Apr 12 18:22:24.034090 kernel: Booting Linux on physical CPU 0x0000000000 [0x410fd083] Apr 12 18:22:24.034131 kernel: Linux version 5.15.154-flatcar (build@pony-truck.infra.kinvolk.io) (aarch64-cros-linux-gnu-gcc (Gentoo Hardened 11.3.1_p20221209 p3) 11.3.1 20221209, GNU ld (Gentoo 2.39 p5) 2.39.0) #1 SMP PREEMPT Fri Apr 12 17:21:24 -00 2024 Apr 12 18:22:24.034155 kernel: efi: EFI v2.70 by EDK II Apr 12 18:22:24.034170 kernel: efi: SMBIOS=0x7bed0000 SMBIOS 3.0=0x7beb0000 ACPI=0x786e0000 ACPI 2.0=0x786e0014 MEMATTR=0x7ac1aa98 MEMRESERVE=0x7174cf98 Apr 12 18:22:24.034185 kernel: ACPI: Early table checksum verification disabled Apr 12 18:22:24.034199 kernel: ACPI: RSDP 0x00000000786E0014 000024 (v02 AMAZON) Apr 12 18:22:24.034215 kernel: ACPI: XSDT 0x00000000786D00E8 000064 (v01 AMAZON AMZNFACP 00000001 01000013) Apr 12 18:22:24.034230 kernel: ACPI: FACP 0x00000000786B0000 000114 (v06 AMAZON AMZNFACP 00000001 AMZN 00000001) Apr 12 18:22:24.034244 kernel: ACPI: DSDT 0x0000000078640000 00154F (v02 AMAZON AMZNDSDT 00000001 INTL 20160527) Apr 12 18:22:24.034259 kernel: ACPI: APIC 0x00000000786C0000 000108 (v04 AMAZON AMZNAPIC 00000001 AMZN 00000001) Apr 12 18:22:24.034277 kernel: ACPI: SPCR 0x00000000786A0000 000050 (v02 AMAZON AMZNSPCR 00000001 AMZN 00000001) Apr 12 18:22:24.034292 kernel: ACPI: GTDT 0x0000000078690000 000060 (v02 AMAZON AMZNGTDT 00000001 AMZN 00000001) Apr 12 18:22:24.034306 kernel: ACPI: MCFG 0x0000000078680000 00003C (v02 AMAZON AMZNMCFG 00000001 AMZN 00000001) Apr 12 18:22:24.034320 kernel: ACPI: SLIT 0x0000000078670000 00002D (v01 AMAZON AMZNSLIT 00000001 AMZN 00000001) Apr 12 18:22:24.034337 kernel: ACPI: IORT 0x0000000078660000 000078 (v01 AMAZON AMZNIORT 00000001 AMZN 00000001) Apr 12 18:22:24.034356 kernel: ACPI: PPTT 0x0000000078650000 0000EC (v01 AMAZON AMZNPPTT 00000001 AMZN 00000001) Apr 12 18:22:24.034371 kernel: ACPI: SPCR: console: uart,mmio,0x90a0000,115200 Apr 12 18:22:24.034385 kernel: earlycon: uart0 at MMIO 0x00000000090a0000 (options '115200') Apr 12 18:22:24.034400 kernel: printk: bootconsole [uart0] enabled Apr 12 18:22:24.034414 kernel: NUMA: Failed to initialise from firmware Apr 12 18:22:24.034429 kernel: NUMA: Faking a node at [mem 0x0000000040000000-0x00000004b5ffffff] Apr 12 18:22:24.034444 kernel: NUMA: NODE_DATA [mem 0x4b5843900-0x4b5848fff] Apr 12 18:22:24.034459 kernel: Zone ranges: Apr 12 18:22:24.034474 kernel: DMA [mem 0x0000000040000000-0x00000000ffffffff] Apr 12 18:22:24.034488 kernel: DMA32 empty Apr 12 18:22:24.034503 kernel: Normal [mem 0x0000000100000000-0x00000004b5ffffff] Apr 12 18:22:24.034522 kernel: Movable zone start for each node Apr 12 18:22:24.034536 kernel: Early memory node ranges Apr 12 18:22:24.034551 kernel: node 0: [mem 0x0000000040000000-0x00000000786effff] Apr 12 18:22:24.034566 kernel: node 0: [mem 0x00000000786f0000-0x000000007872ffff] Apr 12 18:22:24.034580 kernel: node 0: [mem 0x0000000078730000-0x000000007bbfffff] Apr 12 18:22:24.034595 kernel: node 0: [mem 0x000000007bc00000-0x000000007bfdffff] Apr 12 18:22:24.034609 kernel: node 0: [mem 0x000000007bfe0000-0x000000007fffffff] Apr 12 18:22:24.034624 kernel: node 0: [mem 0x0000000400000000-0x00000004b5ffffff] Apr 12 18:22:24.034639 kernel: Initmem setup node 0 [mem 0x0000000040000000-0x00000004b5ffffff] Apr 12 18:22:24.034654 kernel: On node 0, zone Normal: 8192 pages in unavailable ranges Apr 12 18:22:24.034668 kernel: psci: probing for conduit method from ACPI. Apr 12 18:22:24.034682 kernel: psci: PSCIv1.0 detected in firmware. Apr 12 18:22:24.034701 kernel: psci: Using standard PSCI v0.2 function IDs Apr 12 18:22:24.034716 kernel: psci: Trusted OS migration not required Apr 12 18:22:24.034737 kernel: psci: SMC Calling Convention v1.1 Apr 12 18:22:24.034753 kernel: ACPI: SRAT not present Apr 12 18:22:24.034769 kernel: percpu: Embedded 30 pages/cpu s83032 r8192 d31656 u122880 Apr 12 18:22:24.034788 kernel: pcpu-alloc: s83032 r8192 d31656 u122880 alloc=30*4096 Apr 12 18:22:24.034804 kernel: pcpu-alloc: [0] 0 [0] 1 Apr 12 18:22:24.034819 kernel: Detected PIPT I-cache on CPU0 Apr 12 18:22:24.034835 kernel: CPU features: detected: GIC system register CPU interface Apr 12 18:22:24.034850 kernel: CPU features: detected: Spectre-v2 Apr 12 18:22:24.034865 kernel: CPU features: detected: Spectre-v3a Apr 12 18:22:24.034881 kernel: CPU features: detected: Spectre-BHB Apr 12 18:22:24.034896 kernel: CPU features: kernel page table isolation forced ON by KASLR Apr 12 18:22:24.034911 kernel: CPU features: detected: Kernel page table isolation (KPTI) Apr 12 18:22:24.034926 kernel: CPU features: detected: ARM erratum 1742098 Apr 12 18:22:24.034970 kernel: CPU features: detected: ARM errata 1165522, 1319367, or 1530923 Apr 12 18:22:24.039041 kernel: Built 1 zonelists, mobility grouping on. Total pages: 991872 Apr 12 18:22:24.039067 kernel: Policy zone: Normal Apr 12 18:22:24.039098 kernel: Kernel command line: BOOT_IMAGE=/flatcar/vmlinuz-a mount.usr=/dev/mapper/usr verity.usr=PARTUUID=7130c94a-213a-4e5a-8e26-6cce9662f132 rootflags=rw mount.usrflags=ro consoleblank=0 root=LABEL=ROOT console=tty1 console=ttyS0,115200n8 earlycon flatcar.first_boot=detected acpi=force flatcar.oem.id=ec2 modprobe.blacklist=xen_fbfront net.ifnames=0 nvme_core.io_timeout=4294967295 verity.usrhash=c0b96868344262519ffdb2dae3782c942008a0fecdbc0bc85d2e170bd2e8b8a8 Apr 12 18:22:24.039118 kernel: Unknown kernel command line parameters "BOOT_IMAGE=/flatcar/vmlinuz-a", will be passed to user space. Apr 12 18:22:24.039135 kernel: Dentry cache hash table entries: 524288 (order: 10, 4194304 bytes, linear) Apr 12 18:22:24.039151 kernel: Inode-cache hash table entries: 262144 (order: 9, 2097152 bytes, linear) Apr 12 18:22:24.039167 kernel: mem auto-init: stack:off, heap alloc:off, heap free:off Apr 12 18:22:24.039196 kernel: software IO TLB: mapped [mem 0x000000007c000000-0x0000000080000000] (64MB) Apr 12 18:22:24.039214 kernel: Memory: 3824652K/4030464K available (9792K kernel code, 2092K rwdata, 7568K rodata, 36352K init, 777K bss, 205812K reserved, 0K cma-reserved) Apr 12 18:22:24.039230 kernel: SLUB: HWalign=64, Order=0-3, MinObjects=0, CPUs=2, Nodes=1 Apr 12 18:22:24.039254 kernel: trace event string verifier disabled Apr 12 18:22:24.039283 kernel: rcu: Preemptible hierarchical RCU implementation. Apr 12 18:22:24.039300 kernel: rcu: RCU event tracing is enabled. Apr 12 18:22:24.039316 kernel: rcu: RCU restricting CPUs from NR_CPUS=512 to nr_cpu_ids=2. Apr 12 18:22:24.039332 kernel: Trampoline variant of Tasks RCU enabled. Apr 12 18:22:24.039359 kernel: Tracing variant of Tasks RCU enabled. Apr 12 18:22:24.039377 kernel: rcu: RCU calculated value of scheduler-enlistment delay is 100 jiffies. Apr 12 18:22:24.039393 kernel: rcu: Adjusting geometry for rcu_fanout_leaf=16, nr_cpu_ids=2 Apr 12 18:22:24.039408 kernel: NR_IRQS: 64, nr_irqs: 64, preallocated irqs: 0 Apr 12 18:22:24.039424 kernel: GICv3: 96 SPIs implemented Apr 12 18:22:24.039439 kernel: GICv3: 0 Extended SPIs implemented Apr 12 18:22:24.039454 kernel: GICv3: Distributor has no Range Selector support Apr 12 18:22:24.039474 kernel: Root IRQ handler: gic_handle_irq Apr 12 18:22:24.039490 kernel: GICv3: 16 PPIs implemented Apr 12 18:22:24.039516 kernel: GICv3: CPU0: found redistributor 0 region 0:0x0000000010200000 Apr 12 18:22:24.039534 kernel: ACPI: SRAT not present Apr 12 18:22:24.039549 kernel: ITS [mem 0x10080000-0x1009ffff] Apr 12 18:22:24.039565 kernel: ITS@0x0000000010080000: allocated 8192 Devices @4000a0000 (indirect, esz 8, psz 64K, shr 1) Apr 12 18:22:24.039581 kernel: ITS@0x0000000010080000: allocated 8192 Interrupt Collections @4000b0000 (flat, esz 8, psz 64K, shr 1) Apr 12 18:22:24.039596 kernel: GICv3: using LPI property table @0x00000004000c0000 Apr 12 18:22:24.039611 kernel: ITS: Using hypervisor restricted LPI range [128] Apr 12 18:22:24.039626 kernel: GICv3: CPU0: using allocated LPI pending table @0x00000004000d0000 Apr 12 18:22:24.039642 kernel: arch_timer: cp15 timer(s) running at 83.33MHz (virt). Apr 12 18:22:24.039662 kernel: clocksource: arch_sys_counter: mask: 0xffffffffffffff max_cycles: 0x13381ebeec, max_idle_ns: 440795203145 ns Apr 12 18:22:24.039678 kernel: sched_clock: 56 bits at 83MHz, resolution 12ns, wraps every 4398046511100ns Apr 12 18:22:24.039706 kernel: Console: colour dummy device 80x25 Apr 12 18:22:24.039723 kernel: printk: console [tty1] enabled Apr 12 18:22:24.039739 kernel: ACPI: Core revision 20210730 Apr 12 18:22:24.039756 kernel: Calibrating delay loop (skipped), value calculated using timer frequency.. 166.66 BogoMIPS (lpj=83333) Apr 12 18:22:24.039772 kernel: pid_max: default: 32768 minimum: 301 Apr 12 18:22:24.039788 kernel: LSM: Security Framework initializing Apr 12 18:22:24.039804 kernel: SELinux: Initializing. Apr 12 18:22:24.039820 kernel: Mount-cache hash table entries: 8192 (order: 4, 65536 bytes, linear) Apr 12 18:22:24.039851 kernel: Mountpoint-cache hash table entries: 8192 (order: 4, 65536 bytes, linear) Apr 12 18:22:24.039870 kernel: rcu: Hierarchical SRCU implementation. Apr 12 18:22:24.039886 kernel: Platform MSI: ITS@0x10080000 domain created Apr 12 18:22:24.039902 kernel: PCI/MSI: ITS@0x10080000 domain created Apr 12 18:22:24.039917 kernel: Remapping and enabling EFI services. Apr 12 18:22:24.039933 kernel: smp: Bringing up secondary CPUs ... Apr 12 18:22:24.039973 kernel: Detected PIPT I-cache on CPU1 Apr 12 18:22:24.039990 kernel: GICv3: CPU1: found redistributor 1 region 0:0x0000000010220000 Apr 12 18:22:24.040007 kernel: GICv3: CPU1: using allocated LPI pending table @0x00000004000e0000 Apr 12 18:22:24.040030 kernel: CPU1: Booted secondary processor 0x0000000001 [0x410fd083] Apr 12 18:22:24.040060 kernel: smp: Brought up 1 node, 2 CPUs Apr 12 18:22:24.040077 kernel: SMP: Total of 2 processors activated. Apr 12 18:22:24.040093 kernel: CPU features: detected: 32-bit EL0 Support Apr 12 18:22:24.040109 kernel: CPU features: detected: 32-bit EL1 Support Apr 12 18:22:24.040137 kernel: CPU features: detected: CRC32 instructions Apr 12 18:22:24.040156 kernel: CPU: All CPU(s) started at EL1 Apr 12 18:22:24.040172 kernel: alternatives: patching kernel code Apr 12 18:22:24.040187 kernel: devtmpfs: initialized Apr 12 18:22:24.040221 kernel: KASLR disabled due to lack of seed Apr 12 18:22:24.040239 kernel: clocksource: jiffies: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 1911260446275000 ns Apr 12 18:22:24.040256 kernel: futex hash table entries: 512 (order: 3, 32768 bytes, linear) Apr 12 18:22:24.040294 kernel: pinctrl core: initialized pinctrl subsystem Apr 12 18:22:24.040317 kernel: SMBIOS 3.0.0 present. Apr 12 18:22:24.040333 kernel: DMI: Amazon EC2 a1.large/, BIOS 1.0 11/1/2018 Apr 12 18:22:24.040349 kernel: NET: Registered PF_NETLINK/PF_ROUTE protocol family Apr 12 18:22:24.040379 kernel: DMA: preallocated 512 KiB GFP_KERNEL pool for atomic allocations Apr 12 18:22:24.040397 kernel: DMA: preallocated 512 KiB GFP_KERNEL|GFP_DMA pool for atomic allocations Apr 12 18:22:24.040414 kernel: DMA: preallocated 512 KiB GFP_KERNEL|GFP_DMA32 pool for atomic allocations Apr 12 18:22:24.040444 kernel: audit: initializing netlink subsys (disabled) Apr 12 18:22:24.040461 kernel: audit: type=2000 audit(0.260:1): state=initialized audit_enabled=0 res=1 Apr 12 18:22:24.040484 kernel: thermal_sys: Registered thermal governor 'step_wise' Apr 12 18:22:24.040501 kernel: cpuidle: using governor menu Apr 12 18:22:24.040529 kernel: hw-breakpoint: found 6 breakpoint and 4 watchpoint registers. Apr 12 18:22:24.040548 kernel: ASID allocator initialised with 32768 entries Apr 12 18:22:24.040564 kernel: ACPI: bus type PCI registered Apr 12 18:22:24.040586 kernel: acpiphp: ACPI Hot Plug PCI Controller Driver version: 0.5 Apr 12 18:22:24.040614 kernel: Serial: AMBA PL011 UART driver Apr 12 18:22:24.040632 kernel: HugeTLB registered 1.00 GiB page size, pre-allocated 0 pages Apr 12 18:22:24.040649 kernel: HugeTLB registered 32.0 MiB page size, pre-allocated 0 pages Apr 12 18:22:24.040665 kernel: HugeTLB registered 2.00 MiB page size, pre-allocated 0 pages Apr 12 18:22:24.040691 kernel: HugeTLB registered 64.0 KiB page size, pre-allocated 0 pages Apr 12 18:22:24.040712 kernel: cryptd: max_cpu_qlen set to 1000 Apr 12 18:22:24.040729 kernel: alg: No test for fips(ansi_cprng) (fips_ansi_cprng) Apr 12 18:22:24.040745 kernel: ACPI: Added _OSI(Module Device) Apr 12 18:22:24.040778 kernel: ACPI: Added _OSI(Processor Device) Apr 12 18:22:24.040795 kernel: ACPI: Added _OSI(3.0 _SCP Extensions) Apr 12 18:22:24.040823 kernel: ACPI: Added _OSI(Processor Aggregator Device) Apr 12 18:22:24.040842 kernel: ACPI: Added _OSI(Linux-Dell-Video) Apr 12 18:22:24.040858 kernel: ACPI: Added _OSI(Linux-Lenovo-NV-HDMI-Audio) Apr 12 18:22:24.040885 kernel: ACPI: Added _OSI(Linux-HPI-Hybrid-Graphics) Apr 12 18:22:24.040905 kernel: ACPI: 1 ACPI AML tables successfully acquired and loaded Apr 12 18:22:24.040921 kernel: ACPI: Interpreter enabled Apr 12 18:22:24.046849 kernel: ACPI: Using GIC for interrupt routing Apr 12 18:22:24.046898 kernel: ACPI: MCFG table detected, 1 entries Apr 12 18:22:24.046916 kernel: ACPI: PCI Root Bridge [PCI0] (domain 0000 [bus 00-0f]) Apr 12 18:22:24.047228 kernel: acpi PNP0A08:00: _OSC: OS supports [ExtendedConfig ASPM ClockPM Segments MSI HPX-Type3] Apr 12 18:22:24.047484 kernel: acpi PNP0A08:00: _OSC: platform does not support [LTR] Apr 12 18:22:24.047690 kernel: acpi PNP0A08:00: _OSC: OS now controls [PCIeHotplug PME AER PCIeCapability] Apr 12 18:22:24.047888 kernel: acpi PNP0A08:00: ECAM area [mem 0x20000000-0x20ffffff] reserved by PNP0C02:00 Apr 12 18:22:24.048122 kernel: acpi PNP0A08:00: ECAM at [mem 0x20000000-0x20ffffff] for [bus 00-0f] Apr 12 18:22:24.048158 kernel: ACPI: Remapped I/O 0x000000001fff0000 to [io 0x0000-0xffff window] Apr 12 18:22:24.048176 kernel: acpiphp: Slot [1] registered Apr 12 18:22:24.048193 kernel: acpiphp: Slot [2] registered Apr 12 18:22:24.048210 kernel: acpiphp: Slot [3] registered Apr 12 18:22:24.048227 kernel: acpiphp: Slot [4] registered Apr 12 18:22:24.048243 kernel: acpiphp: Slot [5] registered Apr 12 18:22:24.048260 kernel: acpiphp: Slot [6] registered Apr 12 18:22:24.048276 kernel: acpiphp: Slot [7] registered Apr 12 18:22:24.048293 kernel: acpiphp: Slot [8] registered Apr 12 18:22:24.048314 kernel: acpiphp: Slot [9] registered Apr 12 18:22:24.048330 kernel: acpiphp: Slot [10] registered Apr 12 18:22:24.048348 kernel: acpiphp: Slot [11] registered Apr 12 18:22:24.048364 kernel: acpiphp: Slot [12] registered Apr 12 18:22:24.048380 kernel: acpiphp: Slot [13] registered Apr 12 18:22:24.048397 kernel: acpiphp: Slot [14] registered Apr 12 18:22:24.048413 kernel: acpiphp: Slot [15] registered Apr 12 18:22:24.048430 kernel: acpiphp: Slot [16] registered Apr 12 18:22:24.048446 kernel: acpiphp: Slot [17] registered Apr 12 18:22:24.048462 kernel: acpiphp: Slot [18] registered Apr 12 18:22:24.048483 kernel: acpiphp: Slot [19] registered Apr 12 18:22:24.048501 kernel: acpiphp: Slot [20] registered Apr 12 18:22:24.048517 kernel: acpiphp: Slot [21] registered Apr 12 18:22:24.048533 kernel: acpiphp: Slot [22] registered Apr 12 18:22:24.048549 kernel: acpiphp: Slot [23] registered Apr 12 18:22:24.048565 kernel: acpiphp: Slot [24] registered Apr 12 18:22:24.048581 kernel: acpiphp: Slot [25] registered Apr 12 18:22:24.048597 kernel: acpiphp: Slot [26] registered Apr 12 18:22:24.048614 kernel: acpiphp: Slot [27] registered Apr 12 18:22:24.048634 kernel: acpiphp: Slot [28] registered Apr 12 18:22:24.048650 kernel: acpiphp: Slot [29] registered Apr 12 18:22:24.048667 kernel: acpiphp: Slot [30] registered Apr 12 18:22:24.048683 kernel: acpiphp: Slot [31] registered Apr 12 18:22:24.048700 kernel: PCI host bridge to bus 0000:00 Apr 12 18:22:24.048922 kernel: pci_bus 0000:00: root bus resource [mem 0x80000000-0xffffffff window] Apr 12 18:22:24.049157 kernel: pci_bus 0000:00: root bus resource [io 0x0000-0xffff window] Apr 12 18:22:24.049339 kernel: pci_bus 0000:00: root bus resource [mem 0x400000000000-0x407fffffffff window] Apr 12 18:22:24.049548 kernel: pci_bus 0000:00: root bus resource [bus 00-0f] Apr 12 18:22:24.049770 kernel: pci 0000:00:00.0: [1d0f:0200] type 00 class 0x060000 Apr 12 18:22:24.052089 kernel: pci 0000:00:01.0: [1d0f:8250] type 00 class 0x070003 Apr 12 18:22:24.052333 kernel: pci 0000:00:01.0: reg 0x10: [mem 0x80118000-0x80118fff] Apr 12 18:22:24.052561 kernel: pci 0000:00:04.0: [1d0f:8061] type 00 class 0x010802 Apr 12 18:22:24.063118 kernel: pci 0000:00:04.0: reg 0x10: [mem 0x80114000-0x80117fff] Apr 12 18:22:24.063369 kernel: pci 0000:00:04.0: PME# supported from D0 D1 D2 D3hot D3cold Apr 12 18:22:24.063586 kernel: pci 0000:00:05.0: [1d0f:ec20] type 00 class 0x020000 Apr 12 18:22:24.063783 kernel: pci 0000:00:05.0: reg 0x10: [mem 0x80110000-0x80113fff] Apr 12 18:22:24.064022 kernel: pci 0000:00:05.0: reg 0x18: [mem 0x80000000-0x800fffff pref] Apr 12 18:22:24.064224 kernel: pci 0000:00:05.0: reg 0x20: [mem 0x80100000-0x8010ffff] Apr 12 18:22:24.064419 kernel: pci 0000:00:05.0: PME# supported from D0 D1 D2 D3hot D3cold Apr 12 18:22:24.064614 kernel: pci 0000:00:05.0: BAR 2: assigned [mem 0x80000000-0x800fffff pref] Apr 12 18:22:24.064815 kernel: pci 0000:00:05.0: BAR 4: assigned [mem 0x80100000-0x8010ffff] Apr 12 18:22:24.065052 kernel: pci 0000:00:04.0: BAR 0: assigned [mem 0x80110000-0x80113fff] Apr 12 18:22:24.065251 kernel: pci 0000:00:05.0: BAR 0: assigned [mem 0x80114000-0x80117fff] Apr 12 18:22:24.065484 kernel: pci 0000:00:01.0: BAR 0: assigned [mem 0x80118000-0x80118fff] Apr 12 18:22:24.065676 kernel: pci_bus 0000:00: resource 4 [mem 0x80000000-0xffffffff window] Apr 12 18:22:24.065858 kernel: pci_bus 0000:00: resource 5 [io 0x0000-0xffff window] Apr 12 18:22:24.066070 kernel: pci_bus 0000:00: resource 6 [mem 0x400000000000-0x407fffffffff window] Apr 12 18:22:24.066102 kernel: ACPI: PCI: Interrupt link GSI0 configured for IRQ 35 Apr 12 18:22:24.066120 kernel: ACPI: PCI: Interrupt link GSI1 configured for IRQ 36 Apr 12 18:22:24.066137 kernel: ACPI: PCI: Interrupt link GSI2 configured for IRQ 37 Apr 12 18:22:24.066154 kernel: ACPI: PCI: Interrupt link GSI3 configured for IRQ 38 Apr 12 18:22:24.066171 kernel: iommu: Default domain type: Translated Apr 12 18:22:24.066187 kernel: iommu: DMA domain TLB invalidation policy: strict mode Apr 12 18:22:24.066203 kernel: vgaarb: loaded Apr 12 18:22:24.066220 kernel: pps_core: LinuxPPS API ver. 1 registered Apr 12 18:22:24.066237 kernel: pps_core: Software ver. 5.3.6 - Copyright 2005-2007 Rodolfo Giometti Apr 12 18:22:24.066257 kernel: PTP clock support registered Apr 12 18:22:24.066274 kernel: Registered efivars operations Apr 12 18:22:24.066291 kernel: clocksource: Switched to clocksource arch_sys_counter Apr 12 18:22:24.066308 kernel: VFS: Disk quotas dquot_6.6.0 Apr 12 18:22:24.066325 kernel: VFS: Dquot-cache hash table entries: 512 (order 0, 4096 bytes) Apr 12 18:22:24.066342 kernel: pnp: PnP ACPI init Apr 12 18:22:24.066587 kernel: system 00:00: [mem 0x20000000-0x2fffffff] could not be reserved Apr 12 18:22:24.066618 kernel: pnp: PnP ACPI: found 1 devices Apr 12 18:22:24.066635 kernel: NET: Registered PF_INET protocol family Apr 12 18:22:24.066660 kernel: IP idents hash table entries: 65536 (order: 7, 524288 bytes, linear) Apr 12 18:22:24.066677 kernel: tcp_listen_portaddr_hash hash table entries: 2048 (order: 3, 32768 bytes, linear) Apr 12 18:22:24.066694 kernel: Table-perturb hash table entries: 65536 (order: 6, 262144 bytes, linear) Apr 12 18:22:24.066711 kernel: TCP established hash table entries: 32768 (order: 6, 262144 bytes, linear) Apr 12 18:22:24.066728 kernel: TCP bind hash table entries: 32768 (order: 7, 524288 bytes, linear) Apr 12 18:22:24.066745 kernel: TCP: Hash tables configured (established 32768 bind 32768) Apr 12 18:22:24.066761 kernel: UDP hash table entries: 2048 (order: 4, 65536 bytes, linear) Apr 12 18:22:24.066778 kernel: UDP-Lite hash table entries: 2048 (order: 4, 65536 bytes, linear) Apr 12 18:22:24.066794 kernel: NET: Registered PF_UNIX/PF_LOCAL protocol family Apr 12 18:22:24.066815 kernel: PCI: CLS 0 bytes, default 64 Apr 12 18:22:24.066832 kernel: hw perfevents: enabled with armv8_pmuv3_0 PMU driver, 3 counters available Apr 12 18:22:24.066849 kernel: kvm [1]: HYP mode not available Apr 12 18:22:24.066865 kernel: Initialise system trusted keyrings Apr 12 18:22:24.066882 kernel: workingset: timestamp_bits=39 max_order=20 bucket_order=0 Apr 12 18:22:24.066899 kernel: Key type asymmetric registered Apr 12 18:22:24.066916 kernel: Asymmetric key parser 'x509' registered Apr 12 18:22:24.066933 kernel: Block layer SCSI generic (bsg) driver version 0.4 loaded (major 249) Apr 12 18:22:24.075044 kernel: io scheduler mq-deadline registered Apr 12 18:22:24.075073 kernel: io scheduler kyber registered Apr 12 18:22:24.075091 kernel: io scheduler bfq registered Apr 12 18:22:24.075356 kernel: pl061_gpio ARMH0061:00: PL061 GPIO chip registered Apr 12 18:22:24.075384 kernel: input: Power Button as /devices/LNXSYSTM:00/LNXSYBUS:00/PNP0C0C:00/input/input0 Apr 12 18:22:24.075402 kernel: ACPI: button: Power Button [PWRB] Apr 12 18:22:24.075419 kernel: Serial: 8250/16550 driver, 4 ports, IRQ sharing enabled Apr 12 18:22:24.075437 kernel: ACPI: \_SB_.PCI0.GSI2: Enabled at IRQ 37 Apr 12 18:22:24.075638 kernel: serial 0000:00:01.0: enabling device (0010 -> 0012) Apr 12 18:22:24.075667 kernel: printk: console [ttyS0] disabled Apr 12 18:22:24.075684 kernel: 0000:00:01.0: ttyS0 at MMIO 0x80118000 (irq = 14, base_baud = 115200) is a 16550A Apr 12 18:22:24.075702 kernel: printk: console [ttyS0] enabled Apr 12 18:22:24.075718 kernel: printk: bootconsole [uart0] disabled Apr 12 18:22:24.075734 kernel: thunder_xcv, ver 1.0 Apr 12 18:22:24.075750 kernel: thunder_bgx, ver 1.0 Apr 12 18:22:24.075767 kernel: nicpf, ver 1.0 Apr 12 18:22:24.075783 kernel: nicvf, ver 1.0 Apr 12 18:22:24.076038 kernel: rtc-efi rtc-efi.0: registered as rtc0 Apr 12 18:22:24.076245 kernel: rtc-efi rtc-efi.0: setting system clock to 2024-04-12T18:22:23 UTC (1712946143) Apr 12 18:22:24.076269 kernel: hid: raw HID events driver (C) Jiri Kosina Apr 12 18:22:24.076286 kernel: NET: Registered PF_INET6 protocol family Apr 12 18:22:24.076302 kernel: Segment Routing with IPv6 Apr 12 18:22:24.076319 kernel: In-situ OAM (IOAM) with IPv6 Apr 12 18:22:24.076335 kernel: NET: Registered PF_PACKET protocol family Apr 12 18:22:24.076352 kernel: Key type dns_resolver registered Apr 12 18:22:24.076368 kernel: registered taskstats version 1 Apr 12 18:22:24.076390 kernel: Loading compiled-in X.509 certificates Apr 12 18:22:24.076407 kernel: Loaded X.509 cert 'Kinvolk GmbH: Module signing key for 5.15.154-flatcar: 8c258d82bbd8df4a9da2c0ea4108142f04be6b34' Apr 12 18:22:24.076424 kernel: Key type .fscrypt registered Apr 12 18:22:24.076440 kernel: Key type fscrypt-provisioning registered Apr 12 18:22:24.076456 kernel: ima: No TPM chip found, activating TPM-bypass! Apr 12 18:22:24.076473 kernel: ima: Allocated hash algorithm: sha1 Apr 12 18:22:24.076489 kernel: ima: No architecture policies found Apr 12 18:22:24.076506 kernel: Freeing unused kernel memory: 36352K Apr 12 18:22:24.076522 kernel: Run /init as init process Apr 12 18:22:24.076542 kernel: with arguments: Apr 12 18:22:24.076559 kernel: /init Apr 12 18:22:24.076575 kernel: with environment: Apr 12 18:22:24.076590 kernel: HOME=/ Apr 12 18:22:24.076607 kernel: TERM=linux Apr 12 18:22:24.076623 kernel: BOOT_IMAGE=/flatcar/vmlinuz-a Apr 12 18:22:24.076644 systemd[1]: systemd 252 running in system mode (+PAM +AUDIT +SELINUX -APPARMOR +IMA +SMACK +SECCOMP +GCRYPT -GNUTLS +OPENSSL -ACL +BLKID +CURL -ELFUTILS -FIDO2 +IDN2 -IDN +IPTC +KMOD +LIBCRYPTSETUP +LIBFDISK +PCRE2 -PWQUALITY -P11KIT -QRENCODE -TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD -BPF_FRAMEWORK -XKBCOMMON +UTMP +SYSVINIT default-hierarchy=unified) Apr 12 18:22:24.076666 systemd[1]: Detected virtualization amazon. Apr 12 18:22:24.076688 systemd[1]: Detected architecture arm64. Apr 12 18:22:24.076706 systemd[1]: Running in initrd. Apr 12 18:22:24.076724 systemd[1]: No hostname configured, using default hostname. Apr 12 18:22:24.076742 systemd[1]: Hostname set to . Apr 12 18:22:24.076760 systemd[1]: Initializing machine ID from VM UUID. Apr 12 18:22:24.076778 systemd[1]: Queued start job for default target initrd.target. Apr 12 18:22:24.080388 systemd[1]: Started systemd-ask-password-console.path. Apr 12 18:22:24.080428 systemd[1]: Reached target cryptsetup.target. Apr 12 18:22:24.080455 systemd[1]: Reached target paths.target. Apr 12 18:22:24.080474 systemd[1]: Reached target slices.target. Apr 12 18:22:24.080492 systemd[1]: Reached target swap.target. Apr 12 18:22:24.080510 systemd[1]: Reached target timers.target. Apr 12 18:22:24.080529 systemd[1]: Listening on iscsid.socket. Apr 12 18:22:24.080547 systemd[1]: Listening on iscsiuio.socket. Apr 12 18:22:24.080565 systemd[1]: Listening on systemd-journald-audit.socket. Apr 12 18:22:24.080583 systemd[1]: Listening on systemd-journald-dev-log.socket. Apr 12 18:22:24.080605 systemd[1]: Listening on systemd-journald.socket. Apr 12 18:22:24.080624 systemd[1]: Listening on systemd-networkd.socket. Apr 12 18:22:24.080642 systemd[1]: Listening on systemd-udevd-control.socket. Apr 12 18:22:24.080661 systemd[1]: Listening on systemd-udevd-kernel.socket. Apr 12 18:22:24.080679 systemd[1]: Reached target sockets.target. Apr 12 18:22:24.080697 systemd[1]: Starting kmod-static-nodes.service... Apr 12 18:22:24.080715 systemd[1]: Finished network-cleanup.service. Apr 12 18:22:24.080732 systemd[1]: Starting systemd-fsck-usr.service... Apr 12 18:22:24.080750 systemd[1]: Starting systemd-journald.service... Apr 12 18:22:24.080773 systemd[1]: Starting systemd-modules-load.service... Apr 12 18:22:24.080791 systemd[1]: Starting systemd-resolved.service... Apr 12 18:22:24.080809 systemd[1]: Starting systemd-vconsole-setup.service... Apr 12 18:22:24.080827 systemd[1]: Finished kmod-static-nodes.service. Apr 12 18:22:24.080844 systemd[1]: Finished systemd-fsck-usr.service. Apr 12 18:22:24.080863 systemd[1]: Starting systemd-tmpfiles-setup-dev.service... Apr 12 18:22:24.080881 systemd[1]: Finished systemd-vconsole-setup.service. Apr 12 18:22:24.080901 kernel: audit: type=1130 audit(1712946144.016:2): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:24.080925 systemd[1]: Starting dracut-cmdline-ask.service... Apr 12 18:22:24.080980 systemd[1]: Finished systemd-tmpfiles-setup-dev.service. Apr 12 18:22:24.081002 kernel: audit: type=1130 audit(1712946144.053:3): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:24.081024 systemd-journald[268]: Journal started Apr 12 18:22:24.081131 systemd-journald[268]: Runtime Journal (/run/log/journal/ec29ff29c109b361fde447736fb38358) is 8.0M, max 75.4M, 67.4M free. Apr 12 18:22:24.016000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:24.053000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:23.999963 systemd-modules-load[269]: Inserted module 'overlay' Apr 12 18:22:24.073446 systemd-resolved[270]: Positive Trust Anchors: Apr 12 18:22:24.073460 systemd-resolved[270]: . IN DS 20326 8 2 e06d44b80b8f1d39a95c0b0d7c65d08458e880409bbc683457104237c7f8ec8d Apr 12 18:22:24.073521 systemd-resolved[270]: Negative trust anchors: home.arpa 10.in-addr.arpa 16.172.in-addr.arpa 17.172.in-addr.arpa 18.172.in-addr.arpa 19.172.in-addr.arpa 20.172.in-addr.arpa 21.172.in-addr.arpa 22.172.in-addr.arpa 23.172.in-addr.arpa 24.172.in-addr.arpa 25.172.in-addr.arpa 26.172.in-addr.arpa 27.172.in-addr.arpa 28.172.in-addr.arpa 29.172.in-addr.arpa 30.172.in-addr.arpa 31.172.in-addr.arpa 168.192.in-addr.arpa d.f.ip6.arpa corp home internal intranet lan local private test Apr 12 18:22:24.100019 systemd[1]: Started systemd-journald.service. Apr 12 18:22:24.100000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:24.115964 kernel: audit: type=1130 audit(1712946144.100:4): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:24.116021 kernel: bridge: filtering via arp/ip/ip6tables is no longer available by default. Update your scripts to load br_netfilter if you need this. Apr 12 18:22:24.116170 systemd[1]: Finished dracut-cmdline-ask.service. Apr 12 18:22:24.116000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:24.128357 systemd[1]: Starting dracut-cmdline.service... Apr 12 18:22:24.133982 kernel: audit: type=1130 audit(1712946144.116:5): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:24.138284 systemd-modules-load[269]: Inserted module 'br_netfilter' Apr 12 18:22:24.140257 kernel: Bridge firewalling registered Apr 12 18:22:24.157760 dracut-cmdline[285]: dracut-dracut-053 Apr 12 18:22:24.166969 kernel: SCSI subsystem initialized Apr 12 18:22:24.171183 dracut-cmdline[285]: Using kernel command line parameters: rd.driver.pre=btrfs BOOT_IMAGE=/flatcar/vmlinuz-a mount.usr=/dev/mapper/usr verity.usr=PARTUUID=7130c94a-213a-4e5a-8e26-6cce9662f132 rootflags=rw mount.usrflags=ro consoleblank=0 root=LABEL=ROOT console=tty1 console=ttyS0,115200n8 earlycon flatcar.first_boot=detected acpi=force flatcar.oem.id=ec2 modprobe.blacklist=xen_fbfront net.ifnames=0 nvme_core.io_timeout=4294967295 verity.usrhash=c0b96868344262519ffdb2dae3782c942008a0fecdbc0bc85d2e170bd2e8b8a8 Apr 12 18:22:24.198464 kernel: device-mapper: core: CONFIG_IMA_DISABLE_HTABLE is disabled. Duplicate IMA measurements will not be recorded in the IMA log. Apr 12 18:22:24.198537 kernel: device-mapper: uevent: version 1.0.3 Apr 12 18:22:24.202723 kernel: device-mapper: ioctl: 4.45.0-ioctl (2021-03-22) initialised: dm-devel@redhat.com Apr 12 18:22:24.209222 systemd-modules-load[269]: Inserted module 'dm_multipath' Apr 12 18:22:24.213105 systemd[1]: Finished systemd-modules-load.service. Apr 12 18:22:24.213000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:24.226518 systemd[1]: Starting systemd-sysctl.service... Apr 12 18:22:24.235993 kernel: audit: type=1130 audit(1712946144.213:6): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:24.245057 systemd[1]: Finished systemd-sysctl.service. Apr 12 18:22:24.245000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:24.256984 kernel: audit: type=1130 audit(1712946144.245:7): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:24.365999 kernel: Loading iSCSI transport class v2.0-870. Apr 12 18:22:24.389193 kernel: iscsi: registered transport (tcp) Apr 12 18:22:24.416310 kernel: iscsi: registered transport (qla4xxx) Apr 12 18:22:24.416381 kernel: QLogic iSCSI HBA Driver Apr 12 18:22:24.601974 kernel: random: crng init done Apr 12 18:22:24.602134 systemd-resolved[270]: Defaulting to hostname 'linux'. Apr 12 18:22:24.605911 systemd[1]: Started systemd-resolved.service. Apr 12 18:22:24.618471 kernel: audit: type=1130 audit(1712946144.606:8): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:24.606000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:24.607880 systemd[1]: Reached target nss-lookup.target. Apr 12 18:22:24.631663 systemd[1]: Finished dracut-cmdline.service. Apr 12 18:22:24.633000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:24.636467 systemd[1]: Starting dracut-pre-udev.service... Apr 12 18:22:24.646982 kernel: audit: type=1130 audit(1712946144.633:9): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:24.709007 kernel: raid6: neonx8 gen() 6335 MB/s Apr 12 18:22:24.723974 kernel: raid6: neonx8 xor() 4735 MB/s Apr 12 18:22:24.741989 kernel: raid6: neonx4 gen() 6413 MB/s Apr 12 18:22:24.759991 kernel: raid6: neonx4 xor() 4905 MB/s Apr 12 18:22:24.777987 kernel: raid6: neonx2 gen() 5715 MB/s Apr 12 18:22:24.795992 kernel: raid6: neonx2 xor() 4531 MB/s Apr 12 18:22:24.813987 kernel: raid6: neonx1 gen() 4439 MB/s Apr 12 18:22:24.831986 kernel: raid6: neonx1 xor() 3656 MB/s Apr 12 18:22:24.849989 kernel: raid6: int64x8 gen() 3404 MB/s Apr 12 18:22:24.867993 kernel: raid6: int64x8 xor() 2080 MB/s Apr 12 18:22:24.885989 kernel: raid6: int64x4 gen() 3763 MB/s Apr 12 18:22:24.903994 kernel: raid6: int64x4 xor() 2182 MB/s Apr 12 18:22:24.921988 kernel: raid6: int64x2 gen() 3541 MB/s Apr 12 18:22:24.939990 kernel: raid6: int64x2 xor() 1944 MB/s Apr 12 18:22:24.957986 kernel: raid6: int64x1 gen() 2758 MB/s Apr 12 18:22:24.977443 kernel: raid6: int64x1 xor() 1448 MB/s Apr 12 18:22:24.977508 kernel: raid6: using algorithm neonx4 gen() 6413 MB/s Apr 12 18:22:24.977532 kernel: raid6: .... xor() 4905 MB/s, rmw enabled Apr 12 18:22:24.979238 kernel: raid6: using neon recovery algorithm Apr 12 18:22:24.998999 kernel: xor: measuring software checksum speed Apr 12 18:22:24.999073 kernel: 8regs : 9393 MB/sec Apr 12 18:22:25.003985 kernel: 32regs : 11095 MB/sec Apr 12 18:22:25.007803 kernel: arm64_neon : 9635 MB/sec Apr 12 18:22:25.007863 kernel: xor: using function: 32regs (11095 MB/sec) Apr 12 18:22:25.098995 kernel: Btrfs loaded, crc32c=crc32c-generic, zoned=no, fsverity=no Apr 12 18:22:25.116452 systemd[1]: Finished dracut-pre-udev.service. Apr 12 18:22:25.127897 kernel: audit: type=1130 audit(1712946145.116:10): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-udev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:25.116000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-udev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:25.126000 audit: BPF prog-id=7 op=LOAD Apr 12 18:22:25.126000 audit: BPF prog-id=8 op=LOAD Apr 12 18:22:25.128704 systemd[1]: Starting systemd-udevd.service... Apr 12 18:22:25.155746 systemd-udevd[468]: Using default interface naming scheme 'v252'. Apr 12 18:22:25.166546 systemd[1]: Started systemd-udevd.service. Apr 12 18:22:25.172000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:25.175371 systemd[1]: Starting dracut-pre-trigger.service... Apr 12 18:22:25.202315 dracut-pre-trigger[479]: rd.md=0: removing MD RAID activation Apr 12 18:22:25.267867 systemd[1]: Finished dracut-pre-trigger.service. Apr 12 18:22:25.268000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:25.272574 systemd[1]: Starting systemd-udev-trigger.service... Apr 12 18:22:25.380005 systemd[1]: Finished systemd-udev-trigger.service. Apr 12 18:22:25.380000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:25.505973 kernel: ACPI: \_SB_.PCI0.GSI0: Enabled at IRQ 35 Apr 12 18:22:25.513815 kernel: nvme nvme0: pci function 0000:00:04.0 Apr 12 18:22:25.514219 kernel: ACPI: \_SB_.PCI0.GSI1: Enabled at IRQ 36 Apr 12 18:22:25.514247 kernel: ena 0000:00:05.0: enabling device (0010 -> 0012) Apr 12 18:22:25.523316 kernel: ena 0000:00:05.0: ENA device version: 0.10 Apr 12 18:22:25.523705 kernel: ena 0000:00:05.0: ENA controller version: 0.0.1 implementation version 1 Apr 12 18:22:25.527985 kernel: nvme nvme0: 2/0/0 default/read/poll queues Apr 12 18:22:25.534218 kernel: GPT:Primary header thinks Alt. header is not at the end of the disk. Apr 12 18:22:25.534266 kernel: GPT:9289727 != 16777215 Apr 12 18:22:25.534289 kernel: GPT:Alternate GPT header not at the end of the disk. Apr 12 18:22:25.537817 kernel: GPT:9289727 != 16777215 Apr 12 18:22:25.537851 kernel: GPT: Use GNU Parted to correct GPT errors. Apr 12 18:22:25.541327 kernel: nvme0n1: p1 p2 p3 p4 p6 p7 p9 Apr 12 18:22:25.542982 kernel: ena 0000:00:05.0: Elastic Network Adapter (ENA) found at mem 80114000, mac addr 06:af:82:46:dc:e9 Apr 12 18:22:25.550509 (udev-worker)[531]: Network interface NamePolicy= disabled on kernel command line. Apr 12 18:22:25.623992 kernel: BTRFS: device label OEM devid 1 transid 12 /dev/nvme0n1p6 scanned by (udev-worker) (525) Apr 12 18:22:25.645572 systemd[1]: Found device dev-disk-by\x2dlabel-EFI\x2dSYSTEM.device. Apr 12 18:22:25.732336 systemd[1]: Found device dev-disk-by\x2dlabel-OEM.device. Apr 12 18:22:25.746833 systemd[1]: Found device dev-disk-by\x2dpartuuid-7130c94a\x2d213a\x2d4e5a\x2d8e26\x2d6cce9662f132.device. Apr 12 18:22:25.752082 systemd[1]: Found device dev-disk-by\x2dpartlabel-USR\x2dA.device. Apr 12 18:22:25.766169 systemd[1]: Found device dev-disk-by\x2dlabel-ROOT.device. Apr 12 18:22:25.794423 systemd[1]: Starting disk-uuid.service... Apr 12 18:22:25.807293 disk-uuid[628]: Primary Header is updated. Apr 12 18:22:25.807293 disk-uuid[628]: Secondary Entries is updated. Apr 12 18:22:25.807293 disk-uuid[628]: Secondary Header is updated. Apr 12 18:22:25.821025 kernel: nvme0n1: p1 p2 p3 p4 p6 p7 p9 Apr 12 18:22:25.825973 kernel: nvme0n1: p1 p2 p3 p4 p6 p7 p9 Apr 12 18:22:26.835971 kernel: nvme0n1: p1 p2 p3 p4 p6 p7 p9 Apr 12 18:22:26.837010 disk-uuid[629]: The operation has completed successfully. Apr 12 18:22:26.994135 systemd[1]: disk-uuid.service: Deactivated successfully. Apr 12 18:22:26.996379 systemd[1]: Finished disk-uuid.service. Apr 12 18:22:26.997000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=disk-uuid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:26.997000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=disk-uuid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:27.019306 systemd[1]: Starting verity-setup.service... Apr 12 18:22:27.072979 kernel: device-mapper: verity: sha256 using implementation "sha256-ce" Apr 12 18:22:27.139643 systemd[1]: Found device dev-mapper-usr.device. Apr 12 18:22:27.144452 systemd[1]: Mounting sysusr-usr.mount... Apr 12 18:22:27.148738 systemd[1]: Finished verity-setup.service. Apr 12 18:22:27.150000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=verity-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:27.232972 kernel: EXT4-fs (dm-0): mounted filesystem without journal. Opts: norecovery. Quota mode: none. Apr 12 18:22:27.233349 systemd[1]: Mounted sysusr-usr.mount. Apr 12 18:22:27.236486 systemd[1]: afterburn-network-kargs.service was skipped because no trigger condition checks were met. Apr 12 18:22:27.240379 systemd[1]: Starting ignition-setup.service... Apr 12 18:22:27.249301 systemd[1]: Starting parse-ip-for-networkd.service... Apr 12 18:22:27.272466 kernel: BTRFS info (device nvme0n1p6): using crc32c (crc32c-generic) checksum algorithm Apr 12 18:22:27.272535 kernel: BTRFS info (device nvme0n1p6): using free space tree Apr 12 18:22:27.274753 kernel: BTRFS info (device nvme0n1p6): has skinny extents Apr 12 18:22:27.281985 kernel: BTRFS info (device nvme0n1p6): enabling ssd optimizations Apr 12 18:22:27.298482 systemd[1]: mnt-oem.mount: Deactivated successfully. Apr 12 18:22:27.331414 systemd[1]: Finished ignition-setup.service. Apr 12 18:22:27.332000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:27.334810 systemd[1]: Starting ignition-fetch-offline.service... Apr 12 18:22:27.386885 systemd[1]: Finished parse-ip-for-networkd.service. Apr 12 18:22:27.389000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=parse-ip-for-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:27.389000 audit: BPF prog-id=9 op=LOAD Apr 12 18:22:27.392501 systemd[1]: Starting systemd-networkd.service... Apr 12 18:22:27.436787 systemd-networkd[1068]: lo: Link UP Apr 12 18:22:27.438512 systemd-networkd[1068]: lo: Gained carrier Apr 12 18:22:27.441022 systemd-networkd[1068]: Enumeration completed Apr 12 18:22:27.442843 systemd[1]: Started systemd-networkd.service. Apr 12 18:22:27.443000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:27.444865 systemd[1]: Reached target network.target. Apr 12 18:22:27.446578 systemd-networkd[1068]: eth0: Configuring with /usr/lib/systemd/network/zz-default.network. Apr 12 18:22:27.460542 systemd[1]: Starting iscsiuio.service... Apr 12 18:22:27.468817 systemd-networkd[1068]: eth0: Link UP Apr 12 18:22:27.468834 systemd-networkd[1068]: eth0: Gained carrier Apr 12 18:22:27.479777 systemd[1]: Started iscsiuio.service. Apr 12 18:22:27.484000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsiuio comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:27.487767 systemd[1]: Starting iscsid.service... Apr 12 18:22:27.491113 systemd-networkd[1068]: eth0: DHCPv4 address 172.31.25.169/20, gateway 172.31.16.1 acquired from 172.31.16.1 Apr 12 18:22:27.500614 iscsid[1073]: iscsid: can't open InitiatorName configuration file /etc/iscsi/initiatorname.iscsi Apr 12 18:22:27.500614 iscsid[1073]: iscsid: Warning: InitiatorName file /etc/iscsi/initiatorname.iscsi does not exist or does not contain a properly formatted InitiatorName. If using software iscsi (iscsi_tcp or ib_iser) or partial offload (bnx2i or cxgbi iscsi), you may not be able to log into or discover targets. Please create a file /etc/iscsi/initiatorname.iscsi that contains a sting with the format: InitiatorName=iqn.yyyy-mm.[:identifier]. Apr 12 18:22:27.500614 iscsid[1073]: Example: InitiatorName=iqn.2001-04.com.redhat:fc6. Apr 12 18:22:27.500614 iscsid[1073]: If using hardware iscsi like qla4xxx this message can be ignored. Apr 12 18:22:27.500614 iscsid[1073]: iscsid: can't open InitiatorAlias configuration file /etc/iscsi/initiatorname.iscsi Apr 12 18:22:27.521684 iscsid[1073]: iscsid: can't open iscsid.safe_logout configuration file /etc/iscsi/iscsid.conf Apr 12 18:22:27.527621 systemd[1]: Started iscsid.service. Apr 12 18:22:27.528000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:27.532614 systemd[1]: Starting dracut-initqueue.service... Apr 12 18:22:27.564032 systemd[1]: Finished dracut-initqueue.service. Apr 12 18:22:27.564000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:27.567378 systemd[1]: Reached target remote-fs-pre.target. Apr 12 18:22:27.572278 systemd[1]: Reached target remote-cryptsetup.target. Apr 12 18:22:27.576848 systemd[1]: Reached target remote-fs.target. Apr 12 18:22:27.582141 systemd[1]: Starting dracut-pre-mount.service... Apr 12 18:22:27.607730 systemd[1]: Finished dracut-pre-mount.service. Apr 12 18:22:27.609000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:28.064733 ignition[1027]: Ignition 2.14.0 Apr 12 18:22:28.064764 ignition[1027]: Stage: fetch-offline Apr 12 18:22:28.065158 ignition[1027]: reading system config file "/usr/lib/ignition/base.d/base.ign" Apr 12 18:22:28.065226 ignition[1027]: parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Apr 12 18:22:28.085152 ignition[1027]: no config dir at "/usr/lib/ignition/base.platform.d/aws" Apr 12 18:22:28.087727 ignition[1027]: Ignition finished successfully Apr 12 18:22:28.090850 systemd[1]: Finished ignition-fetch-offline.service. Apr 12 18:22:28.104506 kernel: kauditd_printk_skb: 16 callbacks suppressed Apr 12 18:22:28.104548 kernel: audit: type=1130 audit(1712946148.091:27): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:28.091000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:28.106264 systemd[1]: Starting ignition-fetch.service... Apr 12 18:22:28.121667 ignition[1092]: Ignition 2.14.0 Apr 12 18:22:28.121696 ignition[1092]: Stage: fetch Apr 12 18:22:28.122037 ignition[1092]: reading system config file "/usr/lib/ignition/base.d/base.ign" Apr 12 18:22:28.122097 ignition[1092]: parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Apr 12 18:22:28.137029 ignition[1092]: no config dir at "/usr/lib/ignition/base.platform.d/aws" Apr 12 18:22:28.139259 ignition[1092]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Apr 12 18:22:28.147348 ignition[1092]: INFO : PUT result: OK Apr 12 18:22:28.151005 ignition[1092]: DEBUG : parsed url from cmdline: "" Apr 12 18:22:28.152809 ignition[1092]: INFO : no config URL provided Apr 12 18:22:28.152809 ignition[1092]: INFO : reading system config file "/usr/lib/ignition/user.ign" Apr 12 18:22:28.152809 ignition[1092]: INFO : no config at "/usr/lib/ignition/user.ign" Apr 12 18:22:28.170314 ignition[1092]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Apr 12 18:22:28.170314 ignition[1092]: INFO : PUT result: OK Apr 12 18:22:28.170314 ignition[1092]: INFO : GET http://169.254.169.254/2019-10-01/user-data: attempt #1 Apr 12 18:22:28.176924 ignition[1092]: INFO : GET result: OK Apr 12 18:22:28.176924 ignition[1092]: DEBUG : parsing config with SHA512: 0491d2001f5fe1ed7f713d66dd3b51f68f02bf6ce8fb75ad1e1a546fb92c96d4ac41a978382e83533a6604279f02700b4843b707c087b3c03e852716e1ebb235 Apr 12 18:22:28.209671 unknown[1092]: fetched base config from "system" Apr 12 18:22:28.209701 unknown[1092]: fetched base config from "system" Apr 12 18:22:28.209717 unknown[1092]: fetched user config from "aws" Apr 12 18:22:28.215607 ignition[1092]: fetch: fetch complete Apr 12 18:22:28.215640 ignition[1092]: fetch: fetch passed Apr 12 18:22:28.215751 ignition[1092]: Ignition finished successfully Apr 12 18:22:28.222530 systemd[1]: Finished ignition-fetch.service. Apr 12 18:22:28.237001 kernel: audit: type=1130 audit(1712946148.224:28): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:28.224000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:28.233195 systemd[1]: Starting ignition-kargs.service... Apr 12 18:22:28.250178 ignition[1098]: Ignition 2.14.0 Apr 12 18:22:28.250207 ignition[1098]: Stage: kargs Apr 12 18:22:28.250493 ignition[1098]: reading system config file "/usr/lib/ignition/base.d/base.ign" Apr 12 18:22:28.250545 ignition[1098]: parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Apr 12 18:22:28.263366 ignition[1098]: no config dir at "/usr/lib/ignition/base.platform.d/aws" Apr 12 18:22:28.265706 ignition[1098]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Apr 12 18:22:28.268736 ignition[1098]: INFO : PUT result: OK Apr 12 18:22:28.273728 ignition[1098]: kargs: kargs passed Apr 12 18:22:28.273836 ignition[1098]: Ignition finished successfully Apr 12 18:22:28.278296 systemd[1]: Finished ignition-kargs.service. Apr 12 18:22:28.280000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:28.282896 systemd[1]: Starting ignition-disks.service... Apr 12 18:22:28.293995 kernel: audit: type=1130 audit(1712946148.280:29): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:28.298992 ignition[1104]: Ignition 2.14.0 Apr 12 18:22:28.300697 ignition[1104]: Stage: disks Apr 12 18:22:28.302245 ignition[1104]: reading system config file "/usr/lib/ignition/base.d/base.ign" Apr 12 18:22:28.304689 ignition[1104]: parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Apr 12 18:22:28.318313 ignition[1104]: no config dir at "/usr/lib/ignition/base.platform.d/aws" Apr 12 18:22:28.321007 ignition[1104]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Apr 12 18:22:28.323592 ignition[1104]: INFO : PUT result: OK Apr 12 18:22:28.328671 ignition[1104]: disks: disks passed Apr 12 18:22:28.328774 ignition[1104]: Ignition finished successfully Apr 12 18:22:28.333194 systemd[1]: Finished ignition-disks.service. Apr 12 18:22:28.336492 systemd[1]: Reached target initrd-root-device.target. Apr 12 18:22:28.339901 systemd[1]: Reached target local-fs-pre.target. Apr 12 18:22:28.350102 kernel: audit: type=1130 audit(1712946148.334:30): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:28.334000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:28.350075 systemd[1]: Reached target local-fs.target. Apr 12 18:22:28.351734 systemd[1]: Reached target sysinit.target. Apr 12 18:22:28.354645 systemd[1]: Reached target basic.target. Apr 12 18:22:28.360425 systemd[1]: Starting systemd-fsck-root.service... Apr 12 18:22:28.407257 systemd-fsck[1112]: ROOT: clean, 612/553520 files, 56018/553472 blocks Apr 12 18:22:28.414599 systemd[1]: Finished systemd-fsck-root.service. Apr 12 18:22:28.415000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:28.426989 systemd[1]: Mounting sysroot.mount... Apr 12 18:22:28.428859 kernel: audit: type=1130 audit(1712946148.415:31): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:28.446977 kernel: EXT4-fs (nvme0n1p9): mounted filesystem with ordered data mode. Opts: (null). Quota mode: none. Apr 12 18:22:28.449122 systemd[1]: Mounted sysroot.mount. Apr 12 18:22:28.452262 systemd[1]: Reached target initrd-root-fs.target. Apr 12 18:22:28.472572 systemd[1]: Mounting sysroot-usr.mount... Apr 12 18:22:28.476563 systemd[1]: flatcar-metadata-hostname.service was skipped because no trigger condition checks were met. Apr 12 18:22:28.480261 systemd[1]: ignition-remount-sysroot.service was skipped because of an unmet condition check (ConditionPathIsReadWrite=!/sysroot). Apr 12 18:22:28.483625 systemd[1]: Reached target ignition-diskful.target. Apr 12 18:22:28.488843 systemd[1]: Mounted sysroot-usr.mount. Apr 12 18:22:28.497960 systemd[1]: Mounting sysroot-usr-share-oem.mount... Apr 12 18:22:28.502578 systemd[1]: Starting initrd-setup-root.service... Apr 12 18:22:28.515407 initrd-setup-root[1134]: cut: /sysroot/etc/passwd: No such file or directory Apr 12 18:22:28.524988 kernel: BTRFS: device label OEM devid 1 transid 14 /dev/nvme0n1p6 scanned by mount (1129) Apr 12 18:22:28.530539 kernel: BTRFS info (device nvme0n1p6): using crc32c (crc32c-generic) checksum algorithm Apr 12 18:22:28.530599 kernel: BTRFS info (device nvme0n1p6): using free space tree Apr 12 18:22:28.530623 kernel: BTRFS info (device nvme0n1p6): has skinny extents Apr 12 18:22:28.535361 initrd-setup-root[1144]: cut: /sysroot/etc/group: No such file or directory Apr 12 18:22:28.545030 initrd-setup-root[1166]: cut: /sysroot/etc/shadow: No such file or directory Apr 12 18:22:28.553995 kernel: BTRFS info (device nvme0n1p6): enabling ssd optimizations Apr 12 18:22:28.559077 systemd[1]: Mounted sysroot-usr-share-oem.mount. Apr 12 18:22:28.562484 initrd-setup-root[1176]: cut: /sysroot/etc/gshadow: No such file or directory Apr 12 18:22:28.826647 systemd[1]: Finished initrd-setup-root.service. Apr 12 18:22:28.828000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:28.830236 systemd-networkd[1068]: eth0: Gained IPv6LL Apr 12 18:22:28.842410 kernel: audit: type=1130 audit(1712946148.828:32): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:28.843309 systemd[1]: Starting ignition-mount.service... Apr 12 18:22:28.856075 systemd[1]: Starting sysroot-boot.service... Apr 12 18:22:28.863617 systemd[1]: sysusr-usr-share-oem.mount: Deactivated successfully. Apr 12 18:22:28.863809 systemd[1]: sysroot-usr-share-oem.mount: Deactivated successfully. Apr 12 18:22:28.893996 ignition[1194]: INFO : Ignition 2.14.0 Apr 12 18:22:28.896008 ignition[1194]: INFO : Stage: mount Apr 12 18:22:28.898009 ignition[1194]: INFO : reading system config file "/usr/lib/ignition/base.d/base.ign" Apr 12 18:22:28.900627 ignition[1194]: DEBUG : parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Apr 12 18:22:28.918771 systemd[1]: Finished sysroot-boot.service. Apr 12 18:22:28.920790 ignition[1194]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/aws" Apr 12 18:22:28.933123 kernel: audit: type=1130 audit(1712946148.921:33): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:28.921000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:28.933252 ignition[1194]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Apr 12 18:22:28.933252 ignition[1194]: INFO : PUT result: OK Apr 12 18:22:28.933252 ignition[1194]: INFO : mount: mount passed Apr 12 18:22:28.933252 ignition[1194]: INFO : Ignition finished successfully Apr 12 18:22:28.958863 kernel: audit: type=1130 audit(1712946148.933:34): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:28.933000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:28.933222 systemd[1]: Finished ignition-mount.service. Apr 12 18:22:28.936472 systemd[1]: Starting ignition-files.service... Apr 12 18:22:28.955480 systemd[1]: Mounting sysroot-usr-share-oem.mount... Apr 12 18:22:28.981320 kernel: BTRFS: device label OEM devid 1 transid 15 /dev/nvme0n1p6 scanned by mount (1204) Apr 12 18:22:28.987025 kernel: BTRFS info (device nvme0n1p6): using crc32c (crc32c-generic) checksum algorithm Apr 12 18:22:28.987102 kernel: BTRFS info (device nvme0n1p6): using free space tree Apr 12 18:22:28.987127 kernel: BTRFS info (device nvme0n1p6): has skinny extents Apr 12 18:22:28.995981 kernel: BTRFS info (device nvme0n1p6): enabling ssd optimizations Apr 12 18:22:29.001212 systemd[1]: Mounted sysroot-usr-share-oem.mount. Apr 12 18:22:29.022395 ignition[1223]: INFO : Ignition 2.14.0 Apr 12 18:22:29.026068 ignition[1223]: INFO : Stage: files Apr 12 18:22:29.026068 ignition[1223]: INFO : reading system config file "/usr/lib/ignition/base.d/base.ign" Apr 12 18:22:29.026068 ignition[1223]: DEBUG : parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Apr 12 18:22:29.044368 ignition[1223]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/aws" Apr 12 18:22:29.047032 ignition[1223]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Apr 12 18:22:29.050229 ignition[1223]: INFO : PUT result: OK Apr 12 18:22:29.056304 ignition[1223]: DEBUG : files: compiled without relabeling support, skipping Apr 12 18:22:29.060337 ignition[1223]: INFO : files: ensureUsers: op(1): [started] creating or modifying user "core" Apr 12 18:22:29.063119 ignition[1223]: DEBUG : files: ensureUsers: op(1): executing: "usermod" "--root" "/sysroot" "core" Apr 12 18:22:29.097492 ignition[1223]: INFO : files: ensureUsers: op(1): [finished] creating or modifying user "core" Apr 12 18:22:29.100761 ignition[1223]: INFO : files: ensureUsers: op(2): [started] adding ssh keys to user "core" Apr 12 18:22:29.104825 unknown[1223]: wrote ssh authorized keys file for user: core Apr 12 18:22:29.107213 ignition[1223]: INFO : files: ensureUsers: op(2): [finished] adding ssh keys to user "core" Apr 12 18:22:29.111213 ignition[1223]: INFO : files: createFilesystemsFiles: createFiles: op(3): [started] writing file "/sysroot/opt/cni-plugins-linux-arm64-v1.3.0.tgz" Apr 12 18:22:29.115149 ignition[1223]: INFO : GET https://github.com/containernetworking/plugins/releases/download/v1.3.0/cni-plugins-linux-arm64-v1.3.0.tgz: attempt #1 Apr 12 18:22:29.464385 ignition[1223]: INFO : GET result: OK Apr 12 18:22:30.013498 ignition[1223]: DEBUG : file matches expected sum of: b2b7fb74f1b3cb8928f49e5bf9d4bc686e057e837fac3caf1b366d54757921dba80d70cc010399b274d136e8dee9a25b1ad87cdfdc4ffcf42cf88f3e8f99587a Apr 12 18:22:30.018759 ignition[1223]: INFO : files: createFilesystemsFiles: createFiles: op(3): [finished] writing file "/sysroot/opt/cni-plugins-linux-arm64-v1.3.0.tgz" Apr 12 18:22:30.018759 ignition[1223]: INFO : files: createFilesystemsFiles: createFiles: op(4): [started] writing file "/sysroot/opt/crictl-v1.27.0-linux-arm64.tar.gz" Apr 12 18:22:30.018759 ignition[1223]: INFO : GET https://github.com/kubernetes-sigs/cri-tools/releases/download/v1.27.0/crictl-v1.27.0-linux-arm64.tar.gz: attempt #1 Apr 12 18:22:30.312056 ignition[1223]: INFO : GET result: OK Apr 12 18:22:30.578531 ignition[1223]: DEBUG : file matches expected sum of: db062e43351a63347871e7094115be2ae3853afcd346d47f7b51141da8c3202c2df58d2e17359322f632abcb37474fd7fdb3b7aadbc5cfd5cf6d3bad040b6251 Apr 12 18:22:30.588554 ignition[1223]: INFO : files: createFilesystemsFiles: createFiles: op(4): [finished] writing file "/sysroot/opt/crictl-v1.27.0-linux-arm64.tar.gz" Apr 12 18:22:30.588554 ignition[1223]: INFO : files: createFilesystemsFiles: createFiles: op(5): [started] writing file "/sysroot/etc/eks/bootstrap.sh" Apr 12 18:22:30.588554 ignition[1223]: INFO : oem config not found in "/usr/share/oem", looking on oem partition Apr 12 18:22:30.602478 kernel: BTRFS info: devid 1 device path /dev/nvme0n1p6 changed to /dev/disk/by-label/OEM scanned by ignition (1228) Apr 12 18:22:30.602521 ignition[1223]: INFO : op(1): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3255117045" Apr 12 18:22:30.602521 ignition[1223]: CRITICAL : op(1): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3255117045": device or resource busy Apr 12 18:22:30.602521 ignition[1223]: ERROR : failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem3255117045", trying btrfs: device or resource busy Apr 12 18:22:30.602521 ignition[1223]: INFO : op(2): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3255117045" Apr 12 18:22:30.632032 ignition[1223]: INFO : op(2): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3255117045" Apr 12 18:22:30.638319 ignition[1223]: INFO : op(3): [started] unmounting "/mnt/oem3255117045" Apr 12 18:22:30.641405 ignition[1223]: INFO : op(3): [finished] unmounting "/mnt/oem3255117045" Apr 12 18:22:30.641405 ignition[1223]: INFO : files: createFilesystemsFiles: createFiles: op(5): [finished] writing file "/sysroot/etc/eks/bootstrap.sh" Apr 12 18:22:30.649454 ignition[1223]: INFO : files: createFilesystemsFiles: createFiles: op(6): [started] writing file "/sysroot/opt/bin/kubeadm" Apr 12 18:22:30.649454 ignition[1223]: INFO : GET https://dl.k8s.io/release/v1.27.2/bin/linux/arm64/kubeadm: attempt #1 Apr 12 18:22:30.642216 systemd[1]: mnt-oem3255117045.mount: Deactivated successfully. Apr 12 18:22:30.773017 ignition[1223]: INFO : GET result: OK Apr 12 18:22:31.384754 ignition[1223]: DEBUG : file matches expected sum of: 45b3100984c979ba0f1c0df8f4211474c2d75ebe916e677dff5fc8e3b3697cf7a953da94e356f39684cc860dff6878b772b7514c55651c2f866d9efeef23f970 Apr 12 18:22:31.389832 ignition[1223]: INFO : files: createFilesystemsFiles: createFiles: op(6): [finished] writing file "/sysroot/opt/bin/kubeadm" Apr 12 18:22:31.389832 ignition[1223]: INFO : files: createFilesystemsFiles: createFiles: op(7): [started] writing file "/sysroot/opt/bin/kubelet" Apr 12 18:22:31.389832 ignition[1223]: INFO : GET https://dl.k8s.io/release/v1.27.2/bin/linux/arm64/kubelet: attempt #1 Apr 12 18:22:31.449674 ignition[1223]: INFO : GET result: OK Apr 12 18:22:32.762208 ignition[1223]: DEBUG : file matches expected sum of: 71857ff499ae135fa478e1827a0ed8865e578a8d2b1e25876e914fd0beba03733801c0654bcd4c0567bafeb16887dafb2dbbe8d1116e6ea28dcd8366c142d348 Apr 12 18:22:32.767337 ignition[1223]: INFO : files: createFilesystemsFiles: createFiles: op(7): [finished] writing file "/sysroot/opt/bin/kubelet" Apr 12 18:22:32.767337 ignition[1223]: INFO : files: createFilesystemsFiles: createFiles: op(8): [started] writing file "/sysroot/home/core/install.sh" Apr 12 18:22:32.767337 ignition[1223]: INFO : files: createFilesystemsFiles: createFiles: op(8): [finished] writing file "/sysroot/home/core/install.sh" Apr 12 18:22:32.767337 ignition[1223]: INFO : files: createFilesystemsFiles: createFiles: op(9): [started] writing file "/sysroot/etc/docker/daemon.json" Apr 12 18:22:32.781348 ignition[1223]: INFO : files: createFilesystemsFiles: createFiles: op(9): [finished] writing file "/sysroot/etc/docker/daemon.json" Apr 12 18:22:32.781348 ignition[1223]: INFO : files: createFilesystemsFiles: createFiles: op(a): [started] writing file "/sysroot/etc/flatcar/update.conf" Apr 12 18:22:32.788473 ignition[1223]: INFO : files: createFilesystemsFiles: createFiles: op(a): [finished] writing file "/sysroot/etc/flatcar/update.conf" Apr 12 18:22:32.788473 ignition[1223]: INFO : files: createFilesystemsFiles: createFiles: op(b): [started] writing file "/sysroot/etc/amazon/ssm/amazon-ssm-agent.json" Apr 12 18:22:32.795922 ignition[1223]: INFO : oem config not found in "/usr/share/oem", looking on oem partition Apr 12 18:22:32.808855 ignition[1223]: INFO : op(4): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem660447248" Apr 12 18:22:32.811783 ignition[1223]: CRITICAL : op(4): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem660447248": device or resource busy Apr 12 18:22:32.815077 ignition[1223]: ERROR : failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem660447248", trying btrfs: device or resource busy Apr 12 18:22:32.818602 ignition[1223]: INFO : op(5): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem660447248" Apr 12 18:22:32.821444 ignition[1223]: INFO : op(5): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem660447248" Apr 12 18:22:32.836006 ignition[1223]: INFO : op(6): [started] unmounting "/mnt/oem660447248" Apr 12 18:22:32.836006 ignition[1223]: INFO : op(6): [finished] unmounting "/mnt/oem660447248" Apr 12 18:22:32.836006 ignition[1223]: INFO : files: createFilesystemsFiles: createFiles: op(b): [finished] writing file "/sysroot/etc/amazon/ssm/amazon-ssm-agent.json" Apr 12 18:22:32.836006 ignition[1223]: INFO : files: createFilesystemsFiles: createFiles: op(c): [started] writing file "/sysroot/etc/amazon/ssm/seelog.xml" Apr 12 18:22:32.836006 ignition[1223]: INFO : oem config not found in "/usr/share/oem", looking on oem partition Apr 12 18:22:32.829616 systemd[1]: mnt-oem660447248.mount: Deactivated successfully. Apr 12 18:22:32.872601 ignition[1223]: INFO : op(7): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1619331989" Apr 12 18:22:32.872601 ignition[1223]: CRITICAL : op(7): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1619331989": device or resource busy Apr 12 18:22:32.872601 ignition[1223]: ERROR : failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem1619331989", trying btrfs: device or resource busy Apr 12 18:22:32.872601 ignition[1223]: INFO : op(8): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1619331989" Apr 12 18:22:32.901838 ignition[1223]: INFO : op(8): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem1619331989" Apr 12 18:22:32.901838 ignition[1223]: INFO : op(9): [started] unmounting "/mnt/oem1619331989" Apr 12 18:22:32.901838 ignition[1223]: INFO : op(9): [finished] unmounting "/mnt/oem1619331989" Apr 12 18:22:32.901838 ignition[1223]: INFO : files: createFilesystemsFiles: createFiles: op(c): [finished] writing file "/sysroot/etc/amazon/ssm/seelog.xml" Apr 12 18:22:32.901838 ignition[1223]: INFO : files: createFilesystemsFiles: createFiles: op(d): [started] writing file "/sysroot/etc/systemd/system/nvidia.service" Apr 12 18:22:32.901838 ignition[1223]: INFO : oem config not found in "/usr/share/oem", looking on oem partition Apr 12 18:22:32.882777 systemd[1]: mnt-oem1619331989.mount: Deactivated successfully. Apr 12 18:22:32.946255 ignition[1223]: INFO : op(a): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem4042773358" Apr 12 18:22:32.946255 ignition[1223]: CRITICAL : op(a): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem4042773358": device or resource busy Apr 12 18:22:32.946255 ignition[1223]: ERROR : failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem4042773358", trying btrfs: device or resource busy Apr 12 18:22:32.946255 ignition[1223]: INFO : op(b): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem4042773358" Apr 12 18:22:32.946255 ignition[1223]: INFO : op(b): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem4042773358" Apr 12 18:22:32.946255 ignition[1223]: INFO : op(c): [started] unmounting "/mnt/oem4042773358" Apr 12 18:22:32.946255 ignition[1223]: INFO : op(c): [finished] unmounting "/mnt/oem4042773358" Apr 12 18:22:32.946255 ignition[1223]: INFO : files: createFilesystemsFiles: createFiles: op(d): [finished] writing file "/sysroot/etc/systemd/system/nvidia.service" Apr 12 18:22:32.946255 ignition[1223]: INFO : files: op(e): [started] processing unit "amazon-ssm-agent.service" Apr 12 18:22:32.946255 ignition[1223]: INFO : files: op(e): op(f): [started] writing unit "amazon-ssm-agent.service" at "/sysroot/etc/systemd/system/amazon-ssm-agent.service" Apr 12 18:22:32.946255 ignition[1223]: INFO : files: op(e): op(f): [finished] writing unit "amazon-ssm-agent.service" at "/sysroot/etc/systemd/system/amazon-ssm-agent.service" Apr 12 18:22:32.946255 ignition[1223]: INFO : files: op(e): [finished] processing unit "amazon-ssm-agent.service" Apr 12 18:22:32.946255 ignition[1223]: INFO : files: op(10): [started] processing unit "nvidia.service" Apr 12 18:22:32.946255 ignition[1223]: INFO : files: op(10): [finished] processing unit "nvidia.service" Apr 12 18:22:32.946255 ignition[1223]: INFO : files: op(11): [started] processing unit "coreos-metadata-sshkeys@.service" Apr 12 18:22:32.946255 ignition[1223]: INFO : files: op(11): [finished] processing unit "coreos-metadata-sshkeys@.service" Apr 12 18:22:32.946255 ignition[1223]: INFO : files: op(12): [started] processing unit "prepare-cni-plugins.service" Apr 12 18:22:32.946255 ignition[1223]: INFO : files: op(12): op(13): [started] writing unit "prepare-cni-plugins.service" at "/sysroot/etc/systemd/system/prepare-cni-plugins.service" Apr 12 18:22:32.946255 ignition[1223]: INFO : files: op(12): op(13): [finished] writing unit "prepare-cni-plugins.service" at "/sysroot/etc/systemd/system/prepare-cni-plugins.service" Apr 12 18:22:32.946255 ignition[1223]: INFO : files: op(12): [finished] processing unit "prepare-cni-plugins.service" Apr 12 18:22:32.946255 ignition[1223]: INFO : files: op(14): [started] processing unit "prepare-critools.service" Apr 12 18:22:33.055986 kernel: audit: type=1130 audit(1712946152.946:35): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.056034 kernel: audit: type=1130 audit(1712946153.021:36): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:32.946000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.021000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:32.945977 systemd[1]: Finished ignition-files.service. Apr 12 18:22:33.057754 ignition[1223]: INFO : files: op(14): op(15): [started] writing unit "prepare-critools.service" at "/sysroot/etc/systemd/system/prepare-critools.service" Apr 12 18:22:33.057754 ignition[1223]: INFO : files: op(14): op(15): [finished] writing unit "prepare-critools.service" at "/sysroot/etc/systemd/system/prepare-critools.service" Apr 12 18:22:33.057754 ignition[1223]: INFO : files: op(14): [finished] processing unit "prepare-critools.service" Apr 12 18:22:33.057754 ignition[1223]: INFO : files: op(16): [started] setting preset to enabled for "amazon-ssm-agent.service" Apr 12 18:22:33.057754 ignition[1223]: INFO : files: op(16): [finished] setting preset to enabled for "amazon-ssm-agent.service" Apr 12 18:22:33.057754 ignition[1223]: INFO : files: op(17): [started] setting preset to enabled for "nvidia.service" Apr 12 18:22:33.057754 ignition[1223]: INFO : files: op(17): [finished] setting preset to enabled for "nvidia.service" Apr 12 18:22:33.057754 ignition[1223]: INFO : files: op(18): [started] setting preset to enabled for "coreos-metadata-sshkeys@.service " Apr 12 18:22:33.057754 ignition[1223]: INFO : files: op(18): [finished] setting preset to enabled for "coreos-metadata-sshkeys@.service " Apr 12 18:22:33.057754 ignition[1223]: INFO : files: op(19): [started] setting preset to enabled for "prepare-cni-plugins.service" Apr 12 18:22:33.057754 ignition[1223]: INFO : files: op(19): [finished] setting preset to enabled for "prepare-cni-plugins.service" Apr 12 18:22:33.057754 ignition[1223]: INFO : files: op(1a): [started] setting preset to enabled for "prepare-critools.service" Apr 12 18:22:33.057754 ignition[1223]: INFO : files: op(1a): [finished] setting preset to enabled for "prepare-critools.service" Apr 12 18:22:33.057754 ignition[1223]: INFO : files: createResultFile: createFiles: op(1b): [started] writing file "/sysroot/etc/.ignition-result.json" Apr 12 18:22:33.057754 ignition[1223]: INFO : files: createResultFile: createFiles: op(1b): [finished] writing file "/sysroot/etc/.ignition-result.json" Apr 12 18:22:33.057754 ignition[1223]: INFO : files: files passed Apr 12 18:22:33.057754 ignition[1223]: INFO : Ignition finished successfully Apr 12 18:22:32.955517 systemd[1]: Starting initrd-setup-root-after-ignition.service... Apr 12 18:22:32.977204 systemd[1]: torcx-profile-populate.service was skipped because of an unmet condition check (ConditionPathExists=/sysroot/etc/torcx/next-profile). Apr 12 18:22:33.066220 initrd-setup-root-after-ignition[1246]: grep: /sysroot/etc/flatcar/enabled-sysext.conf: No such file or directory Apr 12 18:22:32.979585 systemd[1]: Starting ignition-quench.service... Apr 12 18:22:33.003039 systemd[1]: Finished initrd-setup-root-after-ignition.service. Apr 12 18:22:33.046836 systemd[1]: ignition-quench.service: Deactivated successfully. Apr 12 18:22:33.057834 systemd[1]: Finished ignition-quench.service. Apr 12 18:22:33.115000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.117641 systemd[1]: Reached target ignition-complete.target. Apr 12 18:22:33.134886 kernel: audit: type=1130 audit(1712946153.115:37): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.134928 kernel: audit: type=1131 audit(1712946153.115:38): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.115000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.136237 systemd[1]: Starting initrd-parse-etc.service... Apr 12 18:22:33.166281 systemd[1]: initrd-parse-etc.service: Deactivated successfully. Apr 12 18:22:33.168530 systemd[1]: Finished initrd-parse-etc.service. Apr 12 18:22:33.169000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.172170 systemd[1]: Reached target initrd-fs.target. Apr 12 18:22:33.189246 kernel: audit: type=1130 audit(1712946153.169:39): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.189295 kernel: audit: type=1131 audit(1712946153.169:40): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.169000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.189268 systemd[1]: Reached target initrd.target. Apr 12 18:22:33.190971 systemd[1]: dracut-mount.service was skipped because no trigger condition checks were met. Apr 12 18:22:33.192466 systemd[1]: Starting dracut-pre-pivot.service... Apr 12 18:22:33.220523 systemd[1]: Finished dracut-pre-pivot.service. Apr 12 18:22:33.221000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.224887 systemd[1]: Starting initrd-cleanup.service... Apr 12 18:22:33.233129 kernel: audit: type=1130 audit(1712946153.221:41): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.246130 systemd[1]: Stopped target nss-lookup.target. Apr 12 18:22:33.249662 systemd[1]: Stopped target remote-cryptsetup.target. Apr 12 18:22:33.253467 systemd[1]: Stopped target timers.target. Apr 12 18:22:33.256660 systemd[1]: dracut-pre-pivot.service: Deactivated successfully. Apr 12 18:22:33.258903 systemd[1]: Stopped dracut-pre-pivot.service. Apr 12 18:22:33.260000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.267244 systemd[1]: Stopped target initrd.target. Apr 12 18:22:33.271181 systemd[1]: Stopped target basic.target. Apr 12 18:22:33.272827 systemd[1]: Stopped target ignition-complete.target. Apr 12 18:22:33.274767 systemd[1]: Stopped target ignition-diskful.target. Apr 12 18:22:33.289806 kernel: audit: type=1131 audit(1712946153.260:42): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.276657 systemd[1]: Stopped target initrd-root-device.target. Apr 12 18:22:33.281202 systemd[1]: Stopped target remote-fs.target. Apr 12 18:22:33.291890 systemd[1]: Stopped target remote-fs-pre.target. Apr 12 18:22:33.296358 systemd[1]: Stopped target sysinit.target. Apr 12 18:22:33.303773 systemd[1]: Stopped target local-fs.target. Apr 12 18:22:33.306980 systemd[1]: Stopped target local-fs-pre.target. Apr 12 18:22:33.310187 systemd[1]: Stopped target swap.target. Apr 12 18:22:33.313108 systemd[1]: dracut-pre-mount.service: Deactivated successfully. Apr 12 18:22:33.315220 systemd[1]: Stopped dracut-pre-mount.service. Apr 12 18:22:33.318651 systemd[1]: Stopped target cryptsetup.target. Apr 12 18:22:33.321816 systemd[1]: dracut-initqueue.service: Deactivated successfully. Apr 12 18:22:33.344203 kernel: audit: type=1131 audit(1712946153.317:43): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.344256 kernel: audit: type=1131 audit(1712946153.322:44): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.317000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.322000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.322073 systemd[1]: Stopped dracut-initqueue.service. Apr 12 18:22:33.364669 kernel: audit: type=1131 audit(1712946153.340:45): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.364711 kernel: audit: type=1131 audit(1712946153.343:46): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.340000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.343000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.324051 systemd[1]: initrd-setup-root-after-ignition.service: Deactivated successfully. Apr 12 18:22:33.324274 systemd[1]: Stopped initrd-setup-root-after-ignition.service. Apr 12 18:22:33.342088 systemd[1]: ignition-files.service: Deactivated successfully. Apr 12 18:22:33.342388 systemd[1]: Stopped ignition-files.service. Apr 12 18:22:33.347282 systemd[1]: Stopping ignition-mount.service... Apr 12 18:22:33.382395 ignition[1261]: INFO : Ignition 2.14.0 Apr 12 18:22:33.382395 ignition[1261]: INFO : Stage: umount Apr 12 18:22:33.382395 ignition[1261]: INFO : reading system config file "/usr/lib/ignition/base.d/base.ign" Apr 12 18:22:33.382395 ignition[1261]: DEBUG : parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Apr 12 18:22:33.381555 systemd[1]: Stopping iscsiuio.service... Apr 12 18:22:33.402457 systemd[1]: Stopping sysroot-boot.service... Apr 12 18:22:33.405668 systemd[1]: systemd-udev-trigger.service: Deactivated successfully. Apr 12 18:22:33.408306 systemd[1]: Stopped systemd-udev-trigger.service. Apr 12 18:22:33.410000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.412525 systemd[1]: dracut-pre-trigger.service: Deactivated successfully. Apr 12 18:22:33.414928 systemd[1]: Stopped dracut-pre-trigger.service. Apr 12 18:22:33.417000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.424624 systemd[1]: iscsiuio.service: Deactivated successfully. Apr 12 18:22:33.424894 systemd[1]: Stopped iscsiuio.service. Apr 12 18:22:33.427000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsiuio comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.434074 systemd[1]: initrd-cleanup.service: Deactivated successfully. Apr 12 18:22:33.434281 systemd[1]: Finished initrd-cleanup.service. Apr 12 18:22:33.435000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.435000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.451247 ignition[1261]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/aws" Apr 12 18:22:33.453841 ignition[1261]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Apr 12 18:22:33.457247 ignition[1261]: INFO : PUT result: OK Apr 12 18:22:33.463447 ignition[1261]: INFO : umount: umount passed Apr 12 18:22:33.465663 ignition[1261]: INFO : Ignition finished successfully Apr 12 18:22:33.468892 systemd[1]: ignition-mount.service: Deactivated successfully. Apr 12 18:22:33.470845 systemd[1]: Stopped ignition-mount.service. Apr 12 18:22:33.474101 systemd[1]: ignition-disks.service: Deactivated successfully. Apr 12 18:22:33.474210 systemd[1]: Stopped ignition-disks.service. Apr 12 18:22:33.471000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.477637 systemd[1]: ignition-kargs.service: Deactivated successfully. Apr 12 18:22:33.481148 systemd[1]: Stopped ignition-kargs.service. Apr 12 18:22:33.484067 systemd[1]: ignition-fetch.service: Deactivated successfully. Apr 12 18:22:33.476000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.484153 systemd[1]: Stopped ignition-fetch.service. Apr 12 18:22:33.482000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.488000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.491083 systemd[1]: Stopped target network.target. Apr 12 18:22:33.492707 systemd[1]: ignition-fetch-offline.service: Deactivated successfully. Apr 12 18:22:33.496221 systemd[1]: Stopped ignition-fetch-offline.service. Apr 12 18:22:33.499613 systemd[1]: Stopped target paths.target. Apr 12 18:22:33.497000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.501174 systemd[1]: systemd-ask-password-console.path: Deactivated successfully. Apr 12 18:22:33.504975 systemd[1]: Stopped systemd-ask-password-console.path. Apr 12 18:22:33.508371 systemd[1]: Stopped target slices.target. Apr 12 18:22:33.511574 systemd[1]: Stopped target sockets.target. Apr 12 18:22:33.514678 systemd[1]: iscsid.socket: Deactivated successfully. Apr 12 18:22:33.514751 systemd[1]: Closed iscsid.socket. Apr 12 18:22:33.518774 systemd[1]: iscsiuio.socket: Deactivated successfully. Apr 12 18:22:33.518876 systemd[1]: Closed iscsiuio.socket. Apr 12 18:22:33.525653 systemd[1]: ignition-setup.service: Deactivated successfully. Apr 12 18:22:33.525761 systemd[1]: Stopped ignition-setup.service. Apr 12 18:22:33.539000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.541258 systemd[1]: Stopping systemd-networkd.service... Apr 12 18:22:33.544779 systemd[1]: Stopping systemd-resolved.service... Apr 12 18:22:33.545022 systemd-networkd[1068]: eth0: DHCPv6 lease lost Apr 12 18:22:33.550000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.549542 systemd[1]: systemd-networkd.service: Deactivated successfully. Apr 12 18:22:33.549798 systemd[1]: Stopped systemd-networkd.service. Apr 12 18:22:33.554000 audit: BPF prog-id=9 op=UNLOAD Apr 12 18:22:33.555657 systemd[1]: systemd-resolved.service: Deactivated successfully. Apr 12 18:22:33.559399 systemd[1]: Stopped systemd-resolved.service. Apr 12 18:22:33.562000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.565506 systemd[1]: systemd-networkd.socket: Deactivated successfully. Apr 12 18:22:33.565615 systemd[1]: Closed systemd-networkd.socket. Apr 12 18:22:33.567000 audit: BPF prog-id=6 op=UNLOAD Apr 12 18:22:33.572119 systemd[1]: Stopping network-cleanup.service... Apr 12 18:22:33.577117 systemd[1]: parse-ip-for-networkd.service: Deactivated successfully. Apr 12 18:22:33.577883 systemd[1]: Stopped parse-ip-for-networkd.service. Apr 12 18:22:33.582000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=parse-ip-for-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.585999 systemd[1]: systemd-sysctl.service: Deactivated successfully. Apr 12 18:22:33.586108 systemd[1]: Stopped systemd-sysctl.service. Apr 12 18:22:33.589000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.591563 systemd[1]: systemd-modules-load.service: Deactivated successfully. Apr 12 18:22:33.591677 systemd[1]: Stopped systemd-modules-load.service. Apr 12 18:22:33.593000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.597438 systemd[1]: Stopping systemd-udevd.service... Apr 12 18:22:33.603770 systemd[1]: systemd-udevd.service: Deactivated successfully. Apr 12 18:22:33.604000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.610000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-udev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.612000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.614000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.604124 systemd[1]: Stopped systemd-udevd.service. Apr 12 18:22:33.606249 systemd[1]: systemd-udevd-control.socket: Deactivated successfully. Apr 12 18:22:33.606338 systemd[1]: Closed systemd-udevd-control.socket. Apr 12 18:22:33.608284 systemd[1]: systemd-udevd-kernel.socket: Deactivated successfully. Apr 12 18:22:33.608362 systemd[1]: Closed systemd-udevd-kernel.socket. Apr 12 18:22:33.610199 systemd[1]: dracut-pre-udev.service: Deactivated successfully. Apr 12 18:22:33.635000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.610289 systemd[1]: Stopped dracut-pre-udev.service. Apr 12 18:22:33.612098 systemd[1]: dracut-cmdline.service: Deactivated successfully. Apr 12 18:22:33.612190 systemd[1]: Stopped dracut-cmdline.service. Apr 12 18:22:33.613997 systemd[1]: dracut-cmdline-ask.service: Deactivated successfully. Apr 12 18:22:33.647000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.614081 systemd[1]: Stopped dracut-cmdline-ask.service. Apr 12 18:22:33.619066 systemd[1]: Starting initrd-udevadm-cleanup-db.service... Apr 12 18:22:33.653000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.635370 systemd[1]: systemd-tmpfiles-setup-dev.service: Deactivated successfully. Apr 12 18:22:33.635492 systemd[1]: Stopped systemd-tmpfiles-setup-dev.service. Apr 12 18:22:33.643985 systemd[1]: kmod-static-nodes.service: Deactivated successfully. Apr 12 18:22:33.644322 systemd[1]: Stopped kmod-static-nodes.service. Apr 12 18:22:33.649434 systemd[1]: systemd-vconsole-setup.service: Deactivated successfully. Apr 12 18:22:33.649536 systemd[1]: Stopped systemd-vconsole-setup.service. Apr 12 18:22:33.668006 systemd[1]: network-cleanup.service: Deactivated successfully. Apr 12 18:22:33.668226 systemd[1]: Stopped network-cleanup.service. Apr 12 18:22:33.671000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=network-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.674683 systemd[1]: initrd-udevadm-cleanup-db.service: Deactivated successfully. Apr 12 18:22:33.676908 systemd[1]: Finished initrd-udevadm-cleanup-db.service. Apr 12 18:22:33.678000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-udevadm-cleanup-db comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.678000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-udevadm-cleanup-db comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.715113 systemd[1]: sysroot-boot.service: Deactivated successfully. Apr 12 18:22:33.716999 systemd[1]: Stopped sysroot-boot.service. Apr 12 18:22:33.719000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.720925 systemd[1]: Reached target initrd-switch-root.target. Apr 12 18:22:33.724489 systemd[1]: initrd-setup-root.service: Deactivated successfully. Apr 12 18:22:33.726559 systemd[1]: Stopped initrd-setup-root.service. Apr 12 18:22:33.728000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:33.731389 systemd[1]: Starting initrd-switch-root.service... Apr 12 18:22:33.749208 systemd[1]: Switching root. Apr 12 18:22:33.781617 iscsid[1073]: iscsid shutting down. Apr 12 18:22:33.784139 systemd-journald[268]: Received SIGTERM from PID 1 (n/a). Apr 12 18:22:33.784196 systemd-journald[268]: Journal stopped Apr 12 18:22:39.610814 kernel: SELinux: Class mctp_socket not defined in policy. Apr 12 18:22:39.610997 kernel: SELinux: Class anon_inode not defined in policy. Apr 12 18:22:39.611047 kernel: SELinux: the above unknown classes and permissions will be allowed Apr 12 18:22:39.611079 kernel: SELinux: policy capability network_peer_controls=1 Apr 12 18:22:39.611113 kernel: SELinux: policy capability open_perms=1 Apr 12 18:22:39.611145 kernel: SELinux: policy capability extended_socket_class=1 Apr 12 18:22:39.611178 kernel: SELinux: policy capability always_check_network=0 Apr 12 18:22:39.611210 kernel: SELinux: policy capability cgroup_seclabel=1 Apr 12 18:22:39.611241 kernel: SELinux: policy capability nnp_nosuid_transition=1 Apr 12 18:22:39.611283 kernel: SELinux: policy capability genfs_seclabel_symlinks=0 Apr 12 18:22:39.611326 kernel: SELinux: policy capability ioctl_skip_cloexec=0 Apr 12 18:22:39.611363 systemd[1]: Successfully loaded SELinux policy in 113.366ms. Apr 12 18:22:39.611430 systemd[1]: Relabelled /dev, /dev/shm, /run, /sys/fs/cgroup in 20.485ms. Apr 12 18:22:39.611467 systemd[1]: systemd 252 running in system mode (+PAM +AUDIT +SELINUX -APPARMOR +IMA +SMACK +SECCOMP +GCRYPT -GNUTLS +OPENSSL -ACL +BLKID +CURL -ELFUTILS -FIDO2 +IDN2 -IDN +IPTC +KMOD +LIBCRYPTSETUP +LIBFDISK +PCRE2 -PWQUALITY -P11KIT -QRENCODE -TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD -BPF_FRAMEWORK -XKBCOMMON +UTMP +SYSVINIT default-hierarchy=unified) Apr 12 18:22:39.611505 systemd[1]: Detected virtualization amazon. Apr 12 18:22:39.611538 systemd[1]: Detected architecture arm64. Apr 12 18:22:39.611574 systemd[1]: Detected first boot. Apr 12 18:22:39.611610 systemd[1]: Initializing machine ID from VM UUID. Apr 12 18:22:39.611645 kernel: SELinux: Context system_u:object_r:container_file_t:s0:c1022,c1023 is not valid (left unmapped). Apr 12 18:22:39.611688 systemd[1]: Populated /etc with preset unit settings. Apr 12 18:22:39.611730 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Apr 12 18:22:39.611773 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Apr 12 18:22:39.611819 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Apr 12 18:22:39.611869 kernel: kauditd_printk_skb: 46 callbacks suppressed Apr 12 18:22:39.611900 kernel: audit: type=1334 audit(1712946159.147:86): prog-id=12 op=LOAD Apr 12 18:22:39.611933 kernel: audit: type=1334 audit(1712946159.148:87): prog-id=3 op=UNLOAD Apr 12 18:22:39.614063 kernel: audit: type=1334 audit(1712946159.149:88): prog-id=13 op=LOAD Apr 12 18:22:39.614134 kernel: audit: type=1334 audit(1712946159.152:89): prog-id=14 op=LOAD Apr 12 18:22:39.614170 kernel: audit: type=1334 audit(1712946159.152:90): prog-id=4 op=UNLOAD Apr 12 18:22:39.614213 systemd[1]: iscsid.service: Deactivated successfully. Apr 12 18:22:39.614250 kernel: audit: type=1334 audit(1712946159.152:91): prog-id=5 op=UNLOAD Apr 12 18:22:39.614285 systemd[1]: Stopped iscsid.service. Apr 12 18:22:39.614324 kernel: audit: type=1131 audit(1712946159.160:92): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:39.614355 kernel: audit: type=1334 audit(1712946159.178:93): prog-id=12 op=UNLOAD Apr 12 18:22:39.614391 kernel: audit: type=1131 audit(1712946159.182:94): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=iscsid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:39.614433 systemd[1]: initrd-switch-root.service: Deactivated successfully. Apr 12 18:22:39.614467 systemd[1]: Stopped initrd-switch-root.service. Apr 12 18:22:39.614498 kernel: audit: type=1130 audit(1712946159.197:95): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=initrd-switch-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:39.614533 systemd[1]: systemd-journald.service: Scheduled restart job, restart counter is at 1. Apr 12 18:22:39.614568 systemd[1]: Created slice system-addon\x2dconfig.slice. Apr 12 18:22:39.614610 systemd[1]: Created slice system-addon\x2drun.slice. Apr 12 18:22:39.614643 systemd[1]: Created slice system-coreos\x2dmetadata\x2dsshkeys.slice. Apr 12 18:22:39.614681 systemd[1]: Created slice system-getty.slice. Apr 12 18:22:39.614713 systemd[1]: Created slice system-modprobe.slice. Apr 12 18:22:39.614747 systemd[1]: Created slice system-serial\x2dgetty.slice. Apr 12 18:22:39.614781 systemd[1]: Created slice system-system\x2dcloudinit.slice. Apr 12 18:22:39.614814 systemd[1]: Created slice system-systemd\x2dfsck.slice. Apr 12 18:22:39.614862 systemd[1]: Created slice user.slice. Apr 12 18:22:39.614896 systemd[1]: Started systemd-ask-password-console.path. Apr 12 18:22:39.614932 systemd[1]: Started systemd-ask-password-wall.path. Apr 12 18:22:39.615021 systemd[1]: Set up automount boot.automount. Apr 12 18:22:39.615064 systemd[1]: Set up automount proc-sys-fs-binfmt_misc.automount. Apr 12 18:22:39.615096 systemd[1]: Stopped target initrd-switch-root.target. Apr 12 18:22:39.615130 systemd[1]: Stopped target initrd-fs.target. Apr 12 18:22:39.615166 systemd[1]: Stopped target initrd-root-fs.target. Apr 12 18:22:39.615199 systemd[1]: Reached target integritysetup.target. Apr 12 18:22:39.615230 systemd[1]: Reached target remote-cryptsetup.target. Apr 12 18:22:39.615264 systemd[1]: Reached target remote-fs.target. Apr 12 18:22:39.615294 systemd[1]: Reached target slices.target. Apr 12 18:22:39.615326 systemd[1]: Reached target swap.target. Apr 12 18:22:39.615362 systemd[1]: Reached target torcx.target. Apr 12 18:22:39.615398 systemd[1]: Reached target veritysetup.target. Apr 12 18:22:39.615433 systemd[1]: Listening on systemd-coredump.socket. Apr 12 18:22:39.615465 systemd[1]: Listening on systemd-initctl.socket. Apr 12 18:22:39.615496 systemd[1]: Listening on systemd-networkd.socket. Apr 12 18:22:39.615531 systemd[1]: Listening on systemd-udevd-control.socket. Apr 12 18:22:39.615563 systemd[1]: Listening on systemd-udevd-kernel.socket. Apr 12 18:22:39.615598 systemd[1]: Listening on systemd-userdbd.socket. Apr 12 18:22:39.615633 systemd[1]: Mounting dev-hugepages.mount... Apr 12 18:22:39.615665 systemd[1]: Mounting dev-mqueue.mount... Apr 12 18:22:39.615702 systemd[1]: Mounting media.mount... Apr 12 18:22:39.615736 systemd[1]: Mounting sys-kernel-debug.mount... Apr 12 18:22:39.615767 systemd[1]: Mounting sys-kernel-tracing.mount... Apr 12 18:22:39.615799 systemd[1]: Mounting tmp.mount... Apr 12 18:22:39.615830 systemd[1]: Starting flatcar-tmpfiles.service... Apr 12 18:22:39.615862 systemd[1]: ignition-delete-config.service was skipped because no trigger condition checks were met. Apr 12 18:22:39.615893 systemd[1]: Starting kmod-static-nodes.service... Apr 12 18:22:39.615923 systemd[1]: Starting modprobe@configfs.service... Apr 12 18:22:39.616014 systemd[1]: Starting modprobe@dm_mod.service... Apr 12 18:22:39.616061 systemd[1]: Starting modprobe@drm.service... Apr 12 18:22:39.616093 systemd[1]: Starting modprobe@efi_pstore.service... Apr 12 18:22:39.616126 systemd[1]: Starting modprobe@fuse.service... Apr 12 18:22:39.616157 systemd[1]: Starting modprobe@loop.service... Apr 12 18:22:39.616191 systemd[1]: setup-nsswitch.service was skipped because of an unmet condition check (ConditionPathExists=!/etc/nsswitch.conf). Apr 12 18:22:39.616225 systemd[1]: systemd-fsck-root.service: Deactivated successfully. Apr 12 18:22:39.616256 systemd[1]: Stopped systemd-fsck-root.service. Apr 12 18:22:39.616289 systemd[1]: systemd-fsck-usr.service: Deactivated successfully. Apr 12 18:22:39.616323 kernel: fuse: init (API version 7.34) Apr 12 18:22:39.616354 systemd[1]: Stopped systemd-fsck-usr.service. Apr 12 18:22:39.616384 systemd[1]: Stopped systemd-journald.service. Apr 12 18:22:39.616417 systemd[1]: Starting systemd-journald.service... Apr 12 18:22:39.616446 kernel: loop: module loaded Apr 12 18:22:39.616479 systemd[1]: Starting systemd-modules-load.service... Apr 12 18:22:39.616513 systemd[1]: Starting systemd-network-generator.service... Apr 12 18:22:39.616544 systemd[1]: Starting systemd-remount-fs.service... Apr 12 18:22:39.616578 systemd[1]: Starting systemd-udev-trigger.service... Apr 12 18:22:39.616610 systemd[1]: verity-setup.service: Deactivated successfully. Apr 12 18:22:39.616646 systemd[1]: Stopped verity-setup.service. Apr 12 18:22:39.616678 systemd[1]: Mounted dev-hugepages.mount. Apr 12 18:22:39.616708 systemd[1]: Mounted dev-mqueue.mount. Apr 12 18:22:39.616750 systemd[1]: Mounted media.mount. Apr 12 18:22:39.616782 systemd[1]: Mounted sys-kernel-debug.mount. Apr 12 18:22:39.616813 systemd[1]: Mounted sys-kernel-tracing.mount. Apr 12 18:22:39.616844 systemd[1]: Mounted tmp.mount. Apr 12 18:22:39.616878 systemd[1]: Finished kmod-static-nodes.service. Apr 12 18:22:39.616908 systemd[1]: modprobe@configfs.service: Deactivated successfully. Apr 12 18:22:39.616968 systemd[1]: Finished modprobe@configfs.service. Apr 12 18:22:39.617004 systemd[1]: modprobe@dm_mod.service: Deactivated successfully. Apr 12 18:22:39.617034 systemd[1]: Finished modprobe@dm_mod.service. Apr 12 18:22:39.617071 systemd[1]: modprobe@drm.service: Deactivated successfully. Apr 12 18:22:39.617109 systemd-journald[1372]: Journal started Apr 12 18:22:39.617238 systemd-journald[1372]: Runtime Journal (/run/log/journal/ec29ff29c109b361fde447736fb38358) is 8.0M, max 75.4M, 67.4M free. Apr 12 18:22:34.607000 audit: MAC_POLICY_LOAD auid=4294967295 ses=4294967295 lsm=selinux res=1 Apr 12 18:22:34.801000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=1 Apr 12 18:22:34.802000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=1 Apr 12 18:22:34.802000 audit: BPF prog-id=10 op=LOAD Apr 12 18:22:34.802000 audit: BPF prog-id=10 op=UNLOAD Apr 12 18:22:34.802000 audit: BPF prog-id=11 op=LOAD Apr 12 18:22:34.802000 audit: BPF prog-id=11 op=UNLOAD Apr 12 18:22:35.013000 audit[1294]: AVC avc: denied { associate } for pid=1294 comm="torcx-generator" name="docker" dev="tmpfs" ino=2 scontext=system_u:object_r:unlabeled_t:s0 tcontext=system_u:object_r:tmpfs_t:s0 tclass=filesystem permissive=1 srawcon="system_u:object_r:container_file_t:s0:c1022,c1023" Apr 12 18:22:35.013000 audit[1294]: SYSCALL arch=c00000b7 syscall=5 success=yes exit=0 a0=40001458ac a1=40000c6de0 a2=40000cd0c0 a3=32 items=0 ppid=1277 pid=1294 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="torcx-generator" exe="/usr/lib/systemd/system-generators/torcx-generator" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:22:35.013000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D2D67656E657261746F72732F746F7263782D67656E657261746F72002F72756E2F73797374656D642F67656E657261746F72002F72756E2F73797374656D642F67656E657261746F722E6561726C79002F72756E2F73797374656D642F67656E657261746F722E6C61 Apr 12 18:22:35.016000 audit[1294]: AVC avc: denied { associate } for pid=1294 comm="torcx-generator" name="bin" scontext=system_u:object_r:unlabeled_t:s0 tcontext=system_u:object_r:tmpfs_t:s0 tclass=filesystem permissive=1 Apr 12 18:22:35.016000 audit[1294]: SYSCALL arch=c00000b7 syscall=34 success=yes exit=0 a0=ffffffffffffff9c a1=4000145989 a2=1ed a3=0 items=2 ppid=1277 pid=1294 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="torcx-generator" exe="/usr/lib/systemd/system-generators/torcx-generator" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:22:35.016000 audit: CWD cwd="/" Apr 12 18:22:35.016000 audit: PATH item=0 name=(null) inode=2 dev=00:1c mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:unlabeled_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:22:35.016000 audit: PATH item=1 name=(null) inode=3 dev=00:1c mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:unlabeled_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:22:35.016000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D2D67656E657261746F72732F746F7263782D67656E657261746F72002F72756E2F73797374656D642F67656E657261746F72002F72756E2F73797374656D642F67656E657261746F722E6561726C79002F72756E2F73797374656D642F67656E657261746F722E6C61 Apr 12 18:22:39.147000 audit: BPF prog-id=12 op=LOAD Apr 12 18:22:39.148000 audit: BPF prog-id=3 op=UNLOAD Apr 12 18:22:39.149000 audit: BPF prog-id=13 op=LOAD Apr 12 18:22:39.152000 audit: BPF prog-id=14 op=LOAD Apr 12 18:22:39.152000 audit: BPF prog-id=4 op=UNLOAD Apr 12 18:22:39.152000 audit: BPF prog-id=5 op=UNLOAD Apr 12 18:22:39.160000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:39.178000 audit: BPF prog-id=12 op=UNLOAD Apr 12 18:22:39.182000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=iscsid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:39.197000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=initrd-switch-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:39.197000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=initrd-switch-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:39.475000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:39.485000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck-usr comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:39.489000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:39.489000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:39.491000 audit: BPF prog-id=15 op=LOAD Apr 12 18:22:39.492000 audit: BPF prog-id=16 op=LOAD Apr 12 18:22:39.492000 audit: BPF prog-id=17 op=LOAD Apr 12 18:22:39.492000 audit: BPF prog-id=13 op=UNLOAD Apr 12 18:22:39.492000 audit: BPF prog-id=14 op=UNLOAD Apr 12 18:22:39.549000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=verity-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:39.592000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:39.601000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@configfs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:39.602000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@configfs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:39.607000 audit: CONFIG_CHANGE op=set audit_enabled=1 old=1 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 res=1 Apr 12 18:22:39.607000 audit[1372]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=60 a0=4 a1=ffffcffd7280 a2=4000 a3=1 items=0 ppid=1 pid=1372 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="systemd-journal" exe="/usr/lib/systemd/systemd-journald" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:22:39.607000 audit: PROCTITLE proctitle="/usr/lib/systemd/systemd-journald" Apr 12 18:22:39.613000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:39.613000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:39.143462 systemd[1]: Queued start job for default target multi-user.target. Apr 12 18:22:34.998027 /usr/lib/systemd/system-generators/torcx-generator[1294]: time="2024-04-12T18:22:34Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.3 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.3 /var/lib/torcx/store]" Apr 12 18:22:39.630836 systemd[1]: Finished modprobe@drm.service. Apr 12 18:22:39.632633 systemd[1]: Started systemd-journald.service. Apr 12 18:22:39.624000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@drm comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:39.624000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@drm comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:39.628000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:39.631000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:39.631000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:39.634000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@fuse comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:39.634000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@fuse comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:39.639000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:39.639000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:39.641000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:39.155514 systemd[1]: systemd-journald.service: Deactivated successfully. Apr 12 18:22:34.998836 /usr/lib/systemd/system-generators/torcx-generator[1294]: time="2024-04-12T18:22:34Z" level=debug msg="profile found" name=docker-1.12-no path=/usr/share/torcx/profiles/docker-1.12-no.json Apr 12 18:22:39.630363 systemd[1]: modprobe@efi_pstore.service: Deactivated successfully. Apr 12 18:22:39.645000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-network-generator comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:34.998889 /usr/lib/systemd/system-generators/torcx-generator[1294]: time="2024-04-12T18:22:34Z" level=debug msg="profile found" name=vendor path=/usr/share/torcx/profiles/vendor.json Apr 12 18:22:39.648000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-remount-fs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:39.630711 systemd[1]: Finished modprobe@efi_pstore.service. Apr 12 18:22:34.998977 /usr/lib/systemd/system-generators/torcx-generator[1294]: time="2024-04-12T18:22:34Z" level=info msg="no vendor profile selected by /etc/flatcar/docker-1.12" Apr 12 18:22:39.633505 systemd[1]: modprobe@fuse.service: Deactivated successfully. Apr 12 18:22:34.999043 /usr/lib/systemd/system-generators/torcx-generator[1294]: time="2024-04-12T18:22:34Z" level=debug msg="skipped missing lower profile" missing profile=oem Apr 12 18:22:39.633815 systemd[1]: Finished modprobe@fuse.service. Apr 12 18:22:34.999133 /usr/lib/systemd/system-generators/torcx-generator[1294]: time="2024-04-12T18:22:34Z" level=warning msg="no next profile: unable to read profile file: open /etc/torcx/next-profile: no such file or directory" Apr 12 18:22:39.636728 systemd[1]: modprobe@loop.service: Deactivated successfully. Apr 12 18:22:34.999165 /usr/lib/systemd/system-generators/torcx-generator[1294]: time="2024-04-12T18:22:34Z" level=debug msg="apply configuration parsed" lower profiles (vendor/oem)="[vendor]" upper profile (user)= Apr 12 18:22:39.638211 systemd[1]: Finished modprobe@loop.service. Apr 12 18:22:34.999752 /usr/lib/systemd/system-generators/torcx-generator[1294]: time="2024-04-12T18:22:34Z" level=debug msg="mounted tmpfs" target=/run/torcx/unpack Apr 12 18:22:39.640809 systemd[1]: Finished systemd-modules-load.service. Apr 12 18:22:34.999838 /usr/lib/systemd/system-generators/torcx-generator[1294]: time="2024-04-12T18:22:34Z" level=debug msg="profile found" name=docker-1.12-no path=/usr/share/torcx/profiles/docker-1.12-no.json Apr 12 18:22:39.644566 systemd[1]: Finished systemd-network-generator.service. Apr 12 18:22:34.999874 /usr/lib/systemd/system-generators/torcx-generator[1294]: time="2024-04-12T18:22:34Z" level=debug msg="profile found" name=vendor path=/usr/share/torcx/profiles/vendor.json Apr 12 18:22:39.647552 systemd[1]: Finished systemd-remount-fs.service. Apr 12 18:22:35.001838 /usr/lib/systemd/system-generators/torcx-generator[1294]: time="2024-04-12T18:22:35Z" level=debug msg="new archive/reference added to cache" format=tgz name=docker path="/usr/share/torcx/store/docker:20.10.torcx.tgz" reference=20.10 Apr 12 18:22:39.650719 systemd[1]: Reached target network-pre.target. Apr 12 18:22:35.001923 /usr/lib/systemd/system-generators/torcx-generator[1294]: time="2024-04-12T18:22:35Z" level=debug msg="new archive/reference added to cache" format=tgz name=docker path="/usr/share/torcx/store/docker:com.coreos.cl.torcx.tgz" reference=com.coreos.cl Apr 12 18:22:39.656562 systemd[1]: Mounting sys-fs-fuse-connections.mount... Apr 12 18:22:35.002018 /usr/lib/systemd/system-generators/torcx-generator[1294]: time="2024-04-12T18:22:35Z" level=info msg="store skipped" err="open /usr/share/oem/torcx/store/3510.3.3: no such file or directory" path=/usr/share/oem/torcx/store/3510.3.3 Apr 12 18:22:35.002059 /usr/lib/systemd/system-generators/torcx-generator[1294]: time="2024-04-12T18:22:35Z" level=info msg="store skipped" err="open /usr/share/oem/torcx/store: no such file or directory" path=/usr/share/oem/torcx/store Apr 12 18:22:35.002109 /usr/lib/systemd/system-generators/torcx-generator[1294]: time="2024-04-12T18:22:35Z" level=info msg="store skipped" err="open /var/lib/torcx/store/3510.3.3: no such file or directory" path=/var/lib/torcx/store/3510.3.3 Apr 12 18:22:35.002147 /usr/lib/systemd/system-generators/torcx-generator[1294]: time="2024-04-12T18:22:35Z" level=info msg="store skipped" err="open /var/lib/torcx/store: no such file or directory" path=/var/lib/torcx/store Apr 12 18:22:38.232223 /usr/lib/systemd/system-generators/torcx-generator[1294]: time="2024-04-12T18:22:38Z" level=debug msg="image unpacked" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Apr 12 18:22:38.232751 /usr/lib/systemd/system-generators/torcx-generator[1294]: time="2024-04-12T18:22:38Z" level=debug msg="binaries propagated" assets="[/bin/containerd /bin/containerd-shim /bin/ctr /bin/docker /bin/docker-containerd /bin/docker-containerd-shim /bin/docker-init /bin/docker-proxy /bin/docker-runc /bin/dockerd /bin/runc /bin/tini]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Apr 12 18:22:38.233050 /usr/lib/systemd/system-generators/torcx-generator[1294]: time="2024-04-12T18:22:38Z" level=debug msg="networkd units propagated" assets="[/lib/systemd/network/50-docker.network /lib/systemd/network/90-docker-veth.network]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Apr 12 18:22:38.233520 /usr/lib/systemd/system-generators/torcx-generator[1294]: time="2024-04-12T18:22:38Z" level=debug msg="systemd units propagated" assets="[/lib/systemd/system/containerd.service /lib/systemd/system/docker.service /lib/systemd/system/docker.socket /lib/systemd/system/sockets.target.wants /lib/systemd/system/multi-user.target.wants]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Apr 12 18:22:38.233634 /usr/lib/systemd/system-generators/torcx-generator[1294]: time="2024-04-12T18:22:38Z" level=debug msg="profile applied" sealed profile=/run/torcx/profile.json upper profile= Apr 12 18:22:38.233775 /usr/lib/systemd/system-generators/torcx-generator[1294]: time="2024-04-12T18:22:38Z" level=debug msg="system state sealed" content="[TORCX_LOWER_PROFILES=\"vendor\" TORCX_UPPER_PROFILE=\"\" TORCX_PROFILE_PATH=\"/run/torcx/profile.json\" TORCX_BINDIR=\"/run/torcx/bin\" TORCX_UNPACKDIR=\"/run/torcx/unpack\"]" path=/run/metadata/torcx Apr 12 18:22:39.666711 systemd[1]: Mounting sys-kernel-config.mount... Apr 12 18:22:39.668514 systemd[1]: remount-root.service was skipped because of an unmet condition check (ConditionPathIsReadWrite=!/). Apr 12 18:22:39.676685 systemd[1]: Starting systemd-hwdb-update.service... Apr 12 18:22:39.681155 systemd[1]: Starting systemd-journal-flush.service... Apr 12 18:22:39.683164 systemd[1]: systemd-pstore.service was skipped because of an unmet condition check (ConditionDirectoryNotEmpty=/sys/fs/pstore). Apr 12 18:22:39.685796 systemd[1]: Starting systemd-random-seed.service... Apr 12 18:22:39.688024 systemd[1]: systemd-repart.service was skipped because no trigger condition checks were met. Apr 12 18:22:39.690652 systemd[1]: Starting systemd-sysctl.service... Apr 12 18:22:39.696432 systemd[1]: Mounted sys-fs-fuse-connections.mount. Apr 12 18:22:39.698697 systemd[1]: Mounted sys-kernel-config.mount. Apr 12 18:22:39.726106 systemd-journald[1372]: Time spent on flushing to /var/log/journal/ec29ff29c109b361fde447736fb38358 is 72.246ms for 1144 entries. Apr 12 18:22:39.726106 systemd-journald[1372]: System Journal (/var/log/journal/ec29ff29c109b361fde447736fb38358) is 8.0M, max 195.6M, 187.6M free. Apr 12 18:22:39.832398 systemd-journald[1372]: Received client request to flush runtime journal. Apr 12 18:22:39.742000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-random-seed comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:39.760000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=flatcar-tmpfiles comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:39.762000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:39.741534 systemd[1]: Finished systemd-random-seed.service. Apr 12 18:22:39.743751 systemd[1]: Reached target first-boot-complete.target. Apr 12 18:22:39.759334 systemd[1]: Finished flatcar-tmpfiles.service. Apr 12 18:22:39.761769 systemd[1]: Finished systemd-sysctl.service. Apr 12 18:22:39.766507 systemd[1]: Starting systemd-sysusers.service... Apr 12 18:22:39.835000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journal-flush comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:39.834506 systemd[1]: Finished systemd-journal-flush.service. Apr 12 18:22:39.889224 systemd[1]: Finished systemd-sysusers.service. Apr 12 18:22:39.890000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysusers comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:39.894454 systemd[1]: Starting systemd-tmpfiles-setup-dev.service... Apr 12 18:22:39.923263 systemd[1]: Finished systemd-udev-trigger.service. Apr 12 18:22:39.924000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:39.927840 systemd[1]: Starting systemd-udev-settle.service... Apr 12 18:22:39.955871 udevadm[1414]: systemd-udev-settle.service is deprecated. Please fix lvm2-activation.service, lvm2-activation-early.service not to pull it in. Apr 12 18:22:40.015264 systemd[1]: Finished systemd-tmpfiles-setup-dev.service. Apr 12 18:22:40.016000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:40.657000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-hwdb-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:40.658000 audit: BPF prog-id=18 op=LOAD Apr 12 18:22:40.658000 audit: BPF prog-id=19 op=LOAD Apr 12 18:22:40.658000 audit: BPF prog-id=7 op=UNLOAD Apr 12 18:22:40.658000 audit: BPF prog-id=8 op=UNLOAD Apr 12 18:22:40.656197 systemd[1]: Finished systemd-hwdb-update.service. Apr 12 18:22:40.660311 systemd[1]: Starting systemd-udevd.service... Apr 12 18:22:40.697908 systemd-udevd[1415]: Using default interface naming scheme 'v252'. Apr 12 18:22:40.742852 systemd[1]: Started systemd-udevd.service. Apr 12 18:22:40.747702 systemd[1]: Starting systemd-networkd.service... Apr 12 18:22:40.743000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:40.745000 audit: BPF prog-id=20 op=LOAD Apr 12 18:22:40.754000 audit: BPF prog-id=21 op=LOAD Apr 12 18:22:40.754000 audit: BPF prog-id=22 op=LOAD Apr 12 18:22:40.755000 audit: BPF prog-id=23 op=LOAD Apr 12 18:22:40.757298 systemd[1]: Starting systemd-userdbd.service... Apr 12 18:22:40.834764 systemd[1]: Condition check resulted in dev-ttyS0.device being skipped. Apr 12 18:22:40.844008 systemd[1]: Started systemd-userdbd.service. Apr 12 18:22:40.844000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-userdbd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:40.865383 (udev-worker)[1423]: Network interface NamePolicy= disabled on kernel command line. Apr 12 18:22:40.985103 kernel: BTRFS info: devid 1 device path /dev/disk/by-label/OEM changed to /dev/nvme0n1p6 scanned by (udev-worker) (1434) Apr 12 18:22:41.020131 systemd-networkd[1420]: lo: Link UP Apr 12 18:22:41.020676 systemd-networkd[1420]: lo: Gained carrier Apr 12 18:22:41.021828 systemd-networkd[1420]: Enumeration completed Apr 12 18:22:41.022230 systemd[1]: Started systemd-networkd.service. Apr 12 18:22:41.023986 systemd-networkd[1420]: eth0: Configuring with /usr/lib/systemd/network/zz-default.network. Apr 12 18:22:41.026269 systemd[1]: Starting systemd-networkd-wait-online.service... Apr 12 18:22:41.023000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:41.032975 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Apr 12 18:22:41.033647 systemd-networkd[1420]: eth0: Link UP Apr 12 18:22:41.034150 systemd-networkd[1420]: eth0: Gained carrier Apr 12 18:22:41.047177 systemd-networkd[1420]: eth0: DHCPv4 address 172.31.25.169/20, gateway 172.31.16.1 acquired from 172.31.16.1 Apr 12 18:22:41.173836 systemd[1]: Found device dev-disk-by\x2dlabel-OEM.device. Apr 12 18:22:41.223729 systemd[1]: Finished systemd-udev-settle.service. Apr 12 18:22:41.224000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udev-settle comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:41.228251 systemd[1]: Starting lvm2-activation-early.service... Apr 12 18:22:41.270307 lvm[1534]: WARNING: Failed to connect to lvmetad. Falling back to device scanning. Apr 12 18:22:41.306486 systemd[1]: Finished lvm2-activation-early.service. Apr 12 18:22:41.307000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=lvm2-activation-early comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:41.308548 systemd[1]: Reached target cryptsetup.target. Apr 12 18:22:41.312530 systemd[1]: Starting lvm2-activation.service... Apr 12 18:22:41.321072 lvm[1535]: WARNING: Failed to connect to lvmetad. Falling back to device scanning. Apr 12 18:22:41.356599 systemd[1]: Finished lvm2-activation.service. Apr 12 18:22:41.357000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=lvm2-activation comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:41.358655 systemd[1]: Reached target local-fs-pre.target. Apr 12 18:22:41.360472 systemd[1]: var-lib-machines.mount was skipped because of an unmet condition check (ConditionPathExists=/var/lib/machines.raw). Apr 12 18:22:41.360524 systemd[1]: Reached target local-fs.target. Apr 12 18:22:41.362220 systemd[1]: Reached target machines.target. Apr 12 18:22:41.366033 systemd[1]: Starting ldconfig.service... Apr 12 18:22:41.368741 systemd[1]: systemd-binfmt.service was skipped because no trigger condition checks were met. Apr 12 18:22:41.368855 systemd[1]: systemd-boot-system-token.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/LoaderFeatures-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Apr 12 18:22:41.375091 systemd[1]: Starting systemd-boot-update.service... Apr 12 18:22:41.379136 systemd[1]: Starting systemd-fsck@dev-disk-by\x2dlabel-OEM.service... Apr 12 18:22:41.383504 systemd[1]: Starting systemd-machine-id-commit.service... Apr 12 18:22:41.385572 systemd[1]: systemd-sysext.service was skipped because no trigger condition checks were met. Apr 12 18:22:41.385720 systemd[1]: ensure-sysext.service was skipped because no trigger condition checks were met. Apr 12 18:22:41.388195 systemd[1]: Starting systemd-tmpfiles-setup.service... Apr 12 18:22:41.418578 systemd[1]: boot.automount: Got automount request for /boot, triggered by 1537 (bootctl) Apr 12 18:22:41.420845 systemd[1]: Starting systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM.service... Apr 12 18:22:41.432542 systemd-tmpfiles[1540]: /usr/lib/tmpfiles.d/legacy.conf:13: Duplicate line for path "/run/lock", ignoring. Apr 12 18:22:41.436346 systemd[1]: Finished systemd-fsck@dev-disk-by\x2dlabel-OEM.service. Apr 12 18:22:41.437000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck@dev-disk-by\x2dlabel-OEM comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:41.453375 systemd-tmpfiles[1540]: /usr/lib/tmpfiles.d/provision.conf:20: Duplicate line for path "/root", ignoring. Apr 12 18:22:41.479571 systemd-tmpfiles[1540]: /usr/lib/tmpfiles.d/systemd.conf:29: Duplicate line for path "/var/lib/systemd", ignoring. Apr 12 18:22:41.507056 systemd-fsck[1546]: fsck.fat 4.2 (2021-01-31) Apr 12 18:22:41.507056 systemd-fsck[1546]: /dev/nvme0n1p1: 236 files, 117047/258078 clusters Apr 12 18:22:41.509494 systemd[1]: Finished systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM.service. Apr 12 18:22:41.510000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:41.514296 systemd[1]: Mounting boot.mount... Apr 12 18:22:41.535634 systemd[1]: Mounted boot.mount. Apr 12 18:22:41.564675 systemd[1]: Finished systemd-boot-update.service. Apr 12 18:22:41.565000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-boot-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:41.799997 systemd[1]: Finished systemd-tmpfiles-setup.service. Apr 12 18:22:41.801000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-tmpfiles-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:41.804521 systemd[1]: Starting audit-rules.service... Apr 12 18:22:41.808461 systemd[1]: Starting clean-ca-certificates.service... Apr 12 18:22:41.813688 systemd[1]: Starting systemd-journal-catalog-update.service... Apr 12 18:22:41.818000 audit: BPF prog-id=24 op=LOAD Apr 12 18:22:41.821467 systemd[1]: Starting systemd-resolved.service... Apr 12 18:22:41.823000 audit: BPF prog-id=25 op=LOAD Apr 12 18:22:41.828276 systemd[1]: Starting systemd-timesyncd.service... Apr 12 18:22:41.832170 systemd[1]: Starting systemd-update-utmp.service... Apr 12 18:22:41.846546 systemd[1]: Finished clean-ca-certificates.service. Apr 12 18:22:41.847000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=clean-ca-certificates comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:41.848634 systemd[1]: update-ca-certificates.service was skipped because of an unmet condition check (ConditionPathIsSymbolicLink=!/etc/ssl/certs/ca-certificates.crt). Apr 12 18:22:41.869000 audit[1568]: SYSTEM_BOOT pid=1568 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg=' comm="systemd-update-utmp" exe="/usr/lib/systemd/systemd-update-utmp" hostname=? addr=? terminal=? res=success' Apr 12 18:22:41.882306 systemd[1]: Finished systemd-update-utmp.service. Apr 12 18:22:41.883000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-update-utmp comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:41.973810 systemd[1]: Finished systemd-journal-catalog-update.service. Apr 12 18:22:41.975000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journal-catalog-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:42.012970 systemd[1]: Started systemd-timesyncd.service. Apr 12 18:22:42.013000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-timesyncd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:42.015024 systemd[1]: Reached target time-set.target. Apr 12 18:22:42.078184 systemd-networkd[1420]: eth0: Gained IPv6LL Apr 12 18:22:42.081232 systemd[1]: Finished systemd-networkd-wait-online.service. Apr 12 18:22:42.082000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-networkd-wait-online comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:42.091026 systemd-resolved[1565]: Positive Trust Anchors: Apr 12 18:22:42.091561 systemd-resolved[1565]: . IN DS 20326 8 2 e06d44b80b8f1d39a95c0b0d7c65d08458e880409bbc683457104237c7f8ec8d Apr 12 18:22:42.091717 systemd-resolved[1565]: Negative trust anchors: home.arpa 10.in-addr.arpa 16.172.in-addr.arpa 17.172.in-addr.arpa 18.172.in-addr.arpa 19.172.in-addr.arpa 20.172.in-addr.arpa 21.172.in-addr.arpa 22.172.in-addr.arpa 23.172.in-addr.arpa 24.172.in-addr.arpa 25.172.in-addr.arpa 26.172.in-addr.arpa 27.172.in-addr.arpa 28.172.in-addr.arpa 29.172.in-addr.arpa 30.172.in-addr.arpa 31.172.in-addr.arpa 168.192.in-addr.arpa d.f.ip6.arpa corp home internal intranet lan local private test Apr 12 18:22:42.194712 systemd-timesyncd[1567]: Contacted time server 45.79.111.114:123 (0.flatcar.pool.ntp.org). Apr 12 18:22:42.194965 systemd-timesyncd[1567]: Initial clock synchronization to Fri 2024-04-12 18:22:42.369077 UTC. Apr 12 18:22:42.225392 augenrules[1586]: No rules Apr 12 18:22:42.224000 audit: CONFIG_CHANGE auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=add_rule key=(null) list=5 res=1 Apr 12 18:22:42.224000 audit[1586]: SYSCALL arch=c00000b7 syscall=206 success=yes exit=1056 a0=3 a1=ffffc72c5270 a2=420 a3=0 items=0 ppid=1562 pid=1586 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:22:42.224000 audit: PROCTITLE proctitle=2F7362696E2F617564697463746C002D52002F6574632F61756469742F61756469742E72756C6573 Apr 12 18:22:42.227476 systemd[1]: Finished audit-rules.service. Apr 12 18:22:42.333082 systemd-resolved[1565]: Defaulting to hostname 'linux'. Apr 12 18:22:42.336205 systemd[1]: Started systemd-resolved.service. Apr 12 18:22:42.338070 systemd[1]: Reached target network.target. Apr 12 18:22:42.339704 systemd[1]: Reached target network-online.target. Apr 12 18:22:42.341455 systemd[1]: Reached target nss-lookup.target. Apr 12 18:22:42.444862 systemd[1]: etc-machine\x2did.mount: Deactivated successfully. Apr 12 18:22:42.446856 systemd[1]: Finished systemd-machine-id-commit.service. Apr 12 18:22:42.688057 ldconfig[1536]: /sbin/ldconfig: /lib/ld.so.conf is not an ELF file - it has the wrong magic bytes at the start. Apr 12 18:22:42.694413 systemd[1]: Finished ldconfig.service. Apr 12 18:22:42.700464 systemd[1]: Starting systemd-update-done.service... Apr 12 18:22:42.722869 systemd[1]: Finished systemd-update-done.service. Apr 12 18:22:42.724991 systemd[1]: Reached target sysinit.target. Apr 12 18:22:42.726907 systemd[1]: Started motdgen.path. Apr 12 18:22:42.728444 systemd[1]: Started user-cloudinit@var-lib-flatcar\x2dinstall-user_data.path. Apr 12 18:22:42.730932 systemd[1]: Started logrotate.timer. Apr 12 18:22:42.732559 systemd[1]: Started mdadm.timer. Apr 12 18:22:42.733894 systemd[1]: Started systemd-tmpfiles-clean.timer. Apr 12 18:22:42.735586 systemd[1]: update-engine-stub.timer was skipped because of an unmet condition check (ConditionPathExists=/usr/.noupdate). Apr 12 18:22:42.735638 systemd[1]: Reached target paths.target. Apr 12 18:22:42.737131 systemd[1]: Reached target timers.target. Apr 12 18:22:42.749012 systemd[1]: Listening on dbus.socket. Apr 12 18:22:42.752579 systemd[1]: Starting docker.socket... Apr 12 18:22:42.758717 systemd[1]: Listening on sshd.socket. Apr 12 18:22:42.760526 systemd[1]: systemd-pcrphase-sysinit.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/StubPcrKernelImage-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Apr 12 18:22:42.761415 systemd[1]: Listening on docker.socket. Apr 12 18:22:42.763194 systemd[1]: Reached target sockets.target. Apr 12 18:22:42.764857 systemd[1]: Reached target basic.target. Apr 12 18:22:42.766571 systemd[1]: addon-config@usr-share-oem.service was skipped because no trigger condition checks were met. Apr 12 18:22:42.766619 systemd[1]: addon-run@usr-share-oem.service was skipped because no trigger condition checks were met. Apr 12 18:22:42.768698 systemd[1]: Started amazon-ssm-agent.service. Apr 12 18:22:42.773860 systemd[1]: Starting containerd.service... Apr 12 18:22:42.789760 systemd[1]: Starting coreos-metadata-sshkeys@core.service... Apr 12 18:22:42.807926 systemd[1]: Starting dbus.service... Apr 12 18:22:42.812272 systemd[1]: Starting enable-oem-cloudinit.service... Apr 12 18:22:42.819100 systemd[1]: Starting extend-filesystems.service... Apr 12 18:22:42.821142 systemd[1]: flatcar-setup-environment.service was skipped because of an unmet condition check (ConditionPathExists=/usr/share/oem/bin/flatcar-setup-environment). Apr 12 18:22:42.825232 systemd[1]: Starting motdgen.service... Apr 12 18:22:42.840461 jq[1598]: false Apr 12 18:22:42.829256 systemd[1]: Started nvidia.service. Apr 12 18:22:42.833493 systemd[1]: Starting prepare-cni-plugins.service... Apr 12 18:22:42.837467 systemd[1]: Starting prepare-critools.service... Apr 12 18:22:42.846163 systemd[1]: Starting ssh-key-proc-cmdline.service... Apr 12 18:22:42.850239 systemd[1]: Starting sshd-keygen.service... Apr 12 18:22:42.861864 systemd[1]: Starting systemd-logind.service... Apr 12 18:22:42.863507 systemd[1]: systemd-pcrphase.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/StubPcrKernelImage-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Apr 12 18:22:42.863622 systemd[1]: tcsd.service was skipped because of an unmet condition check (ConditionPathExists=/dev/tpm0). Apr 12 18:22:42.864477 systemd[1]: cgroup compatibility translation between legacy and unified hierarchy settings activated. See cgroup-compat debug messages for details. Apr 12 18:22:42.867046 systemd[1]: Starting update-engine.service... Apr 12 18:22:42.872560 systemd[1]: Starting update-ssh-keys-after-ignition.service... Apr 12 18:22:42.885968 systemd[1]: enable-oem-cloudinit.service: Skipped due to 'exec-condition'. Apr 12 18:22:42.886376 systemd[1]: Condition check resulted in enable-oem-cloudinit.service being skipped. Apr 12 18:22:42.943893 systemd[1]: ssh-key-proc-cmdline.service: Deactivated successfully. Apr 12 18:22:42.944286 systemd[1]: Finished ssh-key-proc-cmdline.service. Apr 12 18:22:42.980125 jq[1609]: true Apr 12 18:22:43.009107 dbus-daemon[1597]: [system] SELinux support is enabled Apr 12 18:22:43.010046 systemd[1]: Started dbus.service. Apr 12 18:22:43.015205 systemd[1]: system-cloudinit@usr-share-oem-cloud\x2dconfig.yml.service was skipped because of an unmet condition check (ConditionFileNotEmpty=/usr/share/oem/cloud-config.yml). Apr 12 18:22:43.015270 systemd[1]: Reached target system-config.target. Apr 12 18:22:43.017311 systemd[1]: user-cloudinit-proc-cmdline.service was skipped because of an unmet condition check (ConditionKernelCommandLine=cloud-config-url). Apr 12 18:22:43.017369 systemd[1]: Reached target user-config.target. Apr 12 18:22:43.024848 dbus-daemon[1597]: [system] Activating systemd to hand-off: service name='org.freedesktop.hostname1' unit='dbus-org.freedesktop.hostname1.service' requested by ':1.0' (uid=244 pid=1420 comm="/usr/lib/systemd/systemd-networkd" label="system_u:system_r:kernel_t:s0") Apr 12 18:22:43.032441 dbus-daemon[1597]: [system] Successfully activated service 'org.freedesktop.systemd1' Apr 12 18:22:43.041891 systemd[1]: motdgen.service: Deactivated successfully. Apr 12 18:22:43.042330 systemd[1]: Finished motdgen.service. Apr 12 18:22:43.048359 systemd[1]: Starting systemd-hostnamed.service... Apr 12 18:22:43.053298 tar[1614]: ./ Apr 12 18:22:43.053298 tar[1614]: ./loopback Apr 12 18:22:43.058220 tar[1619]: crictl Apr 12 18:22:43.071025 jq[1627]: true Apr 12 18:22:43.151373 extend-filesystems[1599]: Found nvme0n1 Apr 12 18:22:43.153371 extend-filesystems[1599]: Found nvme0n1p1 Apr 12 18:22:43.153371 extend-filesystems[1599]: Found nvme0n1p2 Apr 12 18:22:43.153371 extend-filesystems[1599]: Found nvme0n1p3 Apr 12 18:22:43.153371 extend-filesystems[1599]: Found usr Apr 12 18:22:43.153371 extend-filesystems[1599]: Found nvme0n1p4 Apr 12 18:22:43.153371 extend-filesystems[1599]: Found nvme0n1p6 Apr 12 18:22:43.153371 extend-filesystems[1599]: Found nvme0n1p7 Apr 12 18:22:43.153371 extend-filesystems[1599]: Found nvme0n1p9 Apr 12 18:22:43.153371 extend-filesystems[1599]: Checking size of /dev/nvme0n1p9 Apr 12 18:22:43.231046 amazon-ssm-agent[1594]: 2024/04/12 18:22:43 Failed to load instance info from vault. RegistrationKey does not exist. Apr 12 18:22:43.260986 amazon-ssm-agent[1594]: Initializing new seelog logger Apr 12 18:22:43.260986 amazon-ssm-agent[1594]: New Seelog Logger Creation Complete Apr 12 18:22:43.260986 amazon-ssm-agent[1594]: 2024/04/12 18:22:43 Found config file at /etc/amazon/ssm/amazon-ssm-agent.json. Apr 12 18:22:43.260986 amazon-ssm-agent[1594]: Applying config override from /etc/amazon/ssm/amazon-ssm-agent.json. Apr 12 18:22:43.260986 amazon-ssm-agent[1594]: 2024/04/12 18:22:43 processing appconfig overrides Apr 12 18:22:43.261974 update_engine[1608]: I0412 18:22:43.251777 1608 main.cc:92] Flatcar Update Engine starting Apr 12 18:22:43.264887 extend-filesystems[1599]: Resized partition /dev/nvme0n1p9 Apr 12 18:22:43.279298 extend-filesystems[1663]: resize2fs 1.46.5 (30-Dec-2021) Apr 12 18:22:43.282786 systemd[1]: Started update-engine.service. Apr 12 18:22:43.284859 update_engine[1608]: I0412 18:22:43.282864 1608 update_check_scheduler.cc:74] Next update check in 8m35s Apr 12 18:22:43.287747 systemd[1]: Started locksmithd.service. Apr 12 18:22:43.303994 kernel: EXT4-fs (nvme0n1p9): resizing filesystem from 553472 to 1489915 blocks Apr 12 18:22:43.317747 bash[1664]: Updated "/home/core/.ssh/authorized_keys" Apr 12 18:22:43.319248 systemd[1]: Finished update-ssh-keys-after-ignition.service. Apr 12 18:22:43.368533 kernel: EXT4-fs (nvme0n1p9): resized filesystem to 1489915 Apr 12 18:22:43.409062 extend-filesystems[1663]: Filesystem at /dev/nvme0n1p9 is mounted on /; on-line resizing required Apr 12 18:22:43.409062 extend-filesystems[1663]: old_desc_blocks = 1, new_desc_blocks = 1 Apr 12 18:22:43.409062 extend-filesystems[1663]: The filesystem on /dev/nvme0n1p9 is now 1489915 (4k) blocks long. Apr 12 18:22:43.443081 extend-filesystems[1599]: Resized filesystem in /dev/nvme0n1p9 Apr 12 18:22:43.421719 systemd[1]: extend-filesystems.service: Deactivated successfully. Apr 12 18:22:43.445484 env[1620]: time="2024-04-12T18:22:43.419409771Z" level=info msg="starting containerd" revision=92b3a9d6f1b3bcc6dc74875cfdea653fe39f09c2 version=1.6.16 Apr 12 18:22:43.422084 systemd[1]: Finished extend-filesystems.service. Apr 12 18:22:43.449728 systemd-logind[1607]: Watching system buttons on /dev/input/event0 (Power Button) Apr 12 18:22:43.456144 systemd-logind[1607]: New seat seat0. Apr 12 18:22:43.468198 systemd[1]: Started systemd-logind.service. Apr 12 18:22:43.513058 systemd[1]: nvidia.service: Deactivated successfully. Apr 12 18:22:43.514356 tar[1614]: ./bandwidth Apr 12 18:22:43.606637 dbus-daemon[1597]: [system] Successfully activated service 'org.freedesktop.hostname1' Apr 12 18:22:43.606897 systemd[1]: Started systemd-hostnamed.service. Apr 12 18:22:43.610230 dbus-daemon[1597]: [system] Activating via systemd: service name='org.freedesktop.PolicyKit1' unit='polkit.service' requested by ':1.6' (uid=0 pid=1631 comm="/usr/lib/systemd/systemd-hostnamed" label="system_u:system_r:kernel_t:s0") Apr 12 18:22:43.615085 systemd[1]: Starting polkit.service... Apr 12 18:22:43.626998 env[1620]: time="2024-04-12T18:22:43.626415999Z" level=info msg="loading plugin \"io.containerd.content.v1.content\"..." type=io.containerd.content.v1 Apr 12 18:22:43.627249 env[1620]: time="2024-04-12T18:22:43.627197750Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.aufs\"..." type=io.containerd.snapshotter.v1 Apr 12 18:22:43.661076 env[1620]: time="2024-04-12T18:22:43.660992590Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.aufs\"..." error="aufs is not supported (modprobe aufs failed: exit status 1 \"modprobe: FATAL: Module aufs not found in directory /lib/modules/5.15.154-flatcar\\n\"): skip plugin" type=io.containerd.snapshotter.v1 Apr 12 18:22:43.661076 env[1620]: time="2024-04-12T18:22:43.661066958Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.btrfs\"..." type=io.containerd.snapshotter.v1 Apr 12 18:22:43.661494 env[1620]: time="2024-04-12T18:22:43.661437693Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.btrfs\"..." error="path /var/lib/containerd/io.containerd.snapshotter.v1.btrfs (ext4) must be a btrfs filesystem to be used with the btrfs snapshotter: skip plugin" type=io.containerd.snapshotter.v1 Apr 12 18:22:43.661573 env[1620]: time="2024-04-12T18:22:43.661486679Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.devmapper\"..." type=io.containerd.snapshotter.v1 Apr 12 18:22:43.661573 env[1620]: time="2024-04-12T18:22:43.661520485Z" level=warning msg="failed to load plugin io.containerd.snapshotter.v1.devmapper" error="devmapper not configured" Apr 12 18:22:43.661573 env[1620]: time="2024-04-12T18:22:43.661545916Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.native\"..." type=io.containerd.snapshotter.v1 Apr 12 18:22:43.661799 env[1620]: time="2024-04-12T18:22:43.661715337Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.overlayfs\"..." type=io.containerd.snapshotter.v1 Apr 12 18:22:43.662284 env[1620]: time="2024-04-12T18:22:43.662235275Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.zfs\"..." type=io.containerd.snapshotter.v1 Apr 12 18:22:43.662547 env[1620]: time="2024-04-12T18:22:43.662496831Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.zfs\"..." error="path /var/lib/containerd/io.containerd.snapshotter.v1.zfs must be a zfs filesystem to be used with the zfs snapshotter: skip plugin" type=io.containerd.snapshotter.v1 Apr 12 18:22:43.662620 env[1620]: time="2024-04-12T18:22:43.662542102Z" level=info msg="loading plugin \"io.containerd.metadata.v1.bolt\"..." type=io.containerd.metadata.v1 Apr 12 18:22:43.662678 env[1620]: time="2024-04-12T18:22:43.662657375Z" level=warning msg="could not use snapshotter devmapper in metadata plugin" error="devmapper not configured" Apr 12 18:22:43.662757 env[1620]: time="2024-04-12T18:22:43.662686472Z" level=info msg="metadata content store policy set" policy=shared Apr 12 18:22:43.667273 polkitd[1690]: Started polkitd version 121 Apr 12 18:22:43.669567 env[1620]: time="2024-04-12T18:22:43.669495758Z" level=info msg="loading plugin \"io.containerd.differ.v1.walking\"..." type=io.containerd.differ.v1 Apr 12 18:22:43.669703 env[1620]: time="2024-04-12T18:22:43.669575987Z" level=info msg="loading plugin \"io.containerd.event.v1.exchange\"..." type=io.containerd.event.v1 Apr 12 18:22:43.669703 env[1620]: time="2024-04-12T18:22:43.669616720Z" level=info msg="loading plugin \"io.containerd.gc.v1.scheduler\"..." type=io.containerd.gc.v1 Apr 12 18:22:43.669703 env[1620]: time="2024-04-12T18:22:43.669683817Z" level=info msg="loading plugin \"io.containerd.service.v1.introspection-service\"..." type=io.containerd.service.v1 Apr 12 18:22:43.669856 env[1620]: time="2024-04-12T18:22:43.669718260Z" level=info msg="loading plugin \"io.containerd.service.v1.containers-service\"..." type=io.containerd.service.v1 Apr 12 18:22:43.669856 env[1620]: time="2024-04-12T18:22:43.669751306Z" level=info msg="loading plugin \"io.containerd.service.v1.content-service\"..." type=io.containerd.service.v1 Apr 12 18:22:43.669856 env[1620]: time="2024-04-12T18:22:43.669785283Z" level=info msg="loading plugin \"io.containerd.service.v1.diff-service\"..." type=io.containerd.service.v1 Apr 12 18:22:43.670600 env[1620]: time="2024-04-12T18:22:43.670372918Z" level=info msg="loading plugin \"io.containerd.service.v1.images-service\"..." type=io.containerd.service.v1 Apr 12 18:22:43.670759 env[1620]: time="2024-04-12T18:22:43.670610245Z" level=info msg="loading plugin \"io.containerd.service.v1.leases-service\"..." type=io.containerd.service.v1 Apr 12 18:22:43.670759 env[1620]: time="2024-04-12T18:22:43.670651457Z" level=info msg="loading plugin \"io.containerd.service.v1.namespaces-service\"..." type=io.containerd.service.v1 Apr 12 18:22:43.670948 env[1620]: time="2024-04-12T18:22:43.670749184Z" level=info msg="loading plugin \"io.containerd.service.v1.snapshots-service\"..." type=io.containerd.service.v1 Apr 12 18:22:43.671034 env[1620]: time="2024-04-12T18:22:43.670968449Z" level=info msg="loading plugin \"io.containerd.runtime.v1.linux\"..." type=io.containerd.runtime.v1 Apr 12 18:22:43.671312 env[1620]: time="2024-04-12T18:22:43.671266019Z" level=info msg="loading plugin \"io.containerd.runtime.v2.task\"..." type=io.containerd.runtime.v2 Apr 12 18:22:43.671502 env[1620]: time="2024-04-12T18:22:43.671459191Z" level=info msg="loading plugin \"io.containerd.monitor.v1.cgroups\"..." type=io.containerd.monitor.v1 Apr 12 18:22:43.671917 env[1620]: time="2024-04-12T18:22:43.671875099Z" level=info msg="loading plugin \"io.containerd.service.v1.tasks-service\"..." type=io.containerd.service.v1 Apr 12 18:22:43.672004 env[1620]: time="2024-04-12T18:22:43.671936163Z" level=info msg="loading plugin \"io.containerd.grpc.v1.introspection\"..." type=io.containerd.grpc.v1 Apr 12 18:22:43.672092 env[1620]: time="2024-04-12T18:22:43.672014332Z" level=info msg="loading plugin \"io.containerd.internal.v1.restart\"..." type=io.containerd.internal.v1 Apr 12 18:22:43.672150 env[1620]: time="2024-04-12T18:22:43.672121635Z" level=info msg="loading plugin \"io.containerd.grpc.v1.containers\"..." type=io.containerd.grpc.v1 Apr 12 18:22:43.672208 env[1620]: time="2024-04-12T18:22:43.672154386Z" level=info msg="loading plugin \"io.containerd.grpc.v1.content\"..." type=io.containerd.grpc.v1 Apr 12 18:22:43.672208 env[1620]: time="2024-04-12T18:22:43.672187984Z" level=info msg="loading plugin \"io.containerd.grpc.v1.diff\"..." type=io.containerd.grpc.v1 Apr 12 18:22:43.672324 env[1620]: time="2024-04-12T18:22:43.672221937Z" level=info msg="loading plugin \"io.containerd.grpc.v1.events\"..." type=io.containerd.grpc.v1 Apr 12 18:22:43.672324 env[1620]: time="2024-04-12T18:22:43.672252407Z" level=info msg="loading plugin \"io.containerd.grpc.v1.healthcheck\"..." type=io.containerd.grpc.v1 Apr 12 18:22:43.672324 env[1620]: time="2024-04-12T18:22:43.672282522Z" level=info msg="loading plugin \"io.containerd.grpc.v1.images\"..." type=io.containerd.grpc.v1 Apr 12 18:22:43.672324 env[1620]: time="2024-04-12T18:22:43.672314059Z" level=info msg="loading plugin \"io.containerd.grpc.v1.leases\"..." type=io.containerd.grpc.v1 Apr 12 18:22:43.672524 env[1620]: time="2024-04-12T18:22:43.672343316Z" level=info msg="loading plugin \"io.containerd.grpc.v1.namespaces\"..." type=io.containerd.grpc.v1 Apr 12 18:22:43.672524 env[1620]: time="2024-04-12T18:22:43.672377294Z" level=info msg="loading plugin \"io.containerd.internal.v1.opt\"..." type=io.containerd.internal.v1 Apr 12 18:22:43.672694 env[1620]: time="2024-04-12T18:22:43.672648868Z" level=info msg="loading plugin \"io.containerd.grpc.v1.snapshots\"..." type=io.containerd.grpc.v1 Apr 12 18:22:43.672763 env[1620]: time="2024-04-12T18:22:43.672696591Z" level=info msg="loading plugin \"io.containerd.grpc.v1.tasks\"..." type=io.containerd.grpc.v1 Apr 12 18:22:43.672763 env[1620]: time="2024-04-12T18:22:43.672731194Z" level=info msg="loading plugin \"io.containerd.grpc.v1.version\"..." type=io.containerd.grpc.v1 Apr 12 18:22:43.672864 env[1620]: time="2024-04-12T18:22:43.672761713Z" level=info msg="loading plugin \"io.containerd.tracing.processor.v1.otlp\"..." type=io.containerd.tracing.processor.v1 Apr 12 18:22:43.672864 env[1620]: time="2024-04-12T18:22:43.672795421Z" level=info msg="skip loading plugin \"io.containerd.tracing.processor.v1.otlp\"..." error="no OpenTelemetry endpoint: skip plugin" type=io.containerd.tracing.processor.v1 Apr 12 18:22:43.672864 env[1620]: time="2024-04-12T18:22:43.672823206Z" level=info msg="loading plugin \"io.containerd.internal.v1.tracing\"..." type=io.containerd.internal.v1 Apr 12 18:22:43.673062 env[1620]: time="2024-04-12T18:22:43.672861071Z" level=error msg="failed to initialize a tracing processor \"otlp\"" error="no OpenTelemetry endpoint: skip plugin" Apr 12 18:22:43.673062 env[1620]: time="2024-04-12T18:22:43.672925666Z" level=info msg="loading plugin \"io.containerd.grpc.v1.cri\"..." type=io.containerd.grpc.v1 Apr 12 18:22:43.673568 env[1620]: time="2024-04-12T18:22:43.673422379Z" level=info msg="Start cri plugin with config {PluginConfig:{ContainerdConfig:{Snapshotter:overlayfs DefaultRuntimeName:runc DefaultRuntime:{Type: Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0} UntrustedWorkloadRuntime:{Type: Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0} Runtimes:map[runc:{Type:io.containerd.runc.v2 Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[SystemdCgroup:true] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0}] NoPivot:false DisableSnapshotAnnotations:true DiscardUnpackedLayers:false IgnoreRdtNotEnabledErrors:false} CniConfig:{NetworkPluginBinDir:/opt/cni/bin NetworkPluginConfDir:/etc/cni/net.d NetworkPluginMaxConfNum:1 NetworkPluginConfTemplate: IPPreference:} Registry:{ConfigPath: Mirrors:map[] Configs:map[] Auths:map[] Headers:map[]} ImageDecryption:{KeyModel:node} DisableTCPService:true StreamServerAddress:127.0.0.1 StreamServerPort:0 StreamIdleTimeout:4h0m0s EnableSelinux:true SelinuxCategoryRange:1024 SandboxImage:registry.k8s.io/pause:3.6 StatsCollectPeriod:10 SystemdCgroup:false EnableTLSStreaming:false X509KeyPairStreaming:{TLSCertFile: TLSKeyFile:} MaxContainerLogLineSize:16384 DisableCgroup:false DisableApparmor:false RestrictOOMScoreAdj:false MaxConcurrentDownloads:3 DisableProcMount:false UnsetSeccompProfile: TolerateMissingHugetlbController:true DisableHugetlbController:true DeviceOwnershipFromSecurityContext:false IgnoreImageDefinedVolumes:false NetNSMountsUnderStateDir:false EnableUnprivilegedPorts:false EnableUnprivilegedICMP:false} ContainerdRootDir:/var/lib/containerd ContainerdEndpoint:/run/containerd/containerd.sock RootDir:/var/lib/containerd/io.containerd.grpc.v1.cri StateDir:/run/containerd/io.containerd.grpc.v1.cri}" Apr 12 18:22:43.674593 env[1620]: time="2024-04-12T18:22:43.673588735Z" level=info msg="Connect containerd service" Apr 12 18:22:43.674593 env[1620]: time="2024-04-12T18:22:43.673650191Z" level=info msg="Get image filesystem path \"/var/lib/containerd/io.containerd.snapshotter.v1.overlayfs\"" Apr 12 18:22:43.677768 env[1620]: time="2024-04-12T18:22:43.677690210Z" level=error msg="failed to load cni during init, please check CRI plugin status before setting up network for pods" error="cni config load failed: no network config found in /etc/cni/net.d: cni plugin not initialized: failed to load cni config" Apr 12 18:22:43.678231 env[1620]: time="2024-04-12T18:22:43.678185403Z" level=info msg=serving... address=/run/containerd/containerd.sock.ttrpc Apr 12 18:22:43.678331 env[1620]: time="2024-04-12T18:22:43.678299033Z" level=info msg=serving... address=/run/containerd/containerd.sock Apr 12 18:22:43.678500 systemd[1]: Started containerd.service. Apr 12 18:22:43.684118 env[1620]: time="2024-04-12T18:22:43.684011709Z" level=info msg="containerd successfully booted in 0.313499s" Apr 12 18:22:43.704299 env[1620]: time="2024-04-12T18:22:43.704172552Z" level=info msg="Start subscribing containerd event" Apr 12 18:22:43.704458 env[1620]: time="2024-04-12T18:22:43.704343200Z" level=info msg="Start recovering state" Apr 12 18:22:43.704521 env[1620]: time="2024-04-12T18:22:43.704483340Z" level=info msg="Start event monitor" Apr 12 18:22:43.704605 env[1620]: time="2024-04-12T18:22:43.704525324Z" level=info msg="Start snapshots syncer" Apr 12 18:22:43.704605 env[1620]: time="2024-04-12T18:22:43.704549615Z" level=info msg="Start cni network conf syncer for default" Apr 12 18:22:43.704605 env[1620]: time="2024-04-12T18:22:43.704569798Z" level=info msg="Start streaming server" Apr 12 18:22:43.708606 polkitd[1690]: Loading rules from directory /etc/polkit-1/rules.d Apr 12 18:22:43.709750 polkitd[1690]: Loading rules from directory /usr/share/polkit-1/rules.d Apr 12 18:22:43.721516 polkitd[1690]: Finished loading, compiling and executing 2 rules Apr 12 18:22:43.723858 dbus-daemon[1597]: [system] Successfully activated service 'org.freedesktop.PolicyKit1' Apr 12 18:22:43.724167 systemd[1]: Started polkit.service. Apr 12 18:22:43.728741 polkitd[1690]: Acquired the name org.freedesktop.PolicyKit1 on the system bus Apr 12 18:22:43.783471 tar[1614]: ./ptp Apr 12 18:22:43.794478 systemd-resolved[1565]: System hostname changed to 'ip-172-31-25-169'. Apr 12 18:22:43.794482 systemd-hostnamed[1631]: Hostname set to (transient) Apr 12 18:22:43.969648 tar[1614]: ./vlan Apr 12 18:22:43.998483 coreos-metadata[1596]: Apr 12 18:22:43.998 INFO Putting http://169.254.169.254/latest/api/token: Attempt #1 Apr 12 18:22:44.004289 coreos-metadata[1596]: Apr 12 18:22:44.004 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/public-keys: Attempt #1 Apr 12 18:22:44.008092 coreos-metadata[1596]: Apr 12 18:22:44.008 INFO Fetch successful Apr 12 18:22:44.008236 coreos-metadata[1596]: Apr 12 18:22:44.008 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/public-keys/0/openssh-key: Attempt #1 Apr 12 18:22:44.009439 coreos-metadata[1596]: Apr 12 18:22:44.009 INFO Fetch successful Apr 12 18:22:44.015258 unknown[1596]: wrote ssh authorized keys file for user: core Apr 12 18:22:44.052556 update-ssh-keys[1755]: Updated "/home/core/.ssh/authorized_keys" Apr 12 18:22:44.053929 systemd[1]: Finished coreos-metadata-sshkeys@core.service. Apr 12 18:22:44.190040 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO Create new startup processor Apr 12 18:22:44.191782 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [LongRunningPluginsManager] registered plugins: {} Apr 12 18:22:44.192145 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO Initializing bookkeeping folders Apr 12 18:22:44.192294 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO removing the completed state files Apr 12 18:22:44.192429 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO Initializing bookkeeping folders for long running plugins Apr 12 18:22:44.192560 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO Initializing replies folder for MDS reply requests that couldn't reach the service Apr 12 18:22:44.192679 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO Initializing healthcheck folders for long running plugins Apr 12 18:22:44.192805 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO Initializing locations for inventory plugin Apr 12 18:22:44.201075 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO Initializing default location for custom inventory Apr 12 18:22:44.201209 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO Initializing default location for file inventory Apr 12 18:22:44.201209 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO Initializing default location for role inventory Apr 12 18:22:44.201209 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO Init the cloudwatchlogs publisher Apr 12 18:22:44.201209 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [instanceID=i-0850b53710c97c7cd] Successfully loaded platform independent plugin aws:downloadContent Apr 12 18:22:44.201418 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [instanceID=i-0850b53710c97c7cd] Successfully loaded platform independent plugin aws:runDocument Apr 12 18:22:44.201418 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [instanceID=i-0850b53710c97c7cd] Successfully loaded platform independent plugin aws:updateSsmAgent Apr 12 18:22:44.201418 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [instanceID=i-0850b53710c97c7cd] Successfully loaded platform independent plugin aws:configureDocker Apr 12 18:22:44.201418 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [instanceID=i-0850b53710c97c7cd] Successfully loaded platform independent plugin aws:refreshAssociation Apr 12 18:22:44.201418 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [instanceID=i-0850b53710c97c7cd] Successfully loaded platform independent plugin aws:configurePackage Apr 12 18:22:44.201418 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [instanceID=i-0850b53710c97c7cd] Successfully loaded platform independent plugin aws:softwareInventory Apr 12 18:22:44.201418 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [instanceID=i-0850b53710c97c7cd] Successfully loaded platform independent plugin aws:runPowerShellScript Apr 12 18:22:44.201776 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [instanceID=i-0850b53710c97c7cd] Successfully loaded platform independent plugin aws:runDockerAction Apr 12 18:22:44.201776 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [instanceID=i-0850b53710c97c7cd] Successfully loaded platform dependent plugin aws:runShellScript Apr 12 18:22:44.201776 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO Starting Agent: amazon-ssm-agent - v2.3.1319.0 Apr 12 18:22:44.201776 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO OS: linux, Arch: arm64 Apr 12 18:22:44.212625 tar[1614]: ./host-device Apr 12 18:22:44.213775 amazon-ssm-agent[1594]: datastore file /var/lib/amazon/ssm/i-0850b53710c97c7cd/longrunningplugins/datastore/store doesn't exist - no long running plugins to execute Apr 12 18:22:44.305368 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [MessageGatewayService] Starting session document processing engine... Apr 12 18:22:44.403991 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [MessageGatewayService] [EngineProcessor] Starting Apr 12 18:22:44.409867 tar[1614]: ./tuning Apr 12 18:22:44.497054 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [MessageGatewayService] SSM Agent is trying to setup control channel for Session Manager module. Apr 12 18:22:44.538017 tar[1614]: ./vrf Apr 12 18:22:44.591827 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [MessageGatewayService] Setting up websocket for controlchannel for instance: i-0850b53710c97c7cd, requestId: ff351e21-4a3e-4cc7-94d7-73b9f173b2fd Apr 12 18:22:44.660508 tar[1614]: ./sbr Apr 12 18:22:44.686658 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [OfflineService] Starting document processing engine... Apr 12 18:22:44.743056 tar[1614]: ./tap Apr 12 18:22:44.781564 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [OfflineService] [EngineProcessor] Starting Apr 12 18:22:44.820039 tar[1614]: ./dhcp Apr 12 18:22:44.876815 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [OfflineService] [EngineProcessor] Initial processing Apr 12 18:22:44.900318 systemd[1]: Finished prepare-critools.service. Apr 12 18:22:44.972080 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [OfflineService] Starting message polling Apr 12 18:22:45.032077 tar[1614]: ./static Apr 12 18:22:45.067695 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [OfflineService] Starting send replies to MDS Apr 12 18:22:45.079781 tar[1614]: ./firewall Apr 12 18:22:45.150320 tar[1614]: ./macvlan Apr 12 18:22:45.163379 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [MessagingDeliveryService] Starting document processing engine... Apr 12 18:22:45.215841 tar[1614]: ./dummy Apr 12 18:22:45.259344 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [MessagingDeliveryService] [EngineProcessor] Starting Apr 12 18:22:45.280717 tar[1614]: ./bridge Apr 12 18:22:45.350063 tar[1614]: ./ipvlan Apr 12 18:22:45.355434 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [MessagingDeliveryService] [EngineProcessor] Initial processing Apr 12 18:22:45.413894 tar[1614]: ./portmap Apr 12 18:22:45.451812 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [MessagingDeliveryService] Starting message polling Apr 12 18:22:45.474854 tar[1614]: ./host-local Apr 12 18:22:45.548303 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [MessagingDeliveryService] Starting send replies to MDS Apr 12 18:22:45.549421 systemd[1]: Finished prepare-cni-plugins.service. Apr 12 18:22:45.558637 locksmithd[1667]: locksmithd starting currentOperation="UPDATE_STATUS_IDLE" strategy="reboot" Apr 12 18:22:45.645968 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [instanceID=i-0850b53710c97c7cd] Starting association polling Apr 12 18:22:45.743417 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [MessagingDeliveryService] [Association] [EngineProcessor] Starting Apr 12 18:22:45.841917 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [MessagingDeliveryService] [Association] Launching response handler Apr 12 18:22:45.940627 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [MessagingDeliveryService] [Association] [EngineProcessor] Initial processing Apr 12 18:22:46.039523 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [MessagingDeliveryService] [Association] Initializing association scheduling service Apr 12 18:22:46.138490 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [MessagingDeliveryService] [Association] Association scheduling service initialized Apr 12 18:22:46.237626 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [MessageGatewayService] listening reply. Apr 12 18:22:46.337063 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [LongRunningPluginsManager] starting long running plugin manager Apr 12 18:22:46.435850 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [LongRunningPluginsManager] there aren't any long running plugin to execute Apr 12 18:22:46.535660 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [LongRunningPluginsManager] There are no long running plugins currently getting executed - skipping their healthcheck Apr 12 18:22:46.635654 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [HealthCheck] HealthCheck reporting agent health. Apr 12 18:22:46.734717 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [StartupProcessor] Executing startup processor tasks Apr 12 18:22:46.834021 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [StartupProcessor] Write to serial port: Amazon SSM Agent v2.3.1319.0 is running Apr 12 18:22:46.933625 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [StartupProcessor] Write to serial port: OsProductName: Flatcar Container Linux by Kinvolk Apr 12 18:22:47.033329 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [StartupProcessor] Write to serial port: OsVersion: 3510.3.3 Apr 12 18:22:47.134085 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [MessageGatewayService] Opening websocket connection to: wss://ssmmessages.us-west-2.amazonaws.com/v1/control-channel/i-0850b53710c97c7cd?role=subscribe&stream=input Apr 12 18:22:47.173167 sshd_keygen[1623]: ssh-keygen: generating new host keys: RSA ECDSA ED25519 Apr 12 18:22:47.208798 systemd[1]: Finished sshd-keygen.service. Apr 12 18:22:47.213357 systemd[1]: Starting issuegen.service... Apr 12 18:22:47.223822 systemd[1]: issuegen.service: Deactivated successfully. Apr 12 18:22:47.224200 systemd[1]: Finished issuegen.service. Apr 12 18:22:47.228942 systemd[1]: Starting systemd-user-sessions.service... Apr 12 18:22:47.233989 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [MessageGatewayService] Successfully opened websocket connection to: wss://ssmmessages.us-west-2.amazonaws.com/v1/control-channel/i-0850b53710c97c7cd?role=subscribe&stream=input Apr 12 18:22:47.243028 systemd[1]: Finished systemd-user-sessions.service. Apr 12 18:22:47.247822 systemd[1]: Started getty@tty1.service. Apr 12 18:22:47.252837 systemd[1]: Started serial-getty@ttyS0.service. Apr 12 18:22:47.255152 systemd[1]: Reached target getty.target. Apr 12 18:22:47.257175 systemd[1]: Reached target multi-user.target. Apr 12 18:22:47.262167 systemd[1]: Starting systemd-update-utmp-runlevel.service... Apr 12 18:22:47.277595 systemd[1]: systemd-update-utmp-runlevel.service: Deactivated successfully. Apr 12 18:22:47.278021 systemd[1]: Finished systemd-update-utmp-runlevel.service. Apr 12 18:22:47.280318 systemd[1]: Startup finished in 1.130s (kernel) + 10.885s (initrd) + 12.801s (userspace) = 24.817s. Apr 12 18:22:47.334318 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [MessageGatewayService] Starting receiving message from control channel Apr 12 18:22:47.435100 amazon-ssm-agent[1594]: 2024-04-12 18:22:44 INFO [MessageGatewayService] [EngineProcessor] Initial processing Apr 12 18:22:51.708555 systemd[1]: Created slice system-sshd.slice. Apr 12 18:22:51.711686 systemd[1]: Started sshd@0-172.31.25.169:22-139.178.89.65:39576.service. Apr 12 18:22:51.928690 sshd[1809]: Accepted publickey for core from 139.178.89.65 port 39576 ssh2: RSA SHA256:RkreMDY4vm0NHGuZyACqO02N2uRrqppl3JmzNQboRtE Apr 12 18:22:51.934676 sshd[1809]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Apr 12 18:22:51.951741 systemd[1]: Created slice user-500.slice. Apr 12 18:22:51.954453 systemd[1]: Starting user-runtime-dir@500.service... Apr 12 18:22:51.962210 systemd-logind[1607]: New session 1 of user core. Apr 12 18:22:51.974485 systemd[1]: Finished user-runtime-dir@500.service. Apr 12 18:22:51.978619 systemd[1]: Starting user@500.service... Apr 12 18:22:51.984877 (systemd)[1812]: pam_unix(systemd-user:session): session opened for user core(uid=500) by (uid=0) Apr 12 18:22:52.157648 systemd[1812]: Queued start job for default target default.target. Apr 12 18:22:52.158682 systemd[1812]: Reached target paths.target. Apr 12 18:22:52.158734 systemd[1812]: Reached target sockets.target. Apr 12 18:22:52.158767 systemd[1812]: Reached target timers.target. Apr 12 18:22:52.158796 systemd[1812]: Reached target basic.target. Apr 12 18:22:52.158890 systemd[1812]: Reached target default.target. Apr 12 18:22:52.158984 systemd[1812]: Startup finished in 162ms. Apr 12 18:22:52.160095 systemd[1]: Started user@500.service. Apr 12 18:22:52.164041 systemd[1]: Started session-1.scope. Apr 12 18:22:52.311269 systemd[1]: Started sshd@1-172.31.25.169:22-139.178.89.65:39578.service. Apr 12 18:22:52.486160 sshd[1821]: Accepted publickey for core from 139.178.89.65 port 39578 ssh2: RSA SHA256:RkreMDY4vm0NHGuZyACqO02N2uRrqppl3JmzNQboRtE Apr 12 18:22:52.488616 sshd[1821]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Apr 12 18:22:52.496755 systemd-logind[1607]: New session 2 of user core. Apr 12 18:22:52.497724 systemd[1]: Started session-2.scope. Apr 12 18:22:52.629490 sshd[1821]: pam_unix(sshd:session): session closed for user core Apr 12 18:22:52.635174 systemd-logind[1607]: Session 2 logged out. Waiting for processes to exit. Apr 12 18:22:52.636016 systemd[1]: sshd@1-172.31.25.169:22-139.178.89.65:39578.service: Deactivated successfully. Apr 12 18:22:52.637326 systemd[1]: session-2.scope: Deactivated successfully. Apr 12 18:22:52.638904 systemd-logind[1607]: Removed session 2. Apr 12 18:22:52.661653 systemd[1]: Started sshd@2-172.31.25.169:22-139.178.89.65:39582.service. Apr 12 18:22:52.843467 sshd[1827]: Accepted publickey for core from 139.178.89.65 port 39582 ssh2: RSA SHA256:RkreMDY4vm0NHGuZyACqO02N2uRrqppl3JmzNQboRtE Apr 12 18:22:52.846372 sshd[1827]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Apr 12 18:22:52.854696 systemd[1]: Started session-3.scope. Apr 12 18:22:52.855896 systemd-logind[1607]: New session 3 of user core. Apr 12 18:22:52.981800 sshd[1827]: pam_unix(sshd:session): session closed for user core Apr 12 18:22:52.987306 systemd[1]: sshd@2-172.31.25.169:22-139.178.89.65:39582.service: Deactivated successfully. Apr 12 18:22:52.987752 systemd-logind[1607]: Session 3 logged out. Waiting for processes to exit. Apr 12 18:22:52.988524 systemd[1]: session-3.scope: Deactivated successfully. Apr 12 18:22:52.990722 systemd-logind[1607]: Removed session 3. Apr 12 18:22:53.009702 systemd[1]: Started sshd@3-172.31.25.169:22-139.178.89.65:39592.service. Apr 12 18:22:53.186859 sshd[1833]: Accepted publickey for core from 139.178.89.65 port 39592 ssh2: RSA SHA256:RkreMDY4vm0NHGuZyACqO02N2uRrqppl3JmzNQboRtE Apr 12 18:22:53.189828 sshd[1833]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Apr 12 18:22:53.200009 systemd[1]: Started session-4.scope. Apr 12 18:22:53.201195 systemd-logind[1607]: New session 4 of user core. Apr 12 18:22:53.216728 amazon-ssm-agent[1594]: 2024-04-12 18:22:53 INFO [MessagingDeliveryService] [Association] No associations on boot. Requerying for associations after 30 seconds. Apr 12 18:22:53.332669 sshd[1833]: pam_unix(sshd:session): session closed for user core Apr 12 18:22:53.337861 systemd-logind[1607]: Session 4 logged out. Waiting for processes to exit. Apr 12 18:22:53.338320 systemd[1]: sshd@3-172.31.25.169:22-139.178.89.65:39592.service: Deactivated successfully. Apr 12 18:22:53.339554 systemd[1]: session-4.scope: Deactivated successfully. Apr 12 18:22:53.340819 systemd-logind[1607]: Removed session 4. Apr 12 18:22:53.360727 systemd[1]: Started sshd@4-172.31.25.169:22-139.178.89.65:39594.service. Apr 12 18:22:53.538827 sshd[1839]: Accepted publickey for core from 139.178.89.65 port 39594 ssh2: RSA SHA256:RkreMDY4vm0NHGuZyACqO02N2uRrqppl3JmzNQboRtE Apr 12 18:22:53.541714 sshd[1839]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Apr 12 18:22:53.549874 systemd[1]: Started session-5.scope. Apr 12 18:22:53.550835 systemd-logind[1607]: New session 5 of user core. Apr 12 18:22:53.725607 sudo[1842]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/sbin/setenforce 1 Apr 12 18:22:53.726750 sudo[1842]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Apr 12 18:22:53.754227 dbus-daemon[1597]: avc: received setenforce notice (enforcing=1) Apr 12 18:22:53.757888 sudo[1842]: pam_unix(sudo:session): session closed for user root Apr 12 18:22:53.782862 sshd[1839]: pam_unix(sshd:session): session closed for user core Apr 12 18:22:53.788480 systemd[1]: session-5.scope: Deactivated successfully. Apr 12 18:22:53.789739 systemd[1]: sshd@4-172.31.25.169:22-139.178.89.65:39594.service: Deactivated successfully. Apr 12 18:22:53.792543 systemd-logind[1607]: Session 5 logged out. Waiting for processes to exit. Apr 12 18:22:53.794373 systemd-logind[1607]: Removed session 5. Apr 12 18:22:53.811432 systemd[1]: Started sshd@5-172.31.25.169:22-139.178.89.65:39596.service. Apr 12 18:22:53.994743 sshd[1846]: Accepted publickey for core from 139.178.89.65 port 39596 ssh2: RSA SHA256:RkreMDY4vm0NHGuZyACqO02N2uRrqppl3JmzNQboRtE Apr 12 18:22:53.996848 sshd[1846]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Apr 12 18:22:54.004041 systemd-logind[1607]: New session 6 of user core. Apr 12 18:22:54.005379 systemd[1]: Started session-6.scope. Apr 12 18:22:54.115443 sudo[1850]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/bin/rm -rf /etc/audit/rules.d/80-selinux.rules /etc/audit/rules.d/99-default.rules Apr 12 18:22:54.116559 sudo[1850]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Apr 12 18:22:54.122890 sudo[1850]: pam_unix(sudo:session): session closed for user root Apr 12 18:22:54.132869 sudo[1849]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/bin/systemctl restart audit-rules Apr 12 18:22:54.134021 sudo[1849]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Apr 12 18:22:54.152609 systemd[1]: Stopping audit-rules.service... Apr 12 18:22:54.154000 audit: CONFIG_CHANGE auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=remove_rule key=(null) list=5 res=1 Apr 12 18:22:54.156265 auditctl[1853]: No rules Apr 12 18:22:54.157230 kernel: kauditd_printk_skb: 68 callbacks suppressed Apr 12 18:22:54.157353 kernel: audit: type=1305 audit(1712946174.154:160): auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=remove_rule key=(null) list=5 res=1 Apr 12 18:22:54.158575 systemd[1]: audit-rules.service: Deactivated successfully. Apr 12 18:22:54.158992 systemd[1]: Stopped audit-rules.service. Apr 12 18:22:54.166826 kernel: audit: type=1300 audit(1712946174.154:160): arch=c00000b7 syscall=206 success=yes exit=1056 a0=3 a1=ffffc52f6f80 a2=420 a3=0 items=0 ppid=1 pid=1853 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:22:54.154000 audit[1853]: SYSCALL arch=c00000b7 syscall=206 success=yes exit=1056 a0=3 a1=ffffc52f6f80 a2=420 a3=0 items=0 ppid=1 pid=1853 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:22:54.166225 systemd[1]: Starting audit-rules.service... Apr 12 18:22:54.154000 audit: PROCTITLE proctitle=2F7362696E2F617564697463746C002D44 Apr 12 18:22:54.178419 kernel: audit: type=1327 audit(1712946174.154:160): proctitle=2F7362696E2F617564697463746C002D44 Apr 12 18:22:54.178543 kernel: audit: type=1131 audit(1712946174.156:161): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:54.156000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:54.208694 augenrules[1870]: No rules Apr 12 18:22:54.210680 systemd[1]: Finished audit-rules.service. Apr 12 18:22:54.210000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:54.220507 sudo[1849]: pam_unix(sudo:session): session closed for user root Apr 12 18:22:54.219000 audit[1849]: USER_END pid=1849 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Apr 12 18:22:54.230271 kernel: audit: type=1130 audit(1712946174.210:162): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:54.230430 kernel: audit: type=1106 audit(1712946174.219:163): pid=1849 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Apr 12 18:22:54.219000 audit[1849]: CRED_DISP pid=1849 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Apr 12 18:22:54.239230 kernel: audit: type=1104 audit(1712946174.219:164): pid=1849 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Apr 12 18:22:54.253092 sshd[1846]: pam_unix(sshd:session): session closed for user core Apr 12 18:22:54.255000 audit[1846]: USER_END pid=1846 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Apr 12 18:22:54.260214 systemd-logind[1607]: Session 6 logged out. Waiting for processes to exit. Apr 12 18:22:54.262397 systemd[1]: session-6.scope: Deactivated successfully. Apr 12 18:22:54.263566 systemd[1]: sshd@5-172.31.25.169:22-139.178.89.65:39596.service: Deactivated successfully. Apr 12 18:22:54.266469 systemd-logind[1607]: Removed session 6. Apr 12 18:22:54.256000 audit[1846]: CRED_DISP pid=1846 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Apr 12 18:22:54.278748 kernel: audit: type=1106 audit(1712946174.255:165): pid=1846 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Apr 12 18:22:54.278864 kernel: audit: type=1104 audit(1712946174.256:166): pid=1846 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Apr 12 18:22:54.263000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@5-172.31.25.169:22-139.178.89.65:39596 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:54.289468 kernel: audit: type=1131 audit(1712946174.263:167): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@5-172.31.25.169:22-139.178.89.65:39596 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:54.288604 systemd[1]: Started sshd@6-172.31.25.169:22-139.178.89.65:39612.service. Apr 12 18:22:54.286000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@6-172.31.25.169:22-139.178.89.65:39612 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:54.465000 audit[1876]: USER_ACCT pid=1876 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_access,pam_unix,pam_faillock,pam_permit acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Apr 12 18:22:54.466616 sshd[1876]: Accepted publickey for core from 139.178.89.65 port 39612 ssh2: RSA SHA256:RkreMDY4vm0NHGuZyACqO02N2uRrqppl3JmzNQboRtE Apr 12 18:22:54.467000 audit[1876]: CRED_ACQ pid=1876 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Apr 12 18:22:54.467000 audit[1876]: SYSCALL arch=c00000b7 syscall=64 success=yes exit=3 a0=5 a1=ffffd77fb800 a2=3 a3=1 items=0 ppid=1 pid=1876 auid=500 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=7 comm="sshd" exe="/usr/sbin/sshd" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:22:54.467000 audit: PROCTITLE proctitle=737368643A20636F7265205B707269765D Apr 12 18:22:54.469493 sshd[1876]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Apr 12 18:22:54.477061 systemd-logind[1607]: New session 7 of user core. Apr 12 18:22:54.478006 systemd[1]: Started session-7.scope. Apr 12 18:22:54.484000 audit[1876]: USER_START pid=1876 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Apr 12 18:22:54.487000 audit[1878]: CRED_ACQ pid=1878 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Apr 12 18:22:54.582000 audit[1879]: USER_ACCT pid=1879 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_unix,pam_faillock,pam_permit acct="core" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Apr 12 18:22:54.583797 sudo[1879]: core : PWD=/home/core ; USER=root ; COMMAND=/home/core/install.sh Apr 12 18:22:54.583000 audit[1879]: CRED_REFR pid=1879 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Apr 12 18:22:54.585271 sudo[1879]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Apr 12 18:22:54.587000 audit[1879]: USER_START pid=1879 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Apr 12 18:22:55.240620 systemd[1]: Reloading. Apr 12 18:22:55.367061 /usr/lib/systemd/system-generators/torcx-generator[1911]: time="2024-04-12T18:22:55Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.3 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.3 /var/lib/torcx/store]" Apr 12 18:22:55.367643 /usr/lib/systemd/system-generators/torcx-generator[1911]: time="2024-04-12T18:22:55Z" level=info msg="torcx already run" Apr 12 18:22:55.525322 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Apr 12 18:22:55.525361 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Apr 12 18:22:55.568382 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Apr 12 18:22:55.721000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.721000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.721000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.721000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.721000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.721000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.721000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.721000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.721000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.721000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.721000 audit: BPF prog-id=34 op=LOAD Apr 12 18:22:55.721000 audit: BPF prog-id=32 op=UNLOAD Apr 12 18:22:55.725000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.725000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.725000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.725000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.725000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.725000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.725000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.725000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.725000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.725000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.725000 audit: BPF prog-id=35 op=LOAD Apr 12 18:22:55.725000 audit: BPF prog-id=20 op=UNLOAD Apr 12 18:22:55.726000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.726000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.726000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.726000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.726000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.726000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.726000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.726000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.726000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.727000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.727000 audit: BPF prog-id=36 op=LOAD Apr 12 18:22:55.727000 audit: BPF prog-id=29 op=UNLOAD Apr 12 18:22:55.727000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.727000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.727000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.727000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.727000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.727000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.727000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.727000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.727000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.727000 audit: BPF prog-id=37 op=LOAD Apr 12 18:22:55.727000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.727000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.727000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.727000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.727000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.727000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.727000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.727000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.727000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.727000 audit: BPF prog-id=38 op=LOAD Apr 12 18:22:55.727000 audit: BPF prog-id=30 op=UNLOAD Apr 12 18:22:55.727000 audit: BPF prog-id=31 op=UNLOAD Apr 12 18:22:55.731000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.731000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.731000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.731000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.731000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.731000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.731000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.731000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.731000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.732000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.732000 audit: BPF prog-id=39 op=LOAD Apr 12 18:22:55.732000 audit: BPF prog-id=26 op=UNLOAD Apr 12 18:22:55.732000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.732000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.732000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.732000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.732000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.732000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.732000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.732000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.732000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.732000 audit: BPF prog-id=40 op=LOAD Apr 12 18:22:55.732000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.732000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.732000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.732000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.732000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.732000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.732000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.732000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.732000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.732000 audit: BPF prog-id=41 op=LOAD Apr 12 18:22:55.732000 audit: BPF prog-id=27 op=UNLOAD Apr 12 18:22:55.732000 audit: BPF prog-id=28 op=UNLOAD Apr 12 18:22:55.733000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.733000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.733000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.733000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.733000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.733000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.733000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.733000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.733000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.733000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.733000 audit: BPF prog-id=42 op=LOAD Apr 12 18:22:55.733000 audit: BPF prog-id=25 op=UNLOAD Apr 12 18:22:55.736000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.736000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.736000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.736000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.736000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.736000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.736000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.736000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.736000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.736000 audit: BPF prog-id=43 op=LOAD Apr 12 18:22:55.736000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.736000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.736000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.736000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.736000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.736000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.736000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.736000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.736000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.736000 audit: BPF prog-id=44 op=LOAD Apr 12 18:22:55.736000 audit: BPF prog-id=18 op=UNLOAD Apr 12 18:22:55.736000 audit: BPF prog-id=19 op=UNLOAD Apr 12 18:22:55.737000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.737000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.738000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.738000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.738000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.738000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.738000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.738000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.738000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.738000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.738000 audit: BPF prog-id=45 op=LOAD Apr 12 18:22:55.738000 audit: BPF prog-id=21 op=UNLOAD Apr 12 18:22:55.738000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.738000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.738000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.738000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.738000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.738000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.738000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.738000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.738000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.738000 audit: BPF prog-id=46 op=LOAD Apr 12 18:22:55.738000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.738000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.738000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.738000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.738000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.738000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.738000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.738000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.738000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.738000 audit: BPF prog-id=47 op=LOAD Apr 12 18:22:55.738000 audit: BPF prog-id=22 op=UNLOAD Apr 12 18:22:55.738000 audit: BPF prog-id=23 op=UNLOAD Apr 12 18:22:55.743000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.743000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.743000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.743000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.743000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.743000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.743000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.743000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.743000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.743000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.743000 audit: BPF prog-id=48 op=LOAD Apr 12 18:22:55.743000 audit: BPF prog-id=15 op=UNLOAD Apr 12 18:22:55.743000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.743000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.743000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.743000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.743000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.743000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.743000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.743000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.743000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.743000 audit: BPF prog-id=49 op=LOAD Apr 12 18:22:55.743000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.744000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.744000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.744000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.744000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.744000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.744000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.744000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.744000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.744000 audit: BPF prog-id=50 op=LOAD Apr 12 18:22:55.744000 audit: BPF prog-id=16 op=UNLOAD Apr 12 18:22:55.744000 audit: BPF prog-id=17 op=UNLOAD Apr 12 18:22:55.745000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.745000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.745000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.745000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.745000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.745000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.745000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.745000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.745000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.745000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:55.745000 audit: BPF prog-id=51 op=LOAD Apr 12 18:22:55.745000 audit: BPF prog-id=24 op=UNLOAD Apr 12 18:22:55.789371 systemd[1]: Started kubelet.service. Apr 12 18:22:55.787000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:55.816738 systemd[1]: Starting coreos-metadata.service... Apr 12 18:22:55.923262 kubelet[1963]: E0412 18:22:55.923163 1963 run.go:74] "command failed" err="failed to load kubelet config file, error: failed to load Kubelet config file /var/lib/kubelet/config.yaml, error failed to read kubelet config file \"/var/lib/kubelet/config.yaml\", error: open /var/lib/kubelet/config.yaml: no such file or directory, path: /var/lib/kubelet/config.yaml" Apr 12 18:22:55.927266 systemd[1]: kubelet.service: Main process exited, code=exited, status=1/FAILURE Apr 12 18:22:55.927591 systemd[1]: kubelet.service: Failed with result 'exit-code'. Apr 12 18:22:55.927000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=failed' Apr 12 18:22:56.011092 coreos-metadata[1971]: Apr 12 18:22:56.011 INFO Putting http://169.254.169.254/latest/api/token: Attempt #1 Apr 12 18:22:56.012085 coreos-metadata[1971]: Apr 12 18:22:56.012 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/instance-id: Attempt #1 Apr 12 18:22:56.012725 coreos-metadata[1971]: Apr 12 18:22:56.012 INFO Fetch successful Apr 12 18:22:56.012811 coreos-metadata[1971]: Apr 12 18:22:56.012 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/instance-type: Attempt #1 Apr 12 18:22:56.013336 coreos-metadata[1971]: Apr 12 18:22:56.013 INFO Fetch successful Apr 12 18:22:56.013470 coreos-metadata[1971]: Apr 12 18:22:56.013 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/local-ipv4: Attempt #1 Apr 12 18:22:56.014065 coreos-metadata[1971]: Apr 12 18:22:56.014 INFO Fetch successful Apr 12 18:22:56.014147 coreos-metadata[1971]: Apr 12 18:22:56.014 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/public-ipv4: Attempt #1 Apr 12 18:22:56.014631 coreos-metadata[1971]: Apr 12 18:22:56.014 INFO Fetch successful Apr 12 18:22:56.014704 coreos-metadata[1971]: Apr 12 18:22:56.014 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/placement/availability-zone: Attempt #1 Apr 12 18:22:56.015333 coreos-metadata[1971]: Apr 12 18:22:56.015 INFO Fetch successful Apr 12 18:22:56.015459 coreos-metadata[1971]: Apr 12 18:22:56.015 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/hostname: Attempt #1 Apr 12 18:22:56.015896 coreos-metadata[1971]: Apr 12 18:22:56.015 INFO Fetch successful Apr 12 18:22:56.016008 coreos-metadata[1971]: Apr 12 18:22:56.015 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/public-hostname: Attempt #1 Apr 12 18:22:56.016589 coreos-metadata[1971]: Apr 12 18:22:56.016 INFO Fetch successful Apr 12 18:22:56.016667 coreos-metadata[1971]: Apr 12 18:22:56.016 INFO Fetching http://169.254.169.254/2019-10-01/dynamic/instance-identity/document: Attempt #1 Apr 12 18:22:56.017133 coreos-metadata[1971]: Apr 12 18:22:56.017 INFO Fetch successful Apr 12 18:22:56.031626 systemd[1]: Finished coreos-metadata.service. Apr 12 18:22:56.032000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=coreos-metadata comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:56.534428 systemd[1]: Stopped kubelet.service. Apr 12 18:22:56.534000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:56.534000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:56.563123 systemd[1]: Reloading. Apr 12 18:22:56.677936 /usr/lib/systemd/system-generators/torcx-generator[2030]: time="2024-04-12T18:22:56Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.3 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.3 /var/lib/torcx/store]" Apr 12 18:22:56.679100 /usr/lib/systemd/system-generators/torcx-generator[2030]: time="2024-04-12T18:22:56Z" level=info msg="torcx already run" Apr 12 18:22:56.846936 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Apr 12 18:22:56.847242 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Apr 12 18:22:56.890448 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Apr 12 18:22:57.047000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.047000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.047000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.047000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.047000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.047000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.047000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.047000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.047000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.047000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.047000 audit: BPF prog-id=52 op=LOAD Apr 12 18:22:57.047000 audit: BPF prog-id=34 op=UNLOAD Apr 12 18:22:57.050000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.050000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.050000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.050000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.050000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.050000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.050000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.050000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.050000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.051000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.051000 audit: BPF prog-id=53 op=LOAD Apr 12 18:22:57.051000 audit: BPF prog-id=35 op=UNLOAD Apr 12 18:22:57.052000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.052000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.052000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.052000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.052000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.052000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.052000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.052000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.052000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.052000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.052000 audit: BPF prog-id=54 op=LOAD Apr 12 18:22:57.052000 audit: BPF prog-id=36 op=UNLOAD Apr 12 18:22:57.052000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.052000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.052000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.052000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.052000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.052000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.052000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.052000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.053000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.053000 audit: BPF prog-id=55 op=LOAD Apr 12 18:22:57.053000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.053000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.053000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.053000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.053000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.053000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.053000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.053000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.053000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.053000 audit: BPF prog-id=56 op=LOAD Apr 12 18:22:57.053000 audit: BPF prog-id=37 op=UNLOAD Apr 12 18:22:57.053000 audit: BPF prog-id=38 op=UNLOAD Apr 12 18:22:57.057000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.057000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.057000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.057000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.057000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.057000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.057000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.057000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.057000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.057000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.057000 audit: BPF prog-id=57 op=LOAD Apr 12 18:22:57.057000 audit: BPF prog-id=39 op=UNLOAD Apr 12 18:22:57.058000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.058000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.058000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.058000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.058000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.058000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.058000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.058000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.058000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.058000 audit: BPF prog-id=58 op=LOAD Apr 12 18:22:57.058000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.058000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.058000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.058000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.058000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.058000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.058000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.058000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.058000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.058000 audit: BPF prog-id=59 op=LOAD Apr 12 18:22:57.058000 audit: BPF prog-id=40 op=UNLOAD Apr 12 18:22:57.058000 audit: BPF prog-id=41 op=UNLOAD Apr 12 18:22:57.059000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.059000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.059000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.059000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.059000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.059000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.059000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.059000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.059000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.059000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.059000 audit: BPF prog-id=60 op=LOAD Apr 12 18:22:57.059000 audit: BPF prog-id=42 op=UNLOAD Apr 12 18:22:57.062000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.062000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.062000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.062000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.062000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.062000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.062000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.062000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.062000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.062000 audit: BPF prog-id=61 op=LOAD Apr 12 18:22:57.062000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.062000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.062000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.062000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.062000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.062000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.062000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.062000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.062000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.062000 audit: BPF prog-id=62 op=LOAD Apr 12 18:22:57.062000 audit: BPF prog-id=43 op=UNLOAD Apr 12 18:22:57.062000 audit: BPF prog-id=44 op=UNLOAD Apr 12 18:22:57.063000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.063000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.063000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.063000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.063000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.063000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.063000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.063000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.063000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.064000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.064000 audit: BPF prog-id=63 op=LOAD Apr 12 18:22:57.064000 audit: BPF prog-id=45 op=UNLOAD Apr 12 18:22:57.064000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.064000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.064000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.064000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.064000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.064000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.064000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.064000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.064000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.064000 audit: BPF prog-id=64 op=LOAD Apr 12 18:22:57.064000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.064000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.064000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.064000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.064000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.064000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.064000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.064000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.064000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.064000 audit: BPF prog-id=65 op=LOAD Apr 12 18:22:57.064000 audit: BPF prog-id=46 op=UNLOAD Apr 12 18:22:57.064000 audit: BPF prog-id=47 op=UNLOAD Apr 12 18:22:57.067000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.068000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.068000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.068000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.068000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.068000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.068000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.068000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.068000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.068000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.068000 audit: BPF prog-id=66 op=LOAD Apr 12 18:22:57.068000 audit: BPF prog-id=48 op=UNLOAD Apr 12 18:22:57.068000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.068000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.068000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.068000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.068000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.068000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.068000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.068000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.068000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.068000 audit: BPF prog-id=67 op=LOAD Apr 12 18:22:57.068000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.068000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.068000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.068000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.068000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.068000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.068000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.068000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.068000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.068000 audit: BPF prog-id=68 op=LOAD Apr 12 18:22:57.069000 audit: BPF prog-id=49 op=UNLOAD Apr 12 18:22:57.069000 audit: BPF prog-id=50 op=UNLOAD Apr 12 18:22:57.070000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.070000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.070000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.070000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.070000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.070000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.070000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.070000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.070000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.070000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.070000 audit: BPF prog-id=69 op=LOAD Apr 12 18:22:57.070000 audit: BPF prog-id=51 op=UNLOAD Apr 12 18:22:57.120000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:57.121175 systemd[1]: Started kubelet.service. Apr 12 18:22:57.196828 kubelet[2083]: Flag --container-runtime-endpoint has been deprecated, This parameter should be set via the config file specified by the Kubelet's --config flag. See https://kubernetes.io/docs/tasks/administer-cluster/kubelet-config-file/ for more information. Apr 12 18:22:57.196828 kubelet[2083]: Flag --pod-infra-container-image has been deprecated, will be removed in a future release. Image garbage collector will get sandbox image information from CRI. Apr 12 18:22:57.197435 kubelet[2083]: Flag --volume-plugin-dir has been deprecated, This parameter should be set via the config file specified by the Kubelet's --config flag. See https://kubernetes.io/docs/tasks/administer-cluster/kubelet-config-file/ for more information. Apr 12 18:22:57.197435 kubelet[2083]: I0412 18:22:57.196955 2083 server.go:199] "--pod-infra-container-image will not be pruned by the image garbage collector in kubelet and should also be set in the remote runtime" Apr 12 18:22:57.943057 kubelet[2083]: I0412 18:22:57.943018 2083 server.go:415] "Kubelet version" kubeletVersion="v1.27.2" Apr 12 18:22:57.943364 kubelet[2083]: I0412 18:22:57.943343 2083 server.go:417] "Golang settings" GOGC="" GOMAXPROCS="" GOTRACEBACK="" Apr 12 18:22:57.943782 kubelet[2083]: I0412 18:22:57.943758 2083 server.go:837] "Client rotation is on, will bootstrap in background" Apr 12 18:22:57.947553 kubelet[2083]: I0412 18:22:57.947489 2083 dynamic_cafile_content.go:157] "Starting controller" name="client-ca-bundle::/etc/kubernetes/pki/ca.crt" Apr 12 18:22:57.951069 kubelet[2083]: W0412 18:22:57.951039 2083 machine.go:65] Cannot read vendor id correctly, set empty. Apr 12 18:22:57.952369 kubelet[2083]: I0412 18:22:57.952342 2083 server.go:662] "--cgroups-per-qos enabled, but --cgroup-root was not specified. defaulting to /" Apr 12 18:22:57.953014 kubelet[2083]: I0412 18:22:57.952992 2083 container_manager_linux.go:266] "Container manager verified user specified cgroup-root exists" cgroupRoot=[] Apr 12 18:22:57.953232 kubelet[2083]: I0412 18:22:57.953209 2083 container_manager_linux.go:271] "Creating Container Manager object based on Node Config" nodeConfig={RuntimeCgroupsName: SystemCgroupsName: KubeletCgroupsName: KubeletOOMScoreAdj:-999 ContainerRuntime: CgroupsPerQOS:true CgroupRoot:/ CgroupDriver:systemd KubeletRootDir:/var/lib/kubelet ProtectKernelDefaults:false NodeAllocatableConfig:{KubeReservedCgroupName: SystemReservedCgroupName: ReservedSystemCPUs: EnforceNodeAllocatable:map[pods:{}] KubeReserved:map[] SystemReserved:map[] HardEvictionThresholds:[{Signal:memory.available Operator:LessThan Value:{Quantity:100Mi Percentage:0} GracePeriod:0s MinReclaim:} {Signal:nodefs.available Operator:LessThan Value:{Quantity: Percentage:0.1} GracePeriod:0s MinReclaim:} {Signal:nodefs.inodesFree Operator:LessThan Value:{Quantity: Percentage:0.05} GracePeriod:0s MinReclaim:} {Signal:imagefs.available Operator:LessThan Value:{Quantity: Percentage:0.15} GracePeriod:0s MinReclaim:}]} QOSReserved:map[] CPUManagerPolicy:none CPUManagerPolicyOptions:map[] TopologyManagerScope:container CPUManagerReconcilePeriod:10s ExperimentalMemoryManagerPolicy:None ExperimentalMemoryManagerReservedMemory:[] PodPidsLimit:-1 EnforceCPULimits:true CPUCFSQuotaPeriod:100ms TopologyManagerPolicy:none ExperimentalTopologyManagerPolicyOptions:map[]} Apr 12 18:22:57.953440 kubelet[2083]: I0412 18:22:57.953419 2083 topology_manager.go:136] "Creating topology manager with policy per scope" topologyPolicyName="none" topologyScopeName="container" Apr 12 18:22:57.953558 kubelet[2083]: I0412 18:22:57.953538 2083 container_manager_linux.go:302] "Creating device plugin manager" Apr 12 18:22:57.953811 kubelet[2083]: I0412 18:22:57.953790 2083 state_mem.go:36] "Initialized new in-memory state store" Apr 12 18:22:57.958519 kubelet[2083]: I0412 18:22:57.958484 2083 kubelet.go:405] "Attempting to sync node with API server" Apr 12 18:22:57.958738 kubelet[2083]: I0412 18:22:57.958716 2083 kubelet.go:298] "Adding static pod path" path="/etc/kubernetes/manifests" Apr 12 18:22:57.958891 kubelet[2083]: I0412 18:22:57.958870 2083 kubelet.go:309] "Adding apiserver pod source" Apr 12 18:22:57.959114 kubelet[2083]: I0412 18:22:57.959092 2083 apiserver.go:42] "Waiting for node sync before watching apiserver pods" Apr 12 18:22:57.960024 kubelet[2083]: E0412 18:22:57.959993 2083 file.go:98] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:22:57.960295 kubelet[2083]: E0412 18:22:57.960270 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:22:57.961103 kubelet[2083]: I0412 18:22:57.960899 2083 kuberuntime_manager.go:257] "Container runtime initialized" containerRuntime="containerd" version="1.6.16" apiVersion="v1" Apr 12 18:22:57.961587 kubelet[2083]: W0412 18:22:57.961548 2083 probe.go:268] Flexvolume plugin directory at /opt/libexec/kubernetes/kubelet-plugins/volume/exec/ does not exist. Recreating. Apr 12 18:22:57.967020 kubelet[2083]: I0412 18:22:57.962926 2083 server.go:1168] "Started kubelet" Apr 12 18:22:57.967186 kubelet[2083]: I0412 18:22:57.967090 2083 server.go:162] "Starting to listen" address="0.0.0.0" port=10250 Apr 12 18:22:57.966000 audit[2083]: AVC avc: denied { mac_admin } for pid=2083 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.968459 kubelet[2083]: I0412 18:22:57.968172 2083 server.go:461] "Adding debug handlers to kubelet server" Apr 12 18:22:57.966000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Apr 12 18:22:57.966000 audit[2083]: SYSCALL arch=c00000b7 syscall=5 success=no exit=-22 a0=4000a87b00 a1=4000140f18 a2=4000a87ad0 a3=25 items=0 ppid=1 pid=2083 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:22:57.966000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Apr 12 18:22:57.969143 kubelet[2083]: I0412 18:22:57.969112 2083 kubelet.go:1355] "Unprivileged containerized plugins might not work, could not set selinux context on plugin registration dir" path="/var/lib/kubelet/plugins_registry" err="setxattr /var/lib/kubelet/plugins_registry: invalid argument" Apr 12 18:22:57.967000 audit[2083]: AVC avc: denied { mac_admin } for pid=2083 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:57.967000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Apr 12 18:22:57.967000 audit[2083]: SYSCALL arch=c00000b7 syscall=5 success=no exit=-22 a0=4000bb28c0 a1=4000140fa8 a2=4000a87b90 a3=25 items=0 ppid=1 pid=2083 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:22:57.967000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Apr 12 18:22:57.969774 kubelet[2083]: I0412 18:22:57.969750 2083 kubelet.go:1359] "Unprivileged containerized plugins might not work, could not set selinux context on plugins dir" path="/var/lib/kubelet/plugins" err="setxattr /var/lib/kubelet/plugins: invalid argument" Apr 12 18:22:57.970039 kubelet[2083]: I0412 18:22:57.970004 2083 ratelimit.go:65] "Setting rate limiting for podresources endpoint" qps=100 burstTokens=10 Apr 12 18:22:57.970205 kubelet[2083]: I0412 18:22:57.970183 2083 fs_resource_analyzer.go:67] "Starting FS ResourceAnalyzer" Apr 12 18:22:57.970346 kubelet[2083]: E0412 18:22:57.965167 2083 cri_stats_provider.go:455] "Failed to get the info of the filesystem with mountpoint" err="unable to find data in memory cache" mountpoint="/var/lib/containerd/io.containerd.snapshotter.v1.overlayfs" Apr 12 18:22:57.970419 kubelet[2083]: E0412 18:22:57.970356 2083 kubelet.go:1400] "Image garbage collection failed once. Stats initialization may not have completed yet" err="invalid capacity 0 on image filesystem" Apr 12 18:22:57.975879 kubelet[2083]: I0412 18:22:57.975812 2083 volume_manager.go:284] "Starting Kubelet Volume Manager" Apr 12 18:22:57.983543 kubelet[2083]: I0412 18:22:57.983494 2083 desired_state_of_world_populator.go:145] "Desired state populator starts to run" Apr 12 18:22:57.984180 kubelet[2083]: E0412 18:22:57.984014 2083 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.25.169.17c59b7928d72192", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.25.169", UID:"172.31.25.169", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"Starting", Message:"Starting kubelet.", Source:v1.EventSource{Component:"kubelet", Host:"172.31.25.169"}, FirstTimestamp:time.Date(2024, time.April, 12, 18, 22, 57, 962877330, time.Local), LastTimestamp:time.Date(2024, time.April, 12, 18, 22, 57, 962877330, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Apr 12 18:22:57.984786 kubelet[2083]: E0412 18:22:57.984756 2083 controller.go:146] "Failed to ensure lease exists, will retry" err="leases.coordination.k8s.io \"172.31.25.169\" is forbidden: User \"system:anonymous\" cannot get resource \"leases\" in API group \"coordination.k8s.io\" in the namespace \"kube-node-lease\"" interval="200ms" Apr 12 18:22:57.995165 kubelet[2083]: W0412 18:22:57.995128 2083 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.Node: nodes "172.31.25.169" is forbidden: User "system:anonymous" cannot list resource "nodes" in API group "" at the cluster scope Apr 12 18:22:57.995426 kubelet[2083]: E0412 18:22:57.995401 2083 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.Node: failed to list *v1.Node: nodes "172.31.25.169" is forbidden: User "system:anonymous" cannot list resource "nodes" in API group "" at the cluster scope Apr 12 18:22:57.995612 kubelet[2083]: W0412 18:22:57.995589 2083 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.Service: services is forbidden: User "system:anonymous" cannot list resource "services" in API group "" at the cluster scope Apr 12 18:22:57.995748 kubelet[2083]: E0412 18:22:57.995726 2083 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.Service: failed to list *v1.Service: services is forbidden: User "system:anonymous" cannot list resource "services" in API group "" at the cluster scope Apr 12 18:22:57.995981 kubelet[2083]: W0412 18:22:57.995926 2083 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.CSIDriver: csidrivers.storage.k8s.io is forbidden: User "system:anonymous" cannot list resource "csidrivers" in API group "storage.k8s.io" at the cluster scope Apr 12 18:22:57.996202 kubelet[2083]: E0412 18:22:57.996175 2083 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.CSIDriver: failed to list *v1.CSIDriver: csidrivers.storage.k8s.io is forbidden: User "system:anonymous" cannot list resource "csidrivers" in API group "storage.k8s.io" at the cluster scope Apr 12 18:22:58.002792 kubelet[2083]: E0412 18:22:58.002679 2083 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.25.169.17c59b792948f81e", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.25.169", UID:"172.31.25.169", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"InvalidDiskCapacity", Message:"invalid capacity 0 on image filesystem", Source:v1.EventSource{Component:"kubelet", Host:"172.31.25.169"}, FirstTimestamp:time.Date(2024, time.April, 12, 18, 22, 57, 970337822, time.Local), LastTimestamp:time.Date(2024, time.April, 12, 18, 22, 57, 970337822, time.Local), Count:1, Type:"Warning", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Apr 12 18:22:58.031000 audit[2096]: NETFILTER_CFG table=mangle:2 family=2 entries=2 op=nft_register_chain pid=2096 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:22:58.031000 audit[2096]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=136 a0=3 a1=fffff855e640 a2=0 a3=1 items=0 ppid=2083 pid=2096 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:22:58.031000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D49505441424C45532D48494E54002D74006D616E676C65 Apr 12 18:22:58.034000 audit[2101]: NETFILTER_CFG table=filter:3 family=2 entries=2 op=nft_register_chain pid=2101 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:22:58.034000 audit[2101]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=132 a0=3 a1=ffffd9b18e00 a2=0 a3=1 items=0 ppid=2083 pid=2101 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:22:58.034000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4649524557414C4C002D740066696C746572 Apr 12 18:22:58.057405 kubelet[2083]: E0412 18:22:58.057278 2083 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.25.169.17c59b792e569953", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.25.169", UID:"172.31.25.169", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 172.31.25.169 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"172.31.25.169"}, FirstTimestamp:time.Date(2024, time.April, 12, 18, 22, 58, 55117139, time.Local), LastTimestamp:time.Date(2024, time.April, 12, 18, 22, 58, 55117139, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Apr 12 18:22:58.059724 kubelet[2083]: E0412 18:22:58.059600 2083 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.25.169.17c59b792e56b842", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.25.169", UID:"172.31.25.169", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 172.31.25.169 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"172.31.25.169"}, FirstTimestamp:time.Date(2024, time.April, 12, 18, 22, 58, 55125058, time.Local), LastTimestamp:time.Date(2024, time.April, 12, 18, 22, 58, 55125058, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Apr 12 18:22:58.064597 kubelet[2083]: E0412 18:22:58.064376 2083 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.25.169.17c59b792e56cbb9", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.25.169", UID:"172.31.25.169", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 172.31.25.169 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"172.31.25.169"}, FirstTimestamp:time.Date(2024, time.April, 12, 18, 22, 58, 55130041, time.Local), LastTimestamp:time.Date(2024, time.April, 12, 18, 22, 58, 55130041, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Apr 12 18:22:58.065734 kubelet[2083]: I0412 18:22:58.065704 2083 cpu_manager.go:214] "Starting CPU manager" policy="none" Apr 12 18:22:58.065888 kubelet[2083]: I0412 18:22:58.065866 2083 cpu_manager.go:215] "Reconciling" reconcilePeriod="10s" Apr 12 18:22:58.066064 kubelet[2083]: I0412 18:22:58.066043 2083 state_mem.go:36] "Initialized new in-memory state store" Apr 12 18:22:58.072176 kubelet[2083]: I0412 18:22:58.072136 2083 policy_none.go:49] "None policy: Start" Apr 12 18:22:58.073608 kubelet[2083]: I0412 18:22:58.073573 2083 memory_manager.go:169] "Starting memorymanager" policy="None" Apr 12 18:22:58.073931 kubelet[2083]: I0412 18:22:58.073908 2083 state_mem.go:35] "Initializing new in-memory state store" Apr 12 18:22:58.080343 kubelet[2083]: I0412 18:22:58.080307 2083 kubelet_node_status.go:70] "Attempting to register node" node="172.31.25.169" Apr 12 18:22:58.084558 systemd[1]: Created slice kubepods.slice. Apr 12 18:22:58.085482 kubelet[2083]: E0412 18:22:58.084997 2083 kubelet_node_status.go:92] "Unable to register node with API server" err="nodes is forbidden: User \"system:anonymous\" cannot create resource \"nodes\" in API group \"\" at the cluster scope" node="172.31.25.169" Apr 12 18:22:58.085482 kubelet[2083]: E0412 18:22:58.085091 2083 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.25.169.17c59b792e569953", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.25.169", UID:"172.31.25.169", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 172.31.25.169 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"172.31.25.169"}, FirstTimestamp:time.Date(2024, time.April, 12, 18, 22, 58, 55117139, time.Local), LastTimestamp:time.Date(2024, time.April, 12, 18, 22, 58, 80249595, time.Local), Count:2, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.25.169.17c59b792e569953" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Apr 12 18:22:58.088514 kubelet[2083]: E0412 18:22:58.088351 2083 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.25.169.17c59b792e56b842", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.25.169", UID:"172.31.25.169", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 172.31.25.169 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"172.31.25.169"}, FirstTimestamp:time.Date(2024, time.April, 12, 18, 22, 58, 55125058, time.Local), LastTimestamp:time.Date(2024, time.April, 12, 18, 22, 58, 80256913, time.Local), Count:2, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.25.169.17c59b792e56b842" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Apr 12 18:22:58.037000 audit[2103]: NETFILTER_CFG table=filter:4 family=2 entries=2 op=nft_register_chain pid=2103 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:22:58.037000 audit[2103]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=312 a0=3 a1=ffffc4d67ed0 a2=0 a3=1 items=0 ppid=2083 pid=2103 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:22:58.037000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6A004B5542452D4649524557414C4C Apr 12 18:22:58.091778 kubelet[2083]: E0412 18:22:58.091655 2083 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.25.169.17c59b792e56cbb9", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.25.169", UID:"172.31.25.169", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 172.31.25.169 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"172.31.25.169"}, FirstTimestamp:time.Date(2024, time.April, 12, 18, 22, 58, 55130041, time.Local), LastTimestamp:time.Date(2024, time.April, 12, 18, 22, 58, 80261932, time.Local), Count:2, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.25.169.17c59b792e56cbb9" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Apr 12 18:22:58.099457 systemd[1]: Created slice kubepods-burstable.slice. Apr 12 18:22:58.105412 systemd[1]: Created slice kubepods-besteffort.slice. Apr 12 18:22:58.107000 audit[2109]: NETFILTER_CFG table=filter:5 family=2 entries=2 op=nft_register_chain pid=2109 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:22:58.107000 audit[2109]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=312 a0=3 a1=fffffe2a83e0 a2=0 a3=1 items=0 ppid=2083 pid=2109 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:22:58.107000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6A004B5542452D4649524557414C4C Apr 12 18:22:58.112370 kubelet[2083]: I0412 18:22:58.112337 2083 manager.go:455] "Failed to read data from checkpoint" checkpoint="kubelet_internal_checkpoint" err="checkpoint is not found" Apr 12 18:22:58.111000 audit[2083]: AVC avc: denied { mac_admin } for pid=2083 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:22:58.111000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Apr 12 18:22:58.111000 audit[2083]: SYSCALL arch=c00000b7 syscall=5 success=no exit=-22 a0=4000f10960 a1=4000f1aa38 a2=4000f10930 a3=25 items=0 ppid=1 pid=2083 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/opt/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:22:58.111000 audit: PROCTITLE proctitle=2F6F70742F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Apr 12 18:22:58.114099 kubelet[2083]: I0412 18:22:58.114068 2083 server.go:88] "Unprivileged containerized plugins might not work. Could not set selinux context on socket dir" path="/var/lib/kubelet/device-plugins/" err="setxattr /var/lib/kubelet/device-plugins/: invalid argument" Apr 12 18:22:58.114568 kubelet[2083]: I0412 18:22:58.114541 2083 plugin_manager.go:118] "Starting Kubelet Plugin Manager" Apr 12 18:22:58.116834 kubelet[2083]: E0412 18:22:58.116796 2083 eviction_manager.go:262] "Eviction manager: failed to get summary stats" err="failed to get node info: node \"172.31.25.169\" not found" Apr 12 18:22:58.124288 kubelet[2083]: E0412 18:22:58.124171 2083 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.25.169.17c59b7932078aad", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.25.169", UID:"172.31.25.169", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeAllocatableEnforced", Message:"Updated Node Allocatable limit across pods", Source:v1.EventSource{Component:"kubelet", Host:"172.31.25.169"}, FirstTimestamp:time.Date(2024, time.April, 12, 18, 22, 58, 117044909, time.Local), LastTimestamp:time.Date(2024, time.April, 12, 18, 22, 58, 117044909, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Apr 12 18:22:58.175000 audit[2114]: NETFILTER_CFG table=filter:6 family=2 entries=1 op=nft_register_rule pid=2114 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:22:58.175000 audit[2114]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=924 a0=3 a1=ffffd33a27b0 a2=0 a3=1 items=0 ppid=2083 pid=2114 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:22:58.175000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D41004B5542452D4649524557414C4C002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E7400626C6F636B20696E636F6D696E67206C6F63616C6E657420636F6E6E656374696F6E73002D2D647374003132372E302E302E302F38 Apr 12 18:22:58.177025 kubelet[2083]: I0412 18:22:58.176888 2083 kubelet_network_linux.go:63] "Initialized iptables rules." protocol=IPv4 Apr 12 18:22:58.177000 audit[2116]: NETFILTER_CFG table=mangle:7 family=2 entries=1 op=nft_register_chain pid=2116 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:22:58.177000 audit[2116]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffea42ce20 a2=0 a3=1 items=0 ppid=2083 pid=2116 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:22:58.178000 audit[2115]: NETFILTER_CFG table=mangle:8 family=10 entries=2 op=nft_register_chain pid=2115 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:22:58.178000 audit[2115]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=136 a0=3 a1=ffffc6d3ccc0 a2=0 a3=1 items=0 ppid=2083 pid=2115 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:22:58.178000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D49505441424C45532D48494E54002D74006D616E676C65 Apr 12 18:22:58.177000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006D616E676C65 Apr 12 18:22:58.179693 kubelet[2083]: I0412 18:22:58.179630 2083 kubelet_network_linux.go:63] "Initialized iptables rules." protocol=IPv6 Apr 12 18:22:58.179693 kubelet[2083]: I0412 18:22:58.179684 2083 status_manager.go:207] "Starting to sync pod status with apiserver" Apr 12 18:22:58.179841 kubelet[2083]: I0412 18:22:58.179715 2083 kubelet.go:2257] "Starting kubelet main sync loop" Apr 12 18:22:58.179841 kubelet[2083]: E0412 18:22:58.179797 2083 kubelet.go:2281] "Skipping pod synchronization" err="PLEG is not healthy: pleg has yet to be successful" Apr 12 18:22:58.182397 kubelet[2083]: W0412 18:22:58.182361 2083 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.RuntimeClass: runtimeclasses.node.k8s.io is forbidden: User "system:anonymous" cannot list resource "runtimeclasses" in API group "node.k8s.io" at the cluster scope Apr 12 18:22:58.182640 kubelet[2083]: E0412 18:22:58.182616 2083 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.RuntimeClass: failed to list *v1.RuntimeClass: runtimeclasses.node.k8s.io is forbidden: User "system:anonymous" cannot list resource "runtimeclasses" in API group "node.k8s.io" at the cluster scope Apr 12 18:22:58.182000 audit[2117]: NETFILTER_CFG table=mangle:9 family=10 entries=1 op=nft_register_chain pid=2117 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:22:58.182000 audit[2117]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffcfd01530 a2=0 a3=1 items=0 ppid=2083 pid=2117 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:22:58.182000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006D616E676C65 Apr 12 18:22:58.183000 audit[2118]: NETFILTER_CFG table=nat:10 family=2 entries=2 op=nft_register_chain pid=2118 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:22:58.183000 audit[2118]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=128 a0=3 a1=ffffd5772cd0 a2=0 a3=1 items=0 ppid=2083 pid=2118 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:22:58.183000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006E6174 Apr 12 18:22:58.185000 audit[2119]: NETFILTER_CFG table=nat:11 family=10 entries=2 op=nft_register_chain pid=2119 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:22:58.185000 audit[2119]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=128 a0=3 a1=ffffdf91f810 a2=0 a3=1 items=0 ppid=2083 pid=2119 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:22:58.185000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006E6174 Apr 12 18:22:58.187121 kubelet[2083]: E0412 18:22:58.187085 2083 controller.go:146] "Failed to ensure lease exists, will retry" err="leases.coordination.k8s.io \"172.31.25.169\" is forbidden: User \"system:anonymous\" cannot get resource \"leases\" in API group \"coordination.k8s.io\" in the namespace \"kube-node-lease\"" interval="400ms" Apr 12 18:22:58.187000 audit[2120]: NETFILTER_CFG table=filter:12 family=2 entries=1 op=nft_register_chain pid=2120 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:22:58.187000 audit[2120]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffcaac6f70 a2=0 a3=1 items=0 ppid=2083 pid=2120 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:22:58.187000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D740066696C746572 Apr 12 18:22:58.188000 audit[2121]: NETFILTER_CFG table=filter:13 family=10 entries=2 op=nft_register_chain pid=2121 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:22:58.188000 audit[2121]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=136 a0=3 a1=ffffebd68130 a2=0 a3=1 items=0 ppid=2083 pid=2121 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:22:58.188000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D740066696C746572 Apr 12 18:22:58.289067 kubelet[2083]: I0412 18:22:58.285896 2083 kubelet_node_status.go:70] "Attempting to register node" node="172.31.25.169" Apr 12 18:22:58.290823 kubelet[2083]: E0412 18:22:58.290733 2083 kubelet_node_status.go:92] "Unable to register node with API server" err="nodes is forbidden: User \"system:anonymous\" cannot create resource \"nodes\" in API group \"\" at the cluster scope" node="172.31.25.169" Apr 12 18:22:58.291137 kubelet[2083]: E0412 18:22:58.291021 2083 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.25.169.17c59b792e569953", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.25.169", UID:"172.31.25.169", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 172.31.25.169 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"172.31.25.169"}, FirstTimestamp:time.Date(2024, time.April, 12, 18, 22, 58, 55117139, time.Local), LastTimestamp:time.Date(2024, time.April, 12, 18, 22, 58, 285849709, time.Local), Count:3, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.25.169.17c59b792e569953" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Apr 12 18:22:58.294429 kubelet[2083]: E0412 18:22:58.294332 2083 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.25.169.17c59b792e56b842", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.25.169", UID:"172.31.25.169", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 172.31.25.169 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"172.31.25.169"}, FirstTimestamp:time.Date(2024, time.April, 12, 18, 22, 58, 55125058, time.Local), LastTimestamp:time.Date(2024, time.April, 12, 18, 22, 58, 285857568, time.Local), Count:3, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.25.169.17c59b792e56b842" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Apr 12 18:22:58.304190 kubelet[2083]: E0412 18:22:58.304088 2083 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.25.169.17c59b792e56cbb9", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.25.169", UID:"172.31.25.169", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 172.31.25.169 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"172.31.25.169"}, FirstTimestamp:time.Date(2024, time.April, 12, 18, 22, 58, 55130041, time.Local), LastTimestamp:time.Date(2024, time.April, 12, 18, 22, 58, 285862370, time.Local), Count:3, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.25.169.17c59b792e56cbb9" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Apr 12 18:22:58.591595 kubelet[2083]: E0412 18:22:58.591478 2083 controller.go:146] "Failed to ensure lease exists, will retry" err="leases.coordination.k8s.io \"172.31.25.169\" is forbidden: User \"system:anonymous\" cannot get resource \"leases\" in API group \"coordination.k8s.io\" in the namespace \"kube-node-lease\"" interval="800ms" Apr 12 18:22:58.692816 kubelet[2083]: I0412 18:22:58.692782 2083 kubelet_node_status.go:70] "Attempting to register node" node="172.31.25.169" Apr 12 18:22:58.706895 kubelet[2083]: E0412 18:22:58.706784 2083 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.25.169.17c59b792e569953", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.25.169", UID:"172.31.25.169", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 172.31.25.169 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"172.31.25.169"}, FirstTimestamp:time.Date(2024, time.April, 12, 18, 22, 58, 55117139, time.Local), LastTimestamp:time.Date(2024, time.April, 12, 18, 22, 58, 692735872, time.Local), Count:4, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.25.169.17c59b792e569953" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Apr 12 18:22:58.707573 kubelet[2083]: E0412 18:22:58.707521 2083 kubelet_node_status.go:92] "Unable to register node with API server" err="nodes is forbidden: User \"system:anonymous\" cannot create resource \"nodes\" in API group \"\" at the cluster scope" node="172.31.25.169" Apr 12 18:22:58.719868 kubelet[2083]: E0412 18:22:58.719711 2083 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.25.169.17c59b792e56b842", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.25.169", UID:"172.31.25.169", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 172.31.25.169 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"172.31.25.169"}, FirstTimestamp:time.Date(2024, time.April, 12, 18, 22, 58, 55125058, time.Local), LastTimestamp:time.Date(2024, time.April, 12, 18, 22, 58, 692743707, time.Local), Count:4, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.25.169.17c59b792e56b842" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Apr 12 18:22:58.721913 kubelet[2083]: E0412 18:22:58.721760 2083 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"172.31.25.169.17c59b792e56cbb9", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"172.31.25.169", UID:"172.31.25.169", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 172.31.25.169 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"172.31.25.169"}, FirstTimestamp:time.Date(2024, time.April, 12, 18, 22, 58, 55130041, time.Local), LastTimestamp:time.Date(2024, time.April, 12, 18, 22, 58, 692748931, time.Local), Count:4, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "172.31.25.169.17c59b792e56cbb9" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Apr 12 18:22:58.867406 kubelet[2083]: W0412 18:22:58.867286 2083 reflector.go:533] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.Node: nodes "172.31.25.169" is forbidden: User "system:anonymous" cannot list resource "nodes" in API group "" at the cluster scope Apr 12 18:22:58.867591 kubelet[2083]: E0412 18:22:58.867568 2083 reflector.go:148] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.Node: failed to list *v1.Node: nodes "172.31.25.169" is forbidden: User "system:anonymous" cannot list resource "nodes" in API group "" at the cluster scope Apr 12 18:22:58.946902 kubelet[2083]: I0412 18:22:58.946858 2083 transport.go:147] "Certificate rotation detected, shutting down client connections to start using new credentials" Apr 12 18:22:58.961242 kubelet[2083]: E0412 18:22:58.961188 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:22:59.424474 kubelet[2083]: E0412 18:22:59.424415 2083 nodelease.go:49] "Failed to get node when trying to set owner ref to the node lease" err="nodes \"172.31.25.169\" not found" node="172.31.25.169" Apr 12 18:22:59.430702 kubelet[2083]: E0412 18:22:59.430660 2083 csi_plugin.go:295] Failed to initialize CSINode: error updating CSINode annotation: timed out waiting for the condition; caused by: nodes "172.31.25.169" not found Apr 12 18:22:59.509309 kubelet[2083]: I0412 18:22:59.509262 2083 kubelet_node_status.go:70] "Attempting to register node" node="172.31.25.169" Apr 12 18:22:59.532464 kubelet[2083]: I0412 18:22:59.532366 2083 kubelet_node_status.go:73] "Successfully registered node" node="172.31.25.169" Apr 12 18:22:59.589312 kubelet[2083]: E0412 18:22:59.589260 2083 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.25.169\" not found" Apr 12 18:22:59.690658 kubelet[2083]: E0412 18:22:59.690492 2083 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.25.169\" not found" Apr 12 18:22:59.712657 sudo[1879]: pam_unix(sudo:session): session closed for user root Apr 12 18:22:59.711000 audit[1879]: USER_END pid=1879 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Apr 12 18:22:59.714799 kernel: kauditd_printk_skb: 477 callbacks suppressed Apr 12 18:22:59.714934 kernel: audit: type=1106 audit(1712946179.711:610): pid=1879 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Apr 12 18:22:59.712000 audit[1879]: CRED_DISP pid=1879 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Apr 12 18:22:59.732984 kernel: audit: type=1104 audit(1712946179.712:611): pid=1879 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Apr 12 18:22:59.736154 sshd[1876]: pam_unix(sshd:session): session closed for user core Apr 12 18:22:59.736000 audit[1876]: USER_END pid=1876 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Apr 12 18:22:59.736000 audit[1876]: CRED_DISP pid=1876 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Apr 12 18:22:59.750541 systemd[1]: sshd@6-172.31.25.169:22-139.178.89.65:39612.service: Deactivated successfully. Apr 12 18:22:59.751795 systemd[1]: session-7.scope: Deactivated successfully. Apr 12 18:22:59.759771 kernel: audit: type=1106 audit(1712946179.736:612): pid=1876 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Apr 12 18:22:59.759876 kernel: audit: type=1104 audit(1712946179.736:613): pid=1876 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Apr 12 18:22:59.750000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@6-172.31.25.169:22-139.178.89.65:39612 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:59.770122 kernel: audit: type=1131 audit(1712946179.750:614): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@6-172.31.25.169:22-139.178.89.65:39612 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:22:59.769358 systemd-logind[1607]: Session 7 logged out. Waiting for processes to exit. Apr 12 18:22:59.771252 systemd-logind[1607]: Removed session 7. Apr 12 18:22:59.791095 kubelet[2083]: E0412 18:22:59.791027 2083 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.25.169\" not found" Apr 12 18:22:59.891804 kubelet[2083]: E0412 18:22:59.891761 2083 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.25.169\" not found" Apr 12 18:22:59.961620 kubelet[2083]: E0412 18:22:59.961484 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:22:59.993084 kubelet[2083]: E0412 18:22:59.993036 2083 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.25.169\" not found" Apr 12 18:23:00.093899 kubelet[2083]: E0412 18:23:00.093850 2083 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.25.169\" not found" Apr 12 18:23:00.194540 kubelet[2083]: E0412 18:23:00.194489 2083 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.25.169\" not found" Apr 12 18:23:00.295233 kubelet[2083]: E0412 18:23:00.295120 2083 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.25.169\" not found" Apr 12 18:23:00.395841 kubelet[2083]: E0412 18:23:00.395813 2083 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.25.169\" not found" Apr 12 18:23:00.496813 kubelet[2083]: E0412 18:23:00.496769 2083 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.25.169\" not found" Apr 12 18:23:00.597741 kubelet[2083]: E0412 18:23:00.597659 2083 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.25.169\" not found" Apr 12 18:23:00.698531 kubelet[2083]: E0412 18:23:00.698485 2083 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.25.169\" not found" Apr 12 18:23:00.799314 kubelet[2083]: E0412 18:23:00.799289 2083 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.25.169\" not found" Apr 12 18:23:00.900140 kubelet[2083]: E0412 18:23:00.900037 2083 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.25.169\" not found" Apr 12 18:23:00.961854 kubelet[2083]: E0412 18:23:00.961826 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:01.000386 kubelet[2083]: E0412 18:23:01.000346 2083 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.25.169\" not found" Apr 12 18:23:01.101102 kubelet[2083]: E0412 18:23:01.101073 2083 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.25.169\" not found" Apr 12 18:23:01.201744 kubelet[2083]: E0412 18:23:01.201620 2083 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.25.169\" not found" Apr 12 18:23:01.302503 kubelet[2083]: E0412 18:23:01.302474 2083 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.25.169\" not found" Apr 12 18:23:01.403207 kubelet[2083]: E0412 18:23:01.403185 2083 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.25.169\" not found" Apr 12 18:23:01.504188 kubelet[2083]: E0412 18:23:01.504083 2083 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.25.169\" not found" Apr 12 18:23:01.604867 kubelet[2083]: E0412 18:23:01.604837 2083 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.25.169\" not found" Apr 12 18:23:01.705590 kubelet[2083]: E0412 18:23:01.705548 2083 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.25.169\" not found" Apr 12 18:23:01.806461 kubelet[2083]: E0412 18:23:01.806382 2083 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.25.169\" not found" Apr 12 18:23:01.906647 kubelet[2083]: E0412 18:23:01.906604 2083 kubelet_node_status.go:458] "Error getting the current node from lister" err="node \"172.31.25.169\" not found" Apr 12 18:23:01.962357 kubelet[2083]: E0412 18:23:01.962327 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:01.962550 kubelet[2083]: I0412 18:23:01.962340 2083 apiserver.go:52] "Watching apiserver" Apr 12 18:23:01.970149 kubelet[2083]: I0412 18:23:01.970094 2083 topology_manager.go:212] "Topology Admit Handler" Apr 12 18:23:01.970317 kubelet[2083]: I0412 18:23:01.970196 2083 topology_manager.go:212] "Topology Admit Handler" Apr 12 18:23:01.970317 kubelet[2083]: I0412 18:23:01.970300 2083 topology_manager.go:212] "Topology Admit Handler" Apr 12 18:23:01.970563 kubelet[2083]: E0412 18:23:01.970522 2083 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-zxgs6" podUID=d252c216-222e-4462-b095-d9412d3071cf Apr 12 18:23:01.980283 systemd[1]: Created slice kubepods-besteffort-pod5b1bc46e_ca85_4f84_a4e3_9659de548acc.slice. Apr 12 18:23:01.985658 kubelet[2083]: I0412 18:23:01.985598 2083 desired_state_of_world_populator.go:153] "Finished populating initial desired state of world" Apr 12 18:23:02.002372 systemd[1]: Created slice kubepods-besteffort-podfcf4c03a_b0a0_4aa8_b30e_bc657b2ead59.slice. Apr 12 18:23:02.007910 kubelet[2083]: I0412 18:23:02.007876 2083 kuberuntime_manager.go:1460] "Updating runtime config through cri with podcidr" CIDR="192.168.1.0/24" Apr 12 18:23:02.009394 kubelet[2083]: I0412 18:23:02.009115 2083 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"registration-dir\" (UniqueName: \"kubernetes.io/host-path/d252c216-222e-4462-b095-d9412d3071cf-registration-dir\") pod \"csi-node-driver-zxgs6\" (UID: \"d252c216-222e-4462-b095-d9412d3071cf\") " pod="calico-system/csi-node-driver-zxgs6" Apr 12 18:23:02.009554 kubelet[2083]: I0412 18:23:02.009411 2083 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"xtables-lock\" (UniqueName: \"kubernetes.io/host-path/fcf4c03a-b0a0-4aa8-b30e-bc657b2ead59-xtables-lock\") pod \"calico-node-bd9q6\" (UID: \"fcf4c03a-b0a0-4aa8-b30e-bc657b2ead59\") " pod="calico-system/calico-node-bd9q6" Apr 12 18:23:02.009554 kubelet[2083]: I0412 18:23:02.009458 2083 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"tigera-ca-bundle\" (UniqueName: \"kubernetes.io/configmap/fcf4c03a-b0a0-4aa8-b30e-bc657b2ead59-tigera-ca-bundle\") pod \"calico-node-bd9q6\" (UID: \"fcf4c03a-b0a0-4aa8-b30e-bc657b2ead59\") " pod="calico-system/calico-node-bd9q6" Apr 12 18:23:02.009554 kubelet[2083]: I0412 18:23:02.009505 2083 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"node-certs\" (UniqueName: \"kubernetes.io/secret/fcf4c03a-b0a0-4aa8-b30e-bc657b2ead59-node-certs\") pod \"calico-node-bd9q6\" (UID: \"fcf4c03a-b0a0-4aa8-b30e-bc657b2ead59\") " pod="calico-system/calico-node-bd9q6" Apr 12 18:23:02.009554 kubelet[2083]: I0412 18:23:02.009551 2083 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"policysync\" (UniqueName: \"kubernetes.io/host-path/fcf4c03a-b0a0-4aa8-b30e-bc657b2ead59-policysync\") pod \"calico-node-bd9q6\" (UID: \"fcf4c03a-b0a0-4aa8-b30e-bc657b2ead59\") " pod="calico-system/calico-node-bd9q6" Apr 12 18:23:02.009789 kubelet[2083]: I0412 18:23:02.009593 2083 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"varrun\" (UniqueName: \"kubernetes.io/host-path/d252c216-222e-4462-b095-d9412d3071cf-varrun\") pod \"csi-node-driver-zxgs6\" (UID: \"d252c216-222e-4462-b095-d9412d3071cf\") " pod="calico-system/csi-node-driver-zxgs6" Apr 12 18:23:02.009789 kubelet[2083]: I0412 18:23:02.009637 2083 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-tkhb4\" (UniqueName: \"kubernetes.io/projected/d252c216-222e-4462-b095-d9412d3071cf-kube-api-access-tkhb4\") pod \"csi-node-driver-zxgs6\" (UID: \"d252c216-222e-4462-b095-d9412d3071cf\") " pod="calico-system/csi-node-driver-zxgs6" Apr 12 18:23:02.009789 kubelet[2083]: I0412 18:23:02.009683 2083 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-dl74q\" (UniqueName: \"kubernetes.io/projected/5b1bc46e-ca85-4f84-a4e3-9659de548acc-kube-api-access-dl74q\") pod \"kube-proxy-52bz7\" (UID: \"5b1bc46e-ca85-4f84-a4e3-9659de548acc\") " pod="kube-system/kube-proxy-52bz7" Apr 12 18:23:02.009789 kubelet[2083]: I0412 18:23:02.009725 2083 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"var-run-calico\" (UniqueName: \"kubernetes.io/host-path/fcf4c03a-b0a0-4aa8-b30e-bc657b2ead59-var-run-calico\") pod \"calico-node-bd9q6\" (UID: \"fcf4c03a-b0a0-4aa8-b30e-bc657b2ead59\") " pod="calico-system/calico-node-bd9q6" Apr 12 18:23:02.009789 kubelet[2083]: I0412 18:23:02.009769 2083 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-x8bwq\" (UniqueName: \"kubernetes.io/projected/fcf4c03a-b0a0-4aa8-b30e-bc657b2ead59-kube-api-access-x8bwq\") pod \"calico-node-bd9q6\" (UID: \"fcf4c03a-b0a0-4aa8-b30e-bc657b2ead59\") " pod="calico-system/calico-node-bd9q6" Apr 12 18:23:02.010089 kubelet[2083]: I0412 18:23:02.009811 2083 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"lib-modules\" (UniqueName: \"kubernetes.io/host-path/fcf4c03a-b0a0-4aa8-b30e-bc657b2ead59-lib-modules\") pod \"calico-node-bd9q6\" (UID: \"fcf4c03a-b0a0-4aa8-b30e-bc657b2ead59\") " pod="calico-system/calico-node-bd9q6" Apr 12 18:23:02.010089 kubelet[2083]: I0412 18:23:02.009856 2083 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"var-lib-calico\" (UniqueName: \"kubernetes.io/host-path/fcf4c03a-b0a0-4aa8-b30e-bc657b2ead59-var-lib-calico\") pod \"calico-node-bd9q6\" (UID: \"fcf4c03a-b0a0-4aa8-b30e-bc657b2ead59\") " pod="calico-system/calico-node-bd9q6" Apr 12 18:23:02.010089 kubelet[2083]: I0412 18:23:02.009899 2083 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-bin-dir\" (UniqueName: \"kubernetes.io/host-path/fcf4c03a-b0a0-4aa8-b30e-bc657b2ead59-cni-bin-dir\") pod \"calico-node-bd9q6\" (UID: \"fcf4c03a-b0a0-4aa8-b30e-bc657b2ead59\") " pod="calico-system/calico-node-bd9q6" Apr 12 18:23:02.010089 kubelet[2083]: I0412 18:23:02.009995 2083 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-net-dir\" (UniqueName: \"kubernetes.io/host-path/fcf4c03a-b0a0-4aa8-b30e-bc657b2ead59-cni-net-dir\") pod \"calico-node-bd9q6\" (UID: \"fcf4c03a-b0a0-4aa8-b30e-bc657b2ead59\") " pod="calico-system/calico-node-bd9q6" Apr 12 18:23:02.010089 kubelet[2083]: I0412 18:23:02.010048 2083 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-log-dir\" (UniqueName: \"kubernetes.io/host-path/fcf4c03a-b0a0-4aa8-b30e-bc657b2ead59-cni-log-dir\") pod \"calico-node-bd9q6\" (UID: \"fcf4c03a-b0a0-4aa8-b30e-bc657b2ead59\") " pod="calico-system/calico-node-bd9q6" Apr 12 18:23:02.010363 kubelet[2083]: I0412 18:23:02.010092 2083 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-proxy\" (UniqueName: \"kubernetes.io/configmap/5b1bc46e-ca85-4f84-a4e3-9659de548acc-kube-proxy\") pod \"kube-proxy-52bz7\" (UID: \"5b1bc46e-ca85-4f84-a4e3-9659de548acc\") " pod="kube-system/kube-proxy-52bz7" Apr 12 18:23:02.010363 kubelet[2083]: I0412 18:23:02.010135 2083 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"xtables-lock\" (UniqueName: \"kubernetes.io/host-path/5b1bc46e-ca85-4f84-a4e3-9659de548acc-xtables-lock\") pod \"kube-proxy-52bz7\" (UID: \"5b1bc46e-ca85-4f84-a4e3-9659de548acc\") " pod="kube-system/kube-proxy-52bz7" Apr 12 18:23:02.010363 kubelet[2083]: I0412 18:23:02.010176 2083 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"lib-modules\" (UniqueName: \"kubernetes.io/host-path/5b1bc46e-ca85-4f84-a4e3-9659de548acc-lib-modules\") pod \"kube-proxy-52bz7\" (UID: \"5b1bc46e-ca85-4f84-a4e3-9659de548acc\") " pod="kube-system/kube-proxy-52bz7" Apr 12 18:23:02.010363 kubelet[2083]: I0412 18:23:02.010223 2083 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"flexvol-driver-host\" (UniqueName: \"kubernetes.io/host-path/fcf4c03a-b0a0-4aa8-b30e-bc657b2ead59-flexvol-driver-host\") pod \"calico-node-bd9q6\" (UID: \"fcf4c03a-b0a0-4aa8-b30e-bc657b2ead59\") " pod="calico-system/calico-node-bd9q6" Apr 12 18:23:02.010363 kubelet[2083]: I0412 18:23:02.010266 2083 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kubelet-dir\" (UniqueName: \"kubernetes.io/host-path/d252c216-222e-4462-b095-d9412d3071cf-kubelet-dir\") pod \"csi-node-driver-zxgs6\" (UID: \"d252c216-222e-4462-b095-d9412d3071cf\") " pod="calico-system/csi-node-driver-zxgs6" Apr 12 18:23:02.010632 kubelet[2083]: I0412 18:23:02.010313 2083 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"socket-dir\" (UniqueName: \"kubernetes.io/host-path/d252c216-222e-4462-b095-d9412d3071cf-socket-dir\") pod \"csi-node-driver-zxgs6\" (UID: \"d252c216-222e-4462-b095-d9412d3071cf\") " pod="calico-system/csi-node-driver-zxgs6" Apr 12 18:23:02.010632 kubelet[2083]: I0412 18:23:02.010334 2083 reconciler.go:41] "Reconciler: start to sync state" Apr 12 18:23:02.013033 env[1620]: time="2024-04-12T18:23:02.012803414Z" level=info msg="No cni config template is specified, wait for other system components to drop the config." Apr 12 18:23:02.013605 kubelet[2083]: I0412 18:23:02.013353 2083 kubelet_network.go:61] "Updating Pod CIDR" originalPodCIDR="" newPodCIDR="192.168.1.0/24" Apr 12 18:23:02.120880 kubelet[2083]: E0412 18:23:02.120753 2083 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Apr 12 18:23:02.121107 kubelet[2083]: W0412 18:23:02.121077 2083 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Apr 12 18:23:02.121262 kubelet[2083]: E0412 18:23:02.121240 2083 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Apr 12 18:23:02.158796 kubelet[2083]: E0412 18:23:02.158763 2083 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Apr 12 18:23:02.159027 kubelet[2083]: W0412 18:23:02.158999 2083 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Apr 12 18:23:02.159154 kubelet[2083]: E0412 18:23:02.159133 2083 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Apr 12 18:23:02.161676 kubelet[2083]: E0412 18:23:02.161643 2083 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Apr 12 18:23:02.161859 kubelet[2083]: W0412 18:23:02.161832 2083 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Apr 12 18:23:02.162036 kubelet[2083]: E0412 18:23:02.162013 2083 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Apr 12 18:23:02.173595 kubelet[2083]: E0412 18:23:02.173563 2083 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Apr 12 18:23:02.173807 kubelet[2083]: W0412 18:23:02.173779 2083 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Apr 12 18:23:02.173973 kubelet[2083]: E0412 18:23:02.173916 2083 plugins.go:729] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Apr 12 18:23:02.300673 env[1620]: time="2024-04-12T18:23:02.300100211Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:kube-proxy-52bz7,Uid:5b1bc46e-ca85-4f84-a4e3-9659de548acc,Namespace:kube-system,Attempt:0,}" Apr 12 18:23:02.310182 env[1620]: time="2024-04-12T18:23:02.310128798Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-node-bd9q6,Uid:fcf4c03a-b0a0-4aa8-b30e-bc657b2ead59,Namespace:calico-system,Attempt:0,}" Apr 12 18:23:02.907819 env[1620]: time="2024-04-12T18:23:02.907759321Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:02.909564 env[1620]: time="2024-04-12T18:23:02.909519910Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:02.914083 env[1620]: time="2024-04-12T18:23:02.914034852Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:7d46a07936af93fcce097459055f93ab07331509aa55f4a2a90d95a3ace1850e,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:02.916247 env[1620]: time="2024-04-12T18:23:02.916188109Z" level=info msg="ImageUpdate event &ImageUpdate{Name:sha256:7d46a07936af93fcce097459055f93ab07331509aa55f4a2a90d95a3ace1850e,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:02.919381 env[1620]: time="2024-04-12T18:23:02.919335779Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:02.922452 env[1620]: time="2024-04-12T18:23:02.922382416Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/pause@sha256:3d380ca8864549e74af4b29c10f9cb0956236dfb01c40ca076fb6c37253234db,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:02.929811 env[1620]: time="2024-04-12T18:23:02.929757456Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:02.933778 env[1620]: time="2024-04-12T18:23:02.933724218Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause@sha256:3d380ca8864549e74af4b29c10f9cb0956236dfb01c40ca076fb6c37253234db,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:02.957054 env[1620]: time="2024-04-12T18:23:02.955592397Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Apr 12 18:23:02.957054 env[1620]: time="2024-04-12T18:23:02.955669005Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Apr 12 18:23:02.957054 env[1620]: time="2024-04-12T18:23:02.955695943Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Apr 12 18:23:02.957054 env[1620]: time="2024-04-12T18:23:02.955974607Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/b63ba5d3ad7adddec63a75a365442eaadcb04b8f2fd3abba44c5cbf9f61da352 pid=2139 runtime=io.containerd.runc.v2 Apr 12 18:23:02.962877 kubelet[2083]: E0412 18:23:02.962814 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:02.967931 env[1620]: time="2024-04-12T18:23:02.967769205Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Apr 12 18:23:02.967931 env[1620]: time="2024-04-12T18:23:02.967852148Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Apr 12 18:23:02.968213 env[1620]: time="2024-04-12T18:23:02.967881755Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Apr 12 18:23:02.969024 env[1620]: time="2024-04-12T18:23:02.968900666Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/2d3fdcfaf67e120dd982268cec9c832cfa1efedaf92202dfcc09b30b3859f27c pid=2155 runtime=io.containerd.runc.v2 Apr 12 18:23:02.986449 systemd[1]: Started cri-containerd-b63ba5d3ad7adddec63a75a365442eaadcb04b8f2fd3abba44c5cbf9f61da352.scope. Apr 12 18:23:03.012174 systemd[1]: Started cri-containerd-2d3fdcfaf67e120dd982268cec9c832cfa1efedaf92202dfcc09b30b3859f27c.scope. Apr 12 18:23:03.033000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.033000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.050455 kernel: audit: type=1400 audit(1712946183.033:615): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.050578 kernel: audit: type=1400 audit(1712946183.033:616): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.033000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.059477 kernel: audit: type=1400 audit(1712946183.033:617): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.059606 kernel: audit: type=1400 audit(1712946183.033:618): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.033000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.033000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.075546 kernel: audit: type=1400 audit(1712946183.033:619): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.033000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.033000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.033000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.033000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.034000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.034000 audit: BPF prog-id=70 op=LOAD Apr 12 18:23:03.048000 audit[2151]: AVC avc: denied { bpf } for pid=2151 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.048000 audit[2151]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000145b38 a2=10 a3=0 items=0 ppid=2139 pid=2151 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:03.048000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6236336261356433616437616464646563363361373561333635343432 Apr 12 18:23:03.048000 audit[2151]: AVC avc: denied { perfmon } for pid=2151 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.048000 audit[2151]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=2139 pid=2151 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:03.048000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6236336261356433616437616464646563363361373561333635343432 Apr 12 18:23:03.048000 audit[2151]: AVC avc: denied { bpf } for pid=2151 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.048000 audit[2151]: AVC avc: denied { bpf } for pid=2151 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.048000 audit[2151]: AVC avc: denied { bpf } for pid=2151 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.048000 audit[2151]: AVC avc: denied { perfmon } for pid=2151 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.048000 audit[2151]: AVC avc: denied { perfmon } for pid=2151 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.048000 audit[2151]: AVC avc: denied { perfmon } for pid=2151 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.048000 audit[2151]: AVC avc: denied { perfmon } for pid=2151 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.048000 audit[2151]: AVC avc: denied { perfmon } for pid=2151 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.048000 audit[2151]: AVC avc: denied { bpf } for pid=2151 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.048000 audit[2151]: AVC avc: denied { bpf } for pid=2151 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.048000 audit: BPF prog-id=71 op=LOAD Apr 12 18:23:03.048000 audit[2151]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=2139 pid=2151 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:03.048000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6236336261356433616437616464646563363361373561333635343432 Apr 12 18:23:03.049000 audit[2151]: AVC avc: denied { bpf } for pid=2151 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.049000 audit[2151]: AVC avc: denied { bpf } for pid=2151 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.049000 audit[2151]: AVC avc: denied { perfmon } for pid=2151 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.049000 audit[2151]: AVC avc: denied { perfmon } for pid=2151 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.049000 audit[2151]: AVC avc: denied { perfmon } for pid=2151 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.049000 audit[2151]: AVC avc: denied { perfmon } for pid=2151 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.049000 audit[2151]: AVC avc: denied { perfmon } for pid=2151 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.049000 audit[2151]: AVC avc: denied { bpf } for pid=2151 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.049000 audit[2151]: AVC avc: denied { bpf } for pid=2151 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.049000 audit: BPF prog-id=72 op=LOAD Apr 12 18:23:03.049000 audit[2151]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=2139 pid=2151 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:03.049000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6236336261356433616437616464646563363361373561333635343432 Apr 12 18:23:03.050000 audit: BPF prog-id=72 op=UNLOAD Apr 12 18:23:03.050000 audit: BPF prog-id=71 op=UNLOAD Apr 12 18:23:03.050000 audit[2151]: AVC avc: denied { bpf } for pid=2151 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.050000 audit[2151]: AVC avc: denied { bpf } for pid=2151 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.050000 audit[2151]: AVC avc: denied { bpf } for pid=2151 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.050000 audit[2151]: AVC avc: denied { perfmon } for pid=2151 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.050000 audit[2151]: AVC avc: denied { perfmon } for pid=2151 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.050000 audit[2151]: AVC avc: denied { perfmon } for pid=2151 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.050000 audit[2151]: AVC avc: denied { perfmon } for pid=2151 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.050000 audit[2151]: AVC avc: denied { perfmon } for pid=2151 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.050000 audit[2151]: AVC avc: denied { bpf } for pid=2151 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.061000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.061000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.061000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.061000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.061000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.061000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.061000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.061000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.061000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.066000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.066000 audit: BPF prog-id=73 op=LOAD Apr 12 18:23:03.067000 audit[2173]: AVC avc: denied { bpf } for pid=2173 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.067000 audit[2173]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000145b38 a2=10 a3=0 items=0 ppid=2155 pid=2173 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:03.067000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3264336664636661663637653132306464393832323638636563396338 Apr 12 18:23:03.075000 audit[2173]: AVC avc: denied { perfmon } for pid=2173 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.075000 audit[2173]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=2155 pid=2173 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:03.075000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3264336664636661663637653132306464393832323638636563396338 Apr 12 18:23:03.075000 audit[2173]: AVC avc: denied { bpf } for pid=2173 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.075000 audit[2173]: AVC avc: denied { bpf } for pid=2173 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.075000 audit[2173]: AVC avc: denied { bpf } for pid=2173 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.075000 audit[2173]: AVC avc: denied { perfmon } for pid=2173 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.075000 audit[2173]: AVC avc: denied { perfmon } for pid=2173 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.075000 audit[2173]: AVC avc: denied { perfmon } for pid=2173 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.075000 audit[2173]: AVC avc: denied { perfmon } for pid=2173 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.075000 audit[2173]: AVC avc: denied { perfmon } for pid=2173 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.075000 audit[2173]: AVC avc: denied { bpf } for pid=2173 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.075000 audit[2173]: AVC avc: denied { bpf } for pid=2173 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.075000 audit: BPF prog-id=75 op=LOAD Apr 12 18:23:03.075000 audit[2173]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=2155 pid=2173 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:03.075000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3264336664636661663637653132306464393832323638636563396338 Apr 12 18:23:03.075000 audit[2173]: AVC avc: denied { bpf } for pid=2173 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.075000 audit[2173]: AVC avc: denied { bpf } for pid=2173 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.075000 audit[2173]: AVC avc: denied { perfmon } for pid=2173 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.075000 audit[2173]: AVC avc: denied { perfmon } for pid=2173 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.075000 audit[2173]: AVC avc: denied { perfmon } for pid=2173 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.075000 audit[2173]: AVC avc: denied { perfmon } for pid=2173 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.075000 audit[2173]: AVC avc: denied { perfmon } for pid=2173 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.075000 audit[2173]: AVC avc: denied { bpf } for pid=2173 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.075000 audit[2173]: AVC avc: denied { bpf } for pid=2173 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.075000 audit: BPF prog-id=76 op=LOAD Apr 12 18:23:03.075000 audit[2173]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=2155 pid=2173 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:03.075000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3264336664636661663637653132306464393832323638636563396338 Apr 12 18:23:03.075000 audit: BPF prog-id=76 op=UNLOAD Apr 12 18:23:03.075000 audit: BPF prog-id=75 op=UNLOAD Apr 12 18:23:03.075000 audit[2173]: AVC avc: denied { bpf } for pid=2173 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.075000 audit[2173]: AVC avc: denied { bpf } for pid=2173 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.075000 audit[2173]: AVC avc: denied { bpf } for pid=2173 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.075000 audit[2173]: AVC avc: denied { perfmon } for pid=2173 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.075000 audit[2173]: AVC avc: denied { perfmon } for pid=2173 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.075000 audit[2173]: AVC avc: denied { perfmon } for pid=2173 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.075000 audit[2173]: AVC avc: denied { perfmon } for pid=2173 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.075000 audit[2173]: AVC avc: denied { perfmon } for pid=2173 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.075000 audit[2173]: AVC avc: denied { bpf } for pid=2173 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.075000 audit[2173]: AVC avc: denied { bpf } for pid=2173 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:03.075000 audit: BPF prog-id=77 op=LOAD Apr 12 18:23:03.075000 audit[2173]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=2155 pid=2173 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:03.075000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3264336664636661663637653132306464393832323638636563396338 Apr 12 18:23:03.050000 audit[2151]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=2139 pid=2151 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:03.050000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6236336261356433616437616464646563363361373561333635343432 Apr 12 18:23:03.110596 env[1620]: time="2024-04-12T18:23:03.110538757Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-node-bd9q6,Uid:fcf4c03a-b0a0-4aa8-b30e-bc657b2ead59,Namespace:calico-system,Attempt:0,} returns sandbox id \"2d3fdcfaf67e120dd982268cec9c832cfa1efedaf92202dfcc09b30b3859f27c\"" Apr 12 18:23:03.115129 env[1620]: time="2024-04-12T18:23:03.114834537Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.3\"" Apr 12 18:23:03.129903 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2324397034.mount: Deactivated successfully. Apr 12 18:23:03.139028 env[1620]: time="2024-04-12T18:23:03.138917874Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:kube-proxy-52bz7,Uid:5b1bc46e-ca85-4f84-a4e3-9659de548acc,Namespace:kube-system,Attempt:0,} returns sandbox id \"b63ba5d3ad7adddec63a75a365442eaadcb04b8f2fd3abba44c5cbf9f61da352\"" Apr 12 18:23:03.963426 kubelet[2083]: E0412 18:23:03.963327 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:04.181272 kubelet[2083]: E0412 18:23:04.181111 2083 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-zxgs6" podUID=d252c216-222e-4462-b095-d9412d3071cf Apr 12 18:23:04.603479 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1724022498.mount: Deactivated successfully. Apr 12 18:23:04.757026 env[1620]: time="2024-04-12T18:23:04.756928265Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.3,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:04.760383 env[1620]: time="2024-04-12T18:23:04.760310668Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:66b34d81f14321f94491856962a59366e9d87f710670399b48c106cb0970c607,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:04.764085 env[1620]: time="2024-04-12T18:23:04.764024396Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.3,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:04.771911 env[1620]: time="2024-04-12T18:23:04.771834088Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol@sha256:256c6fee1c0cd345ce1c83a28132e3134a9f271704d41d214436bf7ec48ba4b8,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:04.772433 env[1620]: time="2024-04-12T18:23:04.772377253Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.27.3\" returns image reference \"sha256:66b34d81f14321f94491856962a59366e9d87f710670399b48c106cb0970c607\"" Apr 12 18:23:04.774523 env[1620]: time="2024-04-12T18:23:04.774447224Z" level=info msg="PullImage \"registry.k8s.io/kube-proxy:v1.27.12\"" Apr 12 18:23:04.776589 env[1620]: time="2024-04-12T18:23:04.776514672Z" level=info msg="CreateContainer within sandbox \"2d3fdcfaf67e120dd982268cec9c832cfa1efedaf92202dfcc09b30b3859f27c\" for container &ContainerMetadata{Name:flexvol-driver,Attempt:0,}" Apr 12 18:23:04.800619 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3094893222.mount: Deactivated successfully. Apr 12 18:23:04.811282 env[1620]: time="2024-04-12T18:23:04.811194362Z" level=info msg="CreateContainer within sandbox \"2d3fdcfaf67e120dd982268cec9c832cfa1efedaf92202dfcc09b30b3859f27c\" for &ContainerMetadata{Name:flexvol-driver,Attempt:0,} returns container id \"50c420025f698767c2ed2dd7467c3ab7d33aa6b301c92a42780dcae668a41914\"" Apr 12 18:23:04.813001 env[1620]: time="2024-04-12T18:23:04.812933861Z" level=info msg="StartContainer for \"50c420025f698767c2ed2dd7467c3ab7d33aa6b301c92a42780dcae668a41914\"" Apr 12 18:23:04.851596 systemd[1]: Started cri-containerd-50c420025f698767c2ed2dd7467c3ab7d33aa6b301c92a42780dcae668a41914.scope. Apr 12 18:23:04.888000 audit[2220]: AVC avc: denied { perfmon } for pid=2220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.891992 kernel: kauditd_printk_skb: 113 callbacks suppressed Apr 12 18:23:04.892080 kernel: audit: type=1400 audit(1712946184.888:651): avc: denied { perfmon } for pid=2220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.888000 audit[2220]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=2155 pid=2220 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:04.911694 kernel: audit: type=1300 audit(1712946184.888:651): arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=2155 pid=2220 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:04.888000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3530633432303032356636393837363763326564326464373436376333 Apr 12 18:23:04.922459 kernel: audit: type=1327 audit(1712946184.888:651): proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3530633432303032356636393837363763326564326464373436376333 Apr 12 18:23:04.923025 kernel: audit: type=1400 audit(1712946184.888:652): avc: denied { bpf } for pid=2220 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.888000 audit[2220]: AVC avc: denied { bpf } for pid=2220 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.888000 audit[2220]: AVC avc: denied { bpf } for pid=2220 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.938685 kernel: audit: type=1400 audit(1712946184.888:652): avc: denied { bpf } for pid=2220 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.888000 audit[2220]: AVC avc: denied { bpf } for pid=2220 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.947206 kernel: audit: type=1400 audit(1712946184.888:652): avc: denied { bpf } for pid=2220 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.888000 audit[2220]: AVC avc: denied { perfmon } for pid=2220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.955122 kernel: audit: type=1400 audit(1712946184.888:652): avc: denied { perfmon } for pid=2220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.888000 audit[2220]: AVC avc: denied { perfmon } for pid=2220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.963262 kernel: audit: type=1400 audit(1712946184.888:652): avc: denied { perfmon } for pid=2220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.888000 audit[2220]: AVC avc: denied { perfmon } for pid=2220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.964437 kubelet[2083]: E0412 18:23:04.964369 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:04.971306 kernel: audit: type=1400 audit(1712946184.888:652): avc: denied { perfmon } for pid=2220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.888000 audit[2220]: AVC avc: denied { perfmon } for pid=2220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.972116 kernel: audit: type=1400 audit(1712946184.888:652): avc: denied { perfmon } for pid=2220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.888000 audit[2220]: AVC avc: denied { perfmon } for pid=2220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.888000 audit[2220]: AVC avc: denied { bpf } for pid=2220 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.888000 audit[2220]: AVC avc: denied { bpf } for pid=2220 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.888000 audit: BPF prog-id=78 op=LOAD Apr 12 18:23:04.888000 audit[2220]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=2155 pid=2220 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:04.888000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3530633432303032356636393837363763326564326464373436376333 Apr 12 18:23:04.891000 audit[2220]: AVC avc: denied { bpf } for pid=2220 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.891000 audit[2220]: AVC avc: denied { bpf } for pid=2220 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.891000 audit[2220]: AVC avc: denied { perfmon } for pid=2220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.891000 audit[2220]: AVC avc: denied { perfmon } for pid=2220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.891000 audit[2220]: AVC avc: denied { perfmon } for pid=2220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.891000 audit[2220]: AVC avc: denied { perfmon } for pid=2220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.891000 audit[2220]: AVC avc: denied { perfmon } for pid=2220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.891000 audit[2220]: AVC avc: denied { bpf } for pid=2220 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.891000 audit[2220]: AVC avc: denied { bpf } for pid=2220 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.891000 audit: BPF prog-id=79 op=LOAD Apr 12 18:23:04.891000 audit[2220]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=2155 pid=2220 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:04.891000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3530633432303032356636393837363763326564326464373436376333 Apr 12 18:23:04.899000 audit: BPF prog-id=79 op=UNLOAD Apr 12 18:23:04.899000 audit: BPF prog-id=78 op=UNLOAD Apr 12 18:23:04.899000 audit[2220]: AVC avc: denied { bpf } for pid=2220 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.899000 audit[2220]: AVC avc: denied { bpf } for pid=2220 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.899000 audit[2220]: AVC avc: denied { bpf } for pid=2220 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.899000 audit[2220]: AVC avc: denied { perfmon } for pid=2220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.899000 audit[2220]: AVC avc: denied { perfmon } for pid=2220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.899000 audit[2220]: AVC avc: denied { perfmon } for pid=2220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.899000 audit[2220]: AVC avc: denied { perfmon } for pid=2220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.899000 audit[2220]: AVC avc: denied { perfmon } for pid=2220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.899000 audit[2220]: AVC avc: denied { bpf } for pid=2220 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.899000 audit[2220]: AVC avc: denied { bpf } for pid=2220 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:04.899000 audit: BPF prog-id=80 op=LOAD Apr 12 18:23:04.899000 audit[2220]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=2155 pid=2220 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:04.899000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3530633432303032356636393837363763326564326464373436376333 Apr 12 18:23:04.993800 env[1620]: time="2024-04-12T18:23:04.993740817Z" level=info msg="StartContainer for \"50c420025f698767c2ed2dd7467c3ab7d33aa6b301c92a42780dcae668a41914\" returns successfully" Apr 12 18:23:05.002153 systemd[1]: cri-containerd-50c420025f698767c2ed2dd7467c3ab7d33aa6b301c92a42780dcae668a41914.scope: Deactivated successfully. Apr 12 18:23:05.005000 audit: BPF prog-id=80 op=UNLOAD Apr 12 18:23:05.154439 env[1620]: time="2024-04-12T18:23:05.154286002Z" level=info msg="shim disconnected" id=50c420025f698767c2ed2dd7467c3ab7d33aa6b301c92a42780dcae668a41914 Apr 12 18:23:05.154439 env[1620]: time="2024-04-12T18:23:05.154351946Z" level=warning msg="cleaning up after shim disconnected" id=50c420025f698767c2ed2dd7467c3ab7d33aa6b301c92a42780dcae668a41914 namespace=k8s.io Apr 12 18:23:05.154439 env[1620]: time="2024-04-12T18:23:05.154374833Z" level=info msg="cleaning up dead shim" Apr 12 18:23:05.169449 env[1620]: time="2024-04-12T18:23:05.169382094Z" level=warning msg="cleanup warnings time=\"2024-04-12T18:23:05Z\" level=info msg=\"starting signal loop\" namespace=k8s.io pid=2260 runtime=io.containerd.runc.v2\n" Apr 12 18:23:05.423923 systemd[1]: run-containerd-io.containerd.runtime.v2.task-k8s.io-50c420025f698767c2ed2dd7467c3ab7d33aa6b301c92a42780dcae668a41914-rootfs.mount: Deactivated successfully. Apr 12 18:23:05.965107 kubelet[2083]: E0412 18:23:05.965007 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:06.183626 kubelet[2083]: E0412 18:23:06.183570 2083 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-zxgs6" podUID=d252c216-222e-4462-b095-d9412d3071cf Apr 12 18:23:06.327826 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2535579940.mount: Deactivated successfully. Apr 12 18:23:06.966012 kubelet[2083]: E0412 18:23:06.965916 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:07.090225 env[1620]: time="2024-04-12T18:23:07.090147106Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/kube-proxy:v1.27.12,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:07.093331 env[1620]: time="2024-04-12T18:23:07.093271440Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:7daec180765068529c26cc4c7c989513bebbe614cbbc58beebe1db17ae177e06,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:07.096068 env[1620]: time="2024-04-12T18:23:07.096010787Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/kube-proxy:v1.27.12,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:07.098630 env[1620]: time="2024-04-12T18:23:07.098570707Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/kube-proxy@sha256:b0539f35b586abc54ca7660f9bb8a539d010b9e07d20e9e3d529cf0ca35d4ddf,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:07.099658 env[1620]: time="2024-04-12T18:23:07.099611439Z" level=info msg="PullImage \"registry.k8s.io/kube-proxy:v1.27.12\" returns image reference \"sha256:7daec180765068529c26cc4c7c989513bebbe614cbbc58beebe1db17ae177e06\"" Apr 12 18:23:07.102202 env[1620]: time="2024-04-12T18:23:07.102137489Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/cni:v3.27.3\"" Apr 12 18:23:07.103737 env[1620]: time="2024-04-12T18:23:07.103685358Z" level=info msg="CreateContainer within sandbox \"b63ba5d3ad7adddec63a75a365442eaadcb04b8f2fd3abba44c5cbf9f61da352\" for container &ContainerMetadata{Name:kube-proxy,Attempt:0,}" Apr 12 18:23:07.124587 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3300462526.mount: Deactivated successfully. Apr 12 18:23:07.136594 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2673746006.mount: Deactivated successfully. Apr 12 18:23:07.142266 env[1620]: time="2024-04-12T18:23:07.142186797Z" level=info msg="CreateContainer within sandbox \"b63ba5d3ad7adddec63a75a365442eaadcb04b8f2fd3abba44c5cbf9f61da352\" for &ContainerMetadata{Name:kube-proxy,Attempt:0,} returns container id \"7917d18df8ef1c4a29be71d8a7c90204e3db08a05e6a235f012a07ec699cd70c\"" Apr 12 18:23:07.143497 env[1620]: time="2024-04-12T18:23:07.143438267Z" level=info msg="StartContainer for \"7917d18df8ef1c4a29be71d8a7c90204e3db08a05e6a235f012a07ec699cd70c\"" Apr 12 18:23:07.189202 systemd[1]: Started cri-containerd-7917d18df8ef1c4a29be71d8a7c90204e3db08a05e6a235f012a07ec699cd70c.scope. Apr 12 18:23:07.228000 audit[2285]: AVC avc: denied { perfmon } for pid=2285 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:07.228000 audit[2285]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=2139 pid=2285 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.228000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3739313764313864663865663163346132396265373164386137633930 Apr 12 18:23:07.229000 audit[2285]: AVC avc: denied { bpf } for pid=2285 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:07.229000 audit[2285]: AVC avc: denied { bpf } for pid=2285 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:07.229000 audit[2285]: AVC avc: denied { bpf } for pid=2285 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:07.229000 audit[2285]: AVC avc: denied { perfmon } for pid=2285 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:07.229000 audit[2285]: AVC avc: denied { perfmon } for pid=2285 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:07.229000 audit[2285]: AVC avc: denied { perfmon } for pid=2285 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:07.229000 audit[2285]: AVC avc: denied { perfmon } for pid=2285 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:07.229000 audit[2285]: AVC avc: denied { perfmon } for pid=2285 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:07.229000 audit[2285]: AVC avc: denied { bpf } for pid=2285 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:07.229000 audit[2285]: AVC avc: denied { bpf } for pid=2285 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:07.229000 audit: BPF prog-id=81 op=LOAD Apr 12 18:23:07.229000 audit[2285]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=2139 pid=2285 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.229000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3739313764313864663865663163346132396265373164386137633930 Apr 12 18:23:07.231000 audit[2285]: AVC avc: denied { bpf } for pid=2285 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:07.231000 audit[2285]: AVC avc: denied { bpf } for pid=2285 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:07.231000 audit[2285]: AVC avc: denied { perfmon } for pid=2285 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:07.231000 audit[2285]: AVC avc: denied { perfmon } for pid=2285 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:07.231000 audit[2285]: AVC avc: denied { perfmon } for pid=2285 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:07.231000 audit[2285]: AVC avc: denied { perfmon } for pid=2285 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:07.231000 audit[2285]: AVC avc: denied { perfmon } for pid=2285 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:07.231000 audit[2285]: AVC avc: denied { bpf } for pid=2285 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:07.231000 audit[2285]: AVC avc: denied { bpf } for pid=2285 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:07.231000 audit: BPF prog-id=82 op=LOAD Apr 12 18:23:07.231000 audit[2285]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=2139 pid=2285 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.231000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3739313764313864663865663163346132396265373164386137633930 Apr 12 18:23:07.232000 audit: BPF prog-id=82 op=UNLOAD Apr 12 18:23:07.232000 audit: BPF prog-id=81 op=UNLOAD Apr 12 18:23:07.232000 audit[2285]: AVC avc: denied { bpf } for pid=2285 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:07.232000 audit[2285]: AVC avc: denied { bpf } for pid=2285 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:07.232000 audit[2285]: AVC avc: denied { bpf } for pid=2285 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:07.232000 audit[2285]: AVC avc: denied { perfmon } for pid=2285 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:07.232000 audit[2285]: AVC avc: denied { perfmon } for pid=2285 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:07.232000 audit[2285]: AVC avc: denied { perfmon } for pid=2285 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:07.232000 audit[2285]: AVC avc: denied { perfmon } for pid=2285 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:07.232000 audit[2285]: AVC avc: denied { perfmon } for pid=2285 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:07.232000 audit[2285]: AVC avc: denied { bpf } for pid=2285 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:07.232000 audit[2285]: AVC avc: denied { bpf } for pid=2285 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:07.232000 audit: BPF prog-id=83 op=LOAD Apr 12 18:23:07.232000 audit[2285]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=2139 pid=2285 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.232000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3739313764313864663865663163346132396265373164386137633930 Apr 12 18:23:07.262521 env[1620]: time="2024-04-12T18:23:07.262442936Z" level=info msg="StartContainer for \"7917d18df8ef1c4a29be71d8a7c90204e3db08a05e6a235f012a07ec699cd70c\" returns successfully" Apr 12 18:23:07.369000 audit[2333]: NETFILTER_CFG table=mangle:14 family=2 entries=1 op=nft_register_chain pid=2333 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:23:07.369000 audit[2333]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=fffff49b75f0 a2=0 a3=1 items=0 ppid=2296 pid=2333 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.369000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006D616E676C65 Apr 12 18:23:07.372000 audit[2334]: NETFILTER_CFG table=nat:15 family=2 entries=1 op=nft_register_chain pid=2334 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:23:07.372000 audit[2334]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=fffffc219020 a2=0 a3=1 items=0 ppid=2296 pid=2334 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.372000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006E6174 Apr 12 18:23:07.375000 audit[2335]: NETFILTER_CFG table=mangle:16 family=10 entries=1 op=nft_register_chain pid=2335 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:23:07.375000 audit[2335]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffc2cb4900 a2=0 a3=1 items=0 ppid=2296 pid=2335 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.375000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006D616E676C65 Apr 12 18:23:07.376000 audit[2336]: NETFILTER_CFG table=filter:17 family=2 entries=1 op=nft_register_chain pid=2336 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:23:07.376000 audit[2336]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=fffffa86a6c0 a2=0 a3=1 items=0 ppid=2296 pid=2336 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.376000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D740066696C746572 Apr 12 18:23:07.377000 audit[2337]: NETFILTER_CFG table=nat:18 family=10 entries=1 op=nft_register_chain pid=2337 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:23:07.377000 audit[2337]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffec4a68e0 a2=0 a3=1 items=0 ppid=2296 pid=2337 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.377000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006E6174 Apr 12 18:23:07.383000 audit[2338]: NETFILTER_CFG table=filter:19 family=10 entries=1 op=nft_register_chain pid=2338 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:23:07.383000 audit[2338]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffd5d0be20 a2=0 a3=1 items=0 ppid=2296 pid=2338 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.383000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D740066696C746572 Apr 12 18:23:07.484000 audit[2339]: NETFILTER_CFG table=filter:20 family=2 entries=1 op=nft_register_chain pid=2339 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:23:07.484000 audit[2339]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=108 a0=3 a1=ffffcc450c50 a2=0 a3=1 items=0 ppid=2296 pid=2339 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.484000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D45585445524E414C2D5345525649434553002D740066696C746572 Apr 12 18:23:07.490000 audit[2341]: NETFILTER_CFG table=filter:21 family=2 entries=1 op=nft_register_rule pid=2341 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:23:07.490000 audit[2341]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=752 a0=3 a1=ffffc2b689c0 a2=0 a3=1 items=0 ppid=2296 pid=2341 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.490000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C652073657276696365 Apr 12 18:23:07.498000 audit[2344]: NETFILTER_CFG table=filter:22 family=2 entries=2 op=nft_register_chain pid=2344 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:23:07.498000 audit[2344]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=836 a0=3 a1=ffffe2682c30 a2=0 a3=1 items=0 ppid=2296 pid=2344 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.498000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C65207365727669 Apr 12 18:23:07.501000 audit[2345]: NETFILTER_CFG table=filter:23 family=2 entries=1 op=nft_register_chain pid=2345 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:23:07.501000 audit[2345]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffc3ab2ea0 a2=0 a3=1 items=0 ppid=2296 pid=2345 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.501000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4E4F4445504F525453002D740066696C746572 Apr 12 18:23:07.506000 audit[2347]: NETFILTER_CFG table=filter:24 family=2 entries=1 op=nft_register_rule pid=2347 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:23:07.506000 audit[2347]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=528 a0=3 a1=ffffca1a2f10 a2=0 a3=1 items=0 ppid=2296 pid=2347 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.506000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206865616C746820636865636B207365727669636520706F727473002D6A004B5542452D4E4F4445504F525453 Apr 12 18:23:07.508000 audit[2348]: NETFILTER_CFG table=filter:25 family=2 entries=1 op=nft_register_chain pid=2348 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:23:07.508000 audit[2348]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffea49b080 a2=0 a3=1 items=0 ppid=2296 pid=2348 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.508000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D740066696C746572 Apr 12 18:23:07.513000 audit[2350]: NETFILTER_CFG table=filter:26 family=2 entries=1 op=nft_register_rule pid=2350 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:23:07.513000 audit[2350]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=744 a0=3 a1=ffffc0abe9a0 a2=0 a3=1 items=0 ppid=2296 pid=2350 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.513000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D Apr 12 18:23:07.520000 audit[2353]: NETFILTER_CFG table=filter:27 family=2 entries=1 op=nft_register_rule pid=2353 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:23:07.520000 audit[2353]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=744 a0=3 a1=ffffd0d107f0 a2=0 a3=1 items=0 ppid=2296 pid=2353 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.520000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D53 Apr 12 18:23:07.522000 audit[2354]: NETFILTER_CFG table=filter:28 family=2 entries=1 op=nft_register_chain pid=2354 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:23:07.522000 audit[2354]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=fffff1c24930 a2=0 a3=1 items=0 ppid=2296 pid=2354 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.522000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D464F5257415244002D740066696C746572 Apr 12 18:23:07.527000 audit[2356]: NETFILTER_CFG table=filter:29 family=2 entries=1 op=nft_register_rule pid=2356 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:23:07.527000 audit[2356]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=528 a0=3 a1=ffffcdfb6b20 a2=0 a3=1 items=0 ppid=2296 pid=2356 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.527000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320666F7277617264696E672072756C6573002D6A004B5542452D464F5257415244 Apr 12 18:23:07.530000 audit[2357]: NETFILTER_CFG table=filter:30 family=2 entries=1 op=nft_register_chain pid=2357 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:23:07.530000 audit[2357]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=fffffcf62450 a2=0 a3=1 items=0 ppid=2296 pid=2357 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.530000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D4649524557414C4C002D740066696C746572 Apr 12 18:23:07.535000 audit[2359]: NETFILTER_CFG table=filter:31 family=2 entries=1 op=nft_register_rule pid=2359 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:23:07.535000 audit[2359]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffe4f3f0a0 a2=0 a3=1 items=0 ppid=2296 pid=2359 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.535000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Apr 12 18:23:07.543000 audit[2362]: NETFILTER_CFG table=filter:32 family=2 entries=1 op=nft_register_rule pid=2362 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:23:07.543000 audit[2362]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffe88ee3c0 a2=0 a3=1 items=0 ppid=2296 pid=2362 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.543000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Apr 12 18:23:07.550000 audit[2365]: NETFILTER_CFG table=filter:33 family=2 entries=1 op=nft_register_rule pid=2365 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:23:07.550000 audit[2365]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffda0a6130 a2=0 a3=1 items=0 ppid=2296 pid=2365 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.550000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D Apr 12 18:23:07.552000 audit[2366]: NETFILTER_CFG table=nat:34 family=2 entries=1 op=nft_register_chain pid=2366 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:23:07.552000 audit[2366]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=96 a0=3 a1=fffffff5f310 a2=0 a3=1 items=0 ppid=2296 pid=2366 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.552000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D74006E6174 Apr 12 18:23:07.558000 audit[2368]: NETFILTER_CFG table=nat:35 family=2 entries=2 op=nft_register_chain pid=2368 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:23:07.558000 audit[2368]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=600 a0=3 a1=ffffe692bcb0 a2=0 a3=1 items=0 ppid=2296 pid=2368 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.558000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Apr 12 18:23:07.591000 audit[2374]: NETFILTER_CFG table=nat:36 family=2 entries=2 op=nft_register_chain pid=2374 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:23:07.591000 audit[2374]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=608 a0=3 a1=ffffe723a8f0 a2=0 a3=1 items=0 ppid=2296 pid=2374 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.591000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900505245524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Apr 12 18:23:07.606000 audit[2379]: NETFILTER_CFG table=nat:37 family=2 entries=1 op=nft_register_chain pid=2379 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:23:07.606000 audit[2379]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffd7c93080 a2=0 a3=1 items=0 ppid=2296 pid=2379 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.606000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D504F5354524F5554494E47002D74006E6174 Apr 12 18:23:07.611000 audit[2381]: NETFILTER_CFG table=nat:38 family=2 entries=2 op=nft_register_chain pid=2381 subj=system_u:system_r:kernel_t:s0 comm="iptables" Apr 12 18:23:07.611000 audit[2381]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=612 a0=3 a1=ffffd96839c0 a2=0 a3=1 items=0 ppid=2296 pid=2381 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.611000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900504F5354524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320706F7374726F7574696E672072756C6573002D6A004B5542452D504F5354524F5554494E47 Apr 12 18:23:07.623000 audit[2383]: NETFILTER_CFG table=filter:39 family=2 entries=5 op=nft_register_rule pid=2383 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:23:07.623000 audit[2383]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=2932 a0=3 a1=fffffb189f80 a2=0 a3=1 items=0 ppid=2296 pid=2383 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.623000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:23:07.661000 audit[2383]: NETFILTER_CFG table=nat:40 family=2 entries=54 op=nft_register_chain pid=2383 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:23:07.661000 audit[2383]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=25476 a0=3 a1=fffffb189f80 a2=0 a3=1 items=0 ppid=2296 pid=2383 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.661000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:23:07.682000 audit[2391]: NETFILTER_CFG table=filter:41 family=10 entries=1 op=nft_register_chain pid=2391 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:23:07.682000 audit[2391]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=108 a0=3 a1=ffffdf93a6a0 a2=0 a3=1 items=0 ppid=2296 pid=2391 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.682000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D45585445524E414C2D5345525649434553002D740066696C746572 Apr 12 18:23:07.687000 audit[2393]: NETFILTER_CFG table=filter:42 family=10 entries=2 op=nft_register_chain pid=2393 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:23:07.687000 audit[2393]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=836 a0=3 a1=ffffc5e124a0 a2=0 a3=1 items=0 ppid=2296 pid=2393 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.687000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C6520736572766963 Apr 12 18:23:07.696000 audit[2396]: NETFILTER_CFG table=filter:43 family=10 entries=2 op=nft_register_chain pid=2396 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:23:07.696000 audit[2396]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=836 a0=3 a1=ffffe97b6820 a2=0 a3=1 items=0 ppid=2296 pid=2396 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.696000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C652073657276 Apr 12 18:23:07.698000 audit[2397]: NETFILTER_CFG table=filter:44 family=10 entries=1 op=nft_register_chain pid=2397 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:23:07.698000 audit[2397]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffebc96590 a2=0 a3=1 items=0 ppid=2296 pid=2397 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.698000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4E4F4445504F525453002D740066696C746572 Apr 12 18:23:07.703000 audit[2399]: NETFILTER_CFG table=filter:45 family=10 entries=1 op=nft_register_rule pid=2399 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:23:07.703000 audit[2399]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=528 a0=3 a1=fffffd502e20 a2=0 a3=1 items=0 ppid=2296 pid=2399 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.703000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206865616C746820636865636B207365727669636520706F727473002D6A004B5542452D4E4F4445504F525453 Apr 12 18:23:07.705000 audit[2400]: NETFILTER_CFG table=filter:46 family=10 entries=1 op=nft_register_chain pid=2400 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:23:07.705000 audit[2400]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffc6950e00 a2=0 a3=1 items=0 ppid=2296 pid=2400 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.705000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D740066696C746572 Apr 12 18:23:07.710000 audit[2402]: NETFILTER_CFG table=filter:47 family=10 entries=1 op=nft_register_rule pid=2402 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:23:07.710000 audit[2402]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=744 a0=3 a1=ffffdbe96a30 a2=0 a3=1 items=0 ppid=2296 pid=2402 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.710000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B554245 Apr 12 18:23:07.717000 audit[2405]: NETFILTER_CFG table=filter:48 family=10 entries=2 op=nft_register_chain pid=2405 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:23:07.717000 audit[2405]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=828 a0=3 a1=ffffc6d082a0 a2=0 a3=1 items=0 ppid=2296 pid=2405 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.717000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D Apr 12 18:23:07.719000 audit[2406]: NETFILTER_CFG table=filter:49 family=10 entries=1 op=nft_register_chain pid=2406 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:23:07.719000 audit[2406]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffe35f77d0 a2=0 a3=1 items=0 ppid=2296 pid=2406 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.719000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D464F5257415244002D740066696C746572 Apr 12 18:23:07.724000 audit[2408]: NETFILTER_CFG table=filter:50 family=10 entries=1 op=nft_register_rule pid=2408 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:23:07.724000 audit[2408]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=528 a0=3 a1=ffffeb6a4850 a2=0 a3=1 items=0 ppid=2296 pid=2408 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.724000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320666F7277617264696E672072756C6573002D6A004B5542452D464F5257415244 Apr 12 18:23:07.726000 audit[2409]: NETFILTER_CFG table=filter:51 family=10 entries=1 op=nft_register_chain pid=2409 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:23:07.726000 audit[2409]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffff78f160 a2=0 a3=1 items=0 ppid=2296 pid=2409 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.726000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D4649524557414C4C002D740066696C746572 Apr 12 18:23:07.731000 audit[2411]: NETFILTER_CFG table=filter:52 family=10 entries=1 op=nft_register_rule pid=2411 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:23:07.731000 audit[2411]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffcb2edec0 a2=0 a3=1 items=0 ppid=2296 pid=2411 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.731000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Apr 12 18:23:07.739000 audit[2414]: NETFILTER_CFG table=filter:53 family=10 entries=1 op=nft_register_rule pid=2414 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:23:07.739000 audit[2414]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffce80a640 a2=0 a3=1 items=0 ppid=2296 pid=2414 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.739000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D Apr 12 18:23:07.749000 audit[2417]: NETFILTER_CFG table=filter:54 family=10 entries=1 op=nft_register_rule pid=2417 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:23:07.749000 audit[2417]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffdb87abd0 a2=0 a3=1 items=0 ppid=2296 pid=2417 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.749000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C Apr 12 18:23:07.751000 audit[2418]: NETFILTER_CFG table=nat:55 family=10 entries=1 op=nft_register_chain pid=2418 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:23:07.751000 audit[2418]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=96 a0=3 a1=ffffca525270 a2=0 a3=1 items=0 ppid=2296 pid=2418 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.751000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D74006E6174 Apr 12 18:23:07.756000 audit[2420]: NETFILTER_CFG table=nat:56 family=10 entries=2 op=nft_register_chain pid=2420 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:23:07.756000 audit[2420]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=600 a0=3 a1=ffffd16d4980 a2=0 a3=1 items=0 ppid=2296 pid=2420 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.756000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Apr 12 18:23:07.767000 audit[2423]: NETFILTER_CFG table=nat:57 family=10 entries=2 op=nft_register_chain pid=2423 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:23:07.767000 audit[2423]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=608 a0=3 a1=ffffd14d3160 a2=0 a3=1 items=0 ppid=2296 pid=2423 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.767000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900505245524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Apr 12 18:23:07.770000 audit[2424]: NETFILTER_CFG table=filter:58 family=10 entries=1 op=nft_register_chain pid=2424 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:23:07.770000 audit[2424]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffe41f0310 a2=0 a3=1 items=0 ppid=2296 pid=2424 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.770000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4649524557414C4C002D740066696C746572 Apr 12 18:23:07.775000 audit[2426]: NETFILTER_CFG table=filter:59 family=10 entries=1 op=nft_register_rule pid=2426 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:23:07.775000 audit[2426]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=228 a0=3 a1=fffff12ac660 a2=0 a3=1 items=0 ppid=2296 pid=2426 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.775000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6A004B5542452D4649524557414C4C Apr 12 18:23:07.782000 audit[2429]: NETFILTER_CFG table=filter:60 family=10 entries=1 op=nft_register_rule pid=2429 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:23:07.782000 audit[2429]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=228 a0=3 a1=ffffdf89ade0 a2=0 a3=1 items=0 ppid=2296 pid=2429 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.782000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6A004B5542452D4649524557414C4C Apr 12 18:23:07.784000 audit[2430]: NETFILTER_CFG table=nat:61 family=10 entries=1 op=nft_register_chain pid=2430 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:23:07.784000 audit[2430]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffe7670c40 a2=0 a3=1 items=0 ppid=2296 pid=2430 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.784000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D504F5354524F5554494E47002D74006E6174 Apr 12 18:23:07.788000 audit[2432]: NETFILTER_CFG table=nat:62 family=10 entries=2 op=nft_register_chain pid=2432 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Apr 12 18:23:07.788000 audit[2432]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=612 a0=3 a1=ffffde532b60 a2=0 a3=1 items=0 ppid=2296 pid=2432 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.788000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900504F5354524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320706F7374726F7574696E672072756C6573002D6A004B5542452D504F5354524F5554494E47 Apr 12 18:23:07.796000 audit[2434]: NETFILTER_CFG table=filter:63 family=10 entries=3 op=nft_register_rule pid=2434 subj=system_u:system_r:kernel_t:s0 comm="ip6tables-resto" Apr 12 18:23:07.796000 audit[2434]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=2004 a0=3 a1=ffffdf028730 a2=0 a3=1 items=0 ppid=2296 pid=2434 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables-resto" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.796000 audit: PROCTITLE proctitle=6970367461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:23:07.798000 audit[2434]: NETFILTER_CFG table=nat:64 family=10 entries=7 op=nft_register_chain pid=2434 subj=system_u:system_r:kernel_t:s0 comm="ip6tables-resto" Apr 12 18:23:07.798000 audit[2434]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=2056 a0=3 a1=ffffdf028730 a2=0 a3=1 items=0 ppid=2296 pid=2434 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables-resto" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:07.798000 audit: PROCTITLE proctitle=6970367461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:23:07.966306 kubelet[2083]: E0412 18:23:07.966228 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:08.180196 kubelet[2083]: E0412 18:23:08.180156 2083 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-zxgs6" podUID=d252c216-222e-4462-b095-d9412d3071cf Apr 12 18:23:08.253395 kubelet[2083]: I0412 18:23:08.253161 2083 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="kube-system/kube-proxy-52bz7" podStartSLOduration=5.29383973 podCreationTimestamp="2024-04-12 18:22:59 +0000 UTC" firstStartedPulling="2024-04-12 18:23:03.141053578 +0000 UTC m=+6.017752216" lastFinishedPulling="2024-04-12 18:23:07.10030426 +0000 UTC m=+9.977002910" observedRunningTime="2024-04-12 18:23:08.248511977 +0000 UTC m=+11.125210615" watchObservedRunningTime="2024-04-12 18:23:08.253090424 +0000 UTC m=+11.129789135" Apr 12 18:23:08.261079 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3987324065.mount: Deactivated successfully. Apr 12 18:23:08.966616 kubelet[2083]: E0412 18:23:08.966577 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:09.967519 kubelet[2083]: E0412 18:23:09.967446 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:10.183208 kubelet[2083]: E0412 18:23:10.183148 2083 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-zxgs6" podUID=d252c216-222e-4462-b095-d9412d3071cf Apr 12 18:23:10.967677 kubelet[2083]: E0412 18:23:10.967625 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:11.688112 env[1620]: time="2024-04-12T18:23:11.688030851Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/cni:v3.27.3,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:11.691047 env[1620]: time="2024-04-12T18:23:11.690989053Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:2e7a18c897a455a364faa2c5ad2d2539f25e81e451e894d58c0107c58979291a,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:11.694070 env[1620]: time="2024-04-12T18:23:11.694010180Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/cni:v3.27.3,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:11.696717 env[1620]: time="2024-04-12T18:23:11.696658117Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/cni@sha256:21ccc42ae417f1082c03737e9da5fbfbd4a21732babfcef4cd34240eacf26b41,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:11.697875 env[1620]: time="2024-04-12T18:23:11.697827799Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/cni:v3.27.3\" returns image reference \"sha256:2e7a18c897a455a364faa2c5ad2d2539f25e81e451e894d58c0107c58979291a\"" Apr 12 18:23:11.702333 env[1620]: time="2024-04-12T18:23:11.702256152Z" level=info msg="CreateContainer within sandbox \"2d3fdcfaf67e120dd982268cec9c832cfa1efedaf92202dfcc09b30b3859f27c\" for container &ContainerMetadata{Name:install-cni,Attempt:0,}" Apr 12 18:23:11.721161 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1882758422.mount: Deactivated successfully. Apr 12 18:23:11.740364 env[1620]: time="2024-04-12T18:23:11.740299223Z" level=info msg="CreateContainer within sandbox \"2d3fdcfaf67e120dd982268cec9c832cfa1efedaf92202dfcc09b30b3859f27c\" for &ContainerMetadata{Name:install-cni,Attempt:0,} returns container id \"574c1f19d740ddc402f32deda34320e4297895467ec7c4281143746de8048180\"" Apr 12 18:23:11.741447 env[1620]: time="2024-04-12T18:23:11.741399438Z" level=info msg="StartContainer for \"574c1f19d740ddc402f32deda34320e4297895467ec7c4281143746de8048180\"" Apr 12 18:23:11.783046 systemd[1]: Started cri-containerd-574c1f19d740ddc402f32deda34320e4297895467ec7c4281143746de8048180.scope. Apr 12 18:23:11.785701 systemd[1]: run-containerd-runc-k8s.io-574c1f19d740ddc402f32deda34320e4297895467ec7c4281143746de8048180-runc.tTPNJm.mount: Deactivated successfully. Apr 12 18:23:11.832994 kernel: kauditd_printk_skb: 230 callbacks suppressed Apr 12 18:23:11.833232 kernel: audit: type=1400 audit(1712946191.822:715): avc: denied { perfmon } for pid=2443 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.822000 audit[2443]: AVC avc: denied { perfmon } for pid=2443 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.822000 audit[2443]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=400011d5a0 a2=3c a3=0 items=0 ppid=2155 pid=2443 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:11.844709 kernel: audit: type=1300 audit(1712946191.822:715): arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=400011d5a0 a2=3c a3=0 items=0 ppid=2155 pid=2443 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:11.822000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3537346331663139643734306464633430326633326465646133343332 Apr 12 18:23:11.867000 kernel: audit: type=1327 audit(1712946191.822:715): proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3537346331663139643734306464633430326633326465646133343332 Apr 12 18:23:11.867121 kernel: audit: type=1400 audit(1712946191.822:716): avc: denied { bpf } for pid=2443 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.822000 audit[2443]: AVC avc: denied { bpf } for pid=2443 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.822000 audit[2443]: AVC avc: denied { bpf } for pid=2443 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.873495 env[1620]: time="2024-04-12T18:23:11.873387169Z" level=info msg="StartContainer for \"574c1f19d740ddc402f32deda34320e4297895467ec7c4281143746de8048180\" returns successfully" Apr 12 18:23:11.876741 kernel: audit: type=1400 audit(1712946191.822:716): avc: denied { bpf } for pid=2443 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.822000 audit[2443]: AVC avc: denied { bpf } for pid=2443 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.884681 kernel: audit: type=1400 audit(1712946191.822:716): avc: denied { bpf } for pid=2443 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.822000 audit[2443]: AVC avc: denied { perfmon } for pid=2443 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.892458 kernel: audit: type=1400 audit(1712946191.822:716): avc: denied { perfmon } for pid=2443 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.822000 audit[2443]: AVC avc: denied { perfmon } for pid=2443 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.900123 kernel: audit: type=1400 audit(1712946191.822:716): avc: denied { perfmon } for pid=2443 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.900230 kernel: audit: type=1400 audit(1712946191.822:716): avc: denied { perfmon } for pid=2443 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.822000 audit[2443]: AVC avc: denied { perfmon } for pid=2443 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.822000 audit[2443]: AVC avc: denied { perfmon } for pid=2443 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.915070 kernel: audit: type=1400 audit(1712946191.822:716): avc: denied { perfmon } for pid=2443 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.822000 audit[2443]: AVC avc: denied { perfmon } for pid=2443 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.822000 audit[2443]: AVC avc: denied { bpf } for pid=2443 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.822000 audit[2443]: AVC avc: denied { bpf } for pid=2443 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.822000 audit: BPF prog-id=84 op=LOAD Apr 12 18:23:11.822000 audit[2443]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=400011d8e0 a2=78 a3=0 items=0 ppid=2155 pid=2443 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:11.822000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3537346331663139643734306464633430326633326465646133343332 Apr 12 18:23:11.824000 audit[2443]: AVC avc: denied { bpf } for pid=2443 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.824000 audit[2443]: AVC avc: denied { bpf } for pid=2443 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.824000 audit[2443]: AVC avc: denied { perfmon } for pid=2443 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.824000 audit[2443]: AVC avc: denied { perfmon } for pid=2443 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.824000 audit[2443]: AVC avc: denied { perfmon } for pid=2443 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.824000 audit[2443]: AVC avc: denied { perfmon } for pid=2443 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.824000 audit[2443]: AVC avc: denied { perfmon } for pid=2443 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.824000 audit[2443]: AVC avc: denied { bpf } for pid=2443 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.824000 audit[2443]: AVC avc: denied { bpf } for pid=2443 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.824000 audit: BPF prog-id=85 op=LOAD Apr 12 18:23:11.824000 audit[2443]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=400011d670 a2=78 a3=0 items=0 ppid=2155 pid=2443 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:11.824000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3537346331663139643734306464633430326633326465646133343332 Apr 12 18:23:11.832000 audit: BPF prog-id=85 op=UNLOAD Apr 12 18:23:11.832000 audit: BPF prog-id=84 op=UNLOAD Apr 12 18:23:11.832000 audit[2443]: AVC avc: denied { bpf } for pid=2443 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.832000 audit[2443]: AVC avc: denied { bpf } for pid=2443 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.832000 audit[2443]: AVC avc: denied { bpf } for pid=2443 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.832000 audit[2443]: AVC avc: denied { perfmon } for pid=2443 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.832000 audit[2443]: AVC avc: denied { perfmon } for pid=2443 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.832000 audit[2443]: AVC avc: denied { perfmon } for pid=2443 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.832000 audit[2443]: AVC avc: denied { perfmon } for pid=2443 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.832000 audit[2443]: AVC avc: denied { perfmon } for pid=2443 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.832000 audit[2443]: AVC avc: denied { bpf } for pid=2443 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.832000 audit[2443]: AVC avc: denied { bpf } for pid=2443 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:11.832000 audit: BPF prog-id=86 op=LOAD Apr 12 18:23:11.832000 audit[2443]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=400011db40 a2=78 a3=0 items=0 ppid=2155 pid=2443 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:11.832000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3537346331663139643734306464633430326633326465646133343332 Apr 12 18:23:11.968751 kubelet[2083]: E0412 18:23:11.968604 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:12.180997 kubelet[2083]: E0412 18:23:12.180555 2083 pod_workers.go:1294] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-zxgs6" podUID=d252c216-222e-4462-b095-d9412d3071cf Apr 12 18:23:12.950179 env[1620]: time="2024-04-12T18:23:12.950097422Z" level=error msg="failed to reload cni configuration after receiving fs change event(\"/etc/cni/net.d/calico-kubeconfig\": WRITE)" error="cni config load failed: no network config found in /etc/cni/net.d: cni plugin not initialized: failed to load cni config" Apr 12 18:23:12.954453 systemd[1]: cri-containerd-574c1f19d740ddc402f32deda34320e4297895467ec7c4281143746de8048180.scope: Deactivated successfully. Apr 12 18:23:12.959000 audit: BPF prog-id=86 op=UNLOAD Apr 12 18:23:12.969572 kubelet[2083]: E0412 18:23:12.969525 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:12.991075 systemd[1]: run-containerd-io.containerd.runtime.v2.task-k8s.io-574c1f19d740ddc402f32deda34320e4297895467ec7c4281143746de8048180-rootfs.mount: Deactivated successfully. Apr 12 18:23:13.031810 kubelet[2083]: I0412 18:23:13.031572 2083 kubelet_node_status.go:493] "Fast updating node status as it just became ready" Apr 12 18:23:13.824826 systemd[1]: systemd-hostnamed.service: Deactivated successfully. Apr 12 18:23:13.824000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-hostnamed comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Apr 12 18:23:13.848000 audit: BPF prog-id=56 op=UNLOAD Apr 12 18:23:13.848000 audit: BPF prog-id=55 op=UNLOAD Apr 12 18:23:13.848000 audit: BPF prog-id=54 op=UNLOAD Apr 12 18:23:13.969789 kubelet[2083]: E0412 18:23:13.969674 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:14.153501 env[1620]: time="2024-04-12T18:23:14.153425358Z" level=info msg="shim disconnected" id=574c1f19d740ddc402f32deda34320e4297895467ec7c4281143746de8048180 Apr 12 18:23:14.153501 env[1620]: time="2024-04-12T18:23:14.153495306Z" level=warning msg="cleaning up after shim disconnected" id=574c1f19d740ddc402f32deda34320e4297895467ec7c4281143746de8048180 namespace=k8s.io Apr 12 18:23:14.154165 env[1620]: time="2024-04-12T18:23:14.153517658Z" level=info msg="cleaning up dead shim" Apr 12 18:23:14.168454 env[1620]: time="2024-04-12T18:23:14.168371487Z" level=warning msg="cleanup warnings time=\"2024-04-12T18:23:14Z\" level=info msg=\"starting signal loop\" namespace=k8s.io pid=2485 runtime=io.containerd.runc.v2\n" Apr 12 18:23:14.191492 systemd[1]: Created slice kubepods-besteffort-podd252c216_222e_4462_b095_d9412d3071cf.slice. Apr 12 18:23:14.196907 env[1620]: time="2024-04-12T18:23:14.196853243Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-zxgs6,Uid:d252c216-222e-4462-b095-d9412d3071cf,Namespace:calico-system,Attempt:0,}" Apr 12 18:23:14.254505 env[1620]: time="2024-04-12T18:23:14.254440192Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node:v3.27.3\"" Apr 12 18:23:14.339241 env[1620]: time="2024-04-12T18:23:14.339132355Z" level=error msg="Failed to destroy network for sandbox \"56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083\"" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Apr 12 18:23:14.343047 env[1620]: time="2024-04-12T18:23:14.342341190Z" level=error msg="encountered an error cleaning up failed sandbox \"56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083\", marking sandbox state as SANDBOX_UNKNOWN" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Apr 12 18:23:14.343047 env[1620]: time="2024-04-12T18:23:14.342438892Z" level=error msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-zxgs6,Uid:d252c216-222e-4462-b095-d9412d3071cf,Namespace:calico-system,Attempt:0,} failed, error" error="failed to setup network for sandbox \"56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Apr 12 18:23:14.343233 kubelet[2083]: E0412 18:23:14.342777 2083 remote_runtime.go:176] "RunPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Apr 12 18:23:14.343233 kubelet[2083]: E0412 18:23:14.342860 2083 kuberuntime_sandbox.go:72] "Failed to create sandbox for pod" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="calico-system/csi-node-driver-zxgs6" Apr 12 18:23:14.343233 kubelet[2083]: E0412 18:23:14.342899 2083 kuberuntime_manager.go:1122] "CreatePodSandbox for pod failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="calico-system/csi-node-driver-zxgs6" Apr 12 18:23:14.341567 systemd[1]: run-containerd-io.containerd.grpc.v1.cri-sandboxes-56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083-shm.mount: Deactivated successfully. Apr 12 18:23:14.343593 kubelet[2083]: E0412 18:23:14.343153 2083 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"CreatePodSandbox\" for \"csi-node-driver-zxgs6_calico-system(d252c216-222e-4462-b095-d9412d3071cf)\" with CreatePodSandboxError: \"Failed to create sandbox for pod \\\"csi-node-driver-zxgs6_calico-system(d252c216-222e-4462-b095-d9412d3071cf)\\\": rpc error: code = Unknown desc = failed to setup network for sandbox \\\"56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083\\\": plugin type=\\\"calico\\\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="calico-system/csi-node-driver-zxgs6" podUID=d252c216-222e-4462-b095-d9412d3071cf Apr 12 18:23:14.970810 kubelet[2083]: E0412 18:23:14.970750 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:15.256472 kubelet[2083]: I0412 18:23:15.256326 2083 pod_container_deletor.go:80] "Container not found in pod's containers" containerID="56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" Apr 12 18:23:15.257913 env[1620]: time="2024-04-12T18:23:15.257847477Z" level=info msg="StopPodSandbox for \"56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083\"" Apr 12 18:23:15.306781 env[1620]: time="2024-04-12T18:23:15.306709485Z" level=error msg="StopPodSandbox for \"56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083\" failed" error="failed to destroy network for sandbox \"56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Apr 12 18:23:15.307384 kubelet[2083]: E0412 18:23:15.307335 2083 remote_runtime.go:205] "StopPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to destroy network for sandbox \"56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" podSandboxID="56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" Apr 12 18:23:15.307518 kubelet[2083]: E0412 18:23:15.307417 2083 kuberuntime_manager.go:1312] "Failed to stop sandbox" podSandboxID={Type:containerd ID:56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083} Apr 12 18:23:15.307518 kubelet[2083]: E0412 18:23:15.307485 2083 kuberuntime_manager.go:1038] "killPodWithSyncResult failed" err="failed to \"KillPodSandbox\" for \"d252c216-222e-4462-b095-d9412d3071cf\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" Apr 12 18:23:15.307741 kubelet[2083]: E0412 18:23:15.307538 2083 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"KillPodSandbox\" for \"d252c216-222e-4462-b095-d9412d3071cf\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="calico-system/csi-node-driver-zxgs6" podUID=d252c216-222e-4462-b095-d9412d3071cf Apr 12 18:23:15.971386 kubelet[2083]: E0412 18:23:15.971325 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:16.972171 kubelet[2083]: E0412 18:23:16.972109 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:17.960050 kubelet[2083]: E0412 18:23:17.959989 2083 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:17.973231 kubelet[2083]: E0412 18:23:17.973195 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:18.293363 kubelet[2083]: I0412 18:23:18.293247 2083 topology_manager.go:212] "Topology Admit Handler" Apr 12 18:23:18.302991 systemd[1]: Created slice kubepods-besteffort-pod6fe42277_e1b4_4e96_a619_0987265eb5e0.slice. Apr 12 18:23:18.316301 kubelet[2083]: W0412 18:23:18.316253 2083 reflector.go:533] object-"default"/"kube-root-ca.crt": failed to list *v1.ConfigMap: configmaps "kube-root-ca.crt" is forbidden: User "system:node:172.31.25.169" cannot list resource "configmaps" in API group "" in the namespace "default": no relationship found between node '172.31.25.169' and this object Apr 12 18:23:18.316477 kubelet[2083]: E0412 18:23:18.316329 2083 reflector.go:148] object-"default"/"kube-root-ca.crt": Failed to watch *v1.ConfigMap: failed to list *v1.ConfigMap: configmaps "kube-root-ca.crt" is forbidden: User "system:node:172.31.25.169" cannot list resource "configmaps" in API group "" in the namespace "default": no relationship found between node '172.31.25.169' and this object Apr 12 18:23:18.335275 kubelet[2083]: I0412 18:23:18.335182 2083 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-8d6w7\" (UniqueName: \"kubernetes.io/projected/6fe42277-e1b4-4e96-a619-0987265eb5e0-kube-api-access-8d6w7\") pod \"nginx-deployment-845c78c8b9-xg44z\" (UID: \"6fe42277-e1b4-4e96-a619-0987265eb5e0\") " pod="default/nginx-deployment-845c78c8b9-xg44z" Apr 12 18:23:18.974656 kubelet[2083]: E0412 18:23:18.974589 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:19.508812 env[1620]: time="2024-04-12T18:23:19.508730447Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-845c78c8b9-xg44z,Uid:6fe42277-e1b4-4e96-a619-0987265eb5e0,Namespace:default,Attempt:0,}" Apr 12 18:23:19.757491 env[1620]: time="2024-04-12T18:23:19.757415981Z" level=error msg="Failed to destroy network for sandbox \"a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903\"" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Apr 12 18:23:19.760422 systemd[1]: run-containerd-io.containerd.grpc.v1.cri-sandboxes-a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903-shm.mount: Deactivated successfully. Apr 12 18:23:19.762299 env[1620]: time="2024-04-12T18:23:19.762229024Z" level=error msg="encountered an error cleaning up failed sandbox \"a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903\", marking sandbox state as SANDBOX_UNKNOWN" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Apr 12 18:23:19.762526 env[1620]: time="2024-04-12T18:23:19.762478458Z" level=error msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-845c78c8b9-xg44z,Uid:6fe42277-e1b4-4e96-a619-0987265eb5e0,Namespace:default,Attempt:0,} failed, error" error="failed to setup network for sandbox \"a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Apr 12 18:23:19.763614 kubelet[2083]: E0412 18:23:19.762995 2083 remote_runtime.go:176] "RunPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Apr 12 18:23:19.763614 kubelet[2083]: E0412 18:23:19.763088 2083 kuberuntime_sandbox.go:72] "Failed to create sandbox for pod" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="default/nginx-deployment-845c78c8b9-xg44z" Apr 12 18:23:19.763614 kubelet[2083]: E0412 18:23:19.763150 2083 kuberuntime_manager.go:1122] "CreatePodSandbox for pod failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="default/nginx-deployment-845c78c8b9-xg44z" Apr 12 18:23:19.763899 kubelet[2083]: E0412 18:23:19.763258 2083 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"CreatePodSandbox\" for \"nginx-deployment-845c78c8b9-xg44z_default(6fe42277-e1b4-4e96-a619-0987265eb5e0)\" with CreatePodSandboxError: \"Failed to create sandbox for pod \\\"nginx-deployment-845c78c8b9-xg44z_default(6fe42277-e1b4-4e96-a619-0987265eb5e0)\\\": rpc error: code = Unknown desc = failed to setup network for sandbox \\\"a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903\\\": plugin type=\\\"calico\\\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="default/nginx-deployment-845c78c8b9-xg44z" podUID=6fe42277-e1b4-4e96-a619-0987265eb5e0 Apr 12 18:23:19.975496 kubelet[2083]: E0412 18:23:19.975381 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:20.267279 kubelet[2083]: I0412 18:23:20.267241 2083 pod_container_deletor.go:80] "Container not found in pod's containers" containerID="a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" Apr 12 18:23:20.268510 env[1620]: time="2024-04-12T18:23:20.268448681Z" level=info msg="StopPodSandbox for \"a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903\"" Apr 12 18:23:20.334631 env[1620]: time="2024-04-12T18:23:20.334533684Z" level=error msg="StopPodSandbox for \"a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903\" failed" error="failed to destroy network for sandbox \"a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Apr 12 18:23:20.335281 kubelet[2083]: E0412 18:23:20.335055 2083 remote_runtime.go:205] "StopPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to destroy network for sandbox \"a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" podSandboxID="a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" Apr 12 18:23:20.335281 kubelet[2083]: E0412 18:23:20.335114 2083 kuberuntime_manager.go:1312] "Failed to stop sandbox" podSandboxID={Type:containerd ID:a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903} Apr 12 18:23:20.335281 kubelet[2083]: E0412 18:23:20.335181 2083 kuberuntime_manager.go:1038] "killPodWithSyncResult failed" err="failed to \"KillPodSandbox\" for \"6fe42277-e1b4-4e96-a619-0987265eb5e0\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" Apr 12 18:23:20.335281 kubelet[2083]: E0412 18:23:20.335233 2083 pod_workers.go:1294] "Error syncing pod, skipping" err="failed to \"KillPodSandbox\" for \"6fe42277-e1b4-4e96-a619-0987265eb5e0\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="default/nginx-deployment-845c78c8b9-xg44z" podUID=6fe42277-e1b4-4e96-a619-0987265eb5e0 Apr 12 18:23:20.976730 kubelet[2083]: E0412 18:23:20.976634 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:21.977641 kubelet[2083]: E0412 18:23:21.977565 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:22.588956 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3381191811.mount: Deactivated successfully. Apr 12 18:23:22.734744 env[1620]: time="2024-04-12T18:23:22.734682520Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node:v3.27.3,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:22.743992 env[1620]: time="2024-04-12T18:23:22.743902308Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:39692ef1d182c22e6162a9c49869a9092df8da5455f3c75e4aa19a347e4a375d,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:22.751925 env[1620]: time="2024-04-12T18:23:22.751869712Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/node:v3.27.3,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:22.757992 env[1620]: time="2024-04-12T18:23:22.757914772Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node@sha256:0dec3ede02137c9bc7a49b50006739ddb7c20fc2b8fa12d2bd8234c680e8df34,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:22.759446 env[1620]: time="2024-04-12T18:23:22.759366989Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node:v3.27.3\" returns image reference \"sha256:39692ef1d182c22e6162a9c49869a9092df8da5455f3c75e4aa19a347e4a375d\"" Apr 12 18:23:22.788380 env[1620]: time="2024-04-12T18:23:22.788305071Z" level=info msg="CreateContainer within sandbox \"2d3fdcfaf67e120dd982268cec9c832cfa1efedaf92202dfcc09b30b3859f27c\" for container &ContainerMetadata{Name:calico-node,Attempt:0,}" Apr 12 18:23:22.814896 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3320639066.mount: Deactivated successfully. Apr 12 18:23:22.825905 env[1620]: time="2024-04-12T18:23:22.825822963Z" level=info msg="CreateContainer within sandbox \"2d3fdcfaf67e120dd982268cec9c832cfa1efedaf92202dfcc09b30b3859f27c\" for &ContainerMetadata{Name:calico-node,Attempt:0,} returns container id \"8050420a2b0eb5635b9e0f9c3e6eb6ee278b3b7e285f34121a207e3c53e4e357\"" Apr 12 18:23:22.827166 env[1620]: time="2024-04-12T18:23:22.827097384Z" level=info msg="StartContainer for \"8050420a2b0eb5635b9e0f9c3e6eb6ee278b3b7e285f34121a207e3c53e4e357\"" Apr 12 18:23:22.858115 systemd[1]: Started cri-containerd-8050420a2b0eb5635b9e0f9c3e6eb6ee278b3b7e285f34121a207e3c53e4e357.scope. Apr 12 18:23:22.908233 kernel: kauditd_printk_skb: 38 callbacks suppressed Apr 12 18:23:22.908444 kernel: audit: type=1400 audit(1712946202.897:726): avc: denied { perfmon } for pid=2613 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.897000 audit[2613]: AVC avc: denied { perfmon } for pid=2613 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.897000 audit[2613]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=400011f5a0 a2=3c a3=0 items=0 ppid=2155 pid=2613 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:22.897000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3830353034323061326230656235363335623965306639633365366562 Apr 12 18:23:22.920974 kernel: audit: type=1300 audit(1712946202.897:726): arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=400011f5a0 a2=3c a3=0 items=0 ppid=2155 pid=2613 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:22.897000 audit[2613]: AVC avc: denied { bpf } for pid=2613 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.932125 kernel: audit: type=1327 audit(1712946202.897:726): proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3830353034323061326230656235363335623965306639633365366562 Apr 12 18:23:22.949727 kernel: audit: type=1400 audit(1712946202.897:727): avc: denied { bpf } for pid=2613 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.949894 kernel: audit: type=1400 audit(1712946202.897:727): avc: denied { bpf } for pid=2613 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.897000 audit[2613]: AVC avc: denied { bpf } for pid=2613 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.897000 audit[2613]: AVC avc: denied { bpf } for pid=2613 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.957583 kernel: audit: type=1400 audit(1712946202.897:727): avc: denied { bpf } for pid=2613 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.897000 audit[2613]: AVC avc: denied { perfmon } for pid=2613 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.965997 kernel: audit: type=1400 audit(1712946202.897:727): avc: denied { perfmon } for pid=2613 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.897000 audit[2613]: AVC avc: denied { perfmon } for pid=2613 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.974041 kernel: audit: type=1400 audit(1712946202.897:727): avc: denied { perfmon } for pid=2613 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.897000 audit[2613]: AVC avc: denied { perfmon } for pid=2613 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.982429 kernel: audit: type=1400 audit(1712946202.897:727): avc: denied { perfmon } for pid=2613 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.982541 env[1620]: time="2024-04-12T18:23:22.974602418Z" level=info msg="StartContainer for \"8050420a2b0eb5635b9e0f9c3e6eb6ee278b3b7e285f34121a207e3c53e4e357\" returns successfully" Apr 12 18:23:22.983486 kubelet[2083]: E0412 18:23:22.982727 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:22.897000 audit[2613]: AVC avc: denied { perfmon } for pid=2613 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.992456 kernel: audit: type=1400 audit(1712946202.897:727): avc: denied { perfmon } for pid=2613 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.897000 audit[2613]: AVC avc: denied { perfmon } for pid=2613 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.897000 audit[2613]: AVC avc: denied { bpf } for pid=2613 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.897000 audit[2613]: AVC avc: denied { bpf } for pid=2613 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.897000 audit: BPF prog-id=87 op=LOAD Apr 12 18:23:22.897000 audit[2613]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=400011f8e0 a2=78 a3=0 items=0 ppid=2155 pid=2613 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:22.897000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3830353034323061326230656235363335623965306639633365366562 Apr 12 18:23:22.899000 audit[2613]: AVC avc: denied { bpf } for pid=2613 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.899000 audit[2613]: AVC avc: denied { bpf } for pid=2613 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.899000 audit[2613]: AVC avc: denied { perfmon } for pid=2613 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.899000 audit[2613]: AVC avc: denied { perfmon } for pid=2613 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.899000 audit[2613]: AVC avc: denied { perfmon } for pid=2613 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.899000 audit[2613]: AVC avc: denied { perfmon } for pid=2613 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.899000 audit[2613]: AVC avc: denied { perfmon } for pid=2613 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.899000 audit[2613]: AVC avc: denied { bpf } for pid=2613 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.899000 audit[2613]: AVC avc: denied { bpf } for pid=2613 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.899000 audit: BPF prog-id=88 op=LOAD Apr 12 18:23:22.899000 audit[2613]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=400011f670 a2=78 a3=0 items=0 ppid=2155 pid=2613 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:22.899000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3830353034323061326230656235363335623965306639633365366562 Apr 12 18:23:22.907000 audit: BPF prog-id=88 op=UNLOAD Apr 12 18:23:22.907000 audit: BPF prog-id=87 op=UNLOAD Apr 12 18:23:22.907000 audit[2613]: AVC avc: denied { bpf } for pid=2613 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.907000 audit[2613]: AVC avc: denied { bpf } for pid=2613 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.907000 audit[2613]: AVC avc: denied { bpf } for pid=2613 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.907000 audit[2613]: AVC avc: denied { perfmon } for pid=2613 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.907000 audit[2613]: AVC avc: denied { perfmon } for pid=2613 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.907000 audit[2613]: AVC avc: denied { perfmon } for pid=2613 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.907000 audit[2613]: AVC avc: denied { perfmon } for pid=2613 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.907000 audit[2613]: AVC avc: denied { perfmon } for pid=2613 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.907000 audit[2613]: AVC avc: denied { bpf } for pid=2613 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.907000 audit[2613]: AVC avc: denied { bpf } for pid=2613 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:22.907000 audit: BPF prog-id=89 op=LOAD Apr 12 18:23:22.907000 audit[2613]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=400011fb40 a2=78 a3=0 items=0 ppid=2155 pid=2613 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:22.907000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3830353034323061326230656235363335623965306639633365366562 Apr 12 18:23:23.096359 kernel: wireguard: WireGuard 1.0.0 loaded. See www.wireguard.com for information. Apr 12 18:23:23.096518 kernel: wireguard: Copyright (C) 2015-2019 Jason A. Donenfeld . All Rights Reserved. Apr 12 18:23:23.249692 amazon-ssm-agent[1594]: 2024-04-12 18:23:23 INFO [MessagingDeliveryService] [Association] Schedule manager refreshed with 0 associations, 0 new associations associated Apr 12 18:23:23.310283 kubelet[2083]: I0412 18:23:23.310232 2083 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="calico-system/calico-node-bd9q6" podStartSLOduration=4.664174816 podCreationTimestamp="2024-04-12 18:22:59 +0000 UTC" firstStartedPulling="2024-04-12 18:23:03.113824751 +0000 UTC m=+5.990523377" lastFinishedPulling="2024-04-12 18:23:22.759806544 +0000 UTC m=+25.636505170" observedRunningTime="2024-04-12 18:23:23.309555988 +0000 UTC m=+26.186254638" watchObservedRunningTime="2024-04-12 18:23:23.310156609 +0000 UTC m=+26.186855259" Apr 12 18:23:23.949255 systemd[1]: run-containerd-runc-k8s.io-8050420a2b0eb5635b9e0f9c3e6eb6ee278b3b7e285f34121a207e3c53e4e357-runc.nu148B.mount: Deactivated successfully. Apr 12 18:23:23.983003 kubelet[2083]: E0412 18:23:23.982921 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:24.589439 systemd[1]: run-containerd-runc-k8s.io-8050420a2b0eb5635b9e0f9c3e6eb6ee278b3b7e285f34121a207e3c53e4e357-runc.ifY0nd.mount: Deactivated successfully. Apr 12 18:23:24.604000 audit[2781]: AVC avc: denied { write } for pid=2781 comm="tee" name="fd" dev="proc" ino=15482 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Apr 12 18:23:24.604000 audit[2781]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=fffffc38b986 a2=241 a3=1b6 items=1 ppid=2750 pid=2781 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:24.604000 audit: CWD cwd="/etc/service/enabled/cni/log" Apr 12 18:23:24.604000 audit: PATH item=0 name="/dev/fd/63" inode=15473 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:23:24.604000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Apr 12 18:23:24.616000 audit[2775]: AVC avc: denied { write } for pid=2775 comm="tee" name="fd" dev="proc" ino=15284 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Apr 12 18:23:24.616000 audit[2775]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=fffffe894984 a2=241 a3=1b6 items=1 ppid=2742 pid=2775 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:24.616000 audit: CWD cwd="/etc/service/enabled/confd/log" Apr 12 18:23:24.616000 audit: PATH item=0 name="/dev/fd/63" inode=15472 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:23:24.616000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Apr 12 18:23:24.620000 audit[2785]: AVC avc: denied { write } for pid=2785 comm="tee" name="fd" dev="proc" ino=15489 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Apr 12 18:23:24.620000 audit[2785]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffdc96c974 a2=241 a3=1b6 items=1 ppid=2748 pid=2785 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:24.620000 audit: CWD cwd="/etc/service/enabled/allocate-tunnel-addrs/log" Apr 12 18:23:24.620000 audit: PATH item=0 name="/dev/fd/63" inode=15479 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:23:24.620000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Apr 12 18:23:24.629000 audit[2797]: AVC avc: denied { write } for pid=2797 comm="tee" name="fd" dev="proc" ino=15293 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Apr 12 18:23:24.629000 audit[2797]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=fffff14ef984 a2=241 a3=1b6 items=1 ppid=2753 pid=2797 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:24.629000 audit: CWD cwd="/etc/service/enabled/bird6/log" Apr 12 18:23:24.629000 audit: PATH item=0 name="/dev/fd/63" inode=15272 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:23:24.629000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Apr 12 18:23:24.639000 audit[2806]: AVC avc: denied { write } for pid=2806 comm="tee" name="fd" dev="proc" ino=15496 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Apr 12 18:23:24.643000 audit[2809]: AVC avc: denied { write } for pid=2809 comm="tee" name="fd" dev="proc" ino=15297 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Apr 12 18:23:24.643000 audit[2809]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffe593b975 a2=241 a3=1b6 items=1 ppid=2749 pid=2809 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:24.643000 audit: CWD cwd="/etc/service/enabled/node-status-reporter/log" Apr 12 18:23:24.643000 audit: PATH item=0 name="/dev/fd/63" inode=15286 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:23:24.643000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Apr 12 18:23:24.639000 audit[2806]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffdffd0985 a2=241 a3=1b6 items=1 ppid=2746 pid=2806 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:24.639000 audit: CWD cwd="/etc/service/enabled/bird/log" Apr 12 18:23:24.639000 audit: PATH item=0 name="/dev/fd/63" inode=15278 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:23:24.639000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Apr 12 18:23:24.647000 audit[2811]: AVC avc: denied { write } for pid=2811 comm="tee" name="fd" dev="proc" ino=15500 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Apr 12 18:23:24.647000 audit[2811]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffea429984 a2=241 a3=1b6 items=1 ppid=2752 pid=2811 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:24.647000 audit: CWD cwd="/etc/service/enabled/felix/log" Apr 12 18:23:24.647000 audit: PATH item=0 name="/dev/fd/63" inode=15287 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:23:24.647000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Apr 12 18:23:24.979040 kernel: Initializing XFRM netlink socket Apr 12 18:23:24.983593 kubelet[2083]: E0412 18:23:24.983497 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:25.190919 (udev-worker)[2878]: Network interface NamePolicy= disabled on kernel command line. Apr 12 18:23:25.191656 (udev-worker)[2645]: Network interface NamePolicy= disabled on kernel command line. Apr 12 18:23:25.194000 audit[2880]: AVC avc: denied { bpf } for pid=2880 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.194000 audit[2880]: AVC avc: denied { bpf } for pid=2880 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.194000 audit[2880]: AVC avc: denied { perfmon } for pid=2880 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.194000 audit[2880]: AVC avc: denied { perfmon } for pid=2880 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.194000 audit[2880]: AVC avc: denied { perfmon } for pid=2880 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.194000 audit[2880]: AVC avc: denied { perfmon } for pid=2880 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.194000 audit[2880]: AVC avc: denied { perfmon } for pid=2880 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.194000 audit[2880]: AVC avc: denied { bpf } for pid=2880 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.194000 audit[2880]: AVC avc: denied { bpf } for pid=2880 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.194000 audit: BPF prog-id=90 op=LOAD Apr 12 18:23:25.194000 audit[2880]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=4 a0=5 a1=ffffef6f3ab8 a2=70 a3=ffffef6f3b28 items=0 ppid=2759 pid=2880 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:25.194000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Apr 12 18:23:25.194000 audit: BPF prog-id=90 op=UNLOAD Apr 12 18:23:25.194000 audit[2880]: AVC avc: denied { bpf } for pid=2880 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.194000 audit[2880]: AVC avc: denied { bpf } for pid=2880 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.194000 audit[2880]: AVC avc: denied { perfmon } for pid=2880 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.194000 audit[2880]: AVC avc: denied { perfmon } for pid=2880 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.194000 audit[2880]: AVC avc: denied { perfmon } for pid=2880 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.194000 audit[2880]: AVC avc: denied { perfmon } for pid=2880 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.194000 audit[2880]: AVC avc: denied { perfmon } for pid=2880 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.194000 audit[2880]: AVC avc: denied { bpf } for pid=2880 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.194000 audit[2880]: AVC avc: denied { bpf } for pid=2880 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.194000 audit: BPF prog-id=91 op=LOAD Apr 12 18:23:25.194000 audit[2880]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=4 a0=5 a1=ffffef6f3ab8 a2=70 a3=4b243c items=0 ppid=2759 pid=2880 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:25.194000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Apr 12 18:23:25.195000 audit: BPF prog-id=91 op=UNLOAD Apr 12 18:23:25.195000 audit[2880]: AVC avc: denied { perfmon } for pid=2880 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.195000 audit[2880]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=4 a0=0 a1=ffffef6f3a70 a2=70 a3=ffffef6f3ae0 items=0 ppid=2759 pid=2880 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:25.195000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Apr 12 18:23:25.195000 audit[2880]: AVC avc: denied { bpf } for pid=2880 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.195000 audit[2880]: AVC avc: denied { bpf } for pid=2880 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.195000 audit[2880]: AVC avc: denied { perfmon } for pid=2880 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.195000 audit[2880]: AVC avc: denied { perfmon } for pid=2880 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.195000 audit[2880]: AVC avc: denied { perfmon } for pid=2880 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.195000 audit[2880]: AVC avc: denied { perfmon } for pid=2880 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.195000 audit[2880]: AVC avc: denied { perfmon } for pid=2880 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.195000 audit[2880]: AVC avc: denied { bpf } for pid=2880 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.195000 audit[2880]: AVC avc: denied { bpf } for pid=2880 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.195000 audit: BPF prog-id=92 op=LOAD Apr 12 18:23:25.195000 audit[2880]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=5 a0=5 a1=ffffef6f3a58 a2=70 a3=ffffef6f3ac8 items=0 ppid=2759 pid=2880 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:25.195000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Apr 12 18:23:25.195000 audit: BPF prog-id=92 op=UNLOAD Apr 12 18:23:25.195000 audit[2880]: AVC avc: denied { bpf } for pid=2880 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.195000 audit[2880]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=4 a0=12 a1=ffffef6f3b28 a2=70 a3=0 items=0 ppid=2759 pid=2880 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:25.195000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Apr 12 18:23:25.195000 audit[2880]: AVC avc: denied { bpf } for pid=2880 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.195000 audit[2880]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=4 a0=12 a1=ffffef6f3b18 a2=70 a3=0 items=0 ppid=2759 pid=2880 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:25.195000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Apr 12 18:23:25.195000 audit[2880]: AVC avc: denied { bpf } for pid=2880 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.195000 audit[2880]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=4 a0=12 a1=ffffef6f3a88 a2=70 a3=0 items=0 ppid=2759 pid=2880 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:25.195000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Apr 12 18:23:25.196000 audit[2880]: AVC avc: denied { bpf } for pid=2880 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.196000 audit[2880]: SYSCALL arch=c00000b7 syscall=280 success=no exit=-22 a0=0 a1=ffffef6f3b60 a2=70 a3=2a7b498f items=0 ppid=2759 pid=2880 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:25.196000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Apr 12 18:23:25.199000 audit[2880]: AVC avc: denied { bpf } for pid=2880 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.199000 audit[2880]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=5 a0=0 a1=ffffef6f3b60 a2=70 a3=2a7b498f items=0 ppid=2759 pid=2880 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:25.199000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Apr 12 18:23:25.199000 audit[2880]: AVC avc: denied { bpf } for pid=2880 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.199000 audit[2880]: AVC avc: denied { bpf } for pid=2880 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.199000 audit[2880]: AVC avc: denied { bpf } for pid=2880 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.199000 audit[2880]: AVC avc: denied { perfmon } for pid=2880 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.199000 audit[2880]: AVC avc: denied { perfmon } for pid=2880 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.199000 audit[2880]: AVC avc: denied { perfmon } for pid=2880 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.199000 audit[2880]: AVC avc: denied { perfmon } for pid=2880 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.199000 audit[2880]: AVC avc: denied { perfmon } for pid=2880 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.199000 audit[2880]: AVC avc: denied { bpf } for pid=2880 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.199000 audit[2880]: AVC avc: denied { bpf } for pid=2880 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.199000 audit: BPF prog-id=93 op=LOAD Apr 12 18:23:25.199000 audit[2880]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=6 a0=5 a1=ffffef6f3a88 a2=70 a3=2a7b49a9 items=0 ppid=2759 pid=2880 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:25.199000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Apr 12 18:23:25.208000 audit[2883]: AVC avc: denied { bpf } for pid=2883 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.208000 audit[2883]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=ffffd22a6c48 a2=70 a3=ffffd22a6cb8 items=0 ppid=2759 pid=2883 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:25.208000 audit: PROCTITLE proctitle=627066746F6F6C002D2D6A736F6E002D2D7072657474790070726F670073686F770070696E6E6564002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41 Apr 12 18:23:25.208000 audit[2883]: AVC avc: denied { bpf } for pid=2883 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:25.208000 audit[2883]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=ffffd22a6b18 a2=70 a3=ffffd22a6b88 items=0 ppid=2759 pid=2883 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:25.208000 audit: PROCTITLE proctitle=627066746F6F6C002D2D6A736F6E002D2D7072657474790070726F670073686F770070696E6E6564002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41 Apr 12 18:23:25.220000 audit: BPF prog-id=93 op=UNLOAD Apr 12 18:23:25.306000 audit[2907]: NETFILTER_CFG table=mangle:65 family=2 entries=16 op=nft_register_chain pid=2907 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Apr 12 18:23:25.306000 audit[2907]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=6868 a0=3 a1=ffffec228f60 a2=0 a3=ffffafb4bfa8 items=0 ppid=2759 pid=2907 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:25.306000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Apr 12 18:23:25.314000 audit[2906]: NETFILTER_CFG table=raw:66 family=2 entries=19 op=nft_register_chain pid=2906 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Apr 12 18:23:25.314000 audit[2906]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=6992 a0=3 a1=ffffda5ffc30 a2=0 a3=ffffaaee7fa8 items=0 ppid=2759 pid=2906 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:25.314000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Apr 12 18:23:25.328000 audit[2909]: NETFILTER_CFG table=nat:67 family=2 entries=15 op=nft_register_chain pid=2909 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Apr 12 18:23:25.328000 audit[2909]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5084 a0=3 a1=ffffd3e82a90 a2=0 a3=ffffa12ccfa8 items=0 ppid=2759 pid=2909 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:25.328000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Apr 12 18:23:25.335000 audit[2911]: NETFILTER_CFG table=filter:68 family=2 entries=39 op=nft_register_chain pid=2911 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Apr 12 18:23:25.335000 audit[2911]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=18968 a0=3 a1=ffffef6f2640 a2=0 a3=ffffb57abfa8 items=0 ppid=2759 pid=2911 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:25.335000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Apr 12 18:23:25.983674 kubelet[2083]: E0412 18:23:25.983599 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:26.000686 systemd-networkd[1420]: vxlan.calico: Link UP Apr 12 18:23:26.000716 systemd-networkd[1420]: vxlan.calico: Gained carrier Apr 12 18:23:26.984467 kubelet[2083]: E0412 18:23:26.984427 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:27.518177 systemd-networkd[1420]: vxlan.calico: Gained IPv6LL Apr 12 18:23:27.985912 kubelet[2083]: E0412 18:23:27.985858 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:28.182634 env[1620]: time="2024-04-12T18:23:28.182557464Z" level=info msg="StopPodSandbox for \"56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083\"" Apr 12 18:23:28.337968 env[1620]: 2024-04-12 18:23:28.269 [INFO][2936] k8s.go 585: Cleaning up netns ContainerID="56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" Apr 12 18:23:28.337968 env[1620]: 2024-04-12 18:23:28.270 [INFO][2936] dataplane_linux.go 530: Deleting workload's device in netns. ContainerID="56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" iface="eth0" netns="/var/run/netns/cni-0ef41211-5b30-d974-c412-ebe606ebe3f2" Apr 12 18:23:28.337968 env[1620]: 2024-04-12 18:23:28.270 [INFO][2936] dataplane_linux.go 541: Entered netns, deleting veth. ContainerID="56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" iface="eth0" netns="/var/run/netns/cni-0ef41211-5b30-d974-c412-ebe606ebe3f2" Apr 12 18:23:28.337968 env[1620]: 2024-04-12 18:23:28.270 [INFO][2936] dataplane_linux.go 568: Workload's veth was already gone. Nothing to do. ContainerID="56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" iface="eth0" netns="/var/run/netns/cni-0ef41211-5b30-d974-c412-ebe606ebe3f2" Apr 12 18:23:28.337968 env[1620]: 2024-04-12 18:23:28.270 [INFO][2936] k8s.go 592: Releasing IP address(es) ContainerID="56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" Apr 12 18:23:28.337968 env[1620]: 2024-04-12 18:23:28.270 [INFO][2936] utils.go 188: Calico CNI releasing IP address ContainerID="56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" Apr 12 18:23:28.337968 env[1620]: 2024-04-12 18:23:28.313 [INFO][2942] ipam_plugin.go 415: Releasing address using handleID ContainerID="56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" HandleID="k8s-pod-network.56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" Workload="172.31.25.169-k8s-csi--node--driver--zxgs6-eth0" Apr 12 18:23:28.337968 env[1620]: 2024-04-12 18:23:28.313 [INFO][2942] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Apr 12 18:23:28.337968 env[1620]: 2024-04-12 18:23:28.313 [INFO][2942] ipam_plugin.go 371: Acquired host-wide IPAM lock. Apr 12 18:23:28.337968 env[1620]: 2024-04-12 18:23:28.328 [WARNING][2942] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" HandleID="k8s-pod-network.56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" Workload="172.31.25.169-k8s-csi--node--driver--zxgs6-eth0" Apr 12 18:23:28.337968 env[1620]: 2024-04-12 18:23:28.328 [INFO][2942] ipam_plugin.go 443: Releasing address using workloadID ContainerID="56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" HandleID="k8s-pod-network.56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" Workload="172.31.25.169-k8s-csi--node--driver--zxgs6-eth0" Apr 12 18:23:28.337968 env[1620]: 2024-04-12 18:23:28.332 [INFO][2942] ipam_plugin.go 377: Released host-wide IPAM lock. Apr 12 18:23:28.337968 env[1620]: 2024-04-12 18:23:28.333 [INFO][2936] k8s.go 598: Teardown processing complete. ContainerID="56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" Apr 12 18:23:28.342030 systemd[1]: run-netns-cni\x2d0ef41211\x2d5b30\x2dd974\x2dc412\x2debe606ebe3f2.mount: Deactivated successfully. Apr 12 18:23:28.343014 env[1620]: time="2024-04-12T18:23:28.342913673Z" level=info msg="TearDown network for sandbox \"56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083\" successfully" Apr 12 18:23:28.343281 env[1620]: time="2024-04-12T18:23:28.343230373Z" level=info msg="StopPodSandbox for \"56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083\" returns successfully" Apr 12 18:23:28.344407 env[1620]: time="2024-04-12T18:23:28.344357952Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-zxgs6,Uid:d252c216-222e-4462-b095-d9412d3071cf,Namespace:calico-system,Attempt:1,}" Apr 12 18:23:28.468976 update_engine[1608]: I0412 18:23:28.468758 1608 update_attempter.cc:509] Updating boot flags... Apr 12 18:23:28.886467 systemd-networkd[1420]: cali17fd70c667b: Link UP Apr 12 18:23:28.892391 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Apr 12 18:23:28.892837 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali17fd70c667b: link becomes ready Apr 12 18:23:28.893003 systemd-networkd[1420]: cali17fd70c667b: Gained carrier Apr 12 18:23:28.913060 env[1620]: 2024-04-12 18:23:28.631 [INFO][2953] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.25.169-k8s-csi--node--driver--zxgs6-eth0 csi-node-driver- calico-system d252c216-222e-4462-b095-d9412d3071cf 952 0 2024-04-12 18:22:59 +0000 UTC map[app.kubernetes.io/name:csi-node-driver controller-revision-hash:54c68f759 k8s-app:csi-node-driver name:csi-node-driver pod-template-generation:1 projectcalico.org/namespace:calico-system projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 172.31.25.169 csi-node-driver-zxgs6 eth0 default [] [] [kns.calico-system ksa.calico-system.default] cali17fd70c667b [] []}} ContainerID="a51fbbbc22c7ceb06e9a52d74b3091845eb1df5bd85503c81b2f94008870ebbf" Namespace="calico-system" Pod="csi-node-driver-zxgs6" WorkloadEndpoint="172.31.25.169-k8s-csi--node--driver--zxgs6-" Apr 12 18:23:28.913060 env[1620]: 2024-04-12 18:23:28.632 [INFO][2953] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="a51fbbbc22c7ceb06e9a52d74b3091845eb1df5bd85503c81b2f94008870ebbf" Namespace="calico-system" Pod="csi-node-driver-zxgs6" WorkloadEndpoint="172.31.25.169-k8s-csi--node--driver--zxgs6-eth0" Apr 12 18:23:28.913060 env[1620]: 2024-04-12 18:23:28.792 [INFO][3034] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="a51fbbbc22c7ceb06e9a52d74b3091845eb1df5bd85503c81b2f94008870ebbf" HandleID="k8s-pod-network.a51fbbbc22c7ceb06e9a52d74b3091845eb1df5bd85503c81b2f94008870ebbf" Workload="172.31.25.169-k8s-csi--node--driver--zxgs6-eth0" Apr 12 18:23:28.913060 env[1620]: 2024-04-12 18:23:28.813 [INFO][3034] ipam_plugin.go 268: Auto assigning IP ContainerID="a51fbbbc22c7ceb06e9a52d74b3091845eb1df5bd85503c81b2f94008870ebbf" HandleID="k8s-pod-network.a51fbbbc22c7ceb06e9a52d74b3091845eb1df5bd85503c81b2f94008870ebbf" Workload="172.31.25.169-k8s-csi--node--driver--zxgs6-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x40002f5130), Attrs:map[string]string{"namespace":"calico-system", "node":"172.31.25.169", "pod":"csi-node-driver-zxgs6", "timestamp":"2024-04-12 18:23:28.792919511 +0000 UTC"}, Hostname:"172.31.25.169", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Apr 12 18:23:28.913060 env[1620]: 2024-04-12 18:23:28.813 [INFO][3034] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Apr 12 18:23:28.913060 env[1620]: 2024-04-12 18:23:28.814 [INFO][3034] ipam_plugin.go 371: Acquired host-wide IPAM lock. Apr 12 18:23:28.913060 env[1620]: 2024-04-12 18:23:28.814 [INFO][3034] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.25.169' Apr 12 18:23:28.913060 env[1620]: 2024-04-12 18:23:28.818 [INFO][3034] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.a51fbbbc22c7ceb06e9a52d74b3091845eb1df5bd85503c81b2f94008870ebbf" host="172.31.25.169" Apr 12 18:23:28.913060 env[1620]: 2024-04-12 18:23:28.825 [INFO][3034] ipam.go 372: Looking up existing affinities for host host="172.31.25.169" Apr 12 18:23:28.913060 env[1620]: 2024-04-12 18:23:28.838 [INFO][3034] ipam.go 489: Trying affinity for 192.168.111.64/26 host="172.31.25.169" Apr 12 18:23:28.913060 env[1620]: 2024-04-12 18:23:28.842 [INFO][3034] ipam.go 155: Attempting to load block cidr=192.168.111.64/26 host="172.31.25.169" Apr 12 18:23:28.913060 env[1620]: 2024-04-12 18:23:28.848 [INFO][3034] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.111.64/26 host="172.31.25.169" Apr 12 18:23:28.913060 env[1620]: 2024-04-12 18:23:28.848 [INFO][3034] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.111.64/26 handle="k8s-pod-network.a51fbbbc22c7ceb06e9a52d74b3091845eb1df5bd85503c81b2f94008870ebbf" host="172.31.25.169" Apr 12 18:23:28.913060 env[1620]: 2024-04-12 18:23:28.852 [INFO][3034] ipam.go 1682: Creating new handle: k8s-pod-network.a51fbbbc22c7ceb06e9a52d74b3091845eb1df5bd85503c81b2f94008870ebbf Apr 12 18:23:28.913060 env[1620]: 2024-04-12 18:23:28.863 [INFO][3034] ipam.go 1203: Writing block in order to claim IPs block=192.168.111.64/26 handle="k8s-pod-network.a51fbbbc22c7ceb06e9a52d74b3091845eb1df5bd85503c81b2f94008870ebbf" host="172.31.25.169" Apr 12 18:23:28.913060 env[1620]: 2024-04-12 18:23:28.874 [INFO][3034] ipam.go 1216: Successfully claimed IPs: [192.168.111.65/26] block=192.168.111.64/26 handle="k8s-pod-network.a51fbbbc22c7ceb06e9a52d74b3091845eb1df5bd85503c81b2f94008870ebbf" host="172.31.25.169" Apr 12 18:23:28.913060 env[1620]: 2024-04-12 18:23:28.874 [INFO][3034] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.111.65/26] handle="k8s-pod-network.a51fbbbc22c7ceb06e9a52d74b3091845eb1df5bd85503c81b2f94008870ebbf" host="172.31.25.169" Apr 12 18:23:28.913060 env[1620]: 2024-04-12 18:23:28.874 [INFO][3034] ipam_plugin.go 377: Released host-wide IPAM lock. Apr 12 18:23:28.913060 env[1620]: 2024-04-12 18:23:28.874 [INFO][3034] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.111.65/26] IPv6=[] ContainerID="a51fbbbc22c7ceb06e9a52d74b3091845eb1df5bd85503c81b2f94008870ebbf" HandleID="k8s-pod-network.a51fbbbc22c7ceb06e9a52d74b3091845eb1df5bd85503c81b2f94008870ebbf" Workload="172.31.25.169-k8s-csi--node--driver--zxgs6-eth0" Apr 12 18:23:28.914285 env[1620]: 2024-04-12 18:23:28.880 [INFO][2953] k8s.go 385: Populated endpoint ContainerID="a51fbbbc22c7ceb06e9a52d74b3091845eb1df5bd85503c81b2f94008870ebbf" Namespace="calico-system" Pod="csi-node-driver-zxgs6" WorkloadEndpoint="172.31.25.169-k8s-csi--node--driver--zxgs6-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.25.169-k8s-csi--node--driver--zxgs6-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"d252c216-222e-4462-b095-d9412d3071cf", ResourceVersion:"952", Generation:0, CreationTimestamp:time.Date(2024, time.April, 12, 18, 22, 59, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"54c68f759", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.25.169", ContainerID:"", Pod:"csi-node-driver-zxgs6", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.111.65/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"cali17fd70c667b", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Apr 12 18:23:28.914285 env[1620]: 2024-04-12 18:23:28.880 [INFO][2953] k8s.go 386: Calico CNI using IPs: [192.168.111.65/32] ContainerID="a51fbbbc22c7ceb06e9a52d74b3091845eb1df5bd85503c81b2f94008870ebbf" Namespace="calico-system" Pod="csi-node-driver-zxgs6" WorkloadEndpoint="172.31.25.169-k8s-csi--node--driver--zxgs6-eth0" Apr 12 18:23:28.914285 env[1620]: 2024-04-12 18:23:28.880 [INFO][2953] dataplane_linux.go 68: Setting the host side veth name to cali17fd70c667b ContainerID="a51fbbbc22c7ceb06e9a52d74b3091845eb1df5bd85503c81b2f94008870ebbf" Namespace="calico-system" Pod="csi-node-driver-zxgs6" WorkloadEndpoint="172.31.25.169-k8s-csi--node--driver--zxgs6-eth0" Apr 12 18:23:28.914285 env[1620]: 2024-04-12 18:23:28.893 [INFO][2953] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="a51fbbbc22c7ceb06e9a52d74b3091845eb1df5bd85503c81b2f94008870ebbf" Namespace="calico-system" Pod="csi-node-driver-zxgs6" WorkloadEndpoint="172.31.25.169-k8s-csi--node--driver--zxgs6-eth0" Apr 12 18:23:28.914285 env[1620]: 2024-04-12 18:23:28.894 [INFO][2953] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="a51fbbbc22c7ceb06e9a52d74b3091845eb1df5bd85503c81b2f94008870ebbf" Namespace="calico-system" Pod="csi-node-driver-zxgs6" WorkloadEndpoint="172.31.25.169-k8s-csi--node--driver--zxgs6-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.25.169-k8s-csi--node--driver--zxgs6-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"d252c216-222e-4462-b095-d9412d3071cf", ResourceVersion:"952", Generation:0, CreationTimestamp:time.Date(2024, time.April, 12, 18, 22, 59, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"54c68f759", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.25.169", ContainerID:"a51fbbbc22c7ceb06e9a52d74b3091845eb1df5bd85503c81b2f94008870ebbf", Pod:"csi-node-driver-zxgs6", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.111.65/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"cali17fd70c667b", MAC:"66:77:35:ec:59:69", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Apr 12 18:23:28.914285 env[1620]: 2024-04-12 18:23:28.910 [INFO][2953] k8s.go 498: Wrote updated endpoint to datastore ContainerID="a51fbbbc22c7ceb06e9a52d74b3091845eb1df5bd85503c81b2f94008870ebbf" Namespace="calico-system" Pod="csi-node-driver-zxgs6" WorkloadEndpoint="172.31.25.169-k8s-csi--node--driver--zxgs6-eth0" Apr 12 18:23:28.949198 env[1620]: time="2024-04-12T18:23:28.949038090Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Apr 12 18:23:28.949370 env[1620]: time="2024-04-12T18:23:28.949205286Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Apr 12 18:23:28.949370 env[1620]: time="2024-04-12T18:23:28.949269367Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Apr 12 18:23:28.949959 env[1620]: time="2024-04-12T18:23:28.949841241Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/a51fbbbc22c7ceb06e9a52d74b3091845eb1df5bd85503c81b2f94008870ebbf pid=3081 runtime=io.containerd.runc.v2 Apr 12 18:23:28.968000 audit[3092]: NETFILTER_CFG table=filter:69 family=2 entries=36 op=nft_register_chain pid=3092 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Apr 12 18:23:28.971916 kernel: kauditd_printk_skb: 157 callbacks suppressed Apr 12 18:23:28.972043 kernel: audit: type=1325 audit(1712946208.968:759): table=filter:69 family=2 entries=36 op=nft_register_chain pid=3092 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Apr 12 18:23:28.987642 kubelet[2083]: E0412 18:23:28.987585 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:28.968000 audit[3092]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=20404 a0=3 a1=ffffcf6a9040 a2=0 a3=ffffaa2e2fa8 items=0 ppid=2759 pid=3092 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:29.002389 kernel: audit: type=1300 audit(1712946208.968:759): arch=c00000b7 syscall=211 success=yes exit=20404 a0=3 a1=ffffcf6a9040 a2=0 a3=ffffaa2e2fa8 items=0 ppid=2759 pid=3092 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:29.004388 kernel: audit: type=1327 audit(1712946208.968:759): proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Apr 12 18:23:28.968000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Apr 12 18:23:29.007277 systemd[1]: Started cri-containerd-a51fbbbc22c7ceb06e9a52d74b3091845eb1df5bd85503c81b2f94008870ebbf.scope. Apr 12 18:23:29.030000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.030000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.046585 kernel: audit: type=1400 audit(1712946209.030:760): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.046732 kernel: audit: type=1400 audit(1712946209.030:761): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.046785 kernel: audit: type=1400 audit(1712946209.031:762): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.031000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.031000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.061576 kernel: audit: type=1400 audit(1712946209.031:763): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.031000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.069288 kernel: audit: type=1400 audit(1712946209.031:764): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.031000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.077958 kernel: audit: type=1400 audit(1712946209.031:765): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.078605 kernel: audit: type=1400 audit(1712946209.031:766): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.031000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.031000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.031000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.038000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.038000 audit: BPF prog-id=94 op=LOAD Apr 12 18:23:29.039000 audit[3091]: AVC avc: denied { bpf } for pid=3091 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.039000 audit[3091]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=400011db38 a2=10 a3=0 items=0 ppid=3081 pid=3091 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:29.039000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6135316662626263323263376365623036653961353264373462333039 Apr 12 18:23:29.039000 audit[3091]: AVC avc: denied { perfmon } for pid=3091 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.039000 audit[3091]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=400011d5a0 a2=3c a3=0 items=0 ppid=3081 pid=3091 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:29.039000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6135316662626263323263376365623036653961353264373462333039 Apr 12 18:23:29.039000 audit[3091]: AVC avc: denied { bpf } for pid=3091 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.039000 audit[3091]: AVC avc: denied { bpf } for pid=3091 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.039000 audit[3091]: AVC avc: denied { bpf } for pid=3091 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.039000 audit[3091]: AVC avc: denied { perfmon } for pid=3091 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.039000 audit[3091]: AVC avc: denied { perfmon } for pid=3091 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.039000 audit[3091]: AVC avc: denied { perfmon } for pid=3091 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.039000 audit[3091]: AVC avc: denied { perfmon } for pid=3091 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.039000 audit[3091]: AVC avc: denied { perfmon } for pid=3091 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.039000 audit[3091]: AVC avc: denied { bpf } for pid=3091 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.039000 audit[3091]: AVC avc: denied { bpf } for pid=3091 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.039000 audit: BPF prog-id=95 op=LOAD Apr 12 18:23:29.039000 audit[3091]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=400011d8e0 a2=78 a3=0 items=0 ppid=3081 pid=3091 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:29.039000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6135316662626263323263376365623036653961353264373462333039 Apr 12 18:23:29.046000 audit[3091]: AVC avc: denied { bpf } for pid=3091 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.046000 audit[3091]: AVC avc: denied { bpf } for pid=3091 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.046000 audit[3091]: AVC avc: denied { perfmon } for pid=3091 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.046000 audit[3091]: AVC avc: denied { perfmon } for pid=3091 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.046000 audit[3091]: AVC avc: denied { perfmon } for pid=3091 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.046000 audit[3091]: AVC avc: denied { perfmon } for pid=3091 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.046000 audit[3091]: AVC avc: denied { perfmon } for pid=3091 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.046000 audit[3091]: AVC avc: denied { bpf } for pid=3091 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.046000 audit[3091]: AVC avc: denied { bpf } for pid=3091 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.046000 audit: BPF prog-id=96 op=LOAD Apr 12 18:23:29.046000 audit[3091]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=400011d670 a2=78 a3=0 items=0 ppid=3081 pid=3091 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:29.046000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6135316662626263323263376365623036653961353264373462333039 Apr 12 18:23:29.053000 audit: BPF prog-id=96 op=UNLOAD Apr 12 18:23:29.053000 audit: BPF prog-id=95 op=UNLOAD Apr 12 18:23:29.053000 audit[3091]: AVC avc: denied { bpf } for pid=3091 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.053000 audit[3091]: AVC avc: denied { bpf } for pid=3091 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.053000 audit[3091]: AVC avc: denied { bpf } for pid=3091 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.053000 audit[3091]: AVC avc: denied { perfmon } for pid=3091 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.053000 audit[3091]: AVC avc: denied { perfmon } for pid=3091 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.053000 audit[3091]: AVC avc: denied { perfmon } for pid=3091 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.053000 audit[3091]: AVC avc: denied { perfmon } for pid=3091 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.053000 audit[3091]: AVC avc: denied { perfmon } for pid=3091 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.053000 audit[3091]: AVC avc: denied { bpf } for pid=3091 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.053000 audit[3091]: AVC avc: denied { bpf } for pid=3091 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:29.053000 audit: BPF prog-id=97 op=LOAD Apr 12 18:23:29.053000 audit[3091]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=400011db40 a2=78 a3=0 items=0 ppid=3081 pid=3091 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:29.053000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6135316662626263323263376365623036653961353264373462333039 Apr 12 18:23:29.106678 env[1620]: time="2024-04-12T18:23:29.106622450Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-zxgs6,Uid:d252c216-222e-4462-b095-d9412d3071cf,Namespace:calico-system,Attempt:1,} returns sandbox id \"a51fbbbc22c7ceb06e9a52d74b3091845eb1df5bd85503c81b2f94008870ebbf\"" Apr 12 18:23:29.110235 env[1620]: time="2024-04-12T18:23:29.110141104Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/csi:v3.27.3\"" Apr 12 18:23:29.342132 systemd[1]: run-containerd-runc-k8s.io-a51fbbbc22c7ceb06e9a52d74b3091845eb1df5bd85503c81b2f94008870ebbf-runc.1CdqYi.mount: Deactivated successfully. Apr 12 18:23:29.988716 kubelet[2083]: E0412 18:23:29.988652 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:30.335183 systemd-networkd[1420]: cali17fd70c667b: Gained IPv6LL Apr 12 18:23:30.424322 env[1620]: time="2024-04-12T18:23:30.424264994Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/csi:v3.27.3,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:30.427179 env[1620]: time="2024-04-12T18:23:30.427132549Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:cb04debcdc824380d7f126f1c68f1232b1df46df89ee213e1e22c917392546db,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:30.429911 env[1620]: time="2024-04-12T18:23:30.429849823Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/csi:v3.27.3,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:30.432632 env[1620]: time="2024-04-12T18:23:30.432572714Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/csi@sha256:e6e9be3e67df7388eae74d419fff785fdb35b0c3456e3d27a0251c7bdb55f0fd,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:30.433609 env[1620]: time="2024-04-12T18:23:30.433564729Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/csi:v3.27.3\" returns image reference \"sha256:cb04debcdc824380d7f126f1c68f1232b1df46df89ee213e1e22c917392546db\"" Apr 12 18:23:30.438281 env[1620]: time="2024-04-12T18:23:30.438228357Z" level=info msg="CreateContainer within sandbox \"a51fbbbc22c7ceb06e9a52d74b3091845eb1df5bd85503c81b2f94008870ebbf\" for container &ContainerMetadata{Name:calico-csi,Attempt:0,}" Apr 12 18:23:30.461879 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1626097904.mount: Deactivated successfully. Apr 12 18:23:30.471395 env[1620]: time="2024-04-12T18:23:30.471311585Z" level=info msg="CreateContainer within sandbox \"a51fbbbc22c7ceb06e9a52d74b3091845eb1df5bd85503c81b2f94008870ebbf\" for &ContainerMetadata{Name:calico-csi,Attempt:0,} returns container id \"38973ecbc558080e61bc5689319a49e95424aa6503dafbbca5707a1aad2258a2\"" Apr 12 18:23:30.472569 env[1620]: time="2024-04-12T18:23:30.472522413Z" level=info msg="StartContainer for \"38973ecbc558080e61bc5689319a49e95424aa6503dafbbca5707a1aad2258a2\"" Apr 12 18:23:30.511503 systemd[1]: Started cri-containerd-38973ecbc558080e61bc5689319a49e95424aa6503dafbbca5707a1aad2258a2.scope. Apr 12 18:23:30.524786 systemd[1]: run-containerd-runc-k8s.io-38973ecbc558080e61bc5689319a49e95424aa6503dafbbca5707a1aad2258a2-runc.6fhYJV.mount: Deactivated successfully. Apr 12 18:23:30.554000 audit[3131]: AVC avc: denied { perfmon } for pid=3131 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:30.554000 audit[3131]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=3081 pid=3131 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:30.554000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3338393733656362633535383038306536316263353638393331396134 Apr 12 18:23:30.555000 audit[3131]: AVC avc: denied { bpf } for pid=3131 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:30.555000 audit[3131]: AVC avc: denied { bpf } for pid=3131 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:30.555000 audit[3131]: AVC avc: denied { bpf } for pid=3131 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:30.555000 audit[3131]: AVC avc: denied { perfmon } for pid=3131 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:30.555000 audit[3131]: AVC avc: denied { perfmon } for pid=3131 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:30.555000 audit[3131]: AVC avc: denied { perfmon } for pid=3131 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:30.555000 audit[3131]: AVC avc: denied { perfmon } for pid=3131 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:30.555000 audit[3131]: AVC avc: denied { perfmon } for pid=3131 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:30.555000 audit[3131]: AVC avc: denied { bpf } for pid=3131 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:30.555000 audit[3131]: AVC avc: denied { bpf } for pid=3131 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:30.555000 audit: BPF prog-id=98 op=LOAD Apr 12 18:23:30.555000 audit[3131]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=3081 pid=3131 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:30.555000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3338393733656362633535383038306536316263353638393331396134 Apr 12 18:23:30.555000 audit[3131]: AVC avc: denied { bpf } for pid=3131 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:30.555000 audit[3131]: AVC avc: denied { bpf } for pid=3131 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:30.555000 audit[3131]: AVC avc: denied { perfmon } for pid=3131 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:30.555000 audit[3131]: AVC avc: denied { perfmon } for pid=3131 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:30.555000 audit[3131]: AVC avc: denied { perfmon } for pid=3131 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:30.555000 audit[3131]: AVC avc: denied { perfmon } for pid=3131 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:30.555000 audit[3131]: AVC avc: denied { perfmon } for pid=3131 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:30.555000 audit[3131]: AVC avc: denied { bpf } for pid=3131 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:30.555000 audit[3131]: AVC avc: denied { bpf } for pid=3131 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:30.555000 audit: BPF prog-id=99 op=LOAD Apr 12 18:23:30.555000 audit[3131]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=3081 pid=3131 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:30.555000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3338393733656362633535383038306536316263353638393331396134 Apr 12 18:23:30.555000 audit: BPF prog-id=99 op=UNLOAD Apr 12 18:23:30.556000 audit: BPF prog-id=98 op=UNLOAD Apr 12 18:23:30.556000 audit[3131]: AVC avc: denied { bpf } for pid=3131 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:30.556000 audit[3131]: AVC avc: denied { bpf } for pid=3131 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:30.556000 audit[3131]: AVC avc: denied { bpf } for pid=3131 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:30.556000 audit[3131]: AVC avc: denied { perfmon } for pid=3131 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:30.556000 audit[3131]: AVC avc: denied { perfmon } for pid=3131 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:30.556000 audit[3131]: AVC avc: denied { perfmon } for pid=3131 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:30.556000 audit[3131]: AVC avc: denied { perfmon } for pid=3131 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:30.556000 audit[3131]: AVC avc: denied { perfmon } for pid=3131 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:30.556000 audit[3131]: AVC avc: denied { bpf } for pid=3131 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:30.556000 audit[3131]: AVC avc: denied { bpf } for pid=3131 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:30.556000 audit: BPF prog-id=100 op=LOAD Apr 12 18:23:30.556000 audit[3131]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=3081 pid=3131 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:30.556000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3338393733656362633535383038306536316263353638393331396134 Apr 12 18:23:30.589832 env[1620]: time="2024-04-12T18:23:30.589671269Z" level=info msg="StartContainer for \"38973ecbc558080e61bc5689319a49e95424aa6503dafbbca5707a1aad2258a2\" returns successfully" Apr 12 18:23:30.594469 env[1620]: time="2024-04-12T18:23:30.594420149Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node-driver-registrar:v3.27.3\"" Apr 12 18:23:30.989149 kubelet[2083]: E0412 18:23:30.989089 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:31.989811 kubelet[2083]: E0412 18:23:31.989744 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:32.074710 env[1620]: time="2024-04-12T18:23:32.074654308Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node-driver-registrar:v3.27.3,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:32.080048 env[1620]: time="2024-04-12T18:23:32.079999382Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:13500f6d740693374c9b66f167a0c47c5ec1550366636a961a70a22bf3f42146,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:32.083652 env[1620]: time="2024-04-12T18:23:32.083609384Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/node-driver-registrar:v3.27.3,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:32.087133 env[1620]: time="2024-04-12T18:23:32.087089620Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node-driver-registrar@sha256:f3c7cf1e4b85038d77b3568a1103d3c5174b07bd4435b22a8891b167ef28a50a,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:32.088457 env[1620]: time="2024-04-12T18:23:32.088406562Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node-driver-registrar:v3.27.3\" returns image reference \"sha256:13500f6d740693374c9b66f167a0c47c5ec1550366636a961a70a22bf3f42146\"" Apr 12 18:23:32.092234 env[1620]: time="2024-04-12T18:23:32.092162102Z" level=info msg="CreateContainer within sandbox \"a51fbbbc22c7ceb06e9a52d74b3091845eb1df5bd85503c81b2f94008870ebbf\" for container &ContainerMetadata{Name:csi-node-driver-registrar,Attempt:0,}" Apr 12 18:23:32.114771 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount4114067978.mount: Deactivated successfully. Apr 12 18:23:32.127133 env[1620]: time="2024-04-12T18:23:32.127072442Z" level=info msg="CreateContainer within sandbox \"a51fbbbc22c7ceb06e9a52d74b3091845eb1df5bd85503c81b2f94008870ebbf\" for &ContainerMetadata{Name:csi-node-driver-registrar,Attempt:0,} returns container id \"e5aa03867adda4b5fca287d450d50ecd5c58437d680816fd0551b85e8587ed1c\"" Apr 12 18:23:32.128265 env[1620]: time="2024-04-12T18:23:32.128166265Z" level=info msg="StartContainer for \"e5aa03867adda4b5fca287d450d50ecd5c58437d680816fd0551b85e8587ed1c\"" Apr 12 18:23:32.174954 systemd[1]: run-containerd-runc-k8s.io-e5aa03867adda4b5fca287d450d50ecd5c58437d680816fd0551b85e8587ed1c-runc.MQbDjF.mount: Deactivated successfully. Apr 12 18:23:32.179811 systemd[1]: Started cri-containerd-e5aa03867adda4b5fca287d450d50ecd5c58437d680816fd0551b85e8587ed1c.scope. Apr 12 18:23:32.214000 audit[3169]: AVC avc: denied { perfmon } for pid=3169 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:32.214000 audit[3169]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=3081 pid=3169 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:32.214000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6535616130333836376164646134623566636132383764343530643530 Apr 12 18:23:32.215000 audit[3169]: AVC avc: denied { bpf } for pid=3169 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:32.215000 audit[3169]: AVC avc: denied { bpf } for pid=3169 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:32.215000 audit[3169]: AVC avc: denied { bpf } for pid=3169 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:32.215000 audit[3169]: AVC avc: denied { perfmon } for pid=3169 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:32.215000 audit[3169]: AVC avc: denied { perfmon } for pid=3169 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:32.215000 audit[3169]: AVC avc: denied { perfmon } for pid=3169 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:32.215000 audit[3169]: AVC avc: denied { perfmon } for pid=3169 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:32.215000 audit[3169]: AVC avc: denied { perfmon } for pid=3169 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:32.215000 audit[3169]: AVC avc: denied { bpf } for pid=3169 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:32.215000 audit[3169]: AVC avc: denied { bpf } for pid=3169 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:32.215000 audit: BPF prog-id=101 op=LOAD Apr 12 18:23:32.215000 audit[3169]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=3081 pid=3169 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:32.215000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6535616130333836376164646134623566636132383764343530643530 Apr 12 18:23:32.216000 audit[3169]: AVC avc: denied { bpf } for pid=3169 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:32.216000 audit[3169]: AVC avc: denied { bpf } for pid=3169 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:32.216000 audit[3169]: AVC avc: denied { perfmon } for pid=3169 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:32.216000 audit[3169]: AVC avc: denied { perfmon } for pid=3169 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:32.216000 audit[3169]: AVC avc: denied { perfmon } for pid=3169 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:32.216000 audit[3169]: AVC avc: denied { perfmon } for pid=3169 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:32.216000 audit[3169]: AVC avc: denied { perfmon } for pid=3169 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:32.216000 audit[3169]: AVC avc: denied { bpf } for pid=3169 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:32.216000 audit[3169]: AVC avc: denied { bpf } for pid=3169 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:32.216000 audit: BPF prog-id=102 op=LOAD Apr 12 18:23:32.216000 audit[3169]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=3081 pid=3169 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:32.216000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6535616130333836376164646134623566636132383764343530643530 Apr 12 18:23:32.217000 audit: BPF prog-id=102 op=UNLOAD Apr 12 18:23:32.217000 audit: BPF prog-id=101 op=UNLOAD Apr 12 18:23:32.217000 audit[3169]: AVC avc: denied { bpf } for pid=3169 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:32.217000 audit[3169]: AVC avc: denied { bpf } for pid=3169 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:32.217000 audit[3169]: AVC avc: denied { bpf } for pid=3169 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:32.217000 audit[3169]: AVC avc: denied { perfmon } for pid=3169 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:32.217000 audit[3169]: AVC avc: denied { perfmon } for pid=3169 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:32.217000 audit[3169]: AVC avc: denied { perfmon } for pid=3169 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:32.217000 audit[3169]: AVC avc: denied { perfmon } for pid=3169 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:32.217000 audit[3169]: AVC avc: denied { perfmon } for pid=3169 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:32.217000 audit[3169]: AVC avc: denied { bpf } for pid=3169 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:32.217000 audit[3169]: AVC avc: denied { bpf } for pid=3169 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:32.217000 audit: BPF prog-id=103 op=LOAD Apr 12 18:23:32.217000 audit[3169]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=3081 pid=3169 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:32.217000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6535616130333836376164646134623566636132383764343530643530 Apr 12 18:23:32.254541 env[1620]: time="2024-04-12T18:23:32.252333695Z" level=info msg="StartContainer for \"e5aa03867adda4b5fca287d450d50ecd5c58437d680816fd0551b85e8587ed1c\" returns successfully" Apr 12 18:23:32.991015 kubelet[2083]: E0412 18:23:32.990902 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:33.156214 kubelet[2083]: I0412 18:23:33.156111 2083 csi_plugin.go:99] kubernetes.io/csi: Trying to validate a new CSI Driver with name: csi.tigera.io endpoint: /var/lib/kubelet/plugins/csi.tigera.io/csi.sock versions: 1.0.0 Apr 12 18:23:33.156214 kubelet[2083]: I0412 18:23:33.156157 2083 csi_plugin.go:112] kubernetes.io/csi: Register new plugin with name: csi.tigera.io at endpoint: /var/lib/kubelet/plugins/csi.tigera.io/csi.sock Apr 12 18:23:33.991570 kubelet[2083]: E0412 18:23:33.991507 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:34.991712 kubelet[2083]: E0412 18:23:34.991645 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:35.180930 env[1620]: time="2024-04-12T18:23:35.180865525Z" level=info msg="StopPodSandbox for \"a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903\"" Apr 12 18:23:35.256156 kubelet[2083]: I0412 18:23:35.255851 2083 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="calico-system/csi-node-driver-zxgs6" podStartSLOduration=33.275225122 podCreationTimestamp="2024-04-12 18:22:59 +0000 UTC" firstStartedPulling="2024-04-12 18:23:29.109099246 +0000 UTC m=+31.985797884" lastFinishedPulling="2024-04-12 18:23:32.089673899 +0000 UTC m=+34.966372537" observedRunningTime="2024-04-12 18:23:32.34820801 +0000 UTC m=+35.224906672" watchObservedRunningTime="2024-04-12 18:23:35.255799775 +0000 UTC m=+38.132498425" Apr 12 18:23:35.318143 env[1620]: 2024-04-12 18:23:35.256 [INFO][3213] k8s.go 585: Cleaning up netns ContainerID="a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" Apr 12 18:23:35.318143 env[1620]: 2024-04-12 18:23:35.257 [INFO][3213] dataplane_linux.go 530: Deleting workload's device in netns. ContainerID="a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" iface="eth0" netns="/var/run/netns/cni-474edffb-0001-03bf-1f2f-8308c39c3741" Apr 12 18:23:35.318143 env[1620]: 2024-04-12 18:23:35.257 [INFO][3213] dataplane_linux.go 541: Entered netns, deleting veth. ContainerID="a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" iface="eth0" netns="/var/run/netns/cni-474edffb-0001-03bf-1f2f-8308c39c3741" Apr 12 18:23:35.318143 env[1620]: 2024-04-12 18:23:35.257 [INFO][3213] dataplane_linux.go 568: Workload's veth was already gone. Nothing to do. ContainerID="a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" iface="eth0" netns="/var/run/netns/cni-474edffb-0001-03bf-1f2f-8308c39c3741" Apr 12 18:23:35.318143 env[1620]: 2024-04-12 18:23:35.257 [INFO][3213] k8s.go 592: Releasing IP address(es) ContainerID="a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" Apr 12 18:23:35.318143 env[1620]: 2024-04-12 18:23:35.257 [INFO][3213] utils.go 188: Calico CNI releasing IP address ContainerID="a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" Apr 12 18:23:35.318143 env[1620]: 2024-04-12 18:23:35.293 [INFO][3219] ipam_plugin.go 415: Releasing address using handleID ContainerID="a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" HandleID="k8s-pod-network.a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" Workload="172.31.25.169-k8s-nginx--deployment--845c78c8b9--xg44z-eth0" Apr 12 18:23:35.318143 env[1620]: 2024-04-12 18:23:35.294 [INFO][3219] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Apr 12 18:23:35.318143 env[1620]: 2024-04-12 18:23:35.294 [INFO][3219] ipam_plugin.go 371: Acquired host-wide IPAM lock. Apr 12 18:23:35.318143 env[1620]: 2024-04-12 18:23:35.310 [WARNING][3219] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" HandleID="k8s-pod-network.a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" Workload="172.31.25.169-k8s-nginx--deployment--845c78c8b9--xg44z-eth0" Apr 12 18:23:35.318143 env[1620]: 2024-04-12 18:23:35.310 [INFO][3219] ipam_plugin.go 443: Releasing address using workloadID ContainerID="a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" HandleID="k8s-pod-network.a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" Workload="172.31.25.169-k8s-nginx--deployment--845c78c8b9--xg44z-eth0" Apr 12 18:23:35.318143 env[1620]: 2024-04-12 18:23:35.313 [INFO][3219] ipam_plugin.go 377: Released host-wide IPAM lock. Apr 12 18:23:35.318143 env[1620]: 2024-04-12 18:23:35.316 [INFO][3213] k8s.go 598: Teardown processing complete. ContainerID="a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" Apr 12 18:23:35.322205 systemd[1]: run-netns-cni\x2d474edffb\x2d0001\x2d03bf\x2d1f2f\x2d8308c39c3741.mount: Deactivated successfully. Apr 12 18:23:35.323510 env[1620]: time="2024-04-12T18:23:35.323446264Z" level=info msg="TearDown network for sandbox \"a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903\" successfully" Apr 12 18:23:35.323728 env[1620]: time="2024-04-12T18:23:35.323690069Z" level=info msg="StopPodSandbox for \"a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903\" returns successfully" Apr 12 18:23:35.326397 env[1620]: time="2024-04-12T18:23:35.326341392Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-845c78c8b9-xg44z,Uid:6fe42277-e1b4-4e96-a619-0987265eb5e0,Namespace:default,Attempt:1,}" Apr 12 18:23:35.571169 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Apr 12 18:23:35.571316 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali331265c1344: link becomes ready Apr 12 18:23:35.569247 systemd-networkd[1420]: cali331265c1344: Link UP Apr 12 18:23:35.572578 systemd-networkd[1420]: cali331265c1344: Gained carrier Apr 12 18:23:35.575916 (udev-worker)[3256]: Network interface NamePolicy= disabled on kernel command line. Apr 12 18:23:35.603144 env[1620]: 2024-04-12 18:23:35.435 [INFO][3230] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.25.169-k8s-nginx--deployment--845c78c8b9--xg44z-eth0 nginx-deployment-845c78c8b9- default 6fe42277-e1b4-4e96-a619-0987265eb5e0 983 0 2024-04-12 18:23:18 +0000 UTC map[app:nginx pod-template-hash:845c78c8b9 projectcalico.org/namespace:default projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 172.31.25.169 nginx-deployment-845c78c8b9-xg44z eth0 default [] [] [kns.default ksa.default.default] cali331265c1344 [] []}} ContainerID="9133adf6b1d2514a60e10011f24b9aa933c1890bab4776952c00f18798ce3678" Namespace="default" Pod="nginx-deployment-845c78c8b9-xg44z" WorkloadEndpoint="172.31.25.169-k8s-nginx--deployment--845c78c8b9--xg44z-" Apr 12 18:23:35.603144 env[1620]: 2024-04-12 18:23:35.435 [INFO][3230] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="9133adf6b1d2514a60e10011f24b9aa933c1890bab4776952c00f18798ce3678" Namespace="default" Pod="nginx-deployment-845c78c8b9-xg44z" WorkloadEndpoint="172.31.25.169-k8s-nginx--deployment--845c78c8b9--xg44z-eth0" Apr 12 18:23:35.603144 env[1620]: 2024-04-12 18:23:35.485 [INFO][3243] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="9133adf6b1d2514a60e10011f24b9aa933c1890bab4776952c00f18798ce3678" HandleID="k8s-pod-network.9133adf6b1d2514a60e10011f24b9aa933c1890bab4776952c00f18798ce3678" Workload="172.31.25.169-k8s-nginx--deployment--845c78c8b9--xg44z-eth0" Apr 12 18:23:35.603144 env[1620]: 2024-04-12 18:23:35.506 [INFO][3243] ipam_plugin.go 268: Auto assigning IP ContainerID="9133adf6b1d2514a60e10011f24b9aa933c1890bab4776952c00f18798ce3678" HandleID="k8s-pod-network.9133adf6b1d2514a60e10011f24b9aa933c1890bab4776952c00f18798ce3678" Workload="172.31.25.169-k8s-nginx--deployment--845c78c8b9--xg44z-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x400029abd0), Attrs:map[string]string{"namespace":"default", "node":"172.31.25.169", "pod":"nginx-deployment-845c78c8b9-xg44z", "timestamp":"2024-04-12 18:23:35.485959985 +0000 UTC"}, Hostname:"172.31.25.169", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Apr 12 18:23:35.603144 env[1620]: 2024-04-12 18:23:35.506 [INFO][3243] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Apr 12 18:23:35.603144 env[1620]: 2024-04-12 18:23:35.506 [INFO][3243] ipam_plugin.go 371: Acquired host-wide IPAM lock. Apr 12 18:23:35.603144 env[1620]: 2024-04-12 18:23:35.506 [INFO][3243] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.25.169' Apr 12 18:23:35.603144 env[1620]: 2024-04-12 18:23:35.510 [INFO][3243] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.9133adf6b1d2514a60e10011f24b9aa933c1890bab4776952c00f18798ce3678" host="172.31.25.169" Apr 12 18:23:35.603144 env[1620]: 2024-04-12 18:23:35.517 [INFO][3243] ipam.go 372: Looking up existing affinities for host host="172.31.25.169" Apr 12 18:23:35.603144 env[1620]: 2024-04-12 18:23:35.524 [INFO][3243] ipam.go 489: Trying affinity for 192.168.111.64/26 host="172.31.25.169" Apr 12 18:23:35.603144 env[1620]: 2024-04-12 18:23:35.528 [INFO][3243] ipam.go 155: Attempting to load block cidr=192.168.111.64/26 host="172.31.25.169" Apr 12 18:23:35.603144 env[1620]: 2024-04-12 18:23:35.532 [INFO][3243] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.111.64/26 host="172.31.25.169" Apr 12 18:23:35.603144 env[1620]: 2024-04-12 18:23:35.532 [INFO][3243] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.111.64/26 handle="k8s-pod-network.9133adf6b1d2514a60e10011f24b9aa933c1890bab4776952c00f18798ce3678" host="172.31.25.169" Apr 12 18:23:35.603144 env[1620]: 2024-04-12 18:23:35.535 [INFO][3243] ipam.go 1682: Creating new handle: k8s-pod-network.9133adf6b1d2514a60e10011f24b9aa933c1890bab4776952c00f18798ce3678 Apr 12 18:23:35.603144 env[1620]: 2024-04-12 18:23:35.541 [INFO][3243] ipam.go 1203: Writing block in order to claim IPs block=192.168.111.64/26 handle="k8s-pod-network.9133adf6b1d2514a60e10011f24b9aa933c1890bab4776952c00f18798ce3678" host="172.31.25.169" Apr 12 18:23:35.603144 env[1620]: 2024-04-12 18:23:35.558 [INFO][3243] ipam.go 1216: Successfully claimed IPs: [192.168.111.66/26] block=192.168.111.64/26 handle="k8s-pod-network.9133adf6b1d2514a60e10011f24b9aa933c1890bab4776952c00f18798ce3678" host="172.31.25.169" Apr 12 18:23:35.603144 env[1620]: 2024-04-12 18:23:35.558 [INFO][3243] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.111.66/26] handle="k8s-pod-network.9133adf6b1d2514a60e10011f24b9aa933c1890bab4776952c00f18798ce3678" host="172.31.25.169" Apr 12 18:23:35.603144 env[1620]: 2024-04-12 18:23:35.559 [INFO][3243] ipam_plugin.go 377: Released host-wide IPAM lock. Apr 12 18:23:35.603144 env[1620]: 2024-04-12 18:23:35.559 [INFO][3243] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.111.66/26] IPv6=[] ContainerID="9133adf6b1d2514a60e10011f24b9aa933c1890bab4776952c00f18798ce3678" HandleID="k8s-pod-network.9133adf6b1d2514a60e10011f24b9aa933c1890bab4776952c00f18798ce3678" Workload="172.31.25.169-k8s-nginx--deployment--845c78c8b9--xg44z-eth0" Apr 12 18:23:35.604384 env[1620]: 2024-04-12 18:23:35.562 [INFO][3230] k8s.go 385: Populated endpoint ContainerID="9133adf6b1d2514a60e10011f24b9aa933c1890bab4776952c00f18798ce3678" Namespace="default" Pod="nginx-deployment-845c78c8b9-xg44z" WorkloadEndpoint="172.31.25.169-k8s-nginx--deployment--845c78c8b9--xg44z-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.25.169-k8s-nginx--deployment--845c78c8b9--xg44z-eth0", GenerateName:"nginx-deployment-845c78c8b9-", Namespace:"default", SelfLink:"", UID:"6fe42277-e1b4-4e96-a619-0987265eb5e0", ResourceVersion:"983", Generation:0, CreationTimestamp:time.Date(2024, time.April, 12, 18, 23, 18, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"845c78c8b9", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.25.169", ContainerID:"", Pod:"nginx-deployment-845c78c8b9-xg44z", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.111.66/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali331265c1344", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Apr 12 18:23:35.604384 env[1620]: 2024-04-12 18:23:35.562 [INFO][3230] k8s.go 386: Calico CNI using IPs: [192.168.111.66/32] ContainerID="9133adf6b1d2514a60e10011f24b9aa933c1890bab4776952c00f18798ce3678" Namespace="default" Pod="nginx-deployment-845c78c8b9-xg44z" WorkloadEndpoint="172.31.25.169-k8s-nginx--deployment--845c78c8b9--xg44z-eth0" Apr 12 18:23:35.604384 env[1620]: 2024-04-12 18:23:35.562 [INFO][3230] dataplane_linux.go 68: Setting the host side veth name to cali331265c1344 ContainerID="9133adf6b1d2514a60e10011f24b9aa933c1890bab4776952c00f18798ce3678" Namespace="default" Pod="nginx-deployment-845c78c8b9-xg44z" WorkloadEndpoint="172.31.25.169-k8s-nginx--deployment--845c78c8b9--xg44z-eth0" Apr 12 18:23:35.604384 env[1620]: 2024-04-12 18:23:35.574 [INFO][3230] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="9133adf6b1d2514a60e10011f24b9aa933c1890bab4776952c00f18798ce3678" Namespace="default" Pod="nginx-deployment-845c78c8b9-xg44z" WorkloadEndpoint="172.31.25.169-k8s-nginx--deployment--845c78c8b9--xg44z-eth0" Apr 12 18:23:35.604384 env[1620]: 2024-04-12 18:23:35.575 [INFO][3230] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="9133adf6b1d2514a60e10011f24b9aa933c1890bab4776952c00f18798ce3678" Namespace="default" Pod="nginx-deployment-845c78c8b9-xg44z" WorkloadEndpoint="172.31.25.169-k8s-nginx--deployment--845c78c8b9--xg44z-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.25.169-k8s-nginx--deployment--845c78c8b9--xg44z-eth0", GenerateName:"nginx-deployment-845c78c8b9-", Namespace:"default", SelfLink:"", UID:"6fe42277-e1b4-4e96-a619-0987265eb5e0", ResourceVersion:"983", Generation:0, CreationTimestamp:time.Date(2024, time.April, 12, 18, 23, 18, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"845c78c8b9", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.25.169", ContainerID:"9133adf6b1d2514a60e10011f24b9aa933c1890bab4776952c00f18798ce3678", Pod:"nginx-deployment-845c78c8b9-xg44z", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.111.66/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali331265c1344", MAC:"f2:6b:34:f5:2e:e6", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Apr 12 18:23:35.604384 env[1620]: 2024-04-12 18:23:35.588 [INFO][3230] k8s.go 498: Wrote updated endpoint to datastore ContainerID="9133adf6b1d2514a60e10011f24b9aa933c1890bab4776952c00f18798ce3678" Namespace="default" Pod="nginx-deployment-845c78c8b9-xg44z" WorkloadEndpoint="172.31.25.169-k8s-nginx--deployment--845c78c8b9--xg44z-eth0" Apr 12 18:23:35.633357 env[1620]: time="2024-04-12T18:23:35.632650929Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Apr 12 18:23:35.633357 env[1620]: time="2024-04-12T18:23:35.632727644Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Apr 12 18:23:35.633357 env[1620]: time="2024-04-12T18:23:35.632754912Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Apr 12 18:23:35.633357 env[1620]: time="2024-04-12T18:23:35.633033991Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/9133adf6b1d2514a60e10011f24b9aa933c1890bab4776952c00f18798ce3678 pid=3280 runtime=io.containerd.runc.v2 Apr 12 18:23:35.649781 kernel: kauditd_printk_skb: 136 callbacks suppressed Apr 12 18:23:35.649915 kernel: audit: type=1325 audit(1712946215.638:790): table=filter:70 family=2 entries=40 op=nft_register_chain pid=3289 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Apr 12 18:23:35.638000 audit[3289]: NETFILTER_CFG table=filter:70 family=2 entries=40 op=nft_register_chain pid=3289 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Apr 12 18:23:35.638000 audit[3289]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=21560 a0=3 a1=ffffce28ab50 a2=0 a3=ffffb0769fa8 items=0 ppid=2759 pid=3289 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:35.638000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Apr 12 18:23:35.663969 kernel: audit: type=1300 audit(1712946215.638:790): arch=c00000b7 syscall=211 success=yes exit=21560 a0=3 a1=ffffce28ab50 a2=0 a3=ffffb0769fa8 items=0 ppid=2759 pid=3289 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:35.672990 kernel: audit: type=1327 audit(1712946215.638:790): proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Apr 12 18:23:35.681386 systemd[1]: Started cri-containerd-9133adf6b1d2514a60e10011f24b9aa933c1890bab4776952c00f18798ce3678.scope. Apr 12 18:23:35.715000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.715000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.730887 kernel: audit: type=1400 audit(1712946215.715:791): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.731039 kernel: audit: type=1400 audit(1712946215.715:792): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.731086 kernel: audit: type=1400 audit(1712946215.715:793): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.715000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.715000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.745634 kernel: audit: type=1400 audit(1712946215.715:794): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.745724 kernel: audit: type=1400 audit(1712946215.715:795): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.715000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.715000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.715000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.763974 kernel: audit: type=1400 audit(1712946215.715:796): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.715000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.715000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.723000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.723000 audit: BPF prog-id=104 op=LOAD Apr 12 18:23:35.723000 audit[3291]: AVC avc: denied { bpf } for pid=3291 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.774989 kernel: audit: type=1400 audit(1712946215.715:797): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.723000 audit[3291]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=40001bdb38 a2=10 a3=0 items=0 ppid=3280 pid=3291 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:35.723000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3931333361646636623164323531346136306531303031316632346239 Apr 12 18:23:35.723000 audit[3291]: AVC avc: denied { perfmon } for pid=3291 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.723000 audit[3291]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001bd5a0 a2=3c a3=0 items=0 ppid=3280 pid=3291 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:35.723000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3931333361646636623164323531346136306531303031316632346239 Apr 12 18:23:35.723000 audit[3291]: AVC avc: denied { bpf } for pid=3291 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.723000 audit[3291]: AVC avc: denied { bpf } for pid=3291 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.723000 audit[3291]: AVC avc: denied { bpf } for pid=3291 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.723000 audit[3291]: AVC avc: denied { perfmon } for pid=3291 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.723000 audit[3291]: AVC avc: denied { perfmon } for pid=3291 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.723000 audit[3291]: AVC avc: denied { perfmon } for pid=3291 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.723000 audit[3291]: AVC avc: denied { perfmon } for pid=3291 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.723000 audit[3291]: AVC avc: denied { perfmon } for pid=3291 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.723000 audit[3291]: AVC avc: denied { bpf } for pid=3291 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.723000 audit[3291]: AVC avc: denied { bpf } for pid=3291 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.723000 audit: BPF prog-id=105 op=LOAD Apr 12 18:23:35.723000 audit[3291]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001bd8e0 a2=78 a3=0 items=0 ppid=3280 pid=3291 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:35.723000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3931333361646636623164323531346136306531303031316632346239 Apr 12 18:23:35.730000 audit[3291]: AVC avc: denied { bpf } for pid=3291 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.730000 audit[3291]: AVC avc: denied { bpf } for pid=3291 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.730000 audit[3291]: AVC avc: denied { perfmon } for pid=3291 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.730000 audit[3291]: AVC avc: denied { perfmon } for pid=3291 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.730000 audit[3291]: AVC avc: denied { perfmon } for pid=3291 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.730000 audit[3291]: AVC avc: denied { perfmon } for pid=3291 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.730000 audit[3291]: AVC avc: denied { perfmon } for pid=3291 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.730000 audit[3291]: AVC avc: denied { bpf } for pid=3291 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.730000 audit[3291]: AVC avc: denied { bpf } for pid=3291 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.730000 audit: BPF prog-id=106 op=LOAD Apr 12 18:23:35.730000 audit[3291]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=40001bd670 a2=78 a3=0 items=0 ppid=3280 pid=3291 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:35.730000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3931333361646636623164323531346136306531303031316632346239 Apr 12 18:23:35.737000 audit: BPF prog-id=106 op=UNLOAD Apr 12 18:23:35.737000 audit: BPF prog-id=105 op=UNLOAD Apr 12 18:23:35.737000 audit[3291]: AVC avc: denied { bpf } for pid=3291 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.737000 audit[3291]: AVC avc: denied { bpf } for pid=3291 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.737000 audit[3291]: AVC avc: denied { bpf } for pid=3291 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.737000 audit[3291]: AVC avc: denied { perfmon } for pid=3291 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.737000 audit[3291]: AVC avc: denied { perfmon } for pid=3291 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.737000 audit[3291]: AVC avc: denied { perfmon } for pid=3291 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.737000 audit[3291]: AVC avc: denied { perfmon } for pid=3291 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.737000 audit[3291]: AVC avc: denied { perfmon } for pid=3291 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.737000 audit[3291]: AVC avc: denied { bpf } for pid=3291 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.737000 audit[3291]: AVC avc: denied { bpf } for pid=3291 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:35.737000 audit: BPF prog-id=107 op=LOAD Apr 12 18:23:35.737000 audit[3291]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001bdb40 a2=78 a3=0 items=0 ppid=3280 pid=3291 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:35.737000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3931333361646636623164323531346136306531303031316632346239 Apr 12 18:23:35.801238 env[1620]: time="2024-04-12T18:23:35.801179858Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-845c78c8b9-xg44z,Uid:6fe42277-e1b4-4e96-a619-0987265eb5e0,Namespace:default,Attempt:1,} returns sandbox id \"9133adf6b1d2514a60e10011f24b9aa933c1890bab4776952c00f18798ce3678\"" Apr 12 18:23:35.804550 env[1620]: time="2024-04-12T18:23:35.804482280Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\"" Apr 12 18:23:35.992623 kubelet[2083]: E0412 18:23:35.992567 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:36.993504 kubelet[2083]: E0412 18:23:36.993437 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:37.054990 systemd-networkd[1420]: cali331265c1344: Gained IPv6LL Apr 12 18:23:37.959866 kubelet[2083]: E0412 18:23:37.959807 2083 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:37.994366 kubelet[2083]: E0412 18:23:37.994304 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:38.995295 kubelet[2083]: E0412 18:23:38.995239 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:39.562000 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount4066059431.mount: Deactivated successfully. Apr 12 18:23:39.995594 kubelet[2083]: E0412 18:23:39.995511 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:40.996531 kubelet[2083]: E0412 18:23:40.996456 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:41.072751 env[1620]: time="2024-04-12T18:23:41.072692619Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:41.075542 env[1620]: time="2024-04-12T18:23:41.075493152Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:7c9d4415537dd79835685ddfb3fdec1efecbf38aada406c280c76cc82afd6a56,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:41.078700 env[1620]: time="2024-04-12T18:23:41.078654639Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:41.081913 env[1620]: time="2024-04-12T18:23:41.081847618Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/nginx@sha256:c55d27e57a0d92ca01e7aba1a1812f9c8cc73708ce69fb58d4a42b6416a95f38,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:41.083500 env[1620]: time="2024-04-12T18:23:41.083449160Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\" returns image reference \"sha256:7c9d4415537dd79835685ddfb3fdec1efecbf38aada406c280c76cc82afd6a56\"" Apr 12 18:23:41.086649 env[1620]: time="2024-04-12T18:23:41.086589092Z" level=info msg="CreateContainer within sandbox \"9133adf6b1d2514a60e10011f24b9aa933c1890bab4776952c00f18798ce3678\" for container &ContainerMetadata{Name:nginx,Attempt:0,}" Apr 12 18:23:41.111416 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1098472021.mount: Deactivated successfully. Apr 12 18:23:41.120389 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount285885901.mount: Deactivated successfully. Apr 12 18:23:41.127429 env[1620]: time="2024-04-12T18:23:41.127356718Z" level=info msg="CreateContainer within sandbox \"9133adf6b1d2514a60e10011f24b9aa933c1890bab4776952c00f18798ce3678\" for &ContainerMetadata{Name:nginx,Attempt:0,} returns container id \"c93c1f59ca08266d3803aad18b721e3ec4ae40529dcb522efb00884c0ac07d38\"" Apr 12 18:23:41.128492 env[1620]: time="2024-04-12T18:23:41.128426333Z" level=info msg="StartContainer for \"c93c1f59ca08266d3803aad18b721e3ec4ae40529dcb522efb00884c0ac07d38\"" Apr 12 18:23:41.165745 systemd[1]: Started cri-containerd-c93c1f59ca08266d3803aad18b721e3ec4ae40529dcb522efb00884c0ac07d38.scope. Apr 12 18:23:41.198000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.202125 kernel: kauditd_printk_skb: 50 callbacks suppressed Apr 12 18:23:41.202215 kernel: audit: type=1400 audit(1712946221.198:809): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.198000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.216924 kernel: audit: type=1400 audit(1712946221.198:810): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.198000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.224396 kernel: audit: type=1400 audit(1712946221.198:811): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.225073 kernel: audit: type=1400 audit(1712946221.198:812): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.198000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.198000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.239624 kernel: audit: type=1400 audit(1712946221.198:813): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.239928 kernel: audit: type=1400 audit(1712946221.198:814): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.198000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.198000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.255059 kernel: audit: type=1400 audit(1712946221.198:815): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.198000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.263189 kernel: audit: type=1400 audit(1712946221.198:816): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.198000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.273658 kernel: audit: type=1400 audit(1712946221.198:817): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.198000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.198000 audit: BPF prog-id=108 op=LOAD Apr 12 18:23:41.201000 audit[3328]: AVC avc: denied { bpf } for pid=3328 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.201000 audit[3328]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=400011db38 a2=10 a3=0 items=0 ppid=3280 pid=3328 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:41.282063 kernel: audit: type=1400 audit(1712946221.198:818): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.201000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6339336331663539636130383236366433383033616164313862373231 Apr 12 18:23:41.201000 audit[3328]: AVC avc: denied { perfmon } for pid=3328 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.201000 audit[3328]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=400011d5a0 a2=3c a3=0 items=0 ppid=3280 pid=3328 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:41.201000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6339336331663539636130383236366433383033616164313862373231 Apr 12 18:23:41.201000 audit[3328]: AVC avc: denied { bpf } for pid=3328 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.201000 audit[3328]: AVC avc: denied { bpf } for pid=3328 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.201000 audit[3328]: AVC avc: denied { bpf } for pid=3328 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.201000 audit[3328]: AVC avc: denied { perfmon } for pid=3328 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.201000 audit[3328]: AVC avc: denied { perfmon } for pid=3328 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.201000 audit[3328]: AVC avc: denied { perfmon } for pid=3328 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.201000 audit[3328]: AVC avc: denied { perfmon } for pid=3328 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.201000 audit[3328]: AVC avc: denied { perfmon } for pid=3328 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.201000 audit[3328]: AVC avc: denied { bpf } for pid=3328 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.201000 audit[3328]: AVC avc: denied { bpf } for pid=3328 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.201000 audit: BPF prog-id=109 op=LOAD Apr 12 18:23:41.201000 audit[3328]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=400011d8e0 a2=78 a3=0 items=0 ppid=3280 pid=3328 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:41.201000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6339336331663539636130383236366433383033616164313862373231 Apr 12 18:23:41.208000 audit[3328]: AVC avc: denied { bpf } for pid=3328 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.208000 audit[3328]: AVC avc: denied { bpf } for pid=3328 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.208000 audit[3328]: AVC avc: denied { perfmon } for pid=3328 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.208000 audit[3328]: AVC avc: denied { perfmon } for pid=3328 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.208000 audit[3328]: AVC avc: denied { perfmon } for pid=3328 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.208000 audit[3328]: AVC avc: denied { perfmon } for pid=3328 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.208000 audit[3328]: AVC avc: denied { perfmon } for pid=3328 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.208000 audit[3328]: AVC avc: denied { bpf } for pid=3328 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.208000 audit[3328]: AVC avc: denied { bpf } for pid=3328 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.208000 audit: BPF prog-id=110 op=LOAD Apr 12 18:23:41.208000 audit[3328]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=400011d670 a2=78 a3=0 items=0 ppid=3280 pid=3328 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:41.208000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6339336331663539636130383236366433383033616164313862373231 Apr 12 18:23:41.208000 audit: BPF prog-id=110 op=UNLOAD Apr 12 18:23:41.208000 audit: BPF prog-id=109 op=UNLOAD Apr 12 18:23:41.208000 audit[3328]: AVC avc: denied { bpf } for pid=3328 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.208000 audit[3328]: AVC avc: denied { bpf } for pid=3328 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.208000 audit[3328]: AVC avc: denied { bpf } for pid=3328 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.208000 audit[3328]: AVC avc: denied { perfmon } for pid=3328 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.208000 audit[3328]: AVC avc: denied { perfmon } for pid=3328 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.208000 audit[3328]: AVC avc: denied { perfmon } for pid=3328 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.208000 audit[3328]: AVC avc: denied { perfmon } for pid=3328 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.208000 audit[3328]: AVC avc: denied { perfmon } for pid=3328 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.208000 audit[3328]: AVC avc: denied { bpf } for pid=3328 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.208000 audit[3328]: AVC avc: denied { bpf } for pid=3328 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:41.208000 audit: BPF prog-id=111 op=LOAD Apr 12 18:23:41.208000 audit[3328]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=400011db40 a2=78 a3=0 items=0 ppid=3280 pid=3328 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:41.208000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6339336331663539636130383236366433383033616164313862373231 Apr 12 18:23:41.295022 env[1620]: time="2024-04-12T18:23:41.294919244Z" level=info msg="StartContainer for \"c93c1f59ca08266d3803aad18b721e3ec4ae40529dcb522efb00884c0ac07d38\" returns successfully" Apr 12 18:23:41.358136 kubelet[2083]: I0412 18:23:41.358087 2083 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="default/nginx-deployment-845c78c8b9-xg44z" podStartSLOduration=18.077471601 podCreationTimestamp="2024-04-12 18:23:18 +0000 UTC" firstStartedPulling="2024-04-12 18:23:35.803277453 +0000 UTC m=+38.679976091" lastFinishedPulling="2024-04-12 18:23:41.083842986 +0000 UTC m=+43.960541636" observedRunningTime="2024-04-12 18:23:41.357799242 +0000 UTC m=+44.234497892" watchObservedRunningTime="2024-04-12 18:23:41.358037146 +0000 UTC m=+44.234735796" Apr 12 18:23:41.996990 kubelet[2083]: E0412 18:23:41.996951 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:42.998651 kubelet[2083]: E0412 18:23:42.998614 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:44.000014 kubelet[2083]: E0412 18:23:43.999954 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:45.001064 kubelet[2083]: E0412 18:23:45.001003 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:46.001745 kubelet[2083]: E0412 18:23:46.001682 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:47.002484 kubelet[2083]: E0412 18:23:47.002421 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:48.003142 kubelet[2083]: E0412 18:23:48.003085 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:48.911000 audit[3389]: NETFILTER_CFG table=filter:71 family=2 entries=20 op=nft_register_rule pid=3389 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:23:48.915571 kernel: kauditd_printk_skb: 47 callbacks suppressed Apr 12 18:23:48.915636 kernel: audit: type=1325 audit(1712946228.911:827): table=filter:71 family=2 entries=20 op=nft_register_rule pid=3389 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:23:48.911000 audit[3389]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=11860 a0=3 a1=ffffd09e34d0 a2=0 a3=1 items=0 ppid=2296 pid=3389 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:48.932600 kernel: audit: type=1300 audit(1712946228.911:827): arch=c00000b7 syscall=211 success=yes exit=11860 a0=3 a1=ffffd09e34d0 a2=0 a3=1 items=0 ppid=2296 pid=3389 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:48.932690 kernel: audit: type=1327 audit(1712946228.911:827): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:23:48.911000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:23:48.912000 audit[3389]: NETFILTER_CFG table=nat:72 family=2 entries=20 op=nft_register_rule pid=3389 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:23:48.944214 kernel: audit: type=1325 audit(1712946228.912:828): table=nat:72 family=2 entries=20 op=nft_register_rule pid=3389 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:23:48.912000 audit[3389]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5772 a0=3 a1=ffffd09e34d0 a2=0 a3=1 items=0 ppid=2296 pid=3389 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:48.955739 kernel: audit: type=1300 audit(1712946228.912:828): arch=c00000b7 syscall=211 success=yes exit=5772 a0=3 a1=ffffd09e34d0 a2=0 a3=1 items=0 ppid=2296 pid=3389 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:48.912000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:23:48.961963 kernel: audit: type=1327 audit(1712946228.912:828): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:23:48.963000 audit[3394]: NETFILTER_CFG table=filter:73 family=2 entries=32 op=nft_register_rule pid=3394 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:23:48.963000 audit[3394]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=11860 a0=3 a1=ffffc9218c50 a2=0 a3=1 items=0 ppid=2296 pid=3394 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:48.971033 kernel: audit: type=1325 audit(1712946228.963:829): table=filter:73 family=2 entries=32 op=nft_register_rule pid=3394 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:23:48.963000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:23:48.988056 kernel: audit: type=1300 audit(1712946228.963:829): arch=c00000b7 syscall=211 success=yes exit=11860 a0=3 a1=ffffc9218c50 a2=0 a3=1 items=0 ppid=2296 pid=3394 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:48.988139 kernel: audit: type=1327 audit(1712946228.963:829): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:23:48.988188 kernel: audit: type=1325 audit(1712946228.964:830): table=nat:74 family=2 entries=20 op=nft_register_rule pid=3394 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:23:48.964000 audit[3394]: NETFILTER_CFG table=nat:74 family=2 entries=20 op=nft_register_rule pid=3394 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:23:48.964000 audit[3394]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5772 a0=3 a1=ffffc9218c50 a2=0 a3=1 items=0 ppid=2296 pid=3394 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:48.964000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:23:48.997806 kubelet[2083]: I0412 18:23:48.997768 2083 topology_manager.go:212] "Topology Admit Handler" Apr 12 18:23:49.003827 kubelet[2083]: E0412 18:23:49.003747 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:49.008022 systemd[1]: Created slice kubepods-besteffort-podd8dc5943_dff7_49a2_bfa3_c8a71c983833.slice. Apr 12 18:23:49.037720 kubelet[2083]: I0412 18:23:49.037683 2083 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"data\" (UniqueName: \"kubernetes.io/empty-dir/d8dc5943-dff7-49a2-bfa3-c8a71c983833-data\") pod \"nfs-server-provisioner-0\" (UID: \"d8dc5943-dff7-49a2-bfa3-c8a71c983833\") " pod="default/nfs-server-provisioner-0" Apr 12 18:23:49.038034 kubelet[2083]: I0412 18:23:49.038010 2083 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-9hpnt\" (UniqueName: \"kubernetes.io/projected/d8dc5943-dff7-49a2-bfa3-c8a71c983833-kube-api-access-9hpnt\") pod \"nfs-server-provisioner-0\" (UID: \"d8dc5943-dff7-49a2-bfa3-c8a71c983833\") " pod="default/nfs-server-provisioner-0" Apr 12 18:23:49.316020 env[1620]: time="2024-04-12T18:23:49.314645920Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nfs-server-provisioner-0,Uid:d8dc5943-dff7-49a2-bfa3-c8a71c983833,Namespace:default,Attempt:0,}" Apr 12 18:23:49.563667 (udev-worker)[3391]: Network interface NamePolicy= disabled on kernel command line. Apr 12 18:23:49.568924 systemd-networkd[1420]: cali60e51b789ff: Link UP Apr 12 18:23:49.572545 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Apr 12 18:23:49.573476 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali60e51b789ff: link becomes ready Apr 12 18:23:49.573007 systemd-networkd[1420]: cali60e51b789ff: Gained carrier Apr 12 18:23:49.603358 env[1620]: 2024-04-12 18:23:49.414 [INFO][3401] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.25.169-k8s-nfs--server--provisioner--0-eth0 nfs-server-provisioner- default d8dc5943-dff7-49a2-bfa3-c8a71c983833 1040 0 2024-04-12 18:23:48 +0000 UTC map[app:nfs-server-provisioner chart:nfs-server-provisioner-1.8.0 controller-revision-hash:nfs-server-provisioner-d5cbb7f57 heritage:Helm projectcalico.org/namespace:default projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:nfs-server-provisioner release:nfs-server-provisioner statefulset.kubernetes.io/pod-name:nfs-server-provisioner-0] map[] [] [] []} {k8s 172.31.25.169 nfs-server-provisioner-0 eth0 nfs-server-provisioner [] [] [kns.default ksa.default.nfs-server-provisioner] cali60e51b789ff [{nfs TCP 2049 0 } {nfs-udp UDP 2049 0 } {nlockmgr TCP 32803 0 } {nlockmgr-udp UDP 32803 0 } {mountd TCP 20048 0 } {mountd-udp UDP 20048 0 } {rquotad TCP 875 0 } {rquotad-udp UDP 875 0 } {rpcbind TCP 111 0 } {rpcbind-udp UDP 111 0 } {statd TCP 662 0 } {statd-udp UDP 662 0 }] []}} ContainerID="4a44cfdc56bd04593a26494e3b3068a2d8c9c85ad111e917fc2a58d8c5b076fd" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.25.169-k8s-nfs--server--provisioner--0-" Apr 12 18:23:49.603358 env[1620]: 2024-04-12 18:23:49.415 [INFO][3401] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="4a44cfdc56bd04593a26494e3b3068a2d8c9c85ad111e917fc2a58d8c5b076fd" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.25.169-k8s-nfs--server--provisioner--0-eth0" Apr 12 18:23:49.603358 env[1620]: 2024-04-12 18:23:49.464 [INFO][3408] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="4a44cfdc56bd04593a26494e3b3068a2d8c9c85ad111e917fc2a58d8c5b076fd" HandleID="k8s-pod-network.4a44cfdc56bd04593a26494e3b3068a2d8c9c85ad111e917fc2a58d8c5b076fd" Workload="172.31.25.169-k8s-nfs--server--provisioner--0-eth0" Apr 12 18:23:49.603358 env[1620]: 2024-04-12 18:23:49.487 [INFO][3408] ipam_plugin.go 268: Auto assigning IP ContainerID="4a44cfdc56bd04593a26494e3b3068a2d8c9c85ad111e917fc2a58d8c5b076fd" HandleID="k8s-pod-network.4a44cfdc56bd04593a26494e3b3068a2d8c9c85ad111e917fc2a58d8c5b076fd" Workload="172.31.25.169-k8s-nfs--server--provisioner--0-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x4000293510), Attrs:map[string]string{"namespace":"default", "node":"172.31.25.169", "pod":"nfs-server-provisioner-0", "timestamp":"2024-04-12 18:23:49.464887105 +0000 UTC"}, Hostname:"172.31.25.169", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Apr 12 18:23:49.603358 env[1620]: 2024-04-12 18:23:49.487 [INFO][3408] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Apr 12 18:23:49.603358 env[1620]: 2024-04-12 18:23:49.487 [INFO][3408] ipam_plugin.go 371: Acquired host-wide IPAM lock. Apr 12 18:23:49.603358 env[1620]: 2024-04-12 18:23:49.487 [INFO][3408] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.25.169' Apr 12 18:23:49.603358 env[1620]: 2024-04-12 18:23:49.491 [INFO][3408] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.4a44cfdc56bd04593a26494e3b3068a2d8c9c85ad111e917fc2a58d8c5b076fd" host="172.31.25.169" Apr 12 18:23:49.603358 env[1620]: 2024-04-12 18:23:49.504 [INFO][3408] ipam.go 372: Looking up existing affinities for host host="172.31.25.169" Apr 12 18:23:49.603358 env[1620]: 2024-04-12 18:23:49.514 [INFO][3408] ipam.go 489: Trying affinity for 192.168.111.64/26 host="172.31.25.169" Apr 12 18:23:49.603358 env[1620]: 2024-04-12 18:23:49.519 [INFO][3408] ipam.go 155: Attempting to load block cidr=192.168.111.64/26 host="172.31.25.169" Apr 12 18:23:49.603358 env[1620]: 2024-04-12 18:23:49.526 [INFO][3408] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.111.64/26 host="172.31.25.169" Apr 12 18:23:49.603358 env[1620]: 2024-04-12 18:23:49.526 [INFO][3408] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.111.64/26 handle="k8s-pod-network.4a44cfdc56bd04593a26494e3b3068a2d8c9c85ad111e917fc2a58d8c5b076fd" host="172.31.25.169" Apr 12 18:23:49.603358 env[1620]: 2024-04-12 18:23:49.530 [INFO][3408] ipam.go 1682: Creating new handle: k8s-pod-network.4a44cfdc56bd04593a26494e3b3068a2d8c9c85ad111e917fc2a58d8c5b076fd Apr 12 18:23:49.603358 env[1620]: 2024-04-12 18:23:49.537 [INFO][3408] ipam.go 1203: Writing block in order to claim IPs block=192.168.111.64/26 handle="k8s-pod-network.4a44cfdc56bd04593a26494e3b3068a2d8c9c85ad111e917fc2a58d8c5b076fd" host="172.31.25.169" Apr 12 18:23:49.603358 env[1620]: 2024-04-12 18:23:49.557 [INFO][3408] ipam.go 1216: Successfully claimed IPs: [192.168.111.67/26] block=192.168.111.64/26 handle="k8s-pod-network.4a44cfdc56bd04593a26494e3b3068a2d8c9c85ad111e917fc2a58d8c5b076fd" host="172.31.25.169" Apr 12 18:23:49.603358 env[1620]: 2024-04-12 18:23:49.557 [INFO][3408] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.111.67/26] handle="k8s-pod-network.4a44cfdc56bd04593a26494e3b3068a2d8c9c85ad111e917fc2a58d8c5b076fd" host="172.31.25.169" Apr 12 18:23:49.603358 env[1620]: 2024-04-12 18:23:49.557 [INFO][3408] ipam_plugin.go 377: Released host-wide IPAM lock. Apr 12 18:23:49.603358 env[1620]: 2024-04-12 18:23:49.557 [INFO][3408] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.111.67/26] IPv6=[] ContainerID="4a44cfdc56bd04593a26494e3b3068a2d8c9c85ad111e917fc2a58d8c5b076fd" HandleID="k8s-pod-network.4a44cfdc56bd04593a26494e3b3068a2d8c9c85ad111e917fc2a58d8c5b076fd" Workload="172.31.25.169-k8s-nfs--server--provisioner--0-eth0" Apr 12 18:23:49.604883 env[1620]: 2024-04-12 18:23:49.560 [INFO][3401] k8s.go 385: Populated endpoint ContainerID="4a44cfdc56bd04593a26494e3b3068a2d8c9c85ad111e917fc2a58d8c5b076fd" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.25.169-k8s-nfs--server--provisioner--0-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.25.169-k8s-nfs--server--provisioner--0-eth0", GenerateName:"nfs-server-provisioner-", Namespace:"default", SelfLink:"", UID:"d8dc5943-dff7-49a2-bfa3-c8a71c983833", ResourceVersion:"1040", Generation:0, CreationTimestamp:time.Date(2024, time.April, 12, 18, 23, 48, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nfs-server-provisioner", "chart":"nfs-server-provisioner-1.8.0", "controller-revision-hash":"nfs-server-provisioner-d5cbb7f57", "heritage":"Helm", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"nfs-server-provisioner", "release":"nfs-server-provisioner", "statefulset.kubernetes.io/pod-name":"nfs-server-provisioner-0"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.25.169", ContainerID:"", Pod:"nfs-server-provisioner-0", Endpoint:"eth0", ServiceAccountName:"nfs-server-provisioner", IPNetworks:[]string{"192.168.111.67/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.nfs-server-provisioner"}, InterfaceName:"cali60e51b789ff", MAC:"", Ports:[]v3.WorkloadEndpointPort{v3.WorkloadEndpointPort{Name:"nfs", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nfs-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x296, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x296, HostPort:0x0, HostIP:""}}, AllowSpoofedSourcePrefixes:[]string(nil)}} Apr 12 18:23:49.604883 env[1620]: 2024-04-12 18:23:49.560 [INFO][3401] k8s.go 386: Calico CNI using IPs: [192.168.111.67/32] ContainerID="4a44cfdc56bd04593a26494e3b3068a2d8c9c85ad111e917fc2a58d8c5b076fd" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.25.169-k8s-nfs--server--provisioner--0-eth0" Apr 12 18:23:49.604883 env[1620]: 2024-04-12 18:23:49.561 [INFO][3401] dataplane_linux.go 68: Setting the host side veth name to cali60e51b789ff ContainerID="4a44cfdc56bd04593a26494e3b3068a2d8c9c85ad111e917fc2a58d8c5b076fd" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.25.169-k8s-nfs--server--provisioner--0-eth0" Apr 12 18:23:49.604883 env[1620]: 2024-04-12 18:23:49.574 [INFO][3401] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="4a44cfdc56bd04593a26494e3b3068a2d8c9c85ad111e917fc2a58d8c5b076fd" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.25.169-k8s-nfs--server--provisioner--0-eth0" Apr 12 18:23:49.605329 env[1620]: 2024-04-12 18:23:49.577 [INFO][3401] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="4a44cfdc56bd04593a26494e3b3068a2d8c9c85ad111e917fc2a58d8c5b076fd" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.25.169-k8s-nfs--server--provisioner--0-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.25.169-k8s-nfs--server--provisioner--0-eth0", GenerateName:"nfs-server-provisioner-", Namespace:"default", SelfLink:"", UID:"d8dc5943-dff7-49a2-bfa3-c8a71c983833", ResourceVersion:"1040", Generation:0, CreationTimestamp:time.Date(2024, time.April, 12, 18, 23, 48, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nfs-server-provisioner", "chart":"nfs-server-provisioner-1.8.0", "controller-revision-hash":"nfs-server-provisioner-d5cbb7f57", "heritage":"Helm", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"nfs-server-provisioner", "release":"nfs-server-provisioner", "statefulset.kubernetes.io/pod-name":"nfs-server-provisioner-0"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.25.169", ContainerID:"4a44cfdc56bd04593a26494e3b3068a2d8c9c85ad111e917fc2a58d8c5b076fd", Pod:"nfs-server-provisioner-0", Endpoint:"eth0", ServiceAccountName:"nfs-server-provisioner", IPNetworks:[]string{"192.168.111.67/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.nfs-server-provisioner"}, InterfaceName:"cali60e51b789ff", MAC:"16:ca:e6:79:a8:59", Ports:[]v3.WorkloadEndpointPort{v3.WorkloadEndpointPort{Name:"nfs", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nfs-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x296, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x296, HostPort:0x0, HostIP:""}}, AllowSpoofedSourcePrefixes:[]string(nil)}} Apr 12 18:23:49.605329 env[1620]: 2024-04-12 18:23:49.600 [INFO][3401] k8s.go 498: Wrote updated endpoint to datastore ContainerID="4a44cfdc56bd04593a26494e3b3068a2d8c9c85ad111e917fc2a58d8c5b076fd" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.25.169-k8s-nfs--server--provisioner--0-eth0" Apr 12 18:23:49.635473 env[1620]: time="2024-04-12T18:23:49.635342393Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Apr 12 18:23:49.635619 env[1620]: time="2024-04-12T18:23:49.635485866Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Apr 12 18:23:49.635619 env[1620]: time="2024-04-12T18:23:49.635549496Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Apr 12 18:23:49.635877 env[1620]: time="2024-04-12T18:23:49.635813244Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/4a44cfdc56bd04593a26494e3b3068a2d8c9c85ad111e917fc2a58d8c5b076fd pid=3437 runtime=io.containerd.runc.v2 Apr 12 18:23:49.641000 audit[3444]: NETFILTER_CFG table=filter:75 family=2 entries=38 op=nft_register_chain pid=3444 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Apr 12 18:23:49.641000 audit[3444]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=19820 a0=3 a1=ffffc77a8620 a2=0 a3=ffffb7878fa8 items=0 ppid=2759 pid=3444 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:49.641000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Apr 12 18:23:49.678156 systemd[1]: Started cri-containerd-4a44cfdc56bd04593a26494e3b3068a2d8c9c85ad111e917fc2a58d8c5b076fd.scope. Apr 12 18:23:49.702000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.702000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.702000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.702000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.702000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.702000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.702000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.702000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.702000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.702000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.702000 audit: BPF prog-id=112 op=LOAD Apr 12 18:23:49.703000 audit[3448]: AVC avc: denied { bpf } for pid=3448 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.703000 audit[3448]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000145b38 a2=10 a3=0 items=0 ppid=3437 pid=3448 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:49.703000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3461343463666463353662643034353933613236343934653362333036 Apr 12 18:23:49.703000 audit[3448]: AVC avc: denied { perfmon } for pid=3448 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.703000 audit[3448]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=3437 pid=3448 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:49.703000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3461343463666463353662643034353933613236343934653362333036 Apr 12 18:23:49.703000 audit[3448]: AVC avc: denied { bpf } for pid=3448 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.703000 audit[3448]: AVC avc: denied { bpf } for pid=3448 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.703000 audit[3448]: AVC avc: denied { bpf } for pid=3448 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.703000 audit[3448]: AVC avc: denied { perfmon } for pid=3448 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.703000 audit[3448]: AVC avc: denied { perfmon } for pid=3448 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.703000 audit[3448]: AVC avc: denied { perfmon } for pid=3448 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.703000 audit[3448]: AVC avc: denied { perfmon } for pid=3448 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.703000 audit[3448]: AVC avc: denied { perfmon } for pid=3448 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.703000 audit[3448]: AVC avc: denied { bpf } for pid=3448 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.703000 audit[3448]: AVC avc: denied { bpf } for pid=3448 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.703000 audit: BPF prog-id=113 op=LOAD Apr 12 18:23:49.703000 audit[3448]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=3437 pid=3448 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:49.703000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3461343463666463353662643034353933613236343934653362333036 Apr 12 18:23:49.703000 audit[3448]: AVC avc: denied { bpf } for pid=3448 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.703000 audit[3448]: AVC avc: denied { bpf } for pid=3448 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.703000 audit[3448]: AVC avc: denied { perfmon } for pid=3448 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.703000 audit[3448]: AVC avc: denied { perfmon } for pid=3448 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.703000 audit[3448]: AVC avc: denied { perfmon } for pid=3448 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.703000 audit[3448]: AVC avc: denied { perfmon } for pid=3448 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.703000 audit[3448]: AVC avc: denied { perfmon } for pid=3448 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.703000 audit[3448]: AVC avc: denied { bpf } for pid=3448 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.703000 audit[3448]: AVC avc: denied { bpf } for pid=3448 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.703000 audit: BPF prog-id=114 op=LOAD Apr 12 18:23:49.703000 audit[3448]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=3437 pid=3448 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:49.703000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3461343463666463353662643034353933613236343934653362333036 Apr 12 18:23:49.703000 audit: BPF prog-id=114 op=UNLOAD Apr 12 18:23:49.704000 audit: BPF prog-id=113 op=UNLOAD Apr 12 18:23:49.704000 audit[3448]: AVC avc: denied { bpf } for pid=3448 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.704000 audit[3448]: AVC avc: denied { bpf } for pid=3448 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.704000 audit[3448]: AVC avc: denied { bpf } for pid=3448 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.704000 audit[3448]: AVC avc: denied { perfmon } for pid=3448 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.704000 audit[3448]: AVC avc: denied { perfmon } for pid=3448 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.704000 audit[3448]: AVC avc: denied { perfmon } for pid=3448 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.704000 audit[3448]: AVC avc: denied { perfmon } for pid=3448 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.704000 audit[3448]: AVC avc: denied { perfmon } for pid=3448 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.704000 audit[3448]: AVC avc: denied { bpf } for pid=3448 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.704000 audit[3448]: AVC avc: denied { bpf } for pid=3448 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:49.704000 audit: BPF prog-id=115 op=LOAD Apr 12 18:23:49.704000 audit[3448]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=3437 pid=3448 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:49.704000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3461343463666463353662643034353933613236343934653362333036 Apr 12 18:23:49.744901 env[1620]: time="2024-04-12T18:23:49.744728974Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nfs-server-provisioner-0,Uid:d8dc5943-dff7-49a2-bfa3-c8a71c983833,Namespace:default,Attempt:0,} returns sandbox id \"4a44cfdc56bd04593a26494e3b3068a2d8c9c85ad111e917fc2a58d8c5b076fd\"" Apr 12 18:23:49.747702 env[1620]: time="2024-04-12T18:23:49.747510152Z" level=info msg="PullImage \"registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8\"" Apr 12 18:23:50.004272 kubelet[2083]: E0412 18:23:50.004211 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:50.159823 systemd[1]: run-containerd-runc-k8s.io-4a44cfdc56bd04593a26494e3b3068a2d8c9c85ad111e917fc2a58d8c5b076fd-runc.gUPyWC.mount: Deactivated successfully. Apr 12 18:23:51.004706 kubelet[2083]: E0412 18:23:51.004644 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:51.262872 systemd-networkd[1420]: cali60e51b789ff: Gained IPv6LL Apr 12 18:23:52.005691 kubelet[2083]: E0412 18:23:52.005617 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:53.006820 kubelet[2083]: E0412 18:23:53.006773 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:53.169995 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount4086513337.mount: Deactivated successfully. Apr 12 18:23:53.987986 systemd[1]: run-containerd-runc-k8s.io-8050420a2b0eb5635b9e0f9c3e6eb6ee278b3b7e285f34121a207e3c53e4e357-runc.lVzlAQ.mount: Deactivated successfully. Apr 12 18:23:54.008563 kubelet[2083]: E0412 18:23:54.008387 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:55.008817 kubelet[2083]: E0412 18:23:55.008742 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:56.011141 kubelet[2083]: E0412 18:23:56.011061 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:56.718000 audit[3501]: NETFILTER_CFG table=filter:76 family=2 entries=33 op=nft_register_rule pid=3501 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:23:56.722209 kernel: kauditd_printk_skb: 62 callbacks suppressed Apr 12 18:23:56.722312 kernel: audit: type=1325 audit(1712946236.718:850): table=filter:76 family=2 entries=33 op=nft_register_rule pid=3501 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:23:56.728759 kubelet[2083]: I0412 18:23:56.728697 2083 topology_manager.go:212] "Topology Admit Handler" Apr 12 18:23:56.718000 audit[3501]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=12604 a0=3 a1=ffffd6bbc8c0 a2=0 a3=1 items=0 ppid=2296 pid=3501 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:56.744489 kernel: audit: type=1300 audit(1712946236.718:850): arch=c00000b7 syscall=211 success=yes exit=12604 a0=3 a1=ffffd6bbc8c0 a2=0 a3=1 items=0 ppid=2296 pid=3501 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:56.718000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:23:56.758203 kernel: audit: type=1327 audit(1712946236.718:850): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:23:56.752225 systemd[1]: Created slice kubepods-besteffort-podac0959ea_5a2e_40a2_a41e_d08f5665191c.slice. Apr 12 18:23:56.731000 audit[3501]: NETFILTER_CFG table=nat:77 family=2 entries=20 op=nft_register_rule pid=3501 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:23:56.766025 kernel: audit: type=1325 audit(1712946236.731:851): table=nat:77 family=2 entries=20 op=nft_register_rule pid=3501 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:23:56.731000 audit[3501]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5772 a0=3 a1=ffffd6bbc8c0 a2=0 a3=1 items=0 ppid=2296 pid=3501 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:56.779008 kernel: audit: type=1300 audit(1712946236.731:851): arch=c00000b7 syscall=211 success=yes exit=5772 a0=3 a1=ffffd6bbc8c0 a2=0 a3=1 items=0 ppid=2296 pid=3501 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:56.731000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:23:56.785877 kernel: audit: type=1327 audit(1712946236.731:851): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:23:56.766000 audit[3503]: NETFILTER_CFG table=filter:78 family=2 entries=34 op=nft_register_rule pid=3503 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:23:56.792112 kernel: audit: type=1325 audit(1712946236.766:852): table=filter:78 family=2 entries=34 op=nft_register_rule pid=3503 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:23:56.792251 kubelet[2083]: I0412 18:23:56.786628 2083 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"calico-apiserver-certs\" (UniqueName: \"kubernetes.io/secret/ac0959ea-5a2e-40a2-a41e-d08f5665191c-calico-apiserver-certs\") pod \"calico-apiserver-989fcbf57-hjhxs\" (UID: \"ac0959ea-5a2e-40a2-a41e-d08f5665191c\") " pod="calico-apiserver/calico-apiserver-989fcbf57-hjhxs" Apr 12 18:23:56.792251 kubelet[2083]: I0412 18:23:56.786821 2083 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-zz5g2\" (UniqueName: \"kubernetes.io/projected/ac0959ea-5a2e-40a2-a41e-d08f5665191c-kube-api-access-zz5g2\") pod \"calico-apiserver-989fcbf57-hjhxs\" (UID: \"ac0959ea-5a2e-40a2-a41e-d08f5665191c\") " pod="calico-apiserver/calico-apiserver-989fcbf57-hjhxs" Apr 12 18:23:56.766000 audit[3503]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=12604 a0=3 a1=ffffd2361e40 a2=0 a3=1 items=0 ppid=2296 pid=3503 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:56.804199 kernel: audit: type=1300 audit(1712946236.766:852): arch=c00000b7 syscall=211 success=yes exit=12604 a0=3 a1=ffffd2361e40 a2=0 a3=1 items=0 ppid=2296 pid=3503 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:56.766000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:23:56.810019 kernel: audit: type=1327 audit(1712946236.766:852): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:23:56.772000 audit[3503]: NETFILTER_CFG table=nat:79 family=2 entries=20 op=nft_register_rule pid=3503 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:23:56.816138 kernel: audit: type=1325 audit(1712946236.772:853): table=nat:79 family=2 entries=20 op=nft_register_rule pid=3503 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:23:56.816629 env[1620]: time="2024-04-12T18:23:56.816576885Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:56.772000 audit[3503]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5772 a0=3 a1=ffffd2361e40 a2=0 a3=1 items=0 ppid=2296 pid=3503 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:56.772000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:23:56.819805 env[1620]: time="2024-04-12T18:23:56.819757123Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:5a42a519e0a8cf95c3c5f18f767c58c8c8b072aaea0a26e5e47a6f206c7df685,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:56.822766 env[1620]: time="2024-04-12T18:23:56.822717407Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:56.825771 env[1620]: time="2024-04-12T18:23:56.825705834Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/sig-storage/nfs-provisioner@sha256:c825f3d5e28bde099bd7a3daace28772d412c9157ad47fa752a9ad0baafc118d,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:23:56.827492 env[1620]: time="2024-04-12T18:23:56.827425035Z" level=info msg="PullImage \"registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8\" returns image reference \"sha256:5a42a519e0a8cf95c3c5f18f767c58c8c8b072aaea0a26e5e47a6f206c7df685\"" Apr 12 18:23:56.832481 env[1620]: time="2024-04-12T18:23:56.832404698Z" level=info msg="CreateContainer within sandbox \"4a44cfdc56bd04593a26494e3b3068a2d8c9c85ad111e917fc2a58d8c5b076fd\" for container &ContainerMetadata{Name:nfs-server-provisioner,Attempt:0,}" Apr 12 18:23:56.850263 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2693091961.mount: Deactivated successfully. Apr 12 18:23:56.870094 env[1620]: time="2024-04-12T18:23:56.870020075Z" level=info msg="CreateContainer within sandbox \"4a44cfdc56bd04593a26494e3b3068a2d8c9c85ad111e917fc2a58d8c5b076fd\" for &ContainerMetadata{Name:nfs-server-provisioner,Attempt:0,} returns container id \"2c0f42b98b963da87a0b8cd0fbe6d9e8da7d241e3b6b4468c347c1d725fe966e\"" Apr 12 18:23:56.871300 env[1620]: time="2024-04-12T18:23:56.871226189Z" level=info msg="StartContainer for \"2c0f42b98b963da87a0b8cd0fbe6d9e8da7d241e3b6b4468c347c1d725fe966e\"" Apr 12 18:23:56.889990 kubelet[2083]: E0412 18:23:56.888294 2083 secret.go:194] Couldn't get secret calico-apiserver/calico-apiserver-certs: secret "calico-apiserver-certs" not found Apr 12 18:23:56.889990 kubelet[2083]: E0412 18:23:56.888401 2083 nestedpendingoperations.go:348] Operation for "{volumeName:kubernetes.io/secret/ac0959ea-5a2e-40a2-a41e-d08f5665191c-calico-apiserver-certs podName:ac0959ea-5a2e-40a2-a41e-d08f5665191c nodeName:}" failed. No retries permitted until 2024-04-12 18:23:57.388371316 +0000 UTC m=+60.265069954 (durationBeforeRetry 500ms). Error: MountVolume.SetUp failed for volume "calico-apiserver-certs" (UniqueName: "kubernetes.io/secret/ac0959ea-5a2e-40a2-a41e-d08f5665191c-calico-apiserver-certs") pod "calico-apiserver-989fcbf57-hjhxs" (UID: "ac0959ea-5a2e-40a2-a41e-d08f5665191c") : secret "calico-apiserver-certs" not found Apr 12 18:23:56.914183 systemd[1]: Started cri-containerd-2c0f42b98b963da87a0b8cd0fbe6d9e8da7d241e3b6b4468c347c1d725fe966e.scope. Apr 12 18:23:56.948000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.948000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.948000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.948000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.948000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.948000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.948000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.948000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.948000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.949000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.949000 audit: BPF prog-id=116 op=LOAD Apr 12 18:23:56.950000 audit[3512]: AVC avc: denied { bpf } for pid=3512 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.950000 audit[3512]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=40001bdb38 a2=10 a3=0 items=0 ppid=3437 pid=3512 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:56.950000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3263306634326239386239363364613837613062386364306662653664 Apr 12 18:23:56.950000 audit[3512]: AVC avc: denied { perfmon } for pid=3512 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.950000 audit[3512]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001bd5a0 a2=3c a3=0 items=0 ppid=3437 pid=3512 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:56.950000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3263306634326239386239363364613837613062386364306662653664 Apr 12 18:23:56.950000 audit[3512]: AVC avc: denied { bpf } for pid=3512 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.950000 audit[3512]: AVC avc: denied { bpf } for pid=3512 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.950000 audit[3512]: AVC avc: denied { bpf } for pid=3512 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.950000 audit[3512]: AVC avc: denied { perfmon } for pid=3512 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.950000 audit[3512]: AVC avc: denied { perfmon } for pid=3512 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.950000 audit[3512]: AVC avc: denied { perfmon } for pid=3512 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.950000 audit[3512]: AVC avc: denied { perfmon } for pid=3512 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.950000 audit[3512]: AVC avc: denied { perfmon } for pid=3512 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.950000 audit[3512]: AVC avc: denied { bpf } for pid=3512 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.950000 audit[3512]: AVC avc: denied { bpf } for pid=3512 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.950000 audit: BPF prog-id=117 op=LOAD Apr 12 18:23:56.950000 audit[3512]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001bd8e0 a2=78 a3=0 items=0 ppid=3437 pid=3512 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:56.950000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3263306634326239386239363364613837613062386364306662653664 Apr 12 18:23:56.952000 audit[3512]: AVC avc: denied { bpf } for pid=3512 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.952000 audit[3512]: AVC avc: denied { bpf } for pid=3512 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.952000 audit[3512]: AVC avc: denied { perfmon } for pid=3512 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.952000 audit[3512]: AVC avc: denied { perfmon } for pid=3512 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.952000 audit[3512]: AVC avc: denied { perfmon } for pid=3512 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.952000 audit[3512]: AVC avc: denied { perfmon } for pid=3512 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.952000 audit[3512]: AVC avc: denied { perfmon } for pid=3512 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.952000 audit[3512]: AVC avc: denied { bpf } for pid=3512 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.952000 audit[3512]: AVC avc: denied { bpf } for pid=3512 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.952000 audit: BPF prog-id=118 op=LOAD Apr 12 18:23:56.952000 audit[3512]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=40001bd670 a2=78 a3=0 items=0 ppid=3437 pid=3512 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:56.952000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3263306634326239386239363364613837613062386364306662653664 Apr 12 18:23:56.953000 audit: BPF prog-id=118 op=UNLOAD Apr 12 18:23:56.953000 audit: BPF prog-id=117 op=UNLOAD Apr 12 18:23:56.953000 audit[3512]: AVC avc: denied { bpf } for pid=3512 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.953000 audit[3512]: AVC avc: denied { bpf } for pid=3512 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.953000 audit[3512]: AVC avc: denied { bpf } for pid=3512 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.953000 audit[3512]: AVC avc: denied { perfmon } for pid=3512 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.953000 audit[3512]: AVC avc: denied { perfmon } for pid=3512 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.953000 audit[3512]: AVC avc: denied { perfmon } for pid=3512 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.953000 audit[3512]: AVC avc: denied { perfmon } for pid=3512 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.953000 audit[3512]: AVC avc: denied { perfmon } for pid=3512 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.953000 audit[3512]: AVC avc: denied { bpf } for pid=3512 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.953000 audit[3512]: AVC avc: denied { bpf } for pid=3512 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:56.953000 audit: BPF prog-id=119 op=LOAD Apr 12 18:23:56.953000 audit[3512]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001bdb40 a2=78 a3=0 items=0 ppid=3437 pid=3512 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:56.953000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3263306634326239386239363364613837613062386364306662653664 Apr 12 18:23:56.981135 env[1620]: time="2024-04-12T18:23:56.980911466Z" level=info msg="StartContainer for \"2c0f42b98b963da87a0b8cd0fbe6d9e8da7d241e3b6b4468c347c1d725fe966e\" returns successfully" Apr 12 18:23:57.011807 kubelet[2083]: E0412 18:23:57.011748 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:57.092000 audit[3543]: AVC avc: denied { search } for pid=3543 comm="rpcbind" name="crypto" dev="proc" ino=18200 scontext=system_u:system_r:svirt_lxc_net_t:s0:c751,c961 tcontext=system_u:object_r:sysctl_crypto_t:s0 tclass=dir permissive=0 Apr 12 18:23:57.092000 audit[3543]: SYSCALL arch=c00000b7 syscall=56 success=no exit=-13 a0=ffffffffffffff9c a1=ffffa262f000 a2=0 a3=0 items=0 ppid=3524 pid=3543 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="rpcbind" exe="/usr/bin/rpcbind" subj=system_u:system_r:svirt_lxc_net_t:s0:c751,c961 key=(null) Apr 12 18:23:57.092000 audit: PROCTITLE proctitle=2F7573722F7362696E2F72706362696E64002D77 Apr 12 18:23:57.170000 audit[3548]: AVC avc: denied { search } for pid=3548 comm="dbus-daemon" name="crypto" dev="proc" ino=18200 scontext=system_u:system_r:svirt_lxc_net_t:s0:c751,c961 tcontext=system_u:object_r:sysctl_crypto_t:s0 tclass=dir permissive=0 Apr 12 18:23:57.170000 audit[3548]: SYSCALL arch=c00000b7 syscall=56 success=no exit=-13 a0=ffffffffffffff9c a1=ffff7f5ff000 a2=0 a3=0 items=0 ppid=3524 pid=3548 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="dbus-daemon" exe="/usr/bin/dbus-daemon" subj=system_u:system_r:svirt_lxc_net_t:s0:c751,c961 key=(null) Apr 12 18:23:57.170000 audit: PROCTITLE proctitle=646275732D6461656D6F6E002D2D73797374656D002D2D6E6F70696466696C65 Apr 12 18:23:57.176000 audit[3549]: AVC avc: denied { watch } for pid=3549 comm="dbus-daemon" path="/usr/share/dbus-1/system.d" dev="overlay" ino=537974 scontext=system_u:system_r:svirt_lxc_net_t:s0:c751,c961 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c751,c961 tclass=dir permissive=0 Apr 12 18:23:57.176000 audit[3549]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=6 a1=aaaaf051faf0 a2=2c8 a3=aaaaf0500a60 items=0 ppid=3524 pid=3549 auid=4294967295 uid=81 gid=81 euid=81 suid=81 fsuid=81 egid=81 sgid=81 fsgid=81 tty=(none) ses=4294967295 comm="dbus-daemon" exe="/usr/bin/dbus-daemon" subj=system_u:system_r:svirt_lxc_net_t:s0:c751,c961 key=(null) Apr 12 18:23:57.176000 audit: PROCTITLE proctitle=646275732D6461656D6F6E002D2D73797374656D002D2D6E6F70696466696C65 Apr 12 18:23:57.184000 audit[3550]: AVC avc: denied { read } for pid=3550 comm="ganesha.nfsd" name="overcommit_memory" dev="proc" ino=18225 scontext=system_u:system_r:svirt_lxc_net_t:s0:c751,c961 tcontext=system_u:object_r:sysctl_vm_overcommit_t:s0 tclass=file permissive=0 Apr 12 18:23:57.184000 audit[3550]: SYSCALL arch=c00000b7 syscall=56 success=no exit=-13 a0=ffffff9c a1=ffffadb3a570 a2=80000 a3=0 items=0 ppid=3524 pid=3550 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ganesha.nfsd" exe="/usr/local/bin/ganesha.nfsd" subj=system_u:system_r:svirt_lxc_net_t:s0:c751,c961 key=(null) Apr 12 18:23:57.184000 audit: PROCTITLE proctitle=67616E657368612E6E667364002D46002D4C002F6578706F72742F67616E657368612E6C6F67002D70002F7661722F72756E2F67616E657368612E706964002D66002F6578706F72742F7666732E636F6E66 Apr 12 18:23:57.186000 audit[3550]: AVC avc: denied { search } for pid=3550 comm="ganesha.nfsd" name="crypto" dev="proc" ino=18200 scontext=system_u:system_r:svirt_lxc_net_t:s0:c751,c961 tcontext=system_u:object_r:sysctl_crypto_t:s0 tclass=dir permissive=0 Apr 12 18:23:57.186000 audit[3550]: SYSCALL arch=c00000b7 syscall=56 success=no exit=-13 a0=ffffffffffffff9c a1=ffffacecf000 a2=0 a3=0 items=0 ppid=3524 pid=3550 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ganesha.nfsd" exe="/usr/local/bin/ganesha.nfsd" subj=system_u:system_r:svirt_lxc_net_t:s0:c751,c961 key=(null) Apr 12 18:23:57.186000 audit: PROCTITLE proctitle=67616E657368612E6E667364002D46002D4C002F6578706F72742F67616E657368612E6C6F67002D70002F7661722F72756E2F67616E657368612E706964002D66002F6578706F72742F7666732E636F6E66 Apr 12 18:23:57.398556 kubelet[2083]: I0412 18:23:57.398503 2083 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="default/nfs-server-provisioner-0" podStartSLOduration=2.316222167 podCreationTimestamp="2024-04-12 18:23:48 +0000 UTC" firstStartedPulling="2024-04-12 18:23:49.746928484 +0000 UTC m=+52.623627134" lastFinishedPulling="2024-04-12 18:23:56.829157304 +0000 UTC m=+59.705855942" observedRunningTime="2024-04-12 18:23:57.3965401 +0000 UTC m=+60.273238738" watchObservedRunningTime="2024-04-12 18:23:57.398450975 +0000 UTC m=+60.275149613" Apr 12 18:23:57.668705 env[1620]: time="2024-04-12T18:23:57.668381335Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-apiserver-989fcbf57-hjhxs,Uid:ac0959ea-5a2e-40a2-a41e-d08f5665191c,Namespace:calico-apiserver,Attempt:0,}" Apr 12 18:23:57.801000 audit[3575]: NETFILTER_CFG table=filter:80 family=2 entries=22 op=nft_register_rule pid=3575 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:23:57.801000 audit[3575]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=3676 a0=3 a1=fffff7842a00 a2=0 a3=1 items=0 ppid=2296 pid=3575 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:57.801000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:23:57.805000 audit[3575]: NETFILTER_CFG table=nat:81 family=2 entries=104 op=nft_register_chain pid=3575 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:23:57.805000 audit[3575]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=48684 a0=3 a1=fffff7842a00 a2=0 a3=1 items=0 ppid=2296 pid=3575 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:57.805000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:23:57.885902 systemd-networkd[1420]: caliaffb6858e11: Link UP Apr 12 18:23:57.891552 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Apr 12 18:23:57.891730 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): caliaffb6858e11: link becomes ready Apr 12 18:23:57.892144 systemd-networkd[1420]: caliaffb6858e11: Gained carrier Apr 12 18:23:57.894916 (udev-worker)[3578]: Network interface NamePolicy= disabled on kernel command line. Apr 12 18:23:57.906481 env[1620]: 2024-04-12 18:23:57.746 [INFO][3555] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.25.169-k8s-calico--apiserver--989fcbf57--hjhxs-eth0 calico-apiserver-989fcbf57- calico-apiserver ac0959ea-5a2e-40a2-a41e-d08f5665191c 1111 0 2024-04-12 18:23:56 +0000 UTC map[apiserver:true app.kubernetes.io/name:calico-apiserver k8s-app:calico-apiserver pod-template-hash:989fcbf57 projectcalico.org/namespace:calico-apiserver projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:calico-apiserver] map[] [] [] []} {k8s 172.31.25.169 calico-apiserver-989fcbf57-hjhxs eth0 calico-apiserver [] [] [kns.calico-apiserver ksa.calico-apiserver.calico-apiserver] caliaffb6858e11 [] []}} ContainerID="fcdc7634ac9cecd48afaec35037b45fdf287bc045adf321ecf2e2e25b5eeb725" Namespace="calico-apiserver" Pod="calico-apiserver-989fcbf57-hjhxs" WorkloadEndpoint="172.31.25.169-k8s-calico--apiserver--989fcbf57--hjhxs-" Apr 12 18:23:57.906481 env[1620]: 2024-04-12 18:23:57.746 [INFO][3555] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="fcdc7634ac9cecd48afaec35037b45fdf287bc045adf321ecf2e2e25b5eeb725" Namespace="calico-apiserver" Pod="calico-apiserver-989fcbf57-hjhxs" WorkloadEndpoint="172.31.25.169-k8s-calico--apiserver--989fcbf57--hjhxs-eth0" Apr 12 18:23:57.906481 env[1620]: 2024-04-12 18:23:57.796 [INFO][3568] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="fcdc7634ac9cecd48afaec35037b45fdf287bc045adf321ecf2e2e25b5eeb725" HandleID="k8s-pod-network.fcdc7634ac9cecd48afaec35037b45fdf287bc045adf321ecf2e2e25b5eeb725" Workload="172.31.25.169-k8s-calico--apiserver--989fcbf57--hjhxs-eth0" Apr 12 18:23:57.906481 env[1620]: 2024-04-12 18:23:57.819 [INFO][3568] ipam_plugin.go 268: Auto assigning IP ContainerID="fcdc7634ac9cecd48afaec35037b45fdf287bc045adf321ecf2e2e25b5eeb725" HandleID="k8s-pod-network.fcdc7634ac9cecd48afaec35037b45fdf287bc045adf321ecf2e2e25b5eeb725" Workload="172.31.25.169-k8s-calico--apiserver--989fcbf57--hjhxs-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x400050fa50), Attrs:map[string]string{"namespace":"calico-apiserver", "node":"172.31.25.169", "pod":"calico-apiserver-989fcbf57-hjhxs", "timestamp":"2024-04-12 18:23:57.796255948 +0000 UTC"}, Hostname:"172.31.25.169", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Apr 12 18:23:57.906481 env[1620]: 2024-04-12 18:23:57.819 [INFO][3568] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Apr 12 18:23:57.906481 env[1620]: 2024-04-12 18:23:57.819 [INFO][3568] ipam_plugin.go 371: Acquired host-wide IPAM lock. Apr 12 18:23:57.906481 env[1620]: 2024-04-12 18:23:57.819 [INFO][3568] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.25.169' Apr 12 18:23:57.906481 env[1620]: 2024-04-12 18:23:57.822 [INFO][3568] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.fcdc7634ac9cecd48afaec35037b45fdf287bc045adf321ecf2e2e25b5eeb725" host="172.31.25.169" Apr 12 18:23:57.906481 env[1620]: 2024-04-12 18:23:57.831 [INFO][3568] ipam.go 372: Looking up existing affinities for host host="172.31.25.169" Apr 12 18:23:57.906481 env[1620]: 2024-04-12 18:23:57.839 [INFO][3568] ipam.go 489: Trying affinity for 192.168.111.64/26 host="172.31.25.169" Apr 12 18:23:57.906481 env[1620]: 2024-04-12 18:23:57.850 [INFO][3568] ipam.go 155: Attempting to load block cidr=192.168.111.64/26 host="172.31.25.169" Apr 12 18:23:57.906481 env[1620]: 2024-04-12 18:23:57.856 [INFO][3568] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.111.64/26 host="172.31.25.169" Apr 12 18:23:57.906481 env[1620]: 2024-04-12 18:23:57.856 [INFO][3568] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.111.64/26 handle="k8s-pod-network.fcdc7634ac9cecd48afaec35037b45fdf287bc045adf321ecf2e2e25b5eeb725" host="172.31.25.169" Apr 12 18:23:57.906481 env[1620]: 2024-04-12 18:23:57.859 [INFO][3568] ipam.go 1682: Creating new handle: k8s-pod-network.fcdc7634ac9cecd48afaec35037b45fdf287bc045adf321ecf2e2e25b5eeb725 Apr 12 18:23:57.906481 env[1620]: 2024-04-12 18:23:57.866 [INFO][3568] ipam.go 1203: Writing block in order to claim IPs block=192.168.111.64/26 handle="k8s-pod-network.fcdc7634ac9cecd48afaec35037b45fdf287bc045adf321ecf2e2e25b5eeb725" host="172.31.25.169" Apr 12 18:23:57.906481 env[1620]: 2024-04-12 18:23:57.879 [INFO][3568] ipam.go 1216: Successfully claimed IPs: [192.168.111.68/26] block=192.168.111.64/26 handle="k8s-pod-network.fcdc7634ac9cecd48afaec35037b45fdf287bc045adf321ecf2e2e25b5eeb725" host="172.31.25.169" Apr 12 18:23:57.906481 env[1620]: 2024-04-12 18:23:57.879 [INFO][3568] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.111.68/26] handle="k8s-pod-network.fcdc7634ac9cecd48afaec35037b45fdf287bc045adf321ecf2e2e25b5eeb725" host="172.31.25.169" Apr 12 18:23:57.906481 env[1620]: 2024-04-12 18:23:57.879 [INFO][3568] ipam_plugin.go 377: Released host-wide IPAM lock. Apr 12 18:23:57.906481 env[1620]: 2024-04-12 18:23:57.879 [INFO][3568] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.111.68/26] IPv6=[] ContainerID="fcdc7634ac9cecd48afaec35037b45fdf287bc045adf321ecf2e2e25b5eeb725" HandleID="k8s-pod-network.fcdc7634ac9cecd48afaec35037b45fdf287bc045adf321ecf2e2e25b5eeb725" Workload="172.31.25.169-k8s-calico--apiserver--989fcbf57--hjhxs-eth0" Apr 12 18:23:57.908160 env[1620]: 2024-04-12 18:23:57.882 [INFO][3555] k8s.go 385: Populated endpoint ContainerID="fcdc7634ac9cecd48afaec35037b45fdf287bc045adf321ecf2e2e25b5eeb725" Namespace="calico-apiserver" Pod="calico-apiserver-989fcbf57-hjhxs" WorkloadEndpoint="172.31.25.169-k8s-calico--apiserver--989fcbf57--hjhxs-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.25.169-k8s-calico--apiserver--989fcbf57--hjhxs-eth0", GenerateName:"calico-apiserver-989fcbf57-", Namespace:"calico-apiserver", SelfLink:"", UID:"ac0959ea-5a2e-40a2-a41e-d08f5665191c", ResourceVersion:"1111", Generation:0, CreationTimestamp:time.Date(2024, time.April, 12, 18, 23, 56, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"apiserver":"true", "app.kubernetes.io/name":"calico-apiserver", "k8s-app":"calico-apiserver", "pod-template-hash":"989fcbf57", "projectcalico.org/namespace":"calico-apiserver", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"calico-apiserver"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.25.169", ContainerID:"", Pod:"calico-apiserver-989fcbf57-hjhxs", Endpoint:"eth0", ServiceAccountName:"calico-apiserver", IPNetworks:[]string{"192.168.111.68/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-apiserver", "ksa.calico-apiserver.calico-apiserver"}, InterfaceName:"caliaffb6858e11", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Apr 12 18:23:57.908160 env[1620]: 2024-04-12 18:23:57.882 [INFO][3555] k8s.go 386: Calico CNI using IPs: [192.168.111.68/32] ContainerID="fcdc7634ac9cecd48afaec35037b45fdf287bc045adf321ecf2e2e25b5eeb725" Namespace="calico-apiserver" Pod="calico-apiserver-989fcbf57-hjhxs" WorkloadEndpoint="172.31.25.169-k8s-calico--apiserver--989fcbf57--hjhxs-eth0" Apr 12 18:23:57.908160 env[1620]: 2024-04-12 18:23:57.882 [INFO][3555] dataplane_linux.go 68: Setting the host side veth name to caliaffb6858e11 ContainerID="fcdc7634ac9cecd48afaec35037b45fdf287bc045adf321ecf2e2e25b5eeb725" Namespace="calico-apiserver" Pod="calico-apiserver-989fcbf57-hjhxs" WorkloadEndpoint="172.31.25.169-k8s-calico--apiserver--989fcbf57--hjhxs-eth0" Apr 12 18:23:57.908160 env[1620]: 2024-04-12 18:23:57.892 [INFO][3555] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="fcdc7634ac9cecd48afaec35037b45fdf287bc045adf321ecf2e2e25b5eeb725" Namespace="calico-apiserver" Pod="calico-apiserver-989fcbf57-hjhxs" WorkloadEndpoint="172.31.25.169-k8s-calico--apiserver--989fcbf57--hjhxs-eth0" Apr 12 18:23:57.908160 env[1620]: 2024-04-12 18:23:57.893 [INFO][3555] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="fcdc7634ac9cecd48afaec35037b45fdf287bc045adf321ecf2e2e25b5eeb725" Namespace="calico-apiserver" Pod="calico-apiserver-989fcbf57-hjhxs" WorkloadEndpoint="172.31.25.169-k8s-calico--apiserver--989fcbf57--hjhxs-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.25.169-k8s-calico--apiserver--989fcbf57--hjhxs-eth0", GenerateName:"calico-apiserver-989fcbf57-", Namespace:"calico-apiserver", SelfLink:"", UID:"ac0959ea-5a2e-40a2-a41e-d08f5665191c", ResourceVersion:"1111", Generation:0, CreationTimestamp:time.Date(2024, time.April, 12, 18, 23, 56, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"apiserver":"true", "app.kubernetes.io/name":"calico-apiserver", "k8s-app":"calico-apiserver", "pod-template-hash":"989fcbf57", "projectcalico.org/namespace":"calico-apiserver", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"calico-apiserver"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.25.169", ContainerID:"fcdc7634ac9cecd48afaec35037b45fdf287bc045adf321ecf2e2e25b5eeb725", Pod:"calico-apiserver-989fcbf57-hjhxs", Endpoint:"eth0", ServiceAccountName:"calico-apiserver", IPNetworks:[]string{"192.168.111.68/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-apiserver", "ksa.calico-apiserver.calico-apiserver"}, InterfaceName:"caliaffb6858e11", MAC:"d6:f2:98:de:62:66", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Apr 12 18:23:57.908160 env[1620]: 2024-04-12 18:23:57.903 [INFO][3555] k8s.go 498: Wrote updated endpoint to datastore ContainerID="fcdc7634ac9cecd48afaec35037b45fdf287bc045adf321ecf2e2e25b5eeb725" Namespace="calico-apiserver" Pod="calico-apiserver-989fcbf57-hjhxs" WorkloadEndpoint="172.31.25.169-k8s-calico--apiserver--989fcbf57--hjhxs-eth0" Apr 12 18:23:57.950449 env[1620]: time="2024-04-12T18:23:57.948629891Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Apr 12 18:23:57.950832 env[1620]: time="2024-04-12T18:23:57.950761102Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Apr 12 18:23:57.951085 env[1620]: time="2024-04-12T18:23:57.951025254Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Apr 12 18:23:57.951754 env[1620]: time="2024-04-12T18:23:57.951670649Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/fcdc7634ac9cecd48afaec35037b45fdf287bc045adf321ecf2e2e25b5eeb725 pid=3602 runtime=io.containerd.runc.v2 Apr 12 18:23:57.964869 kubelet[2083]: E0412 18:23:57.964813 2083 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:57.972000 audit[3614]: NETFILTER_CFG table=filter:82 family=2 entries=55 op=nft_register_chain pid=3614 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Apr 12 18:23:57.972000 audit[3614]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=28952 a0=3 a1=ffffca9c82a0 a2=0 a3=ffff87500fa8 items=0 ppid=2759 pid=3614 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:57.972000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Apr 12 18:23:58.003822 systemd[1]: run-containerd-runc-k8s.io-fcdc7634ac9cecd48afaec35037b45fdf287bc045adf321ecf2e2e25b5eeb725-runc.9hFoQP.mount: Deactivated successfully. Apr 12 18:23:58.011238 systemd[1]: Started cri-containerd-fcdc7634ac9cecd48afaec35037b45fdf287bc045adf321ecf2e2e25b5eeb725.scope. Apr 12 18:23:58.015532 kubelet[2083]: E0412 18:23:58.012279 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:58.018910 env[1620]: time="2024-04-12T18:23:58.018857026Z" level=info msg="StopPodSandbox for \"56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083\"" Apr 12 18:23:58.045000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.045000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.045000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.045000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.045000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.045000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.045000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.045000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.045000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.046000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.046000 audit: BPF prog-id=120 op=LOAD Apr 12 18:23:58.048000 audit[3615]: AVC avc: denied { bpf } for pid=3615 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.048000 audit[3615]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000115b38 a2=10 a3=0 items=0 ppid=3602 pid=3615 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:58.048000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6663646337363334616339636563643438616661656333353033376234 Apr 12 18:23:58.049000 audit[3615]: AVC avc: denied { perfmon } for pid=3615 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.049000 audit[3615]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001155a0 a2=3c a3=0 items=0 ppid=3602 pid=3615 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:58.049000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6663646337363334616339636563643438616661656333353033376234 Apr 12 18:23:58.049000 audit[3615]: AVC avc: denied { bpf } for pid=3615 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.049000 audit[3615]: AVC avc: denied { bpf } for pid=3615 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.049000 audit[3615]: AVC avc: denied { bpf } for pid=3615 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.049000 audit[3615]: AVC avc: denied { perfmon } for pid=3615 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.049000 audit[3615]: AVC avc: denied { perfmon } for pid=3615 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.049000 audit[3615]: AVC avc: denied { perfmon } for pid=3615 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.049000 audit[3615]: AVC avc: denied { perfmon } for pid=3615 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.049000 audit[3615]: AVC avc: denied { perfmon } for pid=3615 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.049000 audit[3615]: AVC avc: denied { bpf } for pid=3615 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.049000 audit[3615]: AVC avc: denied { bpf } for pid=3615 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.049000 audit: BPF prog-id=121 op=LOAD Apr 12 18:23:58.049000 audit[3615]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001158e0 a2=78 a3=0 items=0 ppid=3602 pid=3615 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:58.049000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6663646337363334616339636563643438616661656333353033376234 Apr 12 18:23:58.051000 audit[3615]: AVC avc: denied { bpf } for pid=3615 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.051000 audit[3615]: AVC avc: denied { bpf } for pid=3615 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.051000 audit[3615]: AVC avc: denied { perfmon } for pid=3615 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.051000 audit[3615]: AVC avc: denied { perfmon } for pid=3615 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.051000 audit[3615]: AVC avc: denied { perfmon } for pid=3615 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.051000 audit[3615]: AVC avc: denied { perfmon } for pid=3615 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.051000 audit[3615]: AVC avc: denied { perfmon } for pid=3615 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.051000 audit[3615]: AVC avc: denied { bpf } for pid=3615 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.051000 audit[3615]: AVC avc: denied { bpf } for pid=3615 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.051000 audit: BPF prog-id=122 op=LOAD Apr 12 18:23:58.051000 audit[3615]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000115670 a2=78 a3=0 items=0 ppid=3602 pid=3615 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:58.051000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6663646337363334616339636563643438616661656333353033376234 Apr 12 18:23:58.052000 audit: BPF prog-id=122 op=UNLOAD Apr 12 18:23:58.052000 audit: BPF prog-id=121 op=UNLOAD Apr 12 18:23:58.053000 audit[3615]: AVC avc: denied { bpf } for pid=3615 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.053000 audit[3615]: AVC avc: denied { bpf } for pid=3615 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.053000 audit[3615]: AVC avc: denied { bpf } for pid=3615 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.053000 audit[3615]: AVC avc: denied { perfmon } for pid=3615 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.053000 audit[3615]: AVC avc: denied { perfmon } for pid=3615 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.053000 audit[3615]: AVC avc: denied { perfmon } for pid=3615 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.053000 audit[3615]: AVC avc: denied { perfmon } for pid=3615 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.053000 audit[3615]: AVC avc: denied { perfmon } for pid=3615 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.053000 audit[3615]: AVC avc: denied { bpf } for pid=3615 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.053000 audit[3615]: AVC avc: denied { bpf } for pid=3615 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:23:58.053000 audit: BPF prog-id=123 op=LOAD Apr 12 18:23:58.053000 audit[3615]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000115b40 a2=78 a3=0 items=0 ppid=3602 pid=3615 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:23:58.053000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6663646337363334616339636563643438616661656333353033376234 Apr 12 18:23:58.108481 env[1620]: time="2024-04-12T18:23:58.108423025Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-apiserver-989fcbf57-hjhxs,Uid:ac0959ea-5a2e-40a2-a41e-d08f5665191c,Namespace:calico-apiserver,Attempt:0,} returns sandbox id \"fcdc7634ac9cecd48afaec35037b45fdf287bc045adf321ecf2e2e25b5eeb725\"" Apr 12 18:23:58.111343 env[1620]: time="2024-04-12T18:23:58.111204571Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/apiserver:v3.27.3\"" Apr 12 18:23:58.197111 env[1620]: 2024-04-12 18:23:58.119 [WARNING][3646] k8s.go 549: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.25.169-k8s-csi--node--driver--zxgs6-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"d252c216-222e-4462-b095-d9412d3071cf", ResourceVersion:"973", Generation:0, CreationTimestamp:time.Date(2024, time.April, 12, 18, 22, 59, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"54c68f759", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.25.169", ContainerID:"a51fbbbc22c7ceb06e9a52d74b3091845eb1df5bd85503c81b2f94008870ebbf", Pod:"csi-node-driver-zxgs6", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.111.65/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"cali17fd70c667b", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Apr 12 18:23:58.197111 env[1620]: 2024-04-12 18:23:58.119 [INFO][3646] k8s.go 585: Cleaning up netns ContainerID="56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" Apr 12 18:23:58.197111 env[1620]: 2024-04-12 18:23:58.119 [INFO][3646] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" iface="eth0" netns="" Apr 12 18:23:58.197111 env[1620]: 2024-04-12 18:23:58.119 [INFO][3646] k8s.go 592: Releasing IP address(es) ContainerID="56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" Apr 12 18:23:58.197111 env[1620]: 2024-04-12 18:23:58.119 [INFO][3646] utils.go 188: Calico CNI releasing IP address ContainerID="56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" Apr 12 18:23:58.197111 env[1620]: 2024-04-12 18:23:58.171 [INFO][3660] ipam_plugin.go 415: Releasing address using handleID ContainerID="56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" HandleID="k8s-pod-network.56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" Workload="172.31.25.169-k8s-csi--node--driver--zxgs6-eth0" Apr 12 18:23:58.197111 env[1620]: 2024-04-12 18:23:58.172 [INFO][3660] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Apr 12 18:23:58.197111 env[1620]: 2024-04-12 18:23:58.172 [INFO][3660] ipam_plugin.go 371: Acquired host-wide IPAM lock. Apr 12 18:23:58.197111 env[1620]: 2024-04-12 18:23:58.189 [WARNING][3660] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" HandleID="k8s-pod-network.56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" Workload="172.31.25.169-k8s-csi--node--driver--zxgs6-eth0" Apr 12 18:23:58.197111 env[1620]: 2024-04-12 18:23:58.189 [INFO][3660] ipam_plugin.go 443: Releasing address using workloadID ContainerID="56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" HandleID="k8s-pod-network.56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" Workload="172.31.25.169-k8s-csi--node--driver--zxgs6-eth0" Apr 12 18:23:58.197111 env[1620]: 2024-04-12 18:23:58.192 [INFO][3660] ipam_plugin.go 377: Released host-wide IPAM lock. Apr 12 18:23:58.197111 env[1620]: 2024-04-12 18:23:58.194 [INFO][3646] k8s.go 598: Teardown processing complete. ContainerID="56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" Apr 12 18:23:58.198290 env[1620]: time="2024-04-12T18:23:58.197140023Z" level=info msg="TearDown network for sandbox \"56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083\" successfully" Apr 12 18:23:58.198290 env[1620]: time="2024-04-12T18:23:58.197185063Z" level=info msg="StopPodSandbox for \"56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083\" returns successfully" Apr 12 18:23:58.198585 env[1620]: time="2024-04-12T18:23:58.198485739Z" level=info msg="RemovePodSandbox for \"56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083\"" Apr 12 18:23:58.198665 env[1620]: time="2024-04-12T18:23:58.198585814Z" level=info msg="Forcibly stopping sandbox \"56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083\"" Apr 12 18:23:58.342829 env[1620]: 2024-04-12 18:23:58.284 [WARNING][3681] k8s.go 549: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.25.169-k8s-csi--node--driver--zxgs6-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"d252c216-222e-4462-b095-d9412d3071cf", ResourceVersion:"973", Generation:0, CreationTimestamp:time.Date(2024, time.April, 12, 18, 22, 59, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"54c68f759", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.25.169", ContainerID:"a51fbbbc22c7ceb06e9a52d74b3091845eb1df5bd85503c81b2f94008870ebbf", Pod:"csi-node-driver-zxgs6", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.111.65/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"cali17fd70c667b", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Apr 12 18:23:58.342829 env[1620]: 2024-04-12 18:23:58.285 [INFO][3681] k8s.go 585: Cleaning up netns ContainerID="56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" Apr 12 18:23:58.342829 env[1620]: 2024-04-12 18:23:58.285 [INFO][3681] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" iface="eth0" netns="" Apr 12 18:23:58.342829 env[1620]: 2024-04-12 18:23:58.285 [INFO][3681] k8s.go 592: Releasing IP address(es) ContainerID="56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" Apr 12 18:23:58.342829 env[1620]: 2024-04-12 18:23:58.285 [INFO][3681] utils.go 188: Calico CNI releasing IP address ContainerID="56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" Apr 12 18:23:58.342829 env[1620]: 2024-04-12 18:23:58.320 [INFO][3687] ipam_plugin.go 415: Releasing address using handleID ContainerID="56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" HandleID="k8s-pod-network.56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" Workload="172.31.25.169-k8s-csi--node--driver--zxgs6-eth0" Apr 12 18:23:58.342829 env[1620]: 2024-04-12 18:23:58.320 [INFO][3687] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Apr 12 18:23:58.342829 env[1620]: 2024-04-12 18:23:58.320 [INFO][3687] ipam_plugin.go 371: Acquired host-wide IPAM lock. Apr 12 18:23:58.342829 env[1620]: 2024-04-12 18:23:58.335 [WARNING][3687] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" HandleID="k8s-pod-network.56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" Workload="172.31.25.169-k8s-csi--node--driver--zxgs6-eth0" Apr 12 18:23:58.342829 env[1620]: 2024-04-12 18:23:58.335 [INFO][3687] ipam_plugin.go 443: Releasing address using workloadID ContainerID="56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" HandleID="k8s-pod-network.56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" Workload="172.31.25.169-k8s-csi--node--driver--zxgs6-eth0" Apr 12 18:23:58.342829 env[1620]: 2024-04-12 18:23:58.338 [INFO][3687] ipam_plugin.go 377: Released host-wide IPAM lock. Apr 12 18:23:58.342829 env[1620]: 2024-04-12 18:23:58.340 [INFO][3681] k8s.go 598: Teardown processing complete. ContainerID="56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083" Apr 12 18:23:58.346146 env[1620]: time="2024-04-12T18:23:58.342778965Z" level=info msg="TearDown network for sandbox \"56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083\" successfully" Apr 12 18:23:58.355703 env[1620]: time="2024-04-12T18:23:58.355639034Z" level=info msg="RemovePodSandbox \"56d1ff008fb1f6b088eb7cf8bbe4629e4ef791db072a4235a96cd13dd4150083\" returns successfully" Apr 12 18:23:58.356461 env[1620]: time="2024-04-12T18:23:58.356401232Z" level=info msg="StopPodSandbox for \"a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903\"" Apr 12 18:23:58.490591 env[1620]: 2024-04-12 18:23:58.430 [WARNING][3706] k8s.go 549: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.25.169-k8s-nginx--deployment--845c78c8b9--xg44z-eth0", GenerateName:"nginx-deployment-845c78c8b9-", Namespace:"default", SelfLink:"", UID:"6fe42277-e1b4-4e96-a619-0987265eb5e0", ResourceVersion:"1005", Generation:0, CreationTimestamp:time.Date(2024, time.April, 12, 18, 23, 18, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"845c78c8b9", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.25.169", ContainerID:"9133adf6b1d2514a60e10011f24b9aa933c1890bab4776952c00f18798ce3678", Pod:"nginx-deployment-845c78c8b9-xg44z", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.111.66/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali331265c1344", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Apr 12 18:23:58.490591 env[1620]: 2024-04-12 18:23:58.430 [INFO][3706] k8s.go 585: Cleaning up netns ContainerID="a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" Apr 12 18:23:58.490591 env[1620]: 2024-04-12 18:23:58.430 [INFO][3706] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" iface="eth0" netns="" Apr 12 18:23:58.490591 env[1620]: 2024-04-12 18:23:58.431 [INFO][3706] k8s.go 592: Releasing IP address(es) ContainerID="a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" Apr 12 18:23:58.490591 env[1620]: 2024-04-12 18:23:58.431 [INFO][3706] utils.go 188: Calico CNI releasing IP address ContainerID="a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" Apr 12 18:23:58.490591 env[1620]: 2024-04-12 18:23:58.465 [INFO][3712] ipam_plugin.go 415: Releasing address using handleID ContainerID="a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" HandleID="k8s-pod-network.a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" Workload="172.31.25.169-k8s-nginx--deployment--845c78c8b9--xg44z-eth0" Apr 12 18:23:58.490591 env[1620]: 2024-04-12 18:23:58.465 [INFO][3712] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Apr 12 18:23:58.490591 env[1620]: 2024-04-12 18:23:58.465 [INFO][3712] ipam_plugin.go 371: Acquired host-wide IPAM lock. Apr 12 18:23:58.490591 env[1620]: 2024-04-12 18:23:58.483 [WARNING][3712] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" HandleID="k8s-pod-network.a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" Workload="172.31.25.169-k8s-nginx--deployment--845c78c8b9--xg44z-eth0" Apr 12 18:23:58.490591 env[1620]: 2024-04-12 18:23:58.483 [INFO][3712] ipam_plugin.go 443: Releasing address using workloadID ContainerID="a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" HandleID="k8s-pod-network.a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" Workload="172.31.25.169-k8s-nginx--deployment--845c78c8b9--xg44z-eth0" Apr 12 18:23:58.490591 env[1620]: 2024-04-12 18:23:58.486 [INFO][3712] ipam_plugin.go 377: Released host-wide IPAM lock. Apr 12 18:23:58.490591 env[1620]: 2024-04-12 18:23:58.488 [INFO][3706] k8s.go 598: Teardown processing complete. ContainerID="a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" Apr 12 18:23:58.490591 env[1620]: time="2024-04-12T18:23:58.490635725Z" level=info msg="TearDown network for sandbox \"a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903\" successfully" Apr 12 18:23:58.490591 env[1620]: time="2024-04-12T18:23:58.490683776Z" level=info msg="StopPodSandbox for \"a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903\" returns successfully" Apr 12 18:23:58.491738 env[1620]: time="2024-04-12T18:23:58.491467312Z" level=info msg="RemovePodSandbox for \"a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903\"" Apr 12 18:23:58.491738 env[1620]: time="2024-04-12T18:23:58.491516516Z" level=info msg="Forcibly stopping sandbox \"a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903\"" Apr 12 18:23:58.619883 env[1620]: 2024-04-12 18:23:58.560 [WARNING][3732] k8s.go 549: CNI_CONTAINERID does not match WorkloadEndpoint ConainerID, don't delete WEP. ContainerID="a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.25.169-k8s-nginx--deployment--845c78c8b9--xg44z-eth0", GenerateName:"nginx-deployment-845c78c8b9-", Namespace:"default", SelfLink:"", UID:"6fe42277-e1b4-4e96-a619-0987265eb5e0", ResourceVersion:"1005", Generation:0, CreationTimestamp:time.Date(2024, time.April, 12, 18, 23, 18, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"845c78c8b9", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.25.169", ContainerID:"9133adf6b1d2514a60e10011f24b9aa933c1890bab4776952c00f18798ce3678", Pod:"nginx-deployment-845c78c8b9-xg44z", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.111.66/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali331265c1344", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Apr 12 18:23:58.619883 env[1620]: 2024-04-12 18:23:58.560 [INFO][3732] k8s.go 585: Cleaning up netns ContainerID="a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" Apr 12 18:23:58.619883 env[1620]: 2024-04-12 18:23:58.561 [INFO][3732] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" iface="eth0" netns="" Apr 12 18:23:58.619883 env[1620]: 2024-04-12 18:23:58.561 [INFO][3732] k8s.go 592: Releasing IP address(es) ContainerID="a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" Apr 12 18:23:58.619883 env[1620]: 2024-04-12 18:23:58.561 [INFO][3732] utils.go 188: Calico CNI releasing IP address ContainerID="a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" Apr 12 18:23:58.619883 env[1620]: 2024-04-12 18:23:58.595 [INFO][3738] ipam_plugin.go 415: Releasing address using handleID ContainerID="a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" HandleID="k8s-pod-network.a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" Workload="172.31.25.169-k8s-nginx--deployment--845c78c8b9--xg44z-eth0" Apr 12 18:23:58.619883 env[1620]: 2024-04-12 18:23:58.595 [INFO][3738] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Apr 12 18:23:58.619883 env[1620]: 2024-04-12 18:23:58.595 [INFO][3738] ipam_plugin.go 371: Acquired host-wide IPAM lock. Apr 12 18:23:58.619883 env[1620]: 2024-04-12 18:23:58.612 [WARNING][3738] ipam_plugin.go 432: Asked to release address but it doesn't exist. Ignoring ContainerID="a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" HandleID="k8s-pod-network.a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" Workload="172.31.25.169-k8s-nginx--deployment--845c78c8b9--xg44z-eth0" Apr 12 18:23:58.619883 env[1620]: 2024-04-12 18:23:58.613 [INFO][3738] ipam_plugin.go 443: Releasing address using workloadID ContainerID="a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" HandleID="k8s-pod-network.a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" Workload="172.31.25.169-k8s-nginx--deployment--845c78c8b9--xg44z-eth0" Apr 12 18:23:58.619883 env[1620]: 2024-04-12 18:23:58.615 [INFO][3738] ipam_plugin.go 377: Released host-wide IPAM lock. Apr 12 18:23:58.619883 env[1620]: 2024-04-12 18:23:58.617 [INFO][3732] k8s.go 598: Teardown processing complete. ContainerID="a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903" Apr 12 18:23:58.621543 env[1620]: time="2024-04-12T18:23:58.619836386Z" level=info msg="TearDown network for sandbox \"a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903\" successfully" Apr 12 18:23:58.625253 env[1620]: time="2024-04-12T18:23:58.625187244Z" level=info msg="RemovePodSandbox \"a16362b803bd8d2741d5ab438bf476bd106db8a24b3d4cdf2fd3343341ce2903\" returns successfully" Apr 12 18:23:59.012503 kubelet[2083]: E0412 18:23:59.012424 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:23:59.221847 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1466641362.mount: Deactivated successfully. Apr 12 18:23:59.838309 systemd-networkd[1420]: caliaffb6858e11: Gained IPv6LL Apr 12 18:24:00.012883 kubelet[2083]: E0412 18:24:00.012820 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:00.794237 env[1620]: time="2024-04-12T18:24:00.794154844Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/apiserver:v3.27.3,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:24:00.799972 env[1620]: time="2024-04-12T18:24:00.799890037Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:3aea99931f98596bbd91a0676e06a4bae9ce7cc2657a7d5603628bfeecf71ff4,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:24:00.806593 env[1620]: time="2024-04-12T18:24:00.806524319Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/apiserver:v3.27.3,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:24:00.813185 env[1620]: time="2024-04-12T18:24:00.813116430Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/apiserver@sha256:62b75df90aa008b11fee8f555f22bfc00d3dc6af5053185c293ee3467342f32a,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:24:00.814404 env[1620]: time="2024-04-12T18:24:00.814354747Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/apiserver:v3.27.3\" returns image reference \"sha256:3aea99931f98596bbd91a0676e06a4bae9ce7cc2657a7d5603628bfeecf71ff4\"" Apr 12 18:24:00.818581 env[1620]: time="2024-04-12T18:24:00.818229236Z" level=info msg="CreateContainer within sandbox \"fcdc7634ac9cecd48afaec35037b45fdf287bc045adf321ecf2e2e25b5eeb725\" for container &ContainerMetadata{Name:calico-apiserver,Attempt:0,}" Apr 12 18:24:01.013665 kubelet[2083]: E0412 18:24:01.013593 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:01.040867 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2585869687.mount: Deactivated successfully. Apr 12 18:24:01.126426 env[1620]: time="2024-04-12T18:24:01.126228977Z" level=info msg="CreateContainer within sandbox \"fcdc7634ac9cecd48afaec35037b45fdf287bc045adf321ecf2e2e25b5eeb725\" for &ContainerMetadata{Name:calico-apiserver,Attempt:0,} returns container id \"54ddb5be06209325cda767841d423e4061afdb1f53ccd13dc87e8315e1649e75\"" Apr 12 18:24:01.127978 env[1620]: time="2024-04-12T18:24:01.127904529Z" level=info msg="StartContainer for \"54ddb5be06209325cda767841d423e4061afdb1f53ccd13dc87e8315e1649e75\"" Apr 12 18:24:01.178545 systemd[1]: run-containerd-runc-k8s.io-54ddb5be06209325cda767841d423e4061afdb1f53ccd13dc87e8315e1649e75-runc.oypvNx.mount: Deactivated successfully. Apr 12 18:24:01.183291 systemd[1]: Started cri-containerd-54ddb5be06209325cda767841d423e4061afdb1f53ccd13dc87e8315e1649e75.scope. Apr 12 18:24:01.209000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.209000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.209000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.209000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.209000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.209000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.209000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.209000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.209000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.209000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.209000 audit: BPF prog-id=124 op=LOAD Apr 12 18:24:01.210000 audit[3754]: AVC avc: denied { bpf } for pid=3754 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.210000 audit[3754]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000195b38 a2=10 a3=0 items=0 ppid=3602 pid=3754 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:01.210000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3534646462356265303632303933323563646137363738343164343233 Apr 12 18:24:01.210000 audit[3754]: AVC avc: denied { perfmon } for pid=3754 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.210000 audit[3754]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=3602 pid=3754 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:01.210000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3534646462356265303632303933323563646137363738343164343233 Apr 12 18:24:01.210000 audit[3754]: AVC avc: denied { bpf } for pid=3754 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.210000 audit[3754]: AVC avc: denied { bpf } for pid=3754 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.210000 audit[3754]: AVC avc: denied { bpf } for pid=3754 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.210000 audit[3754]: AVC avc: denied { perfmon } for pid=3754 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.210000 audit[3754]: AVC avc: denied { perfmon } for pid=3754 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.210000 audit[3754]: AVC avc: denied { perfmon } for pid=3754 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.210000 audit[3754]: AVC avc: denied { perfmon } for pid=3754 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.210000 audit[3754]: AVC avc: denied { perfmon } for pid=3754 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.210000 audit[3754]: AVC avc: denied { bpf } for pid=3754 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.210000 audit[3754]: AVC avc: denied { bpf } for pid=3754 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.210000 audit: BPF prog-id=125 op=LOAD Apr 12 18:24:01.210000 audit[3754]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=3602 pid=3754 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:01.210000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3534646462356265303632303933323563646137363738343164343233 Apr 12 18:24:01.210000 audit[3754]: AVC avc: denied { bpf } for pid=3754 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.210000 audit[3754]: AVC avc: denied { bpf } for pid=3754 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.210000 audit[3754]: AVC avc: denied { perfmon } for pid=3754 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.210000 audit[3754]: AVC avc: denied { perfmon } for pid=3754 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.210000 audit[3754]: AVC avc: denied { perfmon } for pid=3754 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.210000 audit[3754]: AVC avc: denied { perfmon } for pid=3754 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.210000 audit[3754]: AVC avc: denied { perfmon } for pid=3754 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.210000 audit[3754]: AVC avc: denied { bpf } for pid=3754 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.210000 audit[3754]: AVC avc: denied { bpf } for pid=3754 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.210000 audit: BPF prog-id=126 op=LOAD Apr 12 18:24:01.210000 audit[3754]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=3602 pid=3754 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:01.210000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3534646462356265303632303933323563646137363738343164343233 Apr 12 18:24:01.210000 audit: BPF prog-id=126 op=UNLOAD Apr 12 18:24:01.210000 audit: BPF prog-id=125 op=UNLOAD Apr 12 18:24:01.210000 audit[3754]: AVC avc: denied { bpf } for pid=3754 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.210000 audit[3754]: AVC avc: denied { bpf } for pid=3754 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.210000 audit[3754]: AVC avc: denied { bpf } for pid=3754 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.210000 audit[3754]: AVC avc: denied { perfmon } for pid=3754 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.210000 audit[3754]: AVC avc: denied { perfmon } for pid=3754 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.210000 audit[3754]: AVC avc: denied { perfmon } for pid=3754 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.210000 audit[3754]: AVC avc: denied { perfmon } for pid=3754 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.210000 audit[3754]: AVC avc: denied { perfmon } for pid=3754 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.210000 audit[3754]: AVC avc: denied { bpf } for pid=3754 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.210000 audit[3754]: AVC avc: denied { bpf } for pid=3754 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:01.210000 audit: BPF prog-id=127 op=LOAD Apr 12 18:24:01.210000 audit[3754]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=3602 pid=3754 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:01.210000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3534646462356265303632303933323563646137363738343164343233 Apr 12 18:24:01.265152 env[1620]: time="2024-04-12T18:24:01.265083159Z" level=info msg="StartContainer for \"54ddb5be06209325cda767841d423e4061afdb1f53ccd13dc87e8315e1649e75\" returns successfully" Apr 12 18:24:01.484000 audit[3785]: NETFILTER_CFG table=filter:83 family=2 entries=10 op=nft_register_rule pid=3785 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:24:01.484000 audit[3785]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=3676 a0=3 a1=fffffec038b0 a2=0 a3=1 items=0 ppid=2296 pid=3785 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:01.484000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:24:01.487000 audit[3785]: NETFILTER_CFG table=nat:84 family=2 entries=44 op=nft_register_rule pid=3785 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:24:01.487000 audit[3785]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=14988 a0=3 a1=fffffec038b0 a2=0 a3=1 items=0 ppid=2296 pid=3785 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:01.487000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:24:02.014639 kubelet[2083]: E0412 18:24:02.014588 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:02.805586 kernel: kauditd_printk_skb: 203 callbacks suppressed Apr 12 18:24:02.805747 kernel: audit: type=1400 audit(1712946242.800:918): avc: denied { watch } for pid=3764 comm="apiserver" path="/calico-apiserver-certs/..2024_04_12_18_23_57.4034353263/tls.crt" dev="tmpfs" ino=3 scontext=system_u:system_r:svirt_lxc_net_t:s0:c175,c933 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c175,c933 tclass=file permissive=0 Apr 12 18:24:02.800000 audit[3764]: AVC avc: denied { watch } for pid=3764 comm="apiserver" path="/calico-apiserver-certs/..2024_04_12_18_23_57.4034353263/tls.crt" dev="tmpfs" ino=3 scontext=system_u:system_r:svirt_lxc_net_t:s0:c175,c933 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c175,c933 tclass=file permissive=0 Apr 12 18:24:02.800000 audit[3764]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=8 a1=4000a17200 a2=fc6 a3=0 items=0 ppid=3602 pid=3764 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="apiserver" exe="/code/apiserver" subj=system_u:system_r:svirt_lxc_net_t:s0:c175,c933 key=(null) Apr 12 18:24:02.825475 kernel: audit: type=1300 audit(1712946242.800:918): arch=c00000b7 syscall=27 success=no exit=-13 a0=8 a1=4000a17200 a2=fc6 a3=0 items=0 ppid=3602 pid=3764 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="apiserver" exe="/code/apiserver" subj=system_u:system_r:svirt_lxc_net_t:s0:c175,c933 key=(null) Apr 12 18:24:02.825634 kernel: audit: type=1327 audit(1712946242.800:918): proctitle=2F636F64652F617069736572766572002D2D7365637572652D706F72743D35343433002D2D746C732D707269766174652D6B65792D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C732E6B6579002D2D746C732D636572742D66696C653D2F63616C69636F2D6170697365727665722D63657274 Apr 12 18:24:02.800000 audit: PROCTITLE proctitle=2F636F64652F617069736572766572002D2D7365637572652D706F72743D35343433002D2D746C732D707269766174652D6B65792D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C732E6B6579002D2D746C732D636572742D66696C653D2F63616C69636F2D6170697365727665722D63657274 Apr 12 18:24:03.015481 kubelet[2083]: E0412 18:24:03.015374 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:03.323000 audit[3791]: NETFILTER_CFG table=filter:85 family=2 entries=10 op=nft_register_rule pid=3791 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:24:03.323000 audit[3791]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=3676 a0=3 a1=ffffe34288b0 a2=0 a3=1 items=0 ppid=2296 pid=3791 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:03.341877 kernel: audit: type=1325 audit(1712946243.323:919): table=filter:85 family=2 entries=10 op=nft_register_rule pid=3791 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:24:03.342006 kernel: audit: type=1300 audit(1712946243.323:919): arch=c00000b7 syscall=211 success=yes exit=3676 a0=3 a1=ffffe34288b0 a2=0 a3=1 items=0 ppid=2296 pid=3791 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:03.342081 kernel: audit: type=1327 audit(1712946243.323:919): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:24:03.323000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:24:03.330000 audit[3791]: NETFILTER_CFG table=nat:86 family=2 entries=44 op=nft_register_rule pid=3791 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:24:03.330000 audit[3791]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=14988 a0=3 a1=ffffe34288b0 a2=0 a3=1 items=0 ppid=2296 pid=3791 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:03.365546 kernel: audit: type=1325 audit(1712946243.330:920): table=nat:86 family=2 entries=44 op=nft_register_rule pid=3791 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:24:03.365617 kernel: audit: type=1300 audit(1712946243.330:920): arch=c00000b7 syscall=211 success=yes exit=14988 a0=3 a1=ffffe34288b0 a2=0 a3=1 items=0 ppid=2296 pid=3791 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:03.365660 kernel: audit: type=1327 audit(1712946243.330:920): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:24:03.330000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:24:04.015813 kubelet[2083]: E0412 18:24:04.015731 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:04.214332 amazon-ssm-agent[1594]: 2024-04-12 18:24:04 INFO [HealthCheck] HealthCheck reporting agent health. Apr 12 18:24:05.016924 kubelet[2083]: E0412 18:24:05.016855 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:06.017895 kubelet[2083]: E0412 18:24:06.017856 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:07.019277 kubelet[2083]: E0412 18:24:07.019237 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:08.020751 kubelet[2083]: E0412 18:24:08.020690 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:09.021872 kubelet[2083]: E0412 18:24:09.021807 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:10.022419 kubelet[2083]: E0412 18:24:10.022295 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:11.023428 kubelet[2083]: E0412 18:24:11.023388 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:12.024355 kubelet[2083]: E0412 18:24:12.024317 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:13.025764 kubelet[2083]: E0412 18:24:13.025700 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:14.026827 kubelet[2083]: E0412 18:24:14.026785 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:15.027698 kubelet[2083]: E0412 18:24:15.027639 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:16.028818 kubelet[2083]: E0412 18:24:16.028778 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:17.029890 kubelet[2083]: E0412 18:24:17.029831 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:17.959820 kubelet[2083]: E0412 18:24:17.959780 2083 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:18.030531 kubelet[2083]: E0412 18:24:18.030465 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:19.031685 kubelet[2083]: E0412 18:24:19.031627 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:20.032492 kubelet[2083]: E0412 18:24:20.032436 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:21.032980 kubelet[2083]: E0412 18:24:21.032927 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:21.808666 kubelet[2083]: I0412 18:24:21.808605 2083 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="calico-apiserver/calico-apiserver-989fcbf57-hjhxs" podStartSLOduration=23.104426483 podCreationTimestamp="2024-04-12 18:23:56 +0000 UTC" firstStartedPulling="2024-04-12 18:23:58.110760096 +0000 UTC m=+60.987458734" lastFinishedPulling="2024-04-12 18:24:00.814887763 +0000 UTC m=+63.691586389" observedRunningTime="2024-04-12 18:24:01.434964943 +0000 UTC m=+64.311663582" watchObservedRunningTime="2024-04-12 18:24:21.808554138 +0000 UTC m=+84.685252776" Apr 12 18:24:21.809148 kubelet[2083]: I0412 18:24:21.809101 2083 topology_manager.go:212] "Topology Admit Handler" Apr 12 18:24:21.818303 systemd[1]: Created slice kubepods-besteffort-pod05fdfd11_792e_4265_9f9d_dd04e1438cb4.slice. Apr 12 18:24:21.940181 kubelet[2083]: I0412 18:24:21.940144 2083 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-hqdp8\" (UniqueName: \"kubernetes.io/projected/05fdfd11-792e-4265-9f9d-dd04e1438cb4-kube-api-access-hqdp8\") pod \"test-pod-1\" (UID: \"05fdfd11-792e-4265-9f9d-dd04e1438cb4\") " pod="default/test-pod-1" Apr 12 18:24:21.940477 kubelet[2083]: I0412 18:24:21.940454 2083 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"pvc-3728375b-9ee8-4651-839f-a11215f8cec7\" (UniqueName: \"kubernetes.io/nfs/05fdfd11-792e-4265-9f9d-dd04e1438cb4-pvc-3728375b-9ee8-4651-839f-a11215f8cec7\") pod \"test-pod-1\" (UID: \"05fdfd11-792e-4265-9f9d-dd04e1438cb4\") " pod="default/test-pod-1" Apr 12 18:24:22.033749 kubelet[2083]: E0412 18:24:22.033666 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:22.081246 kernel: Failed to create system directory netfs Apr 12 18:24:22.081420 kernel: audit: type=1400 audit(1712946262.068:921): avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.081482 kernel: Failed to create system directory netfs Apr 12 18:24:22.068000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.068000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.091315 kernel: audit: type=1400 audit(1712946262.068:921): avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.091393 kernel: Failed to create system directory netfs Apr 12 18:24:22.068000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.101377 kernel: audit: type=1400 audit(1712946262.068:921): avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.101445 kernel: Failed to create system directory netfs Apr 12 18:24:22.068000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.114231 kernel: audit: type=1400 audit(1712946262.068:921): avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.128468 kernel: audit: type=1300 audit(1712946262.068:921): arch=c00000b7 syscall=105 success=yes exit=0 a0=aaaaf24135e0 a1=12c14 a2=aaaad912e028 a3=aaaaf2404010 items=0 ppid=51 pid=3833 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:22.068000 audit[3833]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=aaaaf24135e0 a1=12c14 a2=aaaad912e028 a3=aaaaf2404010 items=0 ppid=51 pid=3833 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:22.068000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Apr 12 18:24:22.133155 kernel: audit: type=1327 audit(1712946262.068:921): proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Apr 12 18:24:22.133223 kernel: Failed to create system directory fscache Apr 12 18:24:22.115000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.143188 kernel: audit: type=1400 audit(1712946262.115:922): avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.143257 kernel: Failed to create system directory fscache Apr 12 18:24:22.115000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.153302 kernel: audit: type=1400 audit(1712946262.115:922): avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.153374 kernel: Failed to create system directory fscache Apr 12 18:24:22.115000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.163656 kernel: audit: type=1400 audit(1712946262.115:922): avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.163753 kernel: Failed to create system directory fscache Apr 12 18:24:22.115000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.173624 kernel: audit: type=1400 audit(1712946262.115:922): avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.173692 kernel: Failed to create system directory fscache Apr 12 18:24:22.115000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.115000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.177479 kernel: Failed to create system directory fscache Apr 12 18:24:22.177545 kernel: Failed to create system directory fscache Apr 12 18:24:22.115000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.115000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.181230 kernel: Failed to create system directory fscache Apr 12 18:24:22.181328 kernel: Failed to create system directory fscache Apr 12 18:24:22.115000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.115000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.185437 kernel: Failed to create system directory fscache Apr 12 18:24:22.185575 kernel: Failed to create system directory fscache Apr 12 18:24:22.115000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.115000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.189249 kernel: Failed to create system directory fscache Apr 12 18:24:22.189328 kernel: Failed to create system directory fscache Apr 12 18:24:22.115000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.115000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.193006 kernel: Failed to create system directory fscache Apr 12 18:24:22.194505 kernel: FS-Cache: Loaded Apr 12 18:24:22.115000 audit[3833]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=aaaaf2626210 a1=4c344 a2=aaaad912e028 a3=aaaaf2404010 items=0 ppid=51 pid=3833 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:22.115000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.233933 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.234046 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.234092 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.237558 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.237647 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.241332 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.241445 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.243235 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.246839 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.246913 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.250587 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.250676 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.254350 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.254420 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.258074 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.258149 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.261750 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.261837 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.265498 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.265569 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.269128 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.269210 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.272800 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.272880 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.276510 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.276590 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.280208 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.280291 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.283833 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.283907 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.287543 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.287623 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.291253 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.291324 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.294905 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.294987 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.298665 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.298748 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.302418 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.302500 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.306117 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.306200 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.311667 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.311748 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.311789 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.315394 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.315479 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.319053 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.319154 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.322792 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.324762 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.324847 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.328502 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.328573 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.332218 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.332289 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.336253 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.336355 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.339780 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.339880 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.343521 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.343593 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.347186 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.347275 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.350895 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.350983 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.352822 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.356529 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.356604 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.360608 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.360729 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.364484 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.364545 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.368241 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.368307 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.371832 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.371909 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.373642 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.375553 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.377350 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.379211 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.383125 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.383261 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.387166 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.387217 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.389114 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.390851 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.394571 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.394643 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.396380 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.398312 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.400054 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.401894 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.405751 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.405847 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.407669 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.409689 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.411542 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.413556 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.415232 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.417051 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.418824 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.420720 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.422610 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.424419 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.426287 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.428176 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.431868 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.431959 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.433665 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.435575 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.437378 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.439260 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.441058 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.442898 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.444723 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.446645 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.450012 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.452319 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.452399 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.454088 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.455923 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.459715 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.459795 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.461497 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.463391 kernel: Failed to create system directory sunrpc Apr 12 18:24:22.221000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.477574 kernel: RPC: Registered named UNIX socket transport module. Apr 12 18:24:22.477741 kernel: RPC: Registered udp transport module. Apr 12 18:24:22.477793 kernel: RPC: Registered tcp transport module. Apr 12 18:24:22.479230 kernel: RPC: Registered tcp NFSv4.1 backchannel transport module. Apr 12 18:24:22.221000 audit[3833]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=aaaaf2672560 a1=14a344 a2=aaaad912e028 a3=aaaaf2404010 items=6 ppid=51 pid=3833 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:22.221000 audit: CWD cwd="/" Apr 12 18:24:22.221000 audit: PATH item=0 name=(null) inode=1 dev=00:07 mode=040700 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:24:22.221000 audit: PATH item=1 name=(null) inode=19774 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:24:22.221000 audit: PATH item=2 name=(null) inode=19774 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:24:22.221000 audit: PATH item=3 name=(null) inode=19775 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:24:22.221000 audit: PATH item=4 name=(null) inode=19774 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:24:22.221000 audit: PATH item=5 name=(null) inode=19776 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Apr 12 18:24:22.221000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.530134 kernel: Failed to create system directory nfs Apr 12 18:24:22.530227 kernel: Failed to create system directory nfs Apr 12 18:24:22.530290 kernel: Failed to create system directory nfs Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.533559 kernel: Failed to create system directory nfs Apr 12 18:24:22.533635 kernel: Failed to create system directory nfs Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.537043 kernel: Failed to create system directory nfs Apr 12 18:24:22.537093 kernel: Failed to create system directory nfs Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.540605 kernel: Failed to create system directory nfs Apr 12 18:24:22.540656 kernel: Failed to create system directory nfs Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.542261 kernel: Failed to create system directory nfs Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.544080 kernel: Failed to create system directory nfs Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.545733 kernel: Failed to create system directory nfs Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.547567 kernel: Failed to create system directory nfs Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.551054 kernel: Failed to create system directory nfs Apr 12 18:24:22.551131 kernel: Failed to create system directory nfs Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.554532 kernel: Failed to create system directory nfs Apr 12 18:24:22.554667 kernel: Failed to create system directory nfs Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.558090 kernel: Failed to create system directory nfs Apr 12 18:24:22.558180 kernel: Failed to create system directory nfs Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.561604 kernel: Failed to create system directory nfs Apr 12 18:24:22.561680 kernel: Failed to create system directory nfs Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.565099 kernel: Failed to create system directory nfs Apr 12 18:24:22.565190 kernel: Failed to create system directory nfs Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.568639 kernel: Failed to create system directory nfs Apr 12 18:24:22.568726 kernel: Failed to create system directory nfs Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.572107 kernel: Failed to create system directory nfs Apr 12 18:24:22.572155 kernel: Failed to create system directory nfs Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.575578 kernel: Failed to create system directory nfs Apr 12 18:24:22.575673 kernel: Failed to create system directory nfs Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.579082 kernel: Failed to create system directory nfs Apr 12 18:24:22.579131 kernel: Failed to create system directory nfs Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.580740 kernel: Failed to create system directory nfs Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.582583 kernel: Failed to create system directory nfs Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.586069 kernel: Failed to create system directory nfs Apr 12 18:24:22.586116 kernel: Failed to create system directory nfs Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.587715 kernel: Failed to create system directory nfs Apr 12 18:24:22.595317 kernel: Failed to create system directory nfs Apr 12 18:24:22.595452 kernel: Failed to create system directory nfs Apr 12 18:24:22.595497 kernel: Failed to create system directory nfs Apr 12 18:24:22.595536 kernel: Failed to create system directory nfs Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.597046 kernel: Failed to create system directory nfs Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.600528 kernel: Failed to create system directory nfs Apr 12 18:24:22.600621 kernel: Failed to create system directory nfs Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.602209 kernel: Failed to create system directory nfs Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.604021 kernel: Failed to create system directory nfs Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.607537 kernel: Failed to create system directory nfs Apr 12 18:24:22.607584 kernel: Failed to create system directory nfs Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.609234 kernel: Failed to create system directory nfs Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.612976 kernel: Failed to create system directory nfs Apr 12 18:24:22.613087 kernel: Failed to create system directory nfs Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.616769 kernel: Failed to create system directory nfs Apr 12 18:24:22.616828 kernel: Failed to create system directory nfs Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.618587 kernel: Failed to create system directory nfs Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.620353 kernel: Failed to create system directory nfs Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.623769 kernel: Failed to create system directory nfs Apr 12 18:24:22.623868 kernel: Failed to create system directory nfs Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.627276 kernel: Failed to create system directory nfs Apr 12 18:24:22.627349 kernel: Failed to create system directory nfs Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.629053 kernel: Failed to create system directory nfs Apr 12 18:24:22.519000 audit[3833]: AVC avc: denied { confidentiality } for pid=3833 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.662080 kernel: FS-Cache: Netfs 'nfs' registered for caching Apr 12 18:24:22.519000 audit[3833]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=aaaaf281b4f0 a1=115814 a2=aaaad912e028 a3=aaaaf2404010 items=0 ppid=51 pid=3833 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:22.519000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.712388 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.712455 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.714311 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.716201 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.718211 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.720125 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.722050 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.722113 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.725728 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.725792 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.729371 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.731314 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.733232 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.735114 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.737002 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.738851 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.738972 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.742631 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.744505 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.746366 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.748211 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.748282 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.752062 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.753921 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.754004 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.757578 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.757637 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.761260 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.761332 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.764854 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.764902 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.768471 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.768531 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.772134 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.772196 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.777566 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.777614 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.777667 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.781222 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.781271 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.784823 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.784892 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.788436 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.788495 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.792121 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.794050 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.794098 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.797653 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.797702 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.801327 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.801378 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.804958 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.805007 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.808573 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.808621 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.812226 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.812276 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.815794 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.815866 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.819501 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.819609 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.823185 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.823235 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.826775 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.826823 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.830418 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.830507 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.834031 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.834081 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.837630 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.837679 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.841326 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.843215 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.843279 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.846798 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.846868 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.857510 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.857578 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.861285 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.861340 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.864876 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.864926 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.868490 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.868555 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.872093 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.872149 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.873965 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.877596 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.877648 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.881221 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.881271 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.884817 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.884874 kernel: Failed to create system directory nfs4 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.699000 audit[3838]: AVC avc: denied { confidentiality } for pid=3838 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:22.888416 kernel: Failed to create system directory nfs4 Apr 12 18:24:23.034375 kubelet[2083]: E0412 18:24:23.034329 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:23.092883 kernel: NFS: Registering the id_resolver key type Apr 12 18:24:23.093039 kernel: Key type id_resolver registered Apr 12 18:24:23.093083 kernel: Key type id_legacy registered Apr 12 18:24:22.699000 audit[3838]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=ffffa4dcb010 a1=19c244 a2=aaaac7cae028 a3=aaaad3a04010 items=0 ppid=51 pid=3838 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:22.699000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D006E66737634 Apr 12 18:24:23.107000 audit[3839]: AVC avc: denied { confidentiality } for pid=3839 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:23.115345 kernel: Failed to create system directory rpcgss Apr 12 18:24:23.115435 kernel: Failed to create system directory rpcgss Apr 12 18:24:23.107000 audit[3839]: AVC avc: denied { confidentiality } for pid=3839 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:23.117590 kernel: Failed to create system directory rpcgss Apr 12 18:24:23.107000 audit[3839]: AVC avc: denied { confidentiality } for pid=3839 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:23.119627 kernel: Failed to create system directory rpcgss Apr 12 18:24:23.107000 audit[3839]: AVC avc: denied { confidentiality } for pid=3839 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:23.121719 kernel: Failed to create system directory rpcgss Apr 12 18:24:23.107000 audit[3839]: AVC avc: denied { confidentiality } for pid=3839 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:23.123748 kernel: Failed to create system directory rpcgss Apr 12 18:24:23.107000 audit[3839]: AVC avc: denied { confidentiality } for pid=3839 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:23.125752 kernel: Failed to create system directory rpcgss Apr 12 18:24:23.107000 audit[3839]: AVC avc: denied { confidentiality } for pid=3839 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:23.127762 kernel: Failed to create system directory rpcgss Apr 12 18:24:23.107000 audit[3839]: AVC avc: denied { confidentiality } for pid=3839 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:23.129766 kernel: Failed to create system directory rpcgss Apr 12 18:24:23.107000 audit[3839]: AVC avc: denied { confidentiality } for pid=3839 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:23.131787 kernel: Failed to create system directory rpcgss Apr 12 18:24:23.107000 audit[3839]: AVC avc: denied { confidentiality } for pid=3839 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:23.107000 audit[3839]: AVC avc: denied { confidentiality } for pid=3839 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:23.135798 kernel: Failed to create system directory rpcgss Apr 12 18:24:23.135848 kernel: Failed to create system directory rpcgss Apr 12 18:24:23.107000 audit[3839]: AVC avc: denied { confidentiality } for pid=3839 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:23.138031 kernel: Failed to create system directory rpcgss Apr 12 18:24:23.107000 audit[3839]: AVC avc: denied { confidentiality } for pid=3839 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:23.140135 kernel: Failed to create system directory rpcgss Apr 12 18:24:23.107000 audit[3839]: AVC avc: denied { confidentiality } for pid=3839 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:23.142144 kernel: Failed to create system directory rpcgss Apr 12 18:24:23.107000 audit[3839]: AVC avc: denied { confidentiality } for pid=3839 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:23.144180 kernel: Failed to create system directory rpcgss Apr 12 18:24:23.107000 audit[3839]: AVC avc: denied { confidentiality } for pid=3839 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:23.146178 kernel: Failed to create system directory rpcgss Apr 12 18:24:23.107000 audit[3839]: AVC avc: denied { confidentiality } for pid=3839 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:23.148182 kernel: Failed to create system directory rpcgss Apr 12 18:24:23.107000 audit[3839]: AVC avc: denied { confidentiality } for pid=3839 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:23.150188 kernel: Failed to create system directory rpcgss Apr 12 18:24:23.107000 audit[3839]: AVC avc: denied { confidentiality } for pid=3839 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:23.152220 kernel: Failed to create system directory rpcgss Apr 12 18:24:23.107000 audit[3839]: AVC avc: denied { confidentiality } for pid=3839 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:23.154239 kernel: Failed to create system directory rpcgss Apr 12 18:24:23.107000 audit[3839]: AVC avc: denied { confidentiality } for pid=3839 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:23.156275 kernel: Failed to create system directory rpcgss Apr 12 18:24:23.107000 audit[3839]: AVC avc: denied { confidentiality } for pid=3839 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:23.158297 kernel: Failed to create system directory rpcgss Apr 12 18:24:23.107000 audit[3839]: AVC avc: denied { confidentiality } for pid=3839 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:23.160300 kernel: Failed to create system directory rpcgss Apr 12 18:24:23.107000 audit[3839]: AVC avc: denied { confidentiality } for pid=3839 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:23.162319 kernel: Failed to create system directory rpcgss Apr 12 18:24:23.107000 audit[3839]: AVC avc: denied { confidentiality } for pid=3839 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:23.164329 kernel: Failed to create system directory rpcgss Apr 12 18:24:23.107000 audit[3839]: AVC avc: denied { confidentiality } for pid=3839 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Apr 12 18:24:23.107000 audit[3839]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=ffff9fc93010 a1=5ef34 a2=aaaac266e028 a3=aaaafe705010 items=0 ppid=51 pid=3839 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:23.107000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D007270632D617574682D36 Apr 12 18:24:23.191456 nfsidmap[3848]: nss_getpwnam: name 'root@nfs-server-provisioner.default.svc.cluster.local' does not map into domain 'us-west-2.compute.internal' Apr 12 18:24:23.196932 nfsidmap[3849]: nss_name_to_gid: name 'root@nfs-server-provisioner.default.svc.cluster.local' does not map into domain 'us-west-2.compute.internal' Apr 12 18:24:23.220000 audit[1]: AVC avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2740 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Apr 12 18:24:23.220000 audit[1]: AVC avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2740 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Apr 12 18:24:23.220000 audit[1]: AVC avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2740 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Apr 12 18:24:23.220000 audit[1812]: AVC avc: denied { watch_reads } for pid=1812 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2740 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Apr 12 18:24:23.220000 audit[1812]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=e a1=aaaaffa751f0 a2=10 a3=0 items=0 ppid=1 pid=1812 auid=4294967295 uid=500 gid=500 euid=500 suid=500 fsuid=500 egid=500 sgid=500 fsgid=500 tty=(none) ses=4294967295 comm="systemd" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:23.220000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D64002D2D75736572 Apr 12 18:24:23.220000 audit[1812]: AVC avc: denied { watch_reads } for pid=1812 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2740 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Apr 12 18:24:23.220000 audit[1812]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=e a1=aaaaffa751f0 a2=10 a3=0 items=0 ppid=1 pid=1812 auid=4294967295 uid=500 gid=500 euid=500 suid=500 fsuid=500 egid=500 sgid=500 fsgid=500 tty=(none) ses=4294967295 comm="systemd" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:23.220000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D64002D2D75736572 Apr 12 18:24:23.220000 audit[1812]: AVC avc: denied { watch_reads } for pid=1812 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2740 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Apr 12 18:24:23.220000 audit[1812]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=e a1=aaaaffa751f0 a2=10 a3=0 items=0 ppid=1 pid=1812 auid=4294967295 uid=500 gid=500 euid=500 suid=500 fsuid=500 egid=500 sgid=500 fsgid=500 tty=(none) ses=4294967295 comm="systemd" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:23.220000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D64002D2D75736572 Apr 12 18:24:23.324014 env[1620]: time="2024-04-12T18:24:23.323920583Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:test-pod-1,Uid:05fdfd11-792e-4265-9f9d-dd04e1438cb4,Namespace:default,Attempt:0,}" Apr 12 18:24:23.563241 (udev-worker)[3834]: Network interface NamePolicy= disabled on kernel command line. Apr 12 18:24:23.564388 systemd-networkd[1420]: cali5ec59c6bf6e: Link UP Apr 12 18:24:23.567084 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Apr 12 18:24:23.567183 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali5ec59c6bf6e: link becomes ready Apr 12 18:24:23.570318 systemd-networkd[1420]: cali5ec59c6bf6e: Gained carrier Apr 12 18:24:23.589983 env[1620]: 2024-04-12 18:24:23.416 [INFO][3851] plugin.go 327: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.25.169-k8s-test--pod--1-eth0 default 05fdfd11-792e-4265-9f9d-dd04e1438cb4 1215 0 2024-04-12 18:23:49 +0000 UTC map[projectcalico.org/namespace:default projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 172.31.25.169 test-pod-1 eth0 default [] [] [kns.default ksa.default.default] cali5ec59c6bf6e [] []}} ContainerID="e4d6801d03a176d64695de2483fe633f6edd28373f766c16ead2a1b3f3a12693" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.25.169-k8s-test--pod--1-" Apr 12 18:24:23.589983 env[1620]: 2024-04-12 18:24:23.416 [INFO][3851] k8s.go 76: Extracted identifiers for CmdAddK8s ContainerID="e4d6801d03a176d64695de2483fe633f6edd28373f766c16ead2a1b3f3a12693" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.25.169-k8s-test--pod--1-eth0" Apr 12 18:24:23.589983 env[1620]: 2024-04-12 18:24:23.464 [INFO][3862] ipam_plugin.go 228: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="e4d6801d03a176d64695de2483fe633f6edd28373f766c16ead2a1b3f3a12693" HandleID="k8s-pod-network.e4d6801d03a176d64695de2483fe633f6edd28373f766c16ead2a1b3f3a12693" Workload="172.31.25.169-k8s-test--pod--1-eth0" Apr 12 18:24:23.589983 env[1620]: 2024-04-12 18:24:23.501 [INFO][3862] ipam_plugin.go 268: Auto assigning IP ContainerID="e4d6801d03a176d64695de2483fe633f6edd28373f766c16ead2a1b3f3a12693" HandleID="k8s-pod-network.e4d6801d03a176d64695de2483fe633f6edd28373f766c16ead2a1b3f3a12693" Workload="172.31.25.169-k8s-test--pod--1-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x4000119b50), Attrs:map[string]string{"namespace":"default", "node":"172.31.25.169", "pod":"test-pod-1", "timestamp":"2024-04-12 18:24:23.464402986 +0000 UTC"}, Hostname:"172.31.25.169", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Apr 12 18:24:23.589983 env[1620]: 2024-04-12 18:24:23.501 [INFO][3862] ipam_plugin.go 356: About to acquire host-wide IPAM lock. Apr 12 18:24:23.589983 env[1620]: 2024-04-12 18:24:23.501 [INFO][3862] ipam_plugin.go 371: Acquired host-wide IPAM lock. Apr 12 18:24:23.589983 env[1620]: 2024-04-12 18:24:23.501 [INFO][3862] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.25.169' Apr 12 18:24:23.589983 env[1620]: 2024-04-12 18:24:23.505 [INFO][3862] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.e4d6801d03a176d64695de2483fe633f6edd28373f766c16ead2a1b3f3a12693" host="172.31.25.169" Apr 12 18:24:23.589983 env[1620]: 2024-04-12 18:24:23.513 [INFO][3862] ipam.go 372: Looking up existing affinities for host host="172.31.25.169" Apr 12 18:24:23.589983 env[1620]: 2024-04-12 18:24:23.522 [INFO][3862] ipam.go 489: Trying affinity for 192.168.111.64/26 host="172.31.25.169" Apr 12 18:24:23.589983 env[1620]: 2024-04-12 18:24:23.527 [INFO][3862] ipam.go 155: Attempting to load block cidr=192.168.111.64/26 host="172.31.25.169" Apr 12 18:24:23.589983 env[1620]: 2024-04-12 18:24:23.534 [INFO][3862] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.111.64/26 host="172.31.25.169" Apr 12 18:24:23.589983 env[1620]: 2024-04-12 18:24:23.534 [INFO][3862] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.111.64/26 handle="k8s-pod-network.e4d6801d03a176d64695de2483fe633f6edd28373f766c16ead2a1b3f3a12693" host="172.31.25.169" Apr 12 18:24:23.589983 env[1620]: 2024-04-12 18:24:23.537 [INFO][3862] ipam.go 1682: Creating new handle: k8s-pod-network.e4d6801d03a176d64695de2483fe633f6edd28373f766c16ead2a1b3f3a12693 Apr 12 18:24:23.589983 env[1620]: 2024-04-12 18:24:23.545 [INFO][3862] ipam.go 1203: Writing block in order to claim IPs block=192.168.111.64/26 handle="k8s-pod-network.e4d6801d03a176d64695de2483fe633f6edd28373f766c16ead2a1b3f3a12693" host="172.31.25.169" Apr 12 18:24:23.589983 env[1620]: 2024-04-12 18:24:23.555 [INFO][3862] ipam.go 1216: Successfully claimed IPs: [192.168.111.69/26] block=192.168.111.64/26 handle="k8s-pod-network.e4d6801d03a176d64695de2483fe633f6edd28373f766c16ead2a1b3f3a12693" host="172.31.25.169" Apr 12 18:24:23.589983 env[1620]: 2024-04-12 18:24:23.555 [INFO][3862] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.111.69/26] handle="k8s-pod-network.e4d6801d03a176d64695de2483fe633f6edd28373f766c16ead2a1b3f3a12693" host="172.31.25.169" Apr 12 18:24:23.589983 env[1620]: 2024-04-12 18:24:23.555 [INFO][3862] ipam_plugin.go 377: Released host-wide IPAM lock. Apr 12 18:24:23.589983 env[1620]: 2024-04-12 18:24:23.555 [INFO][3862] ipam_plugin.go 286: Calico CNI IPAM assigned addresses IPv4=[192.168.111.69/26] IPv6=[] ContainerID="e4d6801d03a176d64695de2483fe633f6edd28373f766c16ead2a1b3f3a12693" HandleID="k8s-pod-network.e4d6801d03a176d64695de2483fe633f6edd28373f766c16ead2a1b3f3a12693" Workload="172.31.25.169-k8s-test--pod--1-eth0" Apr 12 18:24:23.589983 env[1620]: 2024-04-12 18:24:23.559 [INFO][3851] k8s.go 385: Populated endpoint ContainerID="e4d6801d03a176d64695de2483fe633f6edd28373f766c16ead2a1b3f3a12693" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.25.169-k8s-test--pod--1-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.25.169-k8s-test--pod--1-eth0", GenerateName:"", Namespace:"default", SelfLink:"", UID:"05fdfd11-792e-4265-9f9d-dd04e1438cb4", ResourceVersion:"1215", Generation:0, CreationTimestamp:time.Date(2024, time.April, 12, 18, 23, 49, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.25.169", ContainerID:"", Pod:"test-pod-1", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.111.69/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali5ec59c6bf6e", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Apr 12 18:24:23.589983 env[1620]: 2024-04-12 18:24:23.559 [INFO][3851] k8s.go 386: Calico CNI using IPs: [192.168.111.69/32] ContainerID="e4d6801d03a176d64695de2483fe633f6edd28373f766c16ead2a1b3f3a12693" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.25.169-k8s-test--pod--1-eth0" Apr 12 18:24:23.591416 env[1620]: 2024-04-12 18:24:23.559 [INFO][3851] dataplane_linux.go 68: Setting the host side veth name to cali5ec59c6bf6e ContainerID="e4d6801d03a176d64695de2483fe633f6edd28373f766c16ead2a1b3f3a12693" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.25.169-k8s-test--pod--1-eth0" Apr 12 18:24:23.591416 env[1620]: 2024-04-12 18:24:23.571 [INFO][3851] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="e4d6801d03a176d64695de2483fe633f6edd28373f766c16ead2a1b3f3a12693" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.25.169-k8s-test--pod--1-eth0" Apr 12 18:24:23.591416 env[1620]: 2024-04-12 18:24:23.572 [INFO][3851] k8s.go 413: Added Mac, interface name, and active container ID to endpoint ContainerID="e4d6801d03a176d64695de2483fe633f6edd28373f766c16ead2a1b3f3a12693" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.25.169-k8s-test--pod--1-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.25.169-k8s-test--pod--1-eth0", GenerateName:"", Namespace:"default", SelfLink:"", UID:"05fdfd11-792e-4265-9f9d-dd04e1438cb4", ResourceVersion:"1215", Generation:0, CreationTimestamp:time.Date(2024, time.April, 12, 18, 23, 49, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.25.169", ContainerID:"e4d6801d03a176d64695de2483fe633f6edd28373f766c16ead2a1b3f3a12693", Pod:"test-pod-1", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.111.69/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali5ec59c6bf6e", MAC:"2e:e9:7d:72:64:eb", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Apr 12 18:24:23.591416 env[1620]: 2024-04-12 18:24:23.582 [INFO][3851] k8s.go 498: Wrote updated endpoint to datastore ContainerID="e4d6801d03a176d64695de2483fe633f6edd28373f766c16ead2a1b3f3a12693" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.25.169-k8s-test--pod--1-eth0" Apr 12 18:24:23.613593 env[1620]: time="2024-04-12T18:24:23.613457854Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Apr 12 18:24:23.613745 env[1620]: time="2024-04-12T18:24:23.613618244Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Apr 12 18:24:23.613745 env[1620]: time="2024-04-12T18:24:23.613701948Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Apr 12 18:24:23.614096 env[1620]: time="2024-04-12T18:24:23.614025547Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/e4d6801d03a176d64695de2483fe633f6edd28373f766c16ead2a1b3f3a12693 pid=3889 runtime=io.containerd.runc.v2 Apr 12 18:24:23.634000 audit[3899]: NETFILTER_CFG table=filter:87 family=2 entries=42 op=nft_register_chain pid=3899 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Apr 12 18:24:23.634000 audit[3899]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=20588 a0=3 a1=ffffd12bb2c0 a2=0 a3=ffff8b321fa8 items=0 ppid=2759 pid=3899 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:23.634000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Apr 12 18:24:23.664534 systemd[1]: Started cri-containerd-e4d6801d03a176d64695de2483fe633f6edd28373f766c16ead2a1b3f3a12693.scope. Apr 12 18:24:23.688000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.688000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.688000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.688000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.688000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.688000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.688000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.688000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.688000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.689000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.689000 audit: BPF prog-id=128 op=LOAD Apr 12 18:24:23.691000 audit[3901]: AVC avc: denied { bpf } for pid=3901 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.691000 audit[3901]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000147b38 a2=10 a3=0 items=0 ppid=3889 pid=3901 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:23.691000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6534643638303164303361313736643634363935646532343833666536 Apr 12 18:24:23.691000 audit[3901]: AVC avc: denied { perfmon } for pid=3901 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.691000 audit[3901]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001475a0 a2=3c a3=0 items=0 ppid=3889 pid=3901 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:23.691000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6534643638303164303361313736643634363935646532343833666536 Apr 12 18:24:23.691000 audit[3901]: AVC avc: denied { bpf } for pid=3901 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.691000 audit[3901]: AVC avc: denied { bpf } for pid=3901 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.691000 audit[3901]: AVC avc: denied { bpf } for pid=3901 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.691000 audit[3901]: AVC avc: denied { perfmon } for pid=3901 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.691000 audit[3901]: AVC avc: denied { perfmon } for pid=3901 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.691000 audit[3901]: AVC avc: denied { perfmon } for pid=3901 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.691000 audit[3901]: AVC avc: denied { perfmon } for pid=3901 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.691000 audit[3901]: AVC avc: denied { perfmon } for pid=3901 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.691000 audit[3901]: AVC avc: denied { bpf } for pid=3901 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.691000 audit[3901]: AVC avc: denied { bpf } for pid=3901 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.691000 audit: BPF prog-id=129 op=LOAD Apr 12 18:24:23.691000 audit[3901]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001478e0 a2=78 a3=0 items=0 ppid=3889 pid=3901 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:23.691000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6534643638303164303361313736643634363935646532343833666536 Apr 12 18:24:23.691000 audit[3901]: AVC avc: denied { bpf } for pid=3901 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.691000 audit[3901]: AVC avc: denied { bpf } for pid=3901 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.691000 audit[3901]: AVC avc: denied { perfmon } for pid=3901 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.691000 audit[3901]: AVC avc: denied { perfmon } for pid=3901 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.691000 audit[3901]: AVC avc: denied { perfmon } for pid=3901 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.691000 audit[3901]: AVC avc: denied { perfmon } for pid=3901 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.691000 audit[3901]: AVC avc: denied { perfmon } for pid=3901 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.691000 audit[3901]: AVC avc: denied { bpf } for pid=3901 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.691000 audit[3901]: AVC avc: denied { bpf } for pid=3901 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.691000 audit: BPF prog-id=130 op=LOAD Apr 12 18:24:23.691000 audit[3901]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000147670 a2=78 a3=0 items=0 ppid=3889 pid=3901 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:23.691000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6534643638303164303361313736643634363935646532343833666536 Apr 12 18:24:23.691000 audit: BPF prog-id=130 op=UNLOAD Apr 12 18:24:23.691000 audit: BPF prog-id=129 op=UNLOAD Apr 12 18:24:23.691000 audit[3901]: AVC avc: denied { bpf } for pid=3901 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.691000 audit[3901]: AVC avc: denied { bpf } for pid=3901 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.691000 audit[3901]: AVC avc: denied { bpf } for pid=3901 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.691000 audit[3901]: AVC avc: denied { perfmon } for pid=3901 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.691000 audit[3901]: AVC avc: denied { perfmon } for pid=3901 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.691000 audit[3901]: AVC avc: denied { perfmon } for pid=3901 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.691000 audit[3901]: AVC avc: denied { perfmon } for pid=3901 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.691000 audit[3901]: AVC avc: denied { perfmon } for pid=3901 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.691000 audit[3901]: AVC avc: denied { bpf } for pid=3901 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.691000 audit[3901]: AVC avc: denied { bpf } for pid=3901 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:23.691000 audit: BPF prog-id=131 op=LOAD Apr 12 18:24:23.691000 audit[3901]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000147b40 a2=78 a3=0 items=0 ppid=3889 pid=3901 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:23.691000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6534643638303164303361313736643634363935646532343833666536 Apr 12 18:24:23.735007 env[1620]: time="2024-04-12T18:24:23.734916033Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:test-pod-1,Uid:05fdfd11-792e-4265-9f9d-dd04e1438cb4,Namespace:default,Attempt:0,} returns sandbox id \"e4d6801d03a176d64695de2483fe633f6edd28373f766c16ead2a1b3f3a12693\"" Apr 12 18:24:23.738478 env[1620]: time="2024-04-12T18:24:23.738410548Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\"" Apr 12 18:24:24.033123 env[1620]: time="2024-04-12T18:24:24.033044898Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:24:24.035798 kubelet[2083]: E0412 18:24:24.035714 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:24.036701 env[1620]: time="2024-04-12T18:24:24.036656487Z" level=info msg="ImageUpdate event &ImageUpdate{Name:sha256:7c9d4415537dd79835685ddfb3fdec1efecbf38aada406c280c76cc82afd6a56,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:24:24.041570 env[1620]: time="2024-04-12T18:24:24.041510473Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:24:24.047251 env[1620]: time="2024-04-12T18:24:24.047187395Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\" returns image reference \"sha256:7c9d4415537dd79835685ddfb3fdec1efecbf38aada406c280c76cc82afd6a56\"" Apr 12 18:24:24.050344 env[1620]: time="2024-04-12T18:24:24.050293097Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx@sha256:c55d27e57a0d92ca01e7aba1a1812f9c8cc73708ce69fb58d4a42b6416a95f38,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Apr 12 18:24:24.052688 env[1620]: time="2024-04-12T18:24:24.052635125Z" level=info msg="CreateContainer within sandbox \"e4d6801d03a176d64695de2483fe633f6edd28373f766c16ead2a1b3f3a12693\" for container &ContainerMetadata{Name:test,Attempt:0,}" Apr 12 18:24:24.082122 env[1620]: time="2024-04-12T18:24:24.082036742Z" level=info msg="CreateContainer within sandbox \"e4d6801d03a176d64695de2483fe633f6edd28373f766c16ead2a1b3f3a12693\" for &ContainerMetadata{Name:test,Attempt:0,} returns container id \"88e47f334863d1508753cd4a7816aa031b1876698829b3f51804d129c34f01e2\"" Apr 12 18:24:24.083244 env[1620]: time="2024-04-12T18:24:24.083142926Z" level=info msg="StartContainer for \"88e47f334863d1508753cd4a7816aa031b1876698829b3f51804d129c34f01e2\"" Apr 12 18:24:24.110995 systemd[1]: Started cri-containerd-88e47f334863d1508753cd4a7816aa031b1876698829b3f51804d129c34f01e2.scope. Apr 12 18:24:24.138000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.138000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.138000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.138000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.138000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.138000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.138000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.139000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.139000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.139000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.139000 audit: BPF prog-id=132 op=LOAD Apr 12 18:24:24.140000 audit[3953]: AVC avc: denied { bpf } for pid=3953 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.140000 audit[3953]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=40001c5b38 a2=10 a3=0 items=0 ppid=3889 pid=3953 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:24.140000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3838653437663333343836336431353038373533636434613738313661 Apr 12 18:24:24.140000 audit[3953]: AVC avc: denied { perfmon } for pid=3953 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.140000 audit[3953]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001c55a0 a2=3c a3=0 items=0 ppid=3889 pid=3953 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:24.140000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3838653437663333343836336431353038373533636434613738313661 Apr 12 18:24:24.140000 audit[3953]: AVC avc: denied { bpf } for pid=3953 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.140000 audit[3953]: AVC avc: denied { bpf } for pid=3953 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.140000 audit[3953]: AVC avc: denied { bpf } for pid=3953 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.140000 audit[3953]: AVC avc: denied { perfmon } for pid=3953 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.140000 audit[3953]: AVC avc: denied { perfmon } for pid=3953 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.140000 audit[3953]: AVC avc: denied { perfmon } for pid=3953 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.140000 audit[3953]: AVC avc: denied { perfmon } for pid=3953 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.140000 audit[3953]: AVC avc: denied { perfmon } for pid=3953 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.140000 audit[3953]: AVC avc: denied { bpf } for pid=3953 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.140000 audit[3953]: AVC avc: denied { bpf } for pid=3953 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.140000 audit: BPF prog-id=133 op=LOAD Apr 12 18:24:24.140000 audit[3953]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001c58e0 a2=78 a3=0 items=0 ppid=3889 pid=3953 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:24.140000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3838653437663333343836336431353038373533636434613738313661 Apr 12 18:24:24.140000 audit[3953]: AVC avc: denied { bpf } for pid=3953 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.140000 audit[3953]: AVC avc: denied { bpf } for pid=3953 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.140000 audit[3953]: AVC avc: denied { perfmon } for pid=3953 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.140000 audit[3953]: AVC avc: denied { perfmon } for pid=3953 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.140000 audit[3953]: AVC avc: denied { perfmon } for pid=3953 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.140000 audit[3953]: AVC avc: denied { perfmon } for pid=3953 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.140000 audit[3953]: AVC avc: denied { perfmon } for pid=3953 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.140000 audit[3953]: AVC avc: denied { bpf } for pid=3953 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.140000 audit[3953]: AVC avc: denied { bpf } for pid=3953 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.140000 audit: BPF prog-id=134 op=LOAD Apr 12 18:24:24.140000 audit[3953]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=40001c5670 a2=78 a3=0 items=0 ppid=3889 pid=3953 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:24.140000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3838653437663333343836336431353038373533636434613738313661 Apr 12 18:24:24.140000 audit: BPF prog-id=134 op=UNLOAD Apr 12 18:24:24.140000 audit: BPF prog-id=133 op=UNLOAD Apr 12 18:24:24.140000 audit[3953]: AVC avc: denied { bpf } for pid=3953 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.140000 audit[3953]: AVC avc: denied { bpf } for pid=3953 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.140000 audit[3953]: AVC avc: denied { bpf } for pid=3953 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.140000 audit[3953]: AVC avc: denied { perfmon } for pid=3953 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.140000 audit[3953]: AVC avc: denied { perfmon } for pid=3953 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.140000 audit[3953]: AVC avc: denied { perfmon } for pid=3953 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.140000 audit[3953]: AVC avc: denied { perfmon } for pid=3953 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.140000 audit[3953]: AVC avc: denied { perfmon } for pid=3953 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.140000 audit[3953]: AVC avc: denied { bpf } for pid=3953 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.140000 audit[3953]: AVC avc: denied { bpf } for pid=3953 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Apr 12 18:24:24.140000 audit: BPF prog-id=135 op=LOAD Apr 12 18:24:24.140000 audit[3953]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001c5b40 a2=78 a3=0 items=0 ppid=3889 pid=3953 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:24.140000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3838653437663333343836336431353038373533636434613738313661 Apr 12 18:24:24.173072 env[1620]: time="2024-04-12T18:24:24.173010402Z" level=info msg="StartContainer for \"88e47f334863d1508753cd4a7816aa031b1876698829b3f51804d129c34f01e2\" returns successfully" Apr 12 18:24:24.208563 systemd[1]: run-containerd-runc-k8s.io-e4d6801d03a176d64695de2483fe633f6edd28373f766c16ead2a1b3f3a12693-runc.P2cFfi.mount: Deactivated successfully. Apr 12 18:24:25.036439 kubelet[2083]: E0412 18:24:25.036399 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:25.566138 systemd-networkd[1420]: cali5ec59c6bf6e: Gained IPv6LL Apr 12 18:24:26.037658 kubelet[2083]: E0412 18:24:26.037619 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:27.039023 kubelet[2083]: E0412 18:24:27.038984 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:27.701113 systemd[1]: run-containerd-runc-k8s.io-54ddb5be06209325cda767841d423e4061afdb1f53ccd13dc87e8315e1649e75-runc.QXcByu.mount: Deactivated successfully. Apr 12 18:24:27.771603 kubelet[2083]: I0412 18:24:27.771539 2083 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="default/test-pod-1" podStartSLOduration=38.461175393 podCreationTimestamp="2024-04-12 18:23:49 +0000 UTC" firstStartedPulling="2024-04-12 18:24:23.737482624 +0000 UTC m=+86.614181262" lastFinishedPulling="2024-04-12 18:24:24.0477701 +0000 UTC m=+86.924468726" observedRunningTime="2024-04-12 18:24:24.47350822 +0000 UTC m=+87.350206846" watchObservedRunningTime="2024-04-12 18:24:27.771462857 +0000 UTC m=+90.648161531" Apr 12 18:24:27.826712 kernel: kauditd_printk_skb: 461 callbacks suppressed Apr 12 18:24:27.826828 kernel: audit: type=1325 audit(1712946267.820:970): table=filter:88 family=2 entries=9 op=nft_register_rule pid=4021 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:24:27.820000 audit[4021]: NETFILTER_CFG table=filter:88 family=2 entries=9 op=nft_register_rule pid=4021 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:24:27.820000 audit[4021]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=2932 a0=3 a1=fffffb58cae0 a2=0 a3=1 items=0 ppid=2296 pid=4021 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:27.840731 kernel: audit: type=1300 audit(1712946267.820:970): arch=c00000b7 syscall=211 success=yes exit=2932 a0=3 a1=fffffb58cae0 a2=0 a3=1 items=0 ppid=2296 pid=4021 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:27.840793 kernel: audit: type=1327 audit(1712946267.820:970): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:24:27.820000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:24:27.823000 audit[4021]: NETFILTER_CFG table=nat:89 family=2 entries=51 op=nft_register_chain pid=4021 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:24:27.823000 audit[4021]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=18564 a0=3 a1=fffffb58cae0 a2=0 a3=1 items=0 ppid=2296 pid=4021 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:27.874679 kernel: audit: type=1325 audit(1712946267.823:971): table=nat:89 family=2 entries=51 op=nft_register_chain pid=4021 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:24:27.874752 kernel: audit: type=1300 audit(1712946267.823:971): arch=c00000b7 syscall=211 success=yes exit=18564 a0=3 a1=fffffb58cae0 a2=0 a3=1 items=0 ppid=2296 pid=4021 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:27.874819 kernel: audit: type=1327 audit(1712946267.823:971): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:24:27.823000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:24:28.040750 kubelet[2083]: E0412 18:24:28.040611 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:28.699000 audit[4025]: NETFILTER_CFG table=filter:90 family=2 entries=8 op=nft_register_rule pid=4025 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:24:28.699000 audit[4025]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=2932 a0=3 a1=ffffe9da77d0 a2=0 a3=1 items=0 ppid=2296 pid=4025 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:28.718573 kernel: audit: type=1325 audit(1712946268.699:972): table=filter:90 family=2 entries=8 op=nft_register_rule pid=4025 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:24:28.718676 kernel: audit: type=1300 audit(1712946268.699:972): arch=c00000b7 syscall=211 success=yes exit=2932 a0=3 a1=ffffe9da77d0 a2=0 a3=1 items=0 ppid=2296 pid=4025 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:28.699000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:24:28.724357 kernel: audit: type=1327 audit(1712946268.699:972): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:24:28.699000 audit[4025]: NETFILTER_CFG table=nat:91 family=2 entries=58 op=nft_register_chain pid=4025 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:24:28.699000 audit[4025]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=20452 a0=3 a1=ffffe9da77d0 a2=0 a3=1 items=0 ppid=2296 pid=4025 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Apr 12 18:24:28.699000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Apr 12 18:24:28.731977 kernel: audit: type=1325 audit(1712946268.699:973): table=nat:91 family=2 entries=58 op=nft_register_chain pid=4025 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Apr 12 18:24:29.041742 kubelet[2083]: E0412 18:24:29.041562 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:30.041986 kubelet[2083]: E0412 18:24:30.041915 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:31.042801 kubelet[2083]: E0412 18:24:31.042764 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:32.044284 kubelet[2083]: E0412 18:24:32.044222 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:33.044604 kubelet[2083]: E0412 18:24:33.044564 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:34.046127 kubelet[2083]: E0412 18:24:34.046064 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:35.046987 kubelet[2083]: E0412 18:24:35.046930 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:36.048207 kubelet[2083]: E0412 18:24:36.048142 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:37.049162 kubelet[2083]: E0412 18:24:37.049086 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:37.959472 kubelet[2083]: E0412 18:24:37.959408 2083 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:38.050128 kubelet[2083]: E0412 18:24:38.050092 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:39.050385 kubelet[2083]: E0412 18:24:39.050328 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:40.051095 kubelet[2083]: E0412 18:24:40.051054 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:41.052426 kubelet[2083]: E0412 18:24:41.052368 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:42.053108 kubelet[2083]: E0412 18:24:42.053031 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:43.054139 kubelet[2083]: E0412 18:24:43.054103 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:44.055335 kubelet[2083]: E0412 18:24:44.055272 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:45.055495 kubelet[2083]: E0412 18:24:45.055413 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:46.056424 kubelet[2083]: E0412 18:24:46.056362 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:47.056879 kubelet[2083]: E0412 18:24:47.056839 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:48.057892 kubelet[2083]: E0412 18:24:48.057850 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:49.059523 kubelet[2083]: E0412 18:24:49.059484 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:50.060390 kubelet[2083]: E0412 18:24:50.060349 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:50.887633 kubelet[2083]: E0412 18:24:50.887593 2083 controller.go:193] "Failed to update lease" err="Put \"https://172.31.30.133:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.25.169?timeout=10s\": net/http: request canceled (Client.Timeout exceeded while awaiting headers)" Apr 12 18:24:51.061683 kubelet[2083]: E0412 18:24:51.061645 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:52.062446 kubelet[2083]: E0412 18:24:52.062410 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:53.064134 kubelet[2083]: E0412 18:24:53.064096 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:54.064971 kubelet[2083]: E0412 18:24:54.064911 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:55.065831 kubelet[2083]: E0412 18:24:55.065770 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:56.066930 kubelet[2083]: E0412 18:24:56.066890 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:57.068158 kubelet[2083]: E0412 18:24:57.068120 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:57.959154 kubelet[2083]: E0412 18:24:57.959097 2083 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:58.069340 kubelet[2083]: E0412 18:24:58.069281 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:24:59.070045 kubelet[2083]: E0412 18:24:59.069985 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:00.070571 kubelet[2083]: E0412 18:25:00.070505 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:00.888237 kubelet[2083]: E0412 18:25:00.888181 2083 controller.go:193] "Failed to update lease" err="Put \"https://172.31.30.133:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.25.169?timeout=10s\": net/http: request canceled (Client.Timeout exceeded while awaiting headers)" Apr 12 18:25:01.071609 kubelet[2083]: E0412 18:25:01.071548 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:02.072144 kubelet[2083]: E0412 18:25:02.071997 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:02.805000 audit[3764]: AVC avc: denied { watch } for pid=3764 comm="apiserver" path="/calico-apiserver-certs/..2024_04_12_18_23_57.4034353263/tls.crt" dev="tmpfs" ino=3 scontext=system_u:system_r:svirt_lxc_net_t:s0:c175,c933 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c175,c933 tclass=file permissive=0 Apr 12 18:25:02.808464 kernel: kauditd_printk_skb: 2 callbacks suppressed Apr 12 18:25:02.808567 kernel: audit: type=1400 audit(1712946302.805:974): avc: denied { watch } for pid=3764 comm="apiserver" path="/calico-apiserver-certs/..2024_04_12_18_23_57.4034353263/tls.crt" dev="tmpfs" ino=3 scontext=system_u:system_r:svirt_lxc_net_t:s0:c175,c933 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c175,c933 tclass=file permissive=0 Apr 12 18:25:02.805000 audit[3764]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=8 a1=40009ec960 a2=fc6 a3=0 items=0 ppid=3602 pid=3764 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="apiserver" exe="/code/apiserver" subj=system_u:system_r:svirt_lxc_net_t:s0:c175,c933 key=(null) Apr 12 18:25:02.830528 kernel: audit: type=1300 audit(1712946302.805:974): arch=c00000b7 syscall=27 success=no exit=-13 a0=8 a1=40009ec960 a2=fc6 a3=0 items=0 ppid=3602 pid=3764 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="apiserver" exe="/code/apiserver" subj=system_u:system_r:svirt_lxc_net_t:s0:c175,c933 key=(null) Apr 12 18:25:02.830649 kernel: audit: type=1327 audit(1712946302.805:974): proctitle=2F636F64652F617069736572766572002D2D7365637572652D706F72743D35343433002D2D746C732D707269766174652D6B65792D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C732E6B6579002D2D746C732D636572742D66696C653D2F63616C69636F2D6170697365727665722D63657274 Apr 12 18:25:02.805000 audit: PROCTITLE proctitle=2F636F64652F617069736572766572002D2D7365637572652D706F72743D35343433002D2D746C732D707269766174652D6B65792D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C732E6B6579002D2D746C732D636572742D66696C653D2F63616C69636F2D6170697365727665722D63657274 Apr 12 18:25:03.073090 kubelet[2083]: E0412 18:25:03.072356 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:04.072819 kubelet[2083]: E0412 18:25:04.072757 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:05.073283 kubelet[2083]: E0412 18:25:05.073223 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:06.074241 kubelet[2083]: E0412 18:25:06.074201 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:07.075841 kubelet[2083]: E0412 18:25:07.075800 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:08.077392 kubelet[2083]: E0412 18:25:08.077349 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:09.079115 kubelet[2083]: E0412 18:25:09.079054 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:10.079875 kubelet[2083]: E0412 18:25:10.079802 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:10.889402 kubelet[2083]: E0412 18:25:10.889279 2083 controller.go:193] "Failed to update lease" err="Put \"https://172.31.30.133:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.25.169?timeout=10s\": net/http: request canceled (Client.Timeout exceeded while awaiting headers)" Apr 12 18:25:11.080956 kubelet[2083]: E0412 18:25:11.080882 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:12.081758 kubelet[2083]: E0412 18:25:12.081717 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:13.083103 kubelet[2083]: E0412 18:25:13.083038 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:14.084107 kubelet[2083]: E0412 18:25:14.084024 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:15.084973 kubelet[2083]: E0412 18:25:15.084905 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:16.086002 kubelet[2083]: E0412 18:25:16.085963 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:17.087744 kubelet[2083]: E0412 18:25:17.087688 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:17.959561 kubelet[2083]: E0412 18:25:17.959524 2083 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:18.088606 kubelet[2083]: E0412 18:25:18.088576 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:19.090248 kubelet[2083]: E0412 18:25:19.090207 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:20.091809 kubelet[2083]: E0412 18:25:20.091750 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:20.890374 kubelet[2083]: E0412 18:25:20.890272 2083 controller.go:193] "Failed to update lease" err="Put \"https://172.31.30.133:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.25.169?timeout=10s\": net/http: request canceled (Client.Timeout exceeded while awaiting headers)" Apr 12 18:25:20.917577 kubelet[2083]: E0412 18:25:20.917528 2083 controller.go:193] "Failed to update lease" err="Put \"https://172.31.30.133:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.25.169?timeout=10s\": unexpected EOF" Apr 12 18:25:20.917832 kubelet[2083]: I0412 18:25:20.917806 2083 controller.go:116] "failed to update lease using latest lease, fallback to ensure lease" err="failed 5 attempts to update lease" Apr 12 18:25:20.921993 kubelet[2083]: E0412 18:25:20.920610 2083 controller.go:146] "Failed to ensure lease exists, will retry" err="Get \"https://172.31.30.133:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.25.169?timeout=10s\": dial tcp 172.31.30.133:6443: connect: connection refused" interval="200ms" Apr 12 18:25:21.092211 kubelet[2083]: E0412 18:25:21.092170 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:21.122201 kubelet[2083]: E0412 18:25:21.122167 2083 controller.go:146] "Failed to ensure lease exists, will retry" err="Get \"https://172.31.30.133:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.25.169?timeout=10s\": dial tcp 172.31.30.133:6443: connect: connection refused" interval="400ms" Apr 12 18:25:21.523383 kubelet[2083]: E0412 18:25:21.523347 2083 controller.go:146] "Failed to ensure lease exists, will retry" err="Get \"https://172.31.30.133:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.25.169?timeout=10s\": dial tcp 172.31.30.133:6443: connect: connection refused" interval="800ms" Apr 12 18:25:22.093473 kubelet[2083]: E0412 18:25:22.093423 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:23.094646 kubelet[2083]: E0412 18:25:23.094587 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:24.095136 kubelet[2083]: E0412 18:25:24.095090 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:25.096244 kubelet[2083]: E0412 18:25:25.096205 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:26.097218 kubelet[2083]: E0412 18:25:26.097154 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:27.098148 kubelet[2083]: E0412 18:25:27.098101 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:27.695778 systemd[1]: run-containerd-runc-k8s.io-54ddb5be06209325cda767841d423e4061afdb1f53ccd13dc87e8315e1649e75-runc.EDZgtJ.mount: Deactivated successfully. Apr 12 18:25:28.099429 kubelet[2083]: E0412 18:25:28.099258 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:29.099583 kubelet[2083]: E0412 18:25:29.099517 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:30.100484 kubelet[2083]: E0412 18:25:30.100423 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:31.101575 kubelet[2083]: E0412 18:25:31.101535 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:32.103240 kubelet[2083]: E0412 18:25:32.103178 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:32.325094 kubelet[2083]: E0412 18:25:32.325054 2083 controller.go:146] "Failed to ensure lease exists, will retry" err="Get \"https://172.31.30.133:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.25.169?timeout=10s\": net/http: request canceled while waiting for connection (Client.Timeout exceeded while awaiting headers)" interval="1.6s" Apr 12 18:25:32.579275 kubelet[2083]: E0412 18:25:32.579238 2083 kubelet_node_status.go:540] "Error updating node status, will retry" err="error getting node \"172.31.25.169\": Get \"https://172.31.30.133:6443/api/v1/nodes/172.31.25.169?resourceVersion=0&timeout=10s\": net/http: request canceled while waiting for connection (Client.Timeout exceeded while awaiting headers)" Apr 12 18:25:33.103929 kubelet[2083]: E0412 18:25:33.103886 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:34.105304 kubelet[2083]: E0412 18:25:34.105247 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:35.105997 kubelet[2083]: E0412 18:25:35.105957 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:36.106930 kubelet[2083]: E0412 18:25:36.106867 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Apr 12 18:25:37.107319 kubelet[2083]: E0412 18:25:37.107260 2083 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests"