC avc: denied { perfmon } for pid=3894 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.646000 audit[3894]: AVC avc: denied { bpf } for pid=3894 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.646000 audit[3894]: AVC avc: denied { bpf } for pid=3894 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.646000 audit: BPF prog-id=130 op=LOAD Apr 12 18:49:47.646000 audit[3894]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c00014d770 a2=78 a3=c0001ccdc8 items=0 ppid=3886 pid=3894 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:47.646000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3061303266396662636437653534666430393665393135666135366263 Apr 12 18:49:47.646000 audit: BPF prog-id=130 op=UNLOAD Apr 12 18:49:47.646000 audit: BPF prog-id=129 op=UNLOAD Apr 12 18:49:47.646000 audit[3894]: AVC avc: denied { bpf } for pid=3894 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.646000 audit[3894]: AVC avc: denied { bpf } for pid=3894 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.646000 audit[3894]: AVC avc: denied { bpf } for pid=3894 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.646000 audit[3894]: AVC avc: denied { perfmon } for pid=3894 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.646000 audit[3894]: AVC avc: denied { perfmon } for pid=3894 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.646000 audit[3894]: AVC avc: denied { perfmon } for pid=3894 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.646000 audit[3894]: AVC avc: denied { perfmon } for pid=3894 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.646000 audit[3894]: AVC avc: denied { perfmon } for pid=3894 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.646000 audit[3894]: AVC avc: denied { bpf } for pid=3894 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.646000 audit[3894]: AVC avc: denied { bpf } for pid=3894 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:47.646000 audit: BPF prog-id=131 op=LOAD Apr 12 18:49:47.646000 audit[3894]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c00014dc30 a2=78 a3=c0001cd1d8 items=0 ppid=3886 pid=3894 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:47.646000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3061303266396662636437653534666430393665393135666135366263 Apr 12 18:49:47.728283 env[1629]: time="2024-04-12T18:49:47.728126798Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:test-pod-1,Uid:884c48c8-aac4-4da4-bbf8-a9903479ca81,Namespace:default,Attempt:0,} returns sandbox id \"0a02f9fbcd7e54fd096e915fa56bc11f2ff485fbf2d8bff7b28fbe8f0c7abc71\"" Apr 12 18:49:47.731707 env[1629]: time="2024-04-12T18:49:47.731665073Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\"" Apr 12 18:49:47.794666 kubelet[2095]: E0412 18:49:47.794384 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:48.083672 env[1629]: time="2024-04-12T18:49:48.083497609Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:49:48.086565 env[1629]: time="2024-04-12T18:49:48.086522131Z" level=info msg="ImageUpdate event &ImageUpdate{Name:sha256:7f0fd59e009436c3043ced784dce0efbc915d6479724090257ed5c8d7f7ece83,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:49:48.089289 env[1629]: time="2024-04-12T18:49:48.089232197Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:49:48.091655 env[1629]: time="2024-04-12T18:49:48.091589147Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx@sha256:c55d27e57a0d92ca01e7aba1a1812f9c8cc73708ce69fb58d4a42b6416a95f38,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:49:48.092416 env[1629]: time="2024-04-12T18:49:48.092381182Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\" returns image reference \"sha256:7f0fd59e009436c3043ced784dce0efbc915d6479724090257ed5c8d7f7ece83\"" Apr 12 18:49:48.094627 env[1629]: time="2024-04-12T18:49:48.094595216Z" level=info msg="CreateContainer within sandbox \"0a02f9fbcd7e54fd096e915fa56bc11f2ff485fbf2d8bff7b28fbe8f0c7abc71\" for container &ContainerMetadata{Name:test,Attempt:0,}" Apr 12 18:49:48.121516 env[1629]: time="2024-04-12T18:49:48.121438447Z" level=info msg="CreateContainer within sandbox \"0a02f9fbcd7e54fd096e915fa56bc11f2ff485fbf2d8bff7b28fbe8f0c7abc71\" for &ContainerMetadata{Name:test,Attempt:0,} returns container id \"3095d954a41836197f4360b3f3481ff161cba0577ebe4d958bf8eb458a2cca60\"" Apr 12 18:49:48.128775 env[1629]: time="2024-04-12T18:49:48.128734943Z" level=info msg="StartContainer for \"3095d954a41836197f4360b3f3481ff161cba0577ebe4d958bf8eb458a2cca60\"" Apr 12 18:49:48.227679 systemd[1]: Started cri-containerd-3095d954a41836197f4360b3f3481ff161cba0577ebe4d958bf8eb458a2cca60.scope. Apr 12 18:49:48.232899 systemd[1]: run-containerd-runc-k8s.io-3095d954a41836197f4360b3f3481ff161cba0577ebe4d958bf8eb458a2cca60-runc.xklSdE.mount: Deactivated successfully. Apr 12 18:49:48.263000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.263000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.263000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.263000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.263000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.263000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.263000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.263000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.263000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.264000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.264000 audit: BPF prog-id=132 op=LOAD Apr 12 18:49:48.265000 audit[3933]: AVC avc: denied { bpf } for pid=3933 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.265000 audit[3933]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c000145c48 a2=10 a3=1c items=0 ppid=3886 pid=3933 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:48.265000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3330393564393534613431383336313937663433363062336633343831 Apr 12 18:49:48.265000 audit[3933]: AVC avc: denied { perfmon } for pid=3933 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.265000 audit[3933]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001456b0 a2=3c a3=8 items=0 ppid=3886 pid=3933 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:48.265000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3330393564393534613431383336313937663433363062336633343831 Apr 12 18:49:48.265000 audit[3933]: AVC avc: denied { bpf } for pid=3933 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.265000 audit[3933]: AVC avc: denied { bpf } for pid=3933 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.265000 audit[3933]: AVC avc: denied { bpf } for pid=3933 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.265000 audit[3933]: AVC avc: denied { perfmon } for pid=3933 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.265000 audit[3933]: AVC avc: denied { perfmon } for pid=3933 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.265000 audit[3933]: AVC avc: denied { perfmon } for pid=3933 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.265000 audit[3933]: AVC avc: denied { perfmon } for pid=3933 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.265000 audit[3933]: AVC avc: denied { perfmon } for pid=3933 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.265000 audit[3933]: AVC avc: denied { bpf } for pid=3933 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.265000 audit[3933]: AVC avc: denied { bpf } for pid=3933 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.265000 audit: BPF prog-id=133 op=LOAD Apr 12 18:49:48.265000 audit[3933]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001459d8 a2=78 a3=c00034e4e0 items=0 ppid=3886 pid=3933 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:48.265000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3330393564393534613431383336313937663433363062336633343831 Apr 12 18:49:48.266000 audit[3933]: AVC avc: denied { bpf } for pid=3933 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.266000 audit[3933]: AVC avc: denied { bpf } for pid=3933 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.266000 audit[3933]: AVC avc: denied { perfmon } for pid=3933 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.266000 audit[3933]: AVC avc: denied { perfmon } for pid=3933 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.266000 audit[3933]: AVC avc: denied { perfmon } for pid=3933 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.266000 audit[3933]: AVC avc: denied { perfmon } for pid=3933 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.266000 audit[3933]: AVC avc: denied { perfmon } for pid=3933 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.266000 audit[3933]: AVC avc: denied { bpf } for pid=3933 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.266000 audit[3933]: AVC avc: denied { bpf } for pid=3933 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.266000 audit: BPF prog-id=134 op=LOAD Apr 12 18:49:48.266000 audit[3933]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c000145770 a2=78 a3=c00034e528 items=0 ppid=3886 pid=3933 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:48.266000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3330393564393534613431383336313937663433363062336633343831 Apr 12 18:49:48.267000 audit: BPF prog-id=134 op=UNLOAD Apr 12 18:49:48.267000 audit: BPF prog-id=133 op=UNLOAD Apr 12 18:49:48.267000 audit[3933]: AVC avc: denied { bpf } for pid=3933 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.267000 audit[3933]: AVC avc: denied { bpf } for pid=3933 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.267000 audit[3933]: AVC avc: denied { bpf } for pid=3933 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.267000 audit[3933]: AVC avc: denied { perfmon } for pid=3933 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.267000 audit[3933]: AVC avc: denied { perfmon } for pid=3933 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.267000 audit[3933]: AVC avc: denied { perfmon } for pid=3933 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.267000 audit[3933]: AVC avc: denied { perfmon } for pid=3933 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.267000 audit[3933]: AVC avc: denied { perfmon } for pid=3933 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.267000 audit[3933]: AVC avc: denied { bpf } for pid=3933 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.267000 audit[3933]: AVC avc: denied { bpf } for pid=3933 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:49:48.267000 audit: BPF prog-id=135 op=LOAD Apr 12 18:49:48.267000 audit[3933]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c000145c30 a2=78 a3=c00034e938 items=0 ppid=3886 pid=3933 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:48.267000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3330393564393534613431383336313937663433363062336633343831 Apr 12 18:49:48.289907 env[1629]: time="2024-04-12T18:49:48.289853913Z" level=info msg="StartContainer for \"3095d954a41836197f4360b3f3481ff161cba0577ebe4d958bf8eb458a2cca60\" returns successfully" Apr 12 18:49:48.322771 kubelet[2095]: I0412 18:49:48.322726 2095 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="default/test-pod-1" podStartSLOduration=33.960637225 podCreationTimestamp="2024-04-12 18:49:14 +0000 UTC" firstStartedPulling="2024-04-12 18:49:47.730726659 +0000 UTC m=+81.695823685" lastFinishedPulling="2024-04-12 18:49:48.092748668 +0000 UTC m=+82.057845710" observedRunningTime="2024-04-12 18:49:48.322283341 +0000 UTC m=+82.287380391" watchObservedRunningTime="2024-04-12 18:49:48.32265925 +0000 UTC m=+82.287756302" Apr 12 18:49:48.795289 kubelet[2095]: E0412 18:49:48.795197 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:49.094532 systemd-networkd[1453]: cali5ec59c6bf6e: Gained IPv6LL Apr 12 18:49:49.163185 systemd[1]: run-containerd-runc-k8s.io-3ef7f0377276055c7b8c9df1bc52fc6ed35592336fd451beaa39c5dbe7a2883d-runc.8nDXbB.mount: Deactivated successfully. Apr 12 18:49:49.796322 kubelet[2095]: E0412 18:49:49.796259 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:50.746000 audit[4010]: NETFILTER_CFG table=filter:88 family=2 entries=9 op=nft_register_rule pid=4010 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:49:50.746000 audit[4010]: SYSCALL arch=c000003e syscall=46 success=yes exit=2932 a0=3 a1=7ffe949fdf30 a2=0 a3=7ffe949fdf1c items=0 ppid=2332 pid=4010 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:50.746000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:49:50.748000 audit[4010]: NETFILTER_CFG table=nat:89 family=2 entries=51 op=nft_register_chain pid=4010 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:49:50.748000 audit[4010]: SYSCALL arch=c000003e syscall=46 success=yes exit=18564 a0=3 a1=7ffe949fdf30 a2=0 a3=7ffe949fdf1c items=0 ppid=2332 pid=4010 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:50.748000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:49:50.796725 kubelet[2095]: E0412 18:49:50.796672 2095 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:49:51.153616 systemd[1]: run-containerd-runc-k8s.io-f6e62979874b651ca72637b43517da0256c74396395a9b5cfc791e6fb7310f08-runc.1nilPJ.mount: Deactivated successfully. Apr 12 18:49:51.264811 kernel: kauditd_printk_skb: 467 callbacks suppressed Apr 12 18:49:51.264969 kernel: audit: type=1325 audit(1712947791.260:973): table=filter:90 family=2 entries=8 op=nft_register_rule pid=4032 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:49:51.260000 audit[4032]: NETFILTER_CFG table=filter:90 family=2 entries=8 op=nft_register_rule pid=4032 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:49:51.260000 audit[4032]: SYSCALL arch=c000003e syscall=46 success=yes exit=2932 a0=3 a1=7ffdce9864b0 a2=0 a3=7ffdce98649c items=0 ppid=2332 pid=4032 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:51.285582 kernel: audit: type=1300 audit(1712947791.260:973): arch=c000003e syscall=46 success=yes exit=2932 a0=3 a1=7ffdce9864b0 a2=0 a3=7ffdce98649c items=0 ppid=2332 pid=4032 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:51.290010 kernel: audit: type=1327 audit(1712947791.260:973): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:49:51.260000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:49:51.262000 audit[4032]: NETFILTER_CFG table=nat:91 family=2 entries=58 op=nft_register_chain pid=4032 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:49:51.262000 audit[4032]: SYSCALL arch=c000003e syscall=46 success=yes exit=20452 a0=3 a1=7ffdce9864b0 a2=0 a3=7ffdce98649c items=0 ppid=2332 pid=4032 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:51.310064 kernel: audit: type=1325 audit(1712947791.262:974): table=nat:91 family=2 entries=58 op=nft_register_chain pid=4032 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:49:51.310249 kernel: audit: type=1300 audit(1712947791.262:974): arch=c000003e syscall=46 success=yes exit=20452 a0=3 a1=7ffdce9864b0 a2=0 a3=7ffdce98649c items=0 ppid=2332 pid=4032 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:49:51.310731 kernel: audit: type=1327 audit(1712947791.262:974): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:49:51.262000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273